---------- | AdsFix | g3n-h@ckm@n | V4_05.12.17.2 ----- Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- Start 18:54:41 - 07/12/2017 Mis a jour le : 05/12/2017 | 09.40 (GMT) par g3n-h@ckm@n Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFixAntiAdware C:\Users\Marion HUREL\Desktop\AdsFix(2).exe Boot: Normal boot [Marion HUREL (Administrator)] - [DESKTOP-B92M797] - (FR [040C]) SID = S-1-5-21-1820496596-1799960097-3914263759-1001 || [4d6172696f6e20485552454c205e5e] PC : ASUSTeK COMPUTER INC. - X550VX - ASUS-NotebookSKU Processor : X64 - 2304 - Intel(R) Core(TM) i5-6300HQ CPU @ 2.30GHz Bios : American Megatrends Inc. - 05/04/2017 - V.X550VX.302 CoreTemp : 40 C Systeme : Windows 10 Home (64 bits) Core Memoire RAM = Total (MB) : 6185 | Libre (MB) : 2840 Pagefile = Total (MB) : 7168 | Libre (MB) : 3598 Virtuelle = Total (MB) : 4194 | Libre (MB) : 3879 C:\ -> [Fixed] | [OS] | Total : 371.85 Go | Free : 311.31 Go -> NTFS [SATA] D:\ -> [Fixed] | [DATA] | Total : 558.91 Go | Free : 558.66 Go -> NTFS [SATA] Sauvegarde du registre , pour restaurer : Cliquer sur Options & Restaurer le registre (C:\AdsFix\Save\Registry [07.12.2017 @ 18_54_40]) ou un element Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> "Restaurer" ---------- | Mises a jour Windows Windows Is Activated Windows Is Activated Possible Fixed Windows ---------- | Navigateurs IE : 11.0.15063.608 (© Microsoft Corporation. Tous droits réservés.) FF : 57.0.0.6525 (©Firefox and Mozilla Developers; available under the MPL 2 license.) GC : 62.0.3202.94 (Copyright 2016 Google Inc. All rights reserved.) MS-Edge : 11.0.15063.726 (© Microsoft Corporation. All rights reserved.) ---------- | Security (atcav : 0) AV : Windows Defender Disabled FW : WMI : OK WU: Windows Update Service [Auto(2)] = en cours AS: Windows Defender [Manual(3)] = non en cours FW: Windows FireWall Service [Auto(2)] = en cours WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours ---------- | FlashPlayer ActiveX : 27.0.0.187 Plugin : 27.0.0.187 ---------- | Processes closed 2668 | [Owner : |Parent : 852(services.exe)] - (.AVAST Software - Avast Service.) - (17.8.3705.0) = C:\Program Files\AVAST Software\Avast\AvastSvc.exe 3108 | [Owner : Système |Parent : 852(services.exe)] - (.-.) - (0.0.0.0) = C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 3156 | [Owner : Système |Parent : 852(services.exe)] - (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - (16.0.8625.2139) = C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe 3284 | [Owner : Système |Parent : 852(services.exe)] - (.Bitdefender - Bitdefender Agent.) - (21.0.24.40) = C:\Program Files\Bitdefender Agent\ProductAgentService.exe 3416 | [Owner : Système |Parent : 852(services.exe)] - (.TechSmith Corporation - TechSmith Uploader Service.) - (5.0.6.303) = C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe 5304 | [Owner : Marion HUREL |Parent : 852(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.15063.0) = C:\Windows\System32\svchost.exe 3776 | [Owner : Marion HUREL |Parent : 852(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.15063.0) = C:\Windows\System32\svchost.exe 6900 | [Owner : Marion HUREL |Parent : 1300(svchost.exe)] - (.ASUS - ACMON.) - (1.0.8.0) = C:\Program Files (x86)\ASUS\Splendid\ACMON.exe 6472 | [Owner : Système |Parent : 6948()] - (.Google Inc. - Google Crash Handler.) - (1.3.33.7) = C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe 8916 | [Owner : Système |Parent : 6948()] - (.Google Inc. - Google Crash Handler.) - (1.3.33.7) = C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe 6504 | [Owner : Marion HUREL |Parent : 7124(explorer.exe)] - (.-.) - (3.37.7411.4599) = C:\Program Files (x86)\Google\Drive\googledrivesync.exe 6760 | [Owner : Aucun |Parent : 5308()] - (.Piriform Ltd - CCleaner.) - (5.36.0.6278) = C:\Program Files\CCleaner\CCleaner64.exe 860 | [Owner : Marion HUREL |Parent : 6504()] - (.-.) - (3.37.7411.4599) = C:\Program Files (x86)\Google\Drive\googledrivesync.exe 2612 | [Owner : Marion HUREL |Parent : 7124(explorer.exe)] - (.Mozilla Corporation - Firefox.) - (57.0.0.6525) = C:\Program Files (x86)\Mozilla Firefox\firefox.exe 3736 | [Owner : Marion HUREL |Parent : 2612(firefox.exe)] - (.Mozilla Corporation - Firefox.) - (57.0.0.6525) = C:\Program Files (x86)\Mozilla Firefox\firefox.exe 9004 | [Owner : Marion HUREL |Parent : 2612()] - (.Mozilla Corporation - Firefox.) - (57.0.0.6525) = C:\Program Files (x86)\Mozilla Firefox\firefox.exe 8856 | [Owner : Marion HUREL |Parent : 852(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.15063.0) = C:\Windows\System32\svchost.exe 4668 | [Owner : Système |Parent : 852(services.exe)] - (.WildTangent - WildTangent Games App Integration Service.) - (4.0.39.17) = C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe 10652 | [Owner : Marion HUREL |Parent : 860()] - (.-.) - (3.37.7411.4599) = C:\PROGRA~2\Google\Drive\GOOGLE~1.EXE 9428 | [Owner : Marion HUREL |Parent : 10652()] - (.-.) - (3.37.7411.4599) = C:\PROGRA~2\Google\Drive\GOOGLE~1.EXE 11196 | [Owner : Aucun |Parent : 1300(svchost.exe)] - (.-.) - (0.0.0.0) = C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe 10200 | [Owner : Marion HUREL |Parent : 6348()] - (.ASUS Cloud Corporation - ASUS Webstorage Panel.) - (1.0.0.0) = C:\Program Files (x86)\ASUS\WebStorage\2.2.16.589\AsusWSPanel.exe ---------- | Tasks Suppression : WpsNotifyTask_Administrator Suppression : WpsUpdateTask_Administrator Suppression : TechSmith Updater ---------- | Services ---------- | AppCertDlls | AppInit_DLLs ---------- | DNSapi.dll C:\WINDOWS\System32\dnsapi.dll : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll : \drivers\etc\hosts ---------- | Hosts ---------- | SafeBoot ---------- | Winsock ---------- | DNS ---------- | Registre Suppression : HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Chromium Suppression : HKLM\SOFTWARE\Wow6432Node\Chromium Suppression : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] : {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\wminet_utils.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\system.enterpriseservices.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\system.configuration.install.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscorrc.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\microsoft.vsa.vb.codedomprocessor.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\iehost.dll] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\WINDOWS\system32\UNPUXWorker.exe] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\CMap\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Profiles\PDF analysis\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\Reports\PDFA\img_sets\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\Reports\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\FontResource\CMap\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\ICC profiles\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\FontResource\Encoding\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\Unicode\mappings\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\Font\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Profiles\PDFA compliance\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Profiles\PDFX compliance\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\es_la\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\Reports\PDFA\img\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\ExtendedDictionaries\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\ko_kr\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\de_de\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\hk_cn\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\Backgrounds\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\Unicode\mappings\adobe\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\it_it\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Profiles\PDFE compliance\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\Inventory\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\FontSubstitution\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\lang\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Profiles\Acrobat PDF version compatibility\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\zh_cn\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Microsoft.VC90.CRT\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\ColorConversion\ManageColors\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\tw_cn\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\jp_jp\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\nl_nl\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Reports\XSLT\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\pt_br\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\Manual\ru_ru\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\joboptions\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\var\Reports\XML report schema\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\PDFA\etc\PDFAExtSchema\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\OCR\FX_Abbyy_OCR\Resource\Unicode\icu\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\Foxit PhantomPDF\plugins\spool\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\WINDOWS\system32\UNP\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Win8_AP\x86\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\common\radio\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Win10_AP\x86\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\pop-up\Window\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\video\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\pop-up\Line\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\9-2\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\button\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\pop-up\Window\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win10\resource\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win8\resource\window\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win8\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win10\x64\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\video\Gesture\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win10\resource\window\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\touchpad button\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Win10_AP\x64\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Win8_AP\x64\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\common\button\part\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\common\listdot\part\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\common\highlight\part\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\touchpad button\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\pop-up\Button\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\video\Win10\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\highlight\part\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\6-2\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\video\EdgeGesture\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\radio\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\mouse detection\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\system\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\5\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\mouse detection\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\pop-up\Button\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\DesktopManager_win8\x86\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\9\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\image\common\checkbox\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\6\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\23\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win10\video\RemoteLink\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\2\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\18\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\10\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\12\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\3\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\7\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\common\listdot\part\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\13\] [X] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Program Files (x86)\ASUS\ASUS Smart Gesture\Configure_win8\image\gesture\video\1\] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\wminet_utils.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\system.enterpriseservices.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\system.configuration.install.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscorrc.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\microsoft.vsa.vb.codedomprocessor.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\iehost.dll] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\System.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\System.Drawing.tlb] [X] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SharedDLLs]~[C:\Windows\Microsoft.NET\Framework\v1.0.3705\mscoree.tlb] [X] Suppression : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File execution Options\bootoptimizer.exe ---------- | Dossiers | Fichiers Suppression : C:\Users\Marion HUREL\AppData\Roaming\GiftBox ---------- | .LNK ---------- | Ouverture extension inconnue ---------- | Proxy ---------- | Internet Explorer Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main]~[Local Page] : C:\Windows\SysWOW64\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[Enabled] : -> 2 Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[EnabledV8] : -> 1 Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonBadCertReceving] : -> 1 Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonHTTPSToHTTPRedirect] : -> 1 Reparation : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]~[Locked] : 1 -> 0 Suppression : [HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings\Connections]~[SavedLegacySettings] : 0x4600000002000000090000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 Suppression : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings\Connections]~[SavedLegacySettings] : 0x46000000BC140000090000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 Suppression : [HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings\Connections]~[DefaultConnectionSettings] : 0x4600000002000000090000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 Suppression : [HKU\S-1-5-21-1820496596-1799960097-3914263759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings\Connections]~[DefaultConnectionSettings] : 0x460000002F000000090000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ---------- | Yandex : X ---------- | CLIQZ : X ---------- | Google Chrome Suppression : C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Default\Web Data (.-.) Remis a zero avec succes : SearchURL Suppression : C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Default\Preferences (.-.) Remis a zero avec succes : Preferences Suppression : C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (.-.) Remis a zero avec succes : Preferences Suppression : C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\apdfllckaahabafndbhieahigkjlhalf = permissions: [ background clipboardRead clipboardWrite notifications unlimitedStorage ] Suppression : C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm = ids: [ idmofbkcelhplfjnmmdolenpigiiiecc ggedfkijiiammpnbdadhllnehapomdge njjegkblellcjnakomndbaloifhcoccg ] C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\aohghmighlieiainnegkcijnfilokake = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo = : Google & co - http://www.youtube.com - http://www.youtube.com - Google & co - http://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi = : __MSG_extDesc__ - __MSG_extName__ - https://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\gomekmidlodglbbmalcneegieacbdmki = : Avast Browser Security and Web Reputation Plugin. - Avast Online Security - matches:[\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh = : Open Drive files directly from your browser in compatible applications installed on your computer. - short_name: Google Drive App Launcher - https://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\nmmhkkegccagdldgiimedpiccmgmieda = : Google & co - Google & co - 203784468217.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx C:\Users\Marion HUREL\AppData\Local\Google\Chrome\User Data\Profile 7\extensions\pjkljhegncpnkpknbcohdijeoejaedia = : Google & co - https://mail.google.com/mail/ca - Google & co - [*://mail.google.com/mail/ca] - http://clients2.google.com/service/update2/crx ---------- | Comodo Dragon : X ---------- | Firefox Suppression : C:\Users\Marion HUREL\AppData\Roaming\Mozilla\Firefox\Profiles\b5yw0s3u.default\extensions\afplayer@firefox.pl.xpi (.-.)= afplayer@firefox.pl.xpi C:\Users\Marion HUREL\AppData\Roaming\Mozilla\Firefox\Profiles\b5yw0s3u.default\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org = : Dictionnaire français - : http://www.dicollecte.org/ ---------- | SeaMonkey : X ---------- | Pale moon : X ---------- | Opera : X ---------- | Spark : X ---------- | StartMenuInternet ---------- | Javascript ---------- | Firewall Reparation : [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]~[EnableFirewall] : 0 -> 1 Autre rapport Analyses : 332825 | Modifications : 9 | Suppressions : 137 ---------- |EOF| ---------- | 20:12:19 | [32 Ko]