Omiga plus

Résolu
paulrub Messages postés 3 Statut Membre -  
Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   -
Bonjour,

J'ai suivi les instructions pour supprimer omiga plus mais je ne sais comment faire pour envoyer le rapport OTL qui me permettra de désinstaller ce programme.

Merci de m'aider.

Cordialement

4 réponses

  1. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    Salut,

    Tu as installé des adwares et programmes parasites sur ton PC qui ouvrent des publicités et ralentissent l'ordinateur et les navigateurs WEB.
    Voici la procédure à suivre pour les supprimer :

    Commence par ceci :

    Télécharge https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/?t=33839&start= AdwCleaner ( d'Xplode ) sur ton bureau.
    Sur la page d'AdwCleaner, à droite, clic sur la disquette grise avec la flèche verte pour lancer le téléchargement.
    Lance AdwCleaner, clique sur [Scanner].
    Le scan peux durer plusieurs minutes, patienter.
    Une fois le scan terminé, clique sur [Nettoyer]

    Une fois le nettoyage terminé, un rapport s'ouvrira. Copie/colle le contenu du rapport dans ta prochaine réponse par un copier/coller.
    Si cela ne fonctionne pas, utilise le site http://pjjoint.malekal.com pour héberger le rapport, donne le lien du rapport dans un nouveau message.

    Note : Le rapport est également sauvegardé sous C:\AdwCleaner[S1].txt

    puis réinitialise tes navigateurs:
    ==================================
    Réinitialise tes navigateurs et ou manuellement reparamètre tes navigateurs WEB (page de démarrage, moteur de recherche etc) mais aussi supprimer/désactiver les extensions inutiles/parasites :
    * Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
    * Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
    * Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=

    Like the angel you are, you laugh creating a lightness in my chest,
    Your eyes they penetrate me,
    (Your answer's always 'maybe')
    That's when I got up and left
    0
  2. paulrub Messages postés 3 Statut Membre
     
    Bonsoir

    Merci de me dire ce que je dois faire du rapport suivant :

    OTL logfile created on: 20/11/2014 16:20:29 - Run 1
    OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\flevet\Downloads
    64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation
    Internet Explorer (Version = 9.10.9200.17088)
    Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

    3,98 Gb Total Physical Memory | 2,32 Gb Available Physical Memory | 58,15% Memory free
    7,98 Gb Paging File | 5,90 Gb Available in Paging File | 73,94% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 452,52 Gb Total Space | 26,50 Gb Free Space | 5,86% Space Free | Partition Type: NTFS

    Computer Name: FLEVET-PC | User Name: flevet | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    [color=#E56717]========== Processes (SafeList) ==========[/color]

    PRC - [2014/11/20 16:16:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\flevet\Downloads\OTL.exe
    PRC - [2014/11/20 15:31:55 | 002,726,776 | ---- | M] (Time Lapse Solutions) -- C:\ProgramData\IQuRVivZ\MhBpUlA.exe
    PRC - [2014/11/20 14:33:06 | 004,959,744 | ---- | M] () -- C:\WINDOWS\rcore.exe
    PRC - [2014/11/13 07:58:58 | 035,419,192 | ---- | M] (Dropbox, Inc.) -- C:\Users\flevet\AppData\Roaming\Dropbox\bin\Dropbox.exe
    PRC - [2014/11/02 08:28:26 | 000,034,848 | ---- | M] () -- C:\Program Files (x86)\LPT\srptsl.exe
    PRC - [2014/11/02 08:28:26 | 000,032,800 | ---- | M] () -- C:\Program Files (x86)\LPT\srpts.exe
    PRC - [2014/10/21 17:52:24 | 022,869,088 | ---- | M] (Google) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe
    PRC - [2014/09/21 10:59:37 | 000,262,968 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\nav.exe
    PRC - [2014/09/04 04:50:02 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    PRC - [2013/08/15 04:25:21 | 000,129,424 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\NST.exe
    PRC - [2013/04/05 11:59:08 | 000,059,720 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    PRC - [2013/01/30 09:26:04 | 000,158,808 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
    PRC - [2012/08/09 14:51:34 | 030,705,792 | ---- | M] (Gemalto N.V.) -- C:\Users\flevet\AppData\Roaming\SanDisk\SanDiskSecureAccess_Manager.exe
    PRC - [2011/11/02 01:00:44 | 000,090,448 | ---- | M] (Research In Motion Limited) -- C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    PRC - [2011/04/08 13:50:02 | 000,542,264 | ---- | M] (Google) -- C:\Program Files (x86)\Google\Google Calendar Sync\GoogleCalendarSync.exe
    PRC - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
    PRC - [2010/09/13 17:32:32 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
    PRC - [2010/09/13 17:32:30 | 000,283,160 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe

    [color=#E56717]========== Modules (No Company Name) ==========[/color]

    MOD - [2014/11/20 15:07:29 | 000,043,008 | ---- | M] () -- c:\users\flevet\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjzbwz2.dll
    MOD - [2014/11/20 14:57:58 | 001,175,040 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._core_.pyd
    MOD - [2014/11/20 14:57:58 | 001,160,704 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_ssl.pyd
    MOD - [2014/11/20 14:57:58 | 001,062,400 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._controls_.pyd
    MOD - [2014/11/20 14:57:58 | 000,811,008 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._windows_.pyd
    MOD - [2014/11/20 14:57:58 | 000,805,888 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._gdi_.pyd
    MOD - [2014/11/20 14:57:58 | 000,735,232 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._misc_.pyd
    MOD - [2014/11/20 14:57:58 | 000,713,216 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_hashlib.pyd
    MOD - [2014/11/20 14:57:58 | 000,686,080 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\unicodedata.pyd
    MOD - [2014/11/20 14:57:58 | 000,557,056 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\pysqlite2._sqlite.pyd
    MOD - [2014/11/20 14:57:58 | 000,525,640 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\windows._lib_cacheinvalidation.pyd
    MOD - [2014/11/20 14:57:58 | 000,364,544 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\pythoncom27.dll
    MOD - [2014/11/20 14:57:58 | 000,320,512 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32com.shell.shell.pyd
    MOD - [2014/11/20 14:57:58 | 000,167,936 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32gui.pyd
    MOD - [2014/11/20 14:57:58 | 000,128,512 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_elementtree.pyd
    MOD - [2014/11/20 14:57:58 | 000,127,488 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\pyexpat.pyd
    MOD - [2014/11/20 14:57:58 | 000,122,368 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._wizard.pyd
    MOD - [2014/11/20 14:57:58 | 000,119,808 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32file.pyd
    MOD - [2014/11/20 14:57:58 | 000,110,080 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\pywintypes27.dll
    MOD - [2014/11/20 14:57:58 | 000,108,544 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32security.pyd
    MOD - [2014/11/20 14:57:58 | 000,098,816 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32api.pyd
    MOD - [2014/11/20 14:57:58 | 000,087,552 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_ctypes.pyd
    MOD - [2014/11/20 14:57:58 | 000,078,336 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._animate.pyd
    MOD - [2014/11/20 14:57:58 | 000,070,656 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\wx._html2.pyd
    MOD - [2014/11/20 14:57:58 | 000,045,568 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_socket.pyd
    MOD - [2014/11/20 14:57:58 | 000,038,912 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32inet.pyd
    MOD - [2014/11/20 14:57:58 | 000,027,136 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\_multiprocessing.pyd
    MOD - [2014/11/20 14:57:58 | 000,025,600 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32pdh.pyd
    MOD - [2014/11/20 14:57:58 | 000,024,064 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32pipe.pyd
    MOD - [2014/11/20 14:57:58 | 000,022,528 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32ts.pyd
    MOD - [2014/11/20 14:57:58 | 000,018,432 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32event.pyd
    MOD - [2014/11/20 14:57:58 | 000,017,408 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32profile.pyd
    MOD - [2014/11/20 14:57:58 | 000,011,264 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32crypt.pyd
    MOD - [2014/11/20 14:57:58 | 000,010,240 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\select.pyd
    MOD - [2014/11/20 14:57:58 | 000,007,168 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\hashobjs_ext.pyd
    MOD - [2014/11/20 14:57:57 | 000,035,840 | ---- | M] () -- C:\Users\flevet\AppData\Local\Temp\_MEI43083\win32process.pyd
    MOD - [2014/11/13 07:49:58 | 003,610,624 | ---- | M] () -- C:\Users\flevet\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
    MOD - [2014/11/02 08:28:24 | 000,042,528 | ---- | M] () -- C:\Users\flevet\AppData\Local\LPT\srptc.dll
    MOD - [2014/11/02 08:28:24 | 000,023,072 | ---- | M] () -- C:\Users\flevet\AppData\Local\LPT\srptm.exe
    MOD - [2014/11/02 08:28:22 | 000,081,952 | ---- | M] () -- C:\Users\flevet\AppData\Local\LPT\srpt.dll
    MOD - [2014/11/02 08:27:38 | 000,018,976 | ---- | M] () -- C:\Users\flevet\AppData\Local\LPT\Smartbar.Common.dll
    MOD - [2013/08/23 20:01:44 | 025,100,288 | ---- | M] () -- C:\Users\flevet\AppData\Roaming\Dropbox\bin\libcef.dll
    MOD - [2013/05/17 08:05:33 | 000,312,976 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
    MOD - [2013/05/17 08:05:32 | 000,356,008 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\c2r32.dll
    MOD - [2012/02/15 00:37:52 | 011,796,096 | ---- | M] () -- C:\Users\flevet\AppData\Roaming\SanDisk\My Vaults\dmBackup.dll
    MOD - [2011/09/27 06:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
    MOD - [2011/09/27 06:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
    MOD - [2010/11/24 21:44:02 | 000,375,280 | ---- | M] () -- c:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\SQLite352.dll
    MOD - [2010/11/17 09:35:34 | 000,514,544 | ---- | M] () -- C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe

    [color=#E56717]========== Services (SafeList) ==========[/color]

    SRV:[b]64bit:[/b] - [2014/05/30 00:02:28 | 000,439,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\lsm.dll -- (LSM)
    SRV:[b]64bit:[/b] - [2014/03/29 09:05:59 | 000,016,056 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
    SRV:[b]64bit:[/b] - [2013/08/16 06:39:26 | 002,371,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\WSService.dll -- (WSService)
    SRV:[b]64bit:[/b] - [2013/07/27 07:05:15 | 002,676,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
    SRV:[b]64bit:[/b] - [2013/06/24 23:54:45 | 000,263,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\wcmsvc.dll -- (Wcmsvc)
    SRV:[b]64bit:[/b] - [2013/06/01 10:19:58 | 000,207,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\DeviceSetupManager.dll -- (DsmSvc)
    SRV:[b]64bit:[/b] - [2013/05/04 07:58:02 | 000,470,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\netprofmsvc.dll -- (netprofm)
    SRV:[b]64bit:[/b] - [2013/05/04 07:57:05 | 000,179,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\bisrv.dll -- (BrokerInfrastructure)
    SRV:[b]64bit:[/b] - [2013/04/19 20:08:10 | 001,872,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe -- (OfficeSvc)
    SRV:[b]64bit:[/b] - [2013/04/09 05:48:42 | 000,169,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
    SRV:[b]64bit:[/b] - [2013/03/02 03:45:07 | 000,171,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\TimeBrokerServer.dll -- (TimeBroker)
    SRV:[b]64bit:[/b] - [2013/03/02 03:45:05 | 000,180,224 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
    SRV:[b]64bit:[/b] - [2013/01/10 00:23:16 | 001,964,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\wlidsvc.dll -- (wlidsvc)
    SRV:[b]64bit:[/b] - [2012/09/20 07:31:18 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\fhsvc.dll -- (fhsvc)
    SRV:[b]64bit:[/b] - [2012/07/26 04:08:33 | 000,025,088 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\mqsvc.exe -- (MSMQ)
    SRV:[b]64bit:[/b] - [2012/07/26 04:07:47 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\wiarpc.dll -- (WiaRpc)
    SRV:[b]64bit:[/b] - [2012/07/26 04:07:40 | 000,283,648 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\vaultsvc.dll -- (VaultSvc)
    SRV:[b]64bit:[/b] - [2012/07/26 04:07:25 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\svsvc.dll -- (svsvc)
    SRV:[b]64bit:[/b] - [2012/07/26 04:06:34 | 000,743,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\netlogon.dll -- (Netlogon)
    SRV:[b]64bit:[/b] - [2012/07/26 04:06:33 | 000,161,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\NcaSvc.dll -- (NcaSvc)
    SRV:[b]64bit:[/b] - [2012/07/26 04:06:33 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
    SRV:[b]64bit:[/b] - [2012/07/26 04:05:55 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\keyiso.dll -- (KeyIso)
    SRV:[b]64bit:[/b] - [2012/07/26 04:05:34 | 000,037,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\efssvc.dll -- (EFS)
    SRV:[b]64bit:[/b] - [2012/07/26 04:05:24 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysNative\das.dll -- (DeviceAssociationService)
    SRV:[b]64bit:[/b] - [2012/07/26 04:05:08 | 000,122,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\AUInstallAgent.dll -- (AllUserInstallAgent)
    SRV:[b]64bit:[/b] - [2012/07/26 04:05:04 | 000,187,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysNative\appmgmts.dll -- (AppMgmt)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmicvss)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmictimesync)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmicshutdown)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmicrdv)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmickvpexchange)
    SRV:[b]64bit:[/b] - [2012/07/26 01:24:02 | 000,336,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\icsvc.dll -- (vmicheartbeat)
    SRV:[b]64bit:[/b] - [2011/08/05 12:53:12 | 000,467,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Zune\ZuneWlanCfgSvc.exe -- (ZuneWlanCfgSvc)
    SRV:[b]64bit:[/b] - [2011/08/05 12:53:12 | 000,306,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Zune\WMZuneComm.exe -- (WMZuneComm)
    SRV:[b]64bit:[/b] - [2011/08/05 12:53:06 | 008,277,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Zune\ZuneNss.exe -- (ZuneNetworkSvc)
    SRV:[b]64bit:[/b] - [2010/09/22 17:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
    SRV:[b]64bit:[/b] - [2009/11/18 02:14:26 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)
    SRV - [2014/11/20 15:31:55 | 002,726,776 | ---- | M] (Time Lapse Solutions) [Auto | Running] -- C:\ProgramData\IQuRVivZ\MhBpUlA.exe -- (MhBpUlA)
    SRV - [2014/11/20 14:33:06 | 004,959,744 | ---- | M] () [Auto | Running] -- C:\WINDOWS\rcore.exe -- (rcores)
    SRV - [2014/11/18 11:56:34 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
    SRV - [2014/11/02 08:28:26 | 000,032,800 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\LPT\srpts.exe -- (LPTSystemUpdater)
    SRV - [2014/09/21 10:59:37 | 000,262,968 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\NAV.exe -- (NAV)
    SRV - [2014/09/04 04:50:02 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
    SRV - [2013/10/23 07:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
    SRV - [2013/08/15 04:25:21 | 000,129,424 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\NST.exe -- (NCO)
    SRV - [2013/07/27 07:05:15 | 002,676,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll -- (PrintNotify)
    SRV - [2012/07/26 04:20:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysWOW64\StorSvc.dll -- (StorSvc)
    SRV - [2012/07/26 04:18:41 | 000,408,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\WINDOWS\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
    SRV - [2012/07/26 04:18:41 | 000,408,064 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
    SRV - [2012/07/26 04:17:52 | 000,060,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
    SRV - [2011/10/20 14:10:17 | 000,013,160 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\615\g2aservice.exe -- (GoToAssist)
    SRV - [2010/11/25 04:34:18 | 000,219,632 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe -- (RoxWatch12)
    SRV - [2010/11/25 04:33:18 | 001,116,656 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe -- (RoxMediaDB12OEM)
    SRV - [2010/09/13 17:32:32 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)

    [color=#E56717]========== Driver Services (SafeList) ==========[/color]

    DRV:[b]64bit:[/b] - [2014/08/26 03:20:22 | 000,876,248 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\srtsp64.sys -- (SRTSP)
    DRV:[b]64bit:[/b] - [2014/08/26 03:20:22 | 000,037,592 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\srtspx64.sys -- (SRTSPX)
    DRV:[b]64bit:[/b] - [2014/08/06 20:48:16 | 000,266,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\ironx64.sys -- (SymIRON)
    DRV:[b]64bit:[/b] - [2014/07/16 02:26:09 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\SYMEVENT64x86.SYS -- (SymEvent)
    DRV:[b]64bit:[/b] - [2014/03/28 20:19:38 | 000,035,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\WdBoot.sys -- (WdBoot)
    DRV:[b]64bit:[/b] - [2014/03/23 23:11:52 | 000,269,592 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\WdFilter.sys -- (WdFilter)
    DRV:[b]64bit:[/b] - [2014/03/04 05:18:12 | 001,148,120 | R--- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\symefa64.sys -- (SymEFA)
    DRV:[b]64bit:[/b] - [2014/02/21 00:14:34 | 000,162,392 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\ccsetx64.sys -- (ccSet_NAV)
    DRV:[b]64bit:[/b] - [2014/02/18 02:32:41 | 000,593,112 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\symnets.sys -- (SymNetS)
    DRV:[b]64bit:[/b] - [2013/10/30 08:26:30 | 000,023,568 | R--- | M] (Symantec Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\symelam.sys -- (SymELAM)
    DRV:[b]64bit:[/b] - [2013/10/30 08:26:19 | 000,493,656 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\NAVx64\1506000.020\symds64.sys -- (SymDS)
    DRV:[b]64bit:[/b] - [2013/10/10 12:53:35 | 000,096,600 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\wfplwfs.sys -- (WFPLWFS)
    DRV:[b]64bit:[/b] - [2013/10/05 07:10:20 | 000,285,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\spaceport.sys -- (spaceport)
    DRV:[b]64bit:[/b] - [2013/10/02 03:50:07 | 000,447,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\USBHUB3.SYS -- (USBHUB3)
    DRV:[b]64bit:[/b] - [2013/08/16 06:41:13 | 000,058,200 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\SysNative\Drivers\dam.sys -- (dam)
    DRV:[b]64bit:[/b] - [2013/08/10 07:30:22 | 000,151,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\tpm.sys -- (TPM)
    DRV:[b]64bit:[/b] - [2013/07/30 02:24:22 | 000,150,104 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\NSTx64\7DE05000.043\ccSetx64.sys -- (ccSet_NST)
    DRV:[b]64bit:[/b] - [2013/07/09 09:04:07 | 000,120,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\msgpioclx.sys -- (GPIOClx0101)
    DRV:[b]64bit:[/b] - [2013/07/02 02:41:47 | 000,337,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\USBXHCI.SYS -- (USBXHCI)
    DRV:[b]64bit:[/b] - [2013/07/02 02:41:47 | 000,213,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\UCX01000.SYS -- (UCX01000)
    DRV:[b]64bit:[/b] - [2013/06/29 07:15:54 | 000,195,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\sdbus.sys -- (sdbus)
    DRV:[b]64bit:[/b] - [2013/06/01 04:08:57 | 000,037,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
    DRV:[b]64bit:[/b] - [2013/03/02 11:57:46 | 000,077,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\storahci.sys -- (storahci)
    DRV:[b]64bit:[/b] - [2013/03/02 11:39:38 | 000,069,864 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\pdc.sys -- (pdc)
    DRV:[b]64bit:[/b] - [2013/02/06 06:42:10 | 000,203,544 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\ssudmdm.sys -- (ssudmdm)
    DRV:[b]64bit:[/b] - [2013/02/06 06:42:08 | 000,102,936 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\ssudbus.sys -- (dg_ssudbus)
    DRV:[b]64bit:[/b] - [2013/01/10 02:53:32 | 000,028,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\msgpiowin32.sys -- (msgpiowin32)
    DRV:[b]64bit:[/b] - [2012/12/13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\usbaapl64.sys -- (USBAAPL64)
    DRV:[b]64bit:[/b] - [2012/11/27 04:55:44 | 000,029,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\BthhfHid.sys -- (bthhfhid)
    DRV:[b]64bit:[/b] - [2012/11/26 17:05:24 | 000,075,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\dc3d.sys -- (dc3d)
    DRV:[b]64bit:[/b] - [2012/11/20 05:54:31 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\hidi2c.sys -- (hidi2c)
    DRV:[b]64bit:[/b] - [2012/11/06 04:55:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\fxppm.sys -- (FxPPM)
    DRV:[b]64bit:[/b] - [2012/10/12 09:08:01 | 000,027,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
    DRV:[b]64bit:[/b] - [2012/10/11 08:25:48 | 000,056,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\sdstor.sys -- (sdstor)
    DRV:[b]64bit:[/b] - [2012/09/20 08:55:27 | 003,265,256 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\evbda.sys -- (ebdrv)
    DRV:[b]64bit:[/b] - [2012/09/20 08:55:24 | 000,533,224 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\bxvbda.sys -- (b06bdrv)
    DRV:[b]64bit:[/b] - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
    DRV:[b]64bit:[/b] - [2012/07/26 06:26:46 | 000,025,328 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
    DRV:[b]64bit:[/b] - [2012/07/26 06:26:45 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\condrv.sys -- (condrv)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:58 | 000,322,800 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\VSTXRAID.SYS -- (VSTXRAID)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:58 | 000,106,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\VerifierExt.sys -- (VerifierExt)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:58 | 000,097,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\uaspstor.sys -- (UASPStor)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:57 | 000,077,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\acpiex.sys -- (acpiex)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:55 | 000,064,240 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\mvumis.sys -- (mvumis)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:55 | 000,030,960 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\stexstor.sys -- (stexstor)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:52 | 000,092,400 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\lsi_sas2.sys -- (LSI_SAS2)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:52 | 000,081,136 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\lsi_sss.sys -- (LSI_SSS)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:52 | 000,064,752 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\HpSAMD.sys -- (HpSAMD)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:51 | 000,113,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:51 | 000,081,136 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\EhStorClass.sys -- (EhStorClass)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:49 | 000,258,288 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\amdsbs.sys -- (amdsbs)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:49 | 000,106,736 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\3ware.sys -- (3ware)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:49 | 000,076,016 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\amdsata.sys -- (amdsata)
    DRV:[b]64bit:[/b] - [2012/07/26 06:00:48 | 000,026,352 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\WINDOWS\SysNative\Drivers\amdxata.sys -- (amdxata)
    DRV:[b]64bit:[/b] - [2012/07/26 05:57:54 | 000,361,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\clfs.sys -- (CLFS)
    DRV:[b]64bit:[/b] - [2012/07/26 05:53:16 | 000,067,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\vpci.sys -- (vpci)
    DRV:[b]64bit:[/b] - [2012/07/26 04:17:38 | 000,036,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\terminpt.sys -- (terminpt)
    DRV:[b]64bit:[/b] - [2012/07/26 03:30:26 | 000,185,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\mqac.sys -- (MQAC)
    DRV:[b]64bit:[/b] - [2012/07/26 03:29:14 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\mshidumdf.sys -- (mshidumdf)
    DRV:[b]64bit:[/b] - [2012/07/26 03:29:08 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\BasicDisplay.sys -- (BasicDisplay)
    DRV:[b]64bit:[/b] - [2012/07/26 03:29:03 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\HyperVideo.sys -- (HyperVideo)
    DRV:[b]64bit:[/b] - [2012/07/26 03:28:52 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\BasicRender.sys -- (BasicRender)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:58 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\vmgencounter.sys -- (gencounter)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:41 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\kdnic.sys -- (kdnic)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:37 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\acpitime.sys -- (acpitime)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:33 | 000,023,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\SysNative\Drivers\npsvctrig.sys -- (npsvctrig)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:29 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:16 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\acpipagr.sys -- (acpipagr)
    DRV:[b]64bit:[/b] - [2012/07/26 03:27:01 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\hyperkbd.sys -- (hyperkbd)
    DRV:[b]64bit:[/b] - [2012/07/26 03:26:46 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\SerCx.sys -- (SerCx)
    DRV:[b]64bit:[/b] - [2012/07/26 03:26:43 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\SpbCx.sys -- (SpbCx)
    DRV:[b]64bit:[/b] - [2012/07/26 03:26:34 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\TsUsbGD.sys -- (TsUsbGD)
    DRV:[b]64bit:[/b] - [2012/07/26 03:26:13 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\bthhfenum.sys -- (BthHFEnum)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:57 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\dmvsc.sys -- (dmvsc)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:56 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:26 | 000,203,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\Vid.sys -- (Vid)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:22 | 000,067,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\storvsp.sys -- (storvsp)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:13 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\wpcfltr.sys -- (wpcfltr)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:12 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\vmbusr.sys -- (vmbusr)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:12 | 000,066,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\vpcivsp.sys -- (vpcivsp)
    DRV:[b]64bit:[/b] - [2012/07/26 03:25:01 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
    DRV:[b]64bit:[/b] - [2012/07/26 03:23:53 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\mslldp.sys -- (MsLldp)
    DRV:[b]64bit:[/b] - [2012/07/26 03:23:42 | 000,097,792 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\SysNative\Drivers\Ndu.sys -- (Ndu)
    DRV:[b]64bit:[/b] - [2012/07/25 23:53:22 | 011,926,528 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\atikmdag.sys -- (amdkmdag)
    DRV:[b]64bit:[/b] - [2012/06/29 03:00:48 | 000,360,448 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\atikmpag.sys -- (amdkmdap)
    DRV:[b]64bit:[/b] - [2012/06/02 15:31:37 | 000,425,472 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\k57nd60a.sys -- (k57nd60a)
    DRV:[b]64bit:[/b] - [2011/08/01 15:59:06 | 000,045,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\point64.sys -- (Point64)
    DRV:[b]64bit:[/b] - [2011/05/13 15:37:54 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\fssfltr.sys -- (fssfltr)
    DRV:[b]64bit:[/b] - [2010/10/16 02:28:18 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\IntcDAud.sys -- (IntcDAud)
    DRV:[b]64bit:[/b] - [2010/09/25 00:46:32 | 000,116,752 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\AtihdW76.sys -- (AtiHDAudioService)
    DRV:[b]64bit:[/b] - [2010/09/22 04:59:38 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\SysNative\Drivers\HECIx64.sys -- (MEIx64)
    DRV:[b]64bit:[/b] - [2010/09/14 13:24:26 | 000,437,272 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\iaStor.sys -- (iaStor)
    DRV:[b]64bit:[/b] - [2010/03/19 02:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\WINDOWS\SysNative\Drivers\PxHlpa64.sys -- (PxHlpa64)
    DRV:[b]64bit:[/b] - [2010/02/27 16:32:14 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\SysNative\Drivers\Impcd.sys -- (Impcd)
    DRV - [2014/11/18 11:42:44 | 000,637,656 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.3.0.12\Definitions\IPSDefs\20141119.001\IDSviA64.sys -- (IDSVia64)
    DRV - [2014/10/03 20:19:31 | 001,587,416 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.3.0.12\Definitions\BASHDefs\20141118.001\BHDrvx64.sys -- (BHDrvx64)
    DRV - [2014/09/09 07:41:38 | 000,487,216 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
    DRV - [2014/09/09 07:41:38 | 000,142,640 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
    DRV - [2014/09/01 20:03:58 | 002,137,304 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.3.0.12\Definitions\VirusDefs\20141119.034\ex64.sys -- (NAVEX15)
    DRV - [2014/09/01 20:03:58 | 000,129,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.3.0.12\Definitions\VirusDefs\20141119.034\eng64.sys -- (NAVENG)

    [color=#E56717]========== Standard Registry (SafeList) ==========[/color]

    [color=#E56717]========== Internet Explorer ==========[/color]

    IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://v9search.com/?type=hp&ts=1416493276&from=tugs&uid=WDCXWD5000AAKX-753CA1_WD-WMAYU160742207422&aaa=aaa
    IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.google.com/webhp?gws_rd=ssl{searchTerms}
    IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/webhp?gws_rd=ssl{searchTerms}
    IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://v9search.com/?type=hp&ts=1416493276&from=tugs&uid=WDCXWD5000AAKX-753CA1_WD-WMAYU160742207422&aaa=aaa
    IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
    IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&FORM=IE8SRC
    IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = https://www.google.com/webhp?gws_rd=ssl{searchTerms}
    IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{49606DC7-976D-4030-A74E-9FB5C842FA68}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&form=DLSDF8&pc=MDDS&src=IE-SearchBox
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://v9search.com/?type=hp&ts=1416493276&from=tugs&uid=WDCXWD5000AAKX-753CA1_WD-WMAYU160742207422&aaa=aaa
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.google.com/webhp?gws_rd=ssl{searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/webhp?gws_rd=ssl{searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://v9search.com/?type=hp&ts=1416493276&from=tugs&uid=WDCXWD5000AAKX-753CA1_WD-WMAYU160742207422&aaa=aaa
    IE - HKLM\..\SearchScopes,DefaultScope = {006ee092-9658-4fd6-bd8e-a21a348e59f5}
    IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = https://search.safefinder.com/?st=ds&q={searchTerms}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&FORM=IE8SRC

    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-21-3104949881-390972835-3748253541-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://v9search.com/?type=hp&ts=1416493276&from=tugs&uid=WDCXWD5000AAKX-753CA1_WD-WMAYU160742207422&aaa=aaa
    IE - HKU\S-1-5-21-3104949881-390972835-3748253541-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/
    IE - HKU\S-1-5-21-3104949881-390972835-3748253541-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
    IE - HKU\S-1-5-21-3104949881-390972835-3748253541-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKU\S-1-5-21-3104949881-390972835-3748253541-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

    [color=#E56717]========== FireFox ==========[/color]

    FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll File not found
    FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
    FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@citrixonline.com/appdetectorplugin: C:\Users\flevet\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online)
    FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\flevet\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
    FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\flevet\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
    FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\flevet\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\flevet\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\flevet\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\coFFPlgn\
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F04D2D30-776C-4d02-8627-8E4385ECA58D}: C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn\ [2014/11/20 14:01:01 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.3.0.12\IPSFF [2014/07/22 10:09:31 | 000,000,000 | ---D | M]

    [color=#E56717]========== Chrome ==========[/color]

    CHR - default_search_provider: (Enabled)
    CHR - default_search_provider: search_url =
    CHR - default_search_provider: suggest_url =
    CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.79\PepperFlash\pepflashplayer.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\gcswf32.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_271.dll
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.111\pdf.dll
    CHR - plugin: Skype Toolbars (Enabled) = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\npSkypeChromePlugin.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
    CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
    CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
    CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
    CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
    CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
    CHR - plugin: RIM Handheld Application Loader (Enabled) = C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
    CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
    CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
    CHR - plugin: Windows LiveÂ(TM) Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall\1.7_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki\14.2.3_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbeoemfhkdniadbojeencpkgmobndpai\1.2.5_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\emakkfldeggiinnfcdjkakdfcppbfhdg\2.1.2.3_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\0.14.2.2_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gakklmehjhhdfjjgnmpkjoemjmeomnli\0.72_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod\8.4_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjieilkfnnjoihjjonajndjldjoagffm\4.6.1_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkjnkapjmjfpipfcccnjbjcbgdnahpjp\2.0.255_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj\10.3.1.6_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\kclbidlajocjmicnpgpfmkblhdhjelfe\3.0.4_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkbdmlhfkcpbokoofbgohenkmpohfnpe\1.0.3_0\
    CHR - Extension: Skype Toolbars = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh\3.2_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdddabjhelpilpnpgondfmehhcplpiin\7.1.2_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob\2014.7.9.14_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp\8.6_0\
    CHR - Extension: No name found = C:\Users\flevet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

    O1 HOSTS File: ([2012/02/29 13:37:12 | 000,001,398 | RHS- | M]) - C:\WINDOWS\SysNative\Drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O1 - Hosts: 67.215.245.19 www.google-analytics.com.
    O1 - Hosts: 67.215.245.19 ad-emea.doubleclick.net.
    O1 - Hosts: 67.215.245.19 www.statcounter.com.
    O1 - Hosts: 108.163.215.51 www.google-analytics.com.
    O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net.
    O1 - Hosts: 108.163.215.51 www.statcounter.com.
    O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
    O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation)
    O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
    O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\coIEPlg.dll File not found
    O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\21.6.0.32\ips\ipsbho.dll (Symantec Corporation)
    O2 - BHO: (Norton Identity Protection) - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\CoIEPlg.dll (Symantec Corporation)
    O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
    O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)
    O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
    O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.1.0.37\coIEPlg.dll File not found
    O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)
    O3 - HKLM\..\Toolbar: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.5.0.67\CoIEPlg.dll (Symantec Corporation)
    O4:[b]64bit:[/b] - HKLM..\Run: [DBRMTray] C:\dell\DBRM\Reminder\DbrmTrayicon.exe (Dell Computer Corporation)
    O4:[b]64bit:[/b] - HKLM..\Run: [IntelliPoint] c:\Program Files\Microsoft IntelliPoint\ipoint.exe (Microsoft Corporation)
    O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
    O4:[b]64bit:[/b] - HKLM..\Run: [Zune Launcher] C:\Program Files\Zune\ZuneLauncher.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [] File not found
    O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
    O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe ()
    O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
    O4 - HKLM..\Run: [mbot_fr_289] File not found
    O4 - HKLM..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (Research In Motion Limited)
    O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe (Sonic Solutions)
    O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [Browser Infrastructure Helper] C:\Users\flevet\AppData\Local\Smartbar\Application\Smartbar.exe startup File not found
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [Bubble Dock] C:\Users\flevet\AppData\Roaming\Nosibay\Bubble Dock\LBubble Dock.exe (Nosibay)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [Facebook Update] C:\Users\flevet\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [GoogleDriveSync] C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [SanDiskSecureAccess_Manager.exe] C:\Users\flevet\AppData\Roaming\SanDisk\SanDiskSecureAccess_Manager.exe (Gemalto N.V.)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [SkyDrive] C:\Users\flevet\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-21-3104949881-390972835-3748253541-1000..\Run: [WindApp] C:\Users\flevet\AppData\Roaming\Store\WindApp\WindApp Update.exe (Nosibay)
    O4 - Startup: C:\Users\flevet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\flevet\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
    O4 - Startup: C:\Users\flevet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Syst
    0
  3. paulrub
     
    Merci beaucoup. Le programme OMIGA PLUS s'est désinstallé.
    0
  4. Malekal_morte- Messages postés 178136 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 712
     
    :)

    Désinstalle Google Toolbar,

    Quelques conseils :

    Installe Malwarebyte's Anti-Malware : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
    Fais des scans réguliers avec, il est efficace.

    Pour prévenir les sites malicieux, tu peux installer Blockulicious : https://forum.malekal.com/viewtopic.php?t=46656&start=

    Pour ne plus te faire avoir.
    A lire - Programmes parasites / PUPs : https://www.malekal.com/adwares-pup-protection/

    0