Navigateur chrome envahi de publicités
Fermé
anatolius711
-
16 janv. 2015 à 00:26
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 - 21 janv. 2015 à 12:00
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 - 21 janv. 2015 à 12:00
A voir également:
- Navigateur chrome envahi de publicités
- Supprimer les publicités - Guide
- Mise a jour chrome - Accueil - Applications & Logiciels
- Navigateur privé - Guide
- Restaurer onglets chrome - Guide
- Chrome cast sur tv - Guide
18 réponses
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
16 janv. 2015 à 00:28
16 janv. 2015 à 00:28
Bonsoir,
Des logiciels additionnels sont proposés (barre d'outils, adwares) via l'installation de logiciel gratuit en général ou via certains sites de téléchargement comme S0ft0nic.
L'éditeur touche de l'argent à chaque installation réussie de ces programmes additionnels (un genre de sponsoring), ton PC se retrouve avec des barres d'outils qui ralentissent le navigateur ou des adwares qui ouvrent des popups de publicités.
Dès lors, lorsque tu installes un programme, lis bien ce qui est proposé car tu risques d'installé des barres d'outils sans le savoir.
Lire Les PUPs/LPIs : https://www.malekal.com/adwares-pup-protection/
▶ Télécharge ici : AdwCleaner (de Xplode)
▶ Lance-le.
▶ Lis et accepte le contrat d'utilisation.
▶ Clique sur Scanner puis Nettoyer, et patiente le temps du nettoyage.
▶ Poste le contenu du rapport que tu trouveras dans le répertoire AdwCleaner de ton disque dur ( C:\AdwCleaner\AdwCleaner[x].txt) ou son contenu s'il s'ouvre.
A+
Des logiciels additionnels sont proposés (barre d'outils, adwares) via l'installation de logiciel gratuit en général ou via certains sites de téléchargement comme S0ft0nic.
L'éditeur touche de l'argent à chaque installation réussie de ces programmes additionnels (un genre de sponsoring), ton PC se retrouve avec des barres d'outils qui ralentissent le navigateur ou des adwares qui ouvrent des popups de publicités.
Dès lors, lorsque tu installes un programme, lis bien ce qui est proposé car tu risques d'installé des barres d'outils sans le savoir.
Lire Les PUPs/LPIs : https://www.malekal.com/adwares-pup-protection/
▶ Télécharge ici : AdwCleaner (de Xplode)
▶ Lance-le.
▶ Lis et accepte le contrat d'utilisation.
▶ Clique sur Scanner puis Nettoyer, et patiente le temps du nettoyage.
▶ Poste le contenu du rapport que tu trouveras dans le répertoire AdwCleaner de ton disque dur ( C:\AdwCleaner\AdwCleaner[x].txt) ou son contenu s'il s'ouvre.
A+
merci pour l'aide et les conseils ! voici le rapport :
# AdwCleaner v4.107 - Rapport créé le 16/01/2015 à 00:49:43
# Mis à jour le 07/01/2015 par Xplode
# Database : 2015-01-13.2 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\engaigpbgdjjmanonjcjkcmomgibneba
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
[vdikkjbf.default\prefs.js] - Ligne Supprimée : user_pref("extensions.aMGKN37049485ACPSC11936960com61365.61365.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%[...]
-\\ Google Chrome v39.0.2171.65
# AdwCleaner v4.107 - Rapport créé le 16/01/2015 à 00:49:43
# Mis à jour le 07/01/2015 par Xplode
# Database : 2015-01-13.2 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\engaigpbgdjjmanonjcjkcmomgibneba
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
[vdikkjbf.default\prefs.js] - Ligne Supprimée : user_pref("extensions.aMGKN37049485ACPSC11936960com61365.61365.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%[...]
-\\ Google Chrome v39.0.2171.65
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
16 janv. 2015 à 00:59
16 janv. 2015 à 00:59
Le rapport s'arrête là dans ton bloc note ou tu as mal copié/collé ?
pardon :
# AdwCleaner v4.107 - Rapport créé le 16/01/2015 à 00:49:43
# Mis à jour le 07/01/2015 par Xplode
# Database : 2015-01-13.2 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\engaigpbgdjjmanonjcjkcmomgibneba
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
[vdikkjbf.default\prefs.js] - Ligne Supprimée : user_pref("extensions.aMGKN37049485ACPSC11936960com61365.61365.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%[...]
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3202 octets] - [16/01/2015 00:49:43]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [3262 octets] ##########
# AdwCleaner v4.107 - Rapport créé le 16/01/2015 à 00:49:43
# Mis à jour le 07/01/2015 par Xplode
# Database : 2015-01-13.2 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\engaigpbgdjjmanonjcjkcmomgibneba
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
[vdikkjbf.default\prefs.js] - Ligne Supprimée : user_pref("extensions.aMGKN37049485ACPSC11936960com61365.61365.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%[...]
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3202 octets] - [16/01/2015 00:49:43]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [3262 octets] ##########
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
16 janv. 2015 à 01:10
16 janv. 2015 à 01:10
Aaaah voilà ^^
Bref, AdwCleaner a viré pas mal d'extensions néfastes qui t'affichaient de la pub.
Tu confirmes que la navigation se déroule sans problème maintenant ? Sinon, on continue les investigations.
Bref, AdwCleaner a viré pas mal d'extensions néfastes qui t'affichaient de la pub.
Tu confirmes que la navigation se déroule sans problème maintenant ? Sinon, on continue les investigations.
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
16 janv. 2015 à 09:55
16 janv. 2015 à 09:55
Oui mais je dormais :)
Fait ce diagnostic :
▶ Télécharge ici : FRST (de Farbar)
!!! En fonction de ta version de Windows, prends la "32-Bit Version" ou la "64-Bit Version" !!!
Aide : va dans Démarrer > Panneau de configuration > Système pour savoir si tu es sous 32 bits ou 64 bits.
▶ Double-clique sur l'icône FRST.exe pour lancer le programme. (Sous Windows Vista, 7 et 8, il faut faire un clic droit dessus, puis exécuter en tant qu'administrateur.) Clique ensuite sur Oui lorsqu'un message d'avertissement (Disclaimer) s'affiche.
!! Déconnecte-toi et ferme toutes applications en cours !!
▶ Sur le menu principal, clique sur le bouton Scan et patiente le temps de l'analyse.
▶ A la fin du scan, deux rapports s'affichent, FRST.txt et Addition.txt Poste les rapports dans ta prochaine réponse.
Les rapport se trouvent ici : C:\FRST\Logs
▶ Envoie-les sur https://www.cjoint.com/ et poste les liens obtenus en échange.
Fait ce diagnostic :
▶ Télécharge ici : FRST (de Farbar)
!!! En fonction de ta version de Windows, prends la "32-Bit Version" ou la "64-Bit Version" !!!
Aide : va dans Démarrer > Panneau de configuration > Système pour savoir si tu es sous 32 bits ou 64 bits.
▶ Double-clique sur l'icône FRST.exe pour lancer le programme. (Sous Windows Vista, 7 et 8, il faut faire un clic droit dessus, puis exécuter en tant qu'administrateur.) Clique ensuite sur Oui lorsqu'un message d'avertissement (Disclaimer) s'affiche.
!! Déconnecte-toi et ferme toutes applications en cours !!
▶ Sur le menu principal, clique sur le bouton Scan et patiente le temps de l'analyse.
▶ A la fin du scan, deux rapports s'affichent, FRST.txt et Addition.txt Poste les rapports dans ta prochaine réponse.
Les rapport se trouvent ici : C:\FRST\Logs
▶ Envoie-les sur https://www.cjoint.com/ et poste les liens obtenus en échange.
désolé mais mon navigateur est trop bugé pour utiliser cjoint. Je poste donc les rapports ici. Et merci infiniment pour ton aide !
FRST :
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-01-2015
Ran by Pierre (administrator) on LAOCOON on 18-01-2015 11:29:31
Running from C:\Users\Pierre\Downloads
Loaded Profiles: Pierre (Available profiles: Pierre)
Platform: Windows 7 Home Premium (X64) OS Language: Français (France)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Word Proser) C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe
(Small Island Development) C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-03-19] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-02-11] (Toshiba Europe GmbH)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10134560 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [896032 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [913720 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1489760 2010-04-06] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [35672 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH)
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe
HKLM-x32\...\Run: [SVPWUTIL] => C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [352256 2010-02-22] (TOSHIBA)
HKLM-x32\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [423936 2010-03-04] (TOSHIBA Electronics, Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2009-12-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [948672 2009-12-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [NBAgent] => c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [1086760 2010-03-09] (Nero AG)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2009-12-25] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-02-24] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-12] (AVAST Software)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [Selection Tools] => "C:\Users\Pierre\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:53977;https=127.0.0.1:53977;
ProxyServer: [S-1-5-21-3275174362-358141482-1195275605-1000] => http=127.0.0.1:53977;https=127.0.0.1:53977
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {AAB96620-B601-4176-B21A-18BC16B880A1} URL = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {815EE9BA-DF31-4F9A-8967-B1538CFB7F3A} URL = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3275174362-358141482-1195275605-1000 -> {815EE9BA-DF31-4F9A-8967-B1538CFB7F3A} URL =
SearchScopes: HKU\S-1-5-21-3275174362-358141482-1195275605-1000 -> {B5604965-8037-4D1A-8701-95D853A32221} URL = http://rover.ebay.com/rover/1/709-44555-9400-8/4?satitle={searchTerms}
BHO: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff64.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff32.dll No File
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Firefox improver - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack [2015-01-13]
FF Extension: I - Cinema - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\***@*** [2015-01-09]
FF Extension: 7CEA821D3DAB4238B424BF7324531750 - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\{7CEA821D-3DAB-4238-B424-BF7324531750} [2015-01-12]
FF Extension: d62bb6fa719247fdb640ad8855c444f3 - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\{d62bb6fa-7192-47fd-b640-ad8855c444f3} [2015-01-16]
FF HKLM\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [***@***] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-12]
Chrome:
=======
CHR HomePage: Default -> https://www.google.fr/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3327155&octid=EB_ORIGINAL_CTID&ISID=MA7812575-B2D3-41A3-89B4-4481CD7E8FC4&SearchSource=55&CUI=&UM=8&UP=SP78175077-9C60-434D-8F5C-97616B4FF6CC&SSPV="
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-04]
CHR Extension: (Google Docs) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-04]
CHR Extension: (Google Drive) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-04]
CHR Extension: (YouTube) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-04]
CHR Extension: (cfhdojbkjhnklbpkdaibdccddilifddb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-18]
CHR Extension: (Google Search) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-04]
CHR Extension: (Avast SafePrice) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-01-18]
CHR Extension: (PlumoWeb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh [2015-01-05]
CHR Extension: (Avast Online Security) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-01-13]
CHR Extension: (khagclindddokccfbmfmckaflngbmpon) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\khagclindddokccfbmfmckaflngbmpon [2015-01-17]
CHR Extension: (mghenlmbmjcpehccoangkdpagbcbkdpc) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2015-01-09]
CHR Extension: (Google Wallet) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-04]
CHR Extension: (Gmail) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-04]
CHR Extension: (pnnfemgpilpdaojpnkjdgfgbnnjojfik) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik [2015-01-13]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-01-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-12]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-12] (AVAST Software)
S2 c7522d84; c:\Program Files (x86)\Optimizer Pro 3.27\OptProMon.dll [2462800 2015-01-13] ()
R2 NykhXwKZNJ; C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe [2726256 2015-01-04] (Small Island Development)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-02-11] (Toshiba Europe GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 wpsvc_1.10.0.6; C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe [277584 2015-01-07] (Word Proser)
S2 70F4EEDB-1367-4b4f-8247-3133551A7415; "C:\Program Files\shopperz\grunt.exe" [X]
S2 csrcc; "C:\Program Files\shopperz\csrcc.exe" [X]
S2 serversu; C:\Users\Pierre\AppData\Roaming\SoftwareUpdater\SUsrv.exe [X]
S2 wpsvc_1.10.0.4; "C:\Program Files (x86)\WordProser_1.10.0.4\Service\wpsvc.exe" [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-12] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-12] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-12] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-12] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-12] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-12] ()
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 mwiynzm4ndy1yjz; C:\Windows\System32\drivers\mwiynzm4ndy1yjz.sys [50504 2015-01-05] (Windows (R) Win 7 DDK provider)
R1 wpnfd_1_10_0_6; C:\Windows\System32\drivers\wpnfd_1_10_0_6.sys [58240 2015-01-07] (Word Proser)
S1 ccnfd_1_10_0_5; system32\drivers\ccnfd_1_10_0_5.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 11:29 - 2015-01-18 11:30 - 00021122 _____ () C:\Users\Pierre\Downloads\FRST.txt
2015-01-18 11:29 - 2015-01-18 11:29 - 00000000 ____D () C:\FRST
2015-01-18 11:23 - 2015-01-18 11:24 - 02126336 _____ (Farbar) C:\Users\Pierre\Downloads\FRST64.exe
2015-01-18 10:35 - 2015-01-18 10:36 - 00049536 _____ (Absolute Software Corp.) C:\Windows\SysWOW64\agremove.exe
2015-01-17 13:41 - 2015-01-17 13:41 - 00000000 ____D () C:\Windows\system32\SPReview
2015-01-16 12:36 - 2015-01-16 12:36 - 00000000 ____D () C:\Windows\system32\EventProviders
2015-01-16 00:52 - 2015-01-16 00:52 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TVWizard
2015-01-16 00:44 - 2015-01-16 00:45 - 02191360 _____ () C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
2015-01-16 00:35 - 2015-01-16 00:35 - 00003268 _____ () C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB}
2015-01-13 01:44 - 2015-01-13 01:44 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.27
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Firefox improver
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Software
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Program Files (x86)\Software
2015-01-13 01:18 - 2015-01-13 01:18 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-13 01:11 - 2015-01-13 01:14 - 00002199 _____ () C:\Users\Pierre\Desktop\chrome.lnk
2015-01-12 23:09 - 2015-01-12 23:09 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Dropbox
2015-01-12 21:51 - 2015-01-12 21:51 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\AVAST Software
2015-01-12 21:47 - 2015-01-12 21:47 - 00001971 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-01-12 21:47 - 2015-01-12 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-01-12 21:46 - 2015-01-18 11:25 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-12 21:46 - 2015-01-12 21:47 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-01-12 21:46 - 2015-01-12 21:47 - 00087912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswmonflt.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-01-12 21:46 - 2015-01-12 21:46 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-01-12 21:46 - 2015-01-12 21:46 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-01-12 21:40 - 2015-01-12 21:40 - 00000000 ____D () C:\Program Files\AVAST Software
2015-01-12 21:38 - 2015-01-12 21:40 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-01-12 20:29 - 2015-01-18 10:53 - 00000616 _____ () C:\Windows\setupact.log
2015-01-12 20:29 - 2015-01-16 00:50 - 00149864 _____ () C:\Windows\PFRO.log
2015-01-12 20:29 - 2015-01-12 20:29 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-09 22:39 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90
2015-01-09 22:31 - 2015-01-12 20:31 - 00001336 _____ () C:\Windows\Tasks\SSF.job
2015-01-09 22:31 - 2015-01-09 22:31 - 00000000 ____D () C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929
2015-01-09 22:30 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03
2015-01-09 22:28 - 2015-01-18 10:33 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-09 22:28 - 2015-01-09 22:28 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-09 22:28 - 2015-01-09 22:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-01-09 22:27 - 2015-01-18 10:53 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-09 22:27 - 2015-01-09 22:27 - 00003642 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-09 22:25 - 2015-01-09 22:39 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Deployment
2015-01-09 22:25 - 2015-01-09 22:25 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Apps\2.0
2015-01-09 22:18 - 2015-01-09 22:18 - 00003622 _____ () C:\Windows\System32\Tasks\gtaUpt
2015-01-09 22:18 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2015-01-09 22:17 - 2015-01-12 20:31 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-09 22:12 - 2015-01-09 22:12 - 00000000 ____D () C:\Program Files (x86)\WordProser_1.10.0.6
2015-01-09 21:56 - 2015-01-06 04:36 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-07 23:45 - 2015-01-07 23:45 - 00058240 _____ (Word Proser) C:\Windows\system32\Drivers\wpnfd_1_10_0_6.sys
2015-01-06 05:59 - 2009-11-25 12:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2015-01-06 05:59 - 2009-11-25 12:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2015-01-06 05:59 - 2009-11-25 12:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ____D () C:\Windows\system32\appraiser
2015-01-05 23:22 - 2015-01-05 23:22 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-01-05 22:50 - 2015-01-05 22:50 - 02009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 01522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 00000000 ____D () C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb
2015-01-05 22:49 - 2015-01-16 00:49 - 00000000 ____D () C:\AdwCleaner
2015-01-05 22:37 - 2015-01-13 01:45 - 00001615 _____ () C:\Users\Pierre\Desktop\Continue AdwCleaner.lnk
2015-01-05 22:35 - 2011-04-09 07:45 - 05509504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-05 22:35 - 2011-04-09 07:13 - 03957632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-05 22:35 - 2011-04-09 07:13 - 03901824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-05 22:30 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-01-05 22:30 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-01-05 22:02 - 2015-01-13 01:14 - 00001166 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-01-05 22:02 - 2015-01-13 01:14 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-01-05 22:02 - 2015-01-05 22:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-05 21:56 - 2015-01-05 21:56 - 00000290 __RSH () C:\ProgramData\ntuser.pol
2015-01-05 21:40 - 2015-01-12 21:39 - 00000070 _____ () C:\Users\Pierre\AppData\Roaming\WB.CFG
2015-01-05 21:21 - 2014-12-04 03:32 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-01-05 21:21 - 2014-12-04 03:32 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-01-05 21:21 - 2014-12-04 03:32 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-01-05 21:21 - 2014-12-04 03:26 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-01-05 21:21 - 2014-12-02 00:21 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-01-05 21:12 - 2015-01-05 21:12 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TOSHIBA_Corporation
2015-01-05 20:56 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\2355320829
2015-01-05 20:42 - 2015-01-05 20:42 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-01-05 20:42 - 2015-01-05 20:42 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-01-05 20:42 - 2015-01-05 20:42 - 00000000 ____D () C:\Program Files\CCleaner
2015-01-05 20:40 - 2015-01-05 20:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHK_01009.Wdf
2015-01-05 20:19 - 2014-09-15 01:44 - 03195392 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-01-05 20:18 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-05 20:06 - 2015-01-12 22:19 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-01-05 01:52 - 2015-01-05 01:52 - 00050504 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys
2015-01-04 01:17 - 2015-01-04 01:17 - 00000000 ____D () C:\Windows\SysWOW64\Flash
2015-01-04 01:04 - 2015-01-18 10:57 - 00001002 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-04 01:04 - 2015-01-17 23:29 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-01-04 01:04 - 2015-01-16 00:00 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-04 01:04 - 2015-01-16 00:00 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-04 01:04 - 2015-01-16 00:00 - 00003940 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-04 01:04 - 2015-01-04 01:04 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-01-04 01:04 - 2015-01-04 01:04 - 00000000 ____D () C:\Windows\system32\Macromed
2015-01-04 01:02 - 2015-01-13 01:32 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Adobe
2015-01-04 00:45 - 2015-01-04 00:45 - 00003846 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1420328719
2015-01-04 00:45 - 2015-01-04 00:45 - 00001142 _____ () C:\Users\Public\Desktop\Opera.lnk
2015-01-04 00:45 - 2015-01-04 00:45 - 00001142 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-01-04 00:45 - 2015-01-04 00:45 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Opera Software
2015-01-04 00:45 - 2015-01-04 00:45 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Opera Software
2015-01-04 00:41 - 2015-01-18 10:58 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-01-04 00:21 - 2015-01-05 22:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-04 00:21 - 2015-01-04 00:22 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Mozilla
2015-01-04 00:21 - 2015-01-04 00:22 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Mozilla
2015-01-04 00:21 - 2015-01-04 00:21 - 00000000 ____D () C:\ProgramData\Mozilla
2015-01-04 00:07 - 2015-01-09 22:28 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-04 00:07 - 2015-01-04 00:08 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Google
2015-01-04 00:06 - 2015-01-12 22:20 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 00:01 - 2015-01-04 00:02 - 00000000 ____D () C:\ProgramData\QmhkcqAXn
2015-01-04 00:01 - 2015-01-04 00:01 - 01982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-04 00:00 - 2015-01-05 21:09 - 00001776 _____ () C:\Windows\patsearch.bin
2015-01-04 00:00 - 2015-01-04 00:00 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNewH_01009.Wdf
2015-01-03 23:59 - 2015-01-03 23:59 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Toshiba
2015-01-03 23:55 - 2015-01-03 23:55 - 00615488 _____ () C:\Users\Pierre\Desktop\ChromeSetup.exe
2015-01-03 23:54 - 2015-01-03 23:54 - 00001388 _____ () C:\Users\Pierre\Desktop\XVIIIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001381 _____ () C:\Users\Pierre\Desktop\XVIIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001374 _____ () C:\Users\Pierre\Desktop\XVIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001367 _____ () C:\Users\Pierre\Desktop\XVe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Adobe
2015-01-03 23:44 - 2015-01-13 01:14 - 00000907 _____ () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Nero
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\ATI
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Toshiba
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Local\ATI
2015-01-03 23:43 - 2015-01-03 23:43 - 00000000 ____D () C:\Users\Pierre\AppData\Local\VirtualStore
2015-01-03 23:42 - 2015-01-03 23:42 - 00057560 _____ () C:\Users\Pierre\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-03 23:42 - 2015-01-03 23:42 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-01-03 23:42 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-01-03 23:42 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-01-03 23:42 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-01-03 23:42 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-01-03 23:42 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-01-03 23:42 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-01-03 23:41 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre
2015-01-03 23:41 - 2015-01-03 23:41 - 00000020 ___SH () C:\Users\Pierre\ntuser.ini
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Voisinage réseau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Voisinage d'impression
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Voisinage réseau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Voisinage d'impression
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Favoris
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Bureau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Program Files\Fichiers communs
2015-01-03 23:41 - 2010-04-13 08:00 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Macromedia
2015-01-03 23:41 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-03 23:41 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-03 23:37 - 2015-01-03 23:37 - 00000000 __RSH () C:\Windows\SysWOW64\Drivers\TOSHIBA_Satellite L670_12208-FR_PSK3EE-06C00.MRK
2015-01-03 23:35 - 2015-01-03 23:35 - 00000000 ____D () C:\Windows\OemDrv
2015-01-03 23:33 - 2015-01-03 23:33 - 00002435 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
2015-01-03 23:33 - 2015-01-03 23:33 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-03 23:33 - 2015-01-03 23:33 - 00000000 _____ () C:\Windows\NDSTray.INI
2015-01-03 23:32 - 2015-01-03 23:32 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2015-01-03 23:28 - 2015-01-03 23:30 - 00000000 ____D () C:\ProgramData\Toshiba
2015-01-03 23:28 - 2009-06-22 17:06 - 00035008 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\PGEffect.sys
2015-01-03 23:26 - 2015-01-03 23:27 - 00000000 ____D () C:\Program Files (x86)\Realtek WLAN Driver
2015-01-03 23:26 - 2010-04-28 11:32 - 00932384 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys
2015-01-03 23:26 - 2010-04-27 01:23 - 01103904 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192se.sys
2015-01-03 23:26 - 2010-04-08 10:07 - 00612352 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl819xp.sys
2015-01-03 23:26 - 2010-04-01 14:01 - 00442368 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8187Se.sys
2015-01-03 23:26 - 2010-03-31 11:10 - 00450048 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8187B.sys
2015-01-03 23:26 - 2009-02-05 02:49 - 00451072 ____N () C:\Windows\SysWOW64\ISSRemoveSP.exe
2015-01-03 23:23 - 2015-01-03 23:23 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2015-01-03 23:23 - 2015-01-03 23:23 - 00000000 ____D () C:\Program Files\Realtek
2015-01-03 23:23 - 1999-10-12 19:47 - 00024576 _____ (Toshiba) C:\Windows\SysWOW64\TSCI.dll
2015-01-03 23:23 - 1999-10-12 19:45 - 00024576 _____ (Toshiba) C:\Windows\SysWOW64\THCI.dll
2015-01-03 23:22 - 2015-01-03 23:23 - 00003346 _____ () C:\RHDSetup.log
2015-01-03 23:22 - 2015-01-03 23:23 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-01-03 23:22 - 2010-03-22 11:21 - 02719504 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 02298400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-01-03 23:22 - 2010-03-22 11:21 - 02197264 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01929760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01660448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01247776 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01210912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00612384 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-01-03 23:22 - 2010-03-22 11:21 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00477216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00372936 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00338848 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00332320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00325904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00201928 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00168288 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00149536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00099016 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00076488 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00069664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 01691680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RHDMEx64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 01638432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkHDM64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 00213280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtHDMIVX.sys
2015-01-03 23:22 - 2009-12-02 15:01 - 00064032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RHCoInst64.dll
2015-01-03 23:22 - 2009-03-09 05:32 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RH3DAA64.dll
2015-01-03 23:22 - 2009-03-09 05:31 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RH3DHT64.dll
2015-01-03 23:21 - 2010-01-06 00:46 - 00189984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTInstaller64.exe
2015-01-03 23:19 - 2015-01-03 23:19 - 00000000 ____D () C:\ProgramData\ATI
2015-01-03 23:19 - 2010-01-15 12:22 - 00538136 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStor.sys
2015-01-03 23:18 - 2015-01-03 23:18 - 00000000 _____ () C:\Windows\ativpsrm.bin
2015-01-03 23:17 - 2015-01-03 23:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-03 23:16 - 2015-01-03 23:17 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2015-01-03 23:16 - 2015-01-03 23:16 - 00000000 ____D () C:\Program Files\ATI
2015-01-03 23:15 - 2010-03-15 10:06 - 06403072 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atipmdag.sys
2015-01-03 23:15 - 2010-03-15 10:06 - 06403072 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-01-03 23:15 - 2010-03-15 10:00 - 00143360 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-01-03 23:15 - 2010-03-15 10:00 - 00033624 _____ () C:\Windows\system32\atiapfxx.blb
2015-01-03 23:15 - 2010-03-15 09:59 - 00497152 _____ (ATI Technologies Inc. ) C:\Windows\system32\aticfx64.dll
2015-01-03 23:15 - 2010-03-15 09:59 - 00446464 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-01-03 23:15 - 2010-03-15 09:58 - 18798592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-01-03 23:15 - 2010-03-15 09:57 - 00446464 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2015-01-03 23:15 - 2010-03-15 09:56 - 00450560 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-01-03 23:15 - 2010-03-15 09:56 - 00202752 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-01-03 23:15 - 2010-03-15 09:54 - 00420864 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdl64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\atipdlxx.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\Oemdspif.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-01-03 23:15 - 2010-03-15 09:53 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2015-01-03 23:15 - 2010-03-15 09:50 - 03131392 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-01-03 23:15 - 2010-03-15 09:42 - 03800064 _____ (ATI Technologies Inc. ) C:\Windows\system32\atidxx64.dll
2015-01-03 23:15 - 2010-03-15 09:38 - 14226944 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-01-03 23:15 - 2010-03-15 09:33 - 03703808 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-01-03 23:15 - 2010-03-15 09:27 - 04801536 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumd64.dll
2015-01-03 23:15 - 2010-03-15 09:20 - 02716160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2015-01-03 23:15 - 2010-03-15 09:18 - 00511072 _____ () C:\Windows\system32\atiumd6a.cap
2015-01-03 23:15 - 2010-03-15 09:17 - 00055296 _____ (AMD) C:\Windows\system32\coinst.dll
2015-01-03 23:15 - 2010-03-15 09:14 - 02993152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00511072 _____ () C:\Windows\SysWOW64\atiumdva.cap
2015-01-03 23:15 - 2010-03-15 09:13 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00043008 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00039936 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-01-03 23:15 - 2010-03-15 09:12 - 04781568 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-01-03 23:15 - 2010-03-15 09:12 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-01-03 23:15 - 2010-03-15 09:11 - 03657728 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00053248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00053248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00052224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00052224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00330752 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00237568 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00016896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00015360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00188928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-01-03 23:15 - 2010-03-15 09:00 - 00036352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00028160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00027648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00020480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-01-03 23:15 - 2010-03-15 08:59 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-01-03 23:15 - 2010-03-02 14:57 - 00020692 _____ () C:\Windows\atiogl.xml
2015-01-03 23:15 - 2010-02-25 13:55 - 00201875 _____ () C:\Windows\system32\atiicdxx.dat
2015-01-03 23:15 - 2010-02-23 10:15 - 00001105 _____ () C:\Windows\SysWOW64\atipblag.dat
2015-01-03 23:15 - 2010-02-23 10:15 - 00001105 _____ () C:\Windows\system32\atipblag.dat
2015-01-03 23:15 - 2009-05-11 16:35 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2015-01-03 23:15 - 2009-02-18 12:55 - 00332288 _____ () C:\Windows\system32\ATIODE.exe
2015-01-03 23:15 - 2009-02-03 15:52 - 00051200 _____ () C:\Windows\system32\ATIODCLI.exe
2015-01-03 23:14 - 2009-09-17 12:54 - 00056344 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys
2015-01-03 23:13 - 2015-01-18 11:28 - 00833157 _____ () C:\Windows\WindowsUpdate.log
2015-01-03 23:08 - 2015-01-18 10:23 - 00017920 _____ () C:\Windows\system32\rpcnetp.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 11:05 - 2009-07-14 05:45 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-18 11:05 - 2009-07-14 05:45 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-18 11:00 - 2009-07-14 16:24 - 00704480 _____ () C:\Windows\system32\perfh00C.dat
2015-01-18 11:00 - 2009-07-14 16:24 - 00130754 _____ () C:\Windows\system32\perfc00C.dat
2015-01-18 11:00 - 2009-07-14 06:13 - 01549700 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-18 10:53 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-05 23:52 - 2009-07-14 05:45 - 00265680 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-05 23:51 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2015-01-05 23:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-05 22:56 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-05 22:41 - 2009-07-14 03:34 - 00000505 _____ () C:\Windows\win.ini
2015-01-05 21:56 - 2010-04-13 07:58 - 00000000 ____D () C:\ProgramData\McAfee
2015-01-05 21:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2015-01-05 20:44 - 2010-04-13 06:31 - 00000000 ____D () C:\Windows\Panther
2015-01-03 23:43 - 2010-04-13 06:20 - 00000000 ____D () C:\Toshiba
2015-01-03 23:41 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2015-01-03 23:41 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2015-01-03 23:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT
2015-01-03 23:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-01-03 23:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2015-01-03 23:35 - 2009-07-14 16:24 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ____D () C:\Program Files\TOSHIBA
2015-01-03 23:32 - 2010-04-13 07:52 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2015-01-03 23:31 - 2010-04-13 07:51 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-01-03 23:22 - 2010-04-13 07:53 - 00000000 ____D () C:\Program Files (x86)\Realtek
2015-01-03 23:19 - 2010-04-13 07:49 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-03 23:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
==================== Files in the root of some directories =======
2015-01-04 00:01 - 2015-01-04 00:01 - 1982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 2009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2014-09-01 09:18 - 2014-09-01 09:18 - 0002086 _____ () C:\Users\Pierre\AppData\Roaming\SSF
2015-01-05 22:50 - 2015-01-05 22:50 - 1522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 21:40 - 2015-01-12 21:39 - 0000070 _____ () C:\Users\Pierre\AppData\Roaming\WB.CFG
Some content of TEMP:
====================
C:\Users\Pierre\AppData\Local\Temp\BackupSetup.exe
C:\Users\Pierre\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe
C:\Users\Pierre\AppData\Local\Temp\install_flashplayer16x32_mssa_aaa_aih.exe
C:\Users\Pierre\AppData\Local\Temp\optprosetup.exe
C:\Users\Pierre\AppData\Local\Temp\Quarantine.exe
C:\Users\Pierre\AppData\Local\Temp\Sp-downloader.exe
C:\Users\Pierre\AppData\Local\Temp\sprz.exe
C:\Users\Pierre\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2010-04-13 06:32
==================== End Of Log ============================
FRST :
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-01-2015
Ran by Pierre (administrator) on LAOCOON on 18-01-2015 11:29:31
Running from C:\Users\Pierre\Downloads
Loaded Profiles: Pierre (Available profiles: Pierre)
Platform: Windows 7 Home Premium (X64) OS Language: Français (France)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Word Proser) C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe
(Small Island Development) C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-03-19] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-02-11] (Toshiba Europe GmbH)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10134560 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [896032 2010-03-22] (Realtek Semiconductor)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [913720 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1489760 2010-04-06] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [35672 2010-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH)
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe
HKLM-x32\...\Run: [SVPWUTIL] => C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [352256 2010-02-22] (TOSHIBA)
HKLM-x32\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [423936 2010-03-04] (TOSHIBA Electronics, Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2009-12-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [948672 2009-12-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [NBAgent] => c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [1086760 2010-03-09] (Nero AG)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-03-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2009-12-25] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-02-24] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-12] (AVAST Software)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [Selection Tools] => "C:\Users\Pierre\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=127.0.0.1:53977;https=127.0.0.1:53977;
ProxyServer: [S-1-5-21-3275174362-358141482-1195275605-1000] => http=127.0.0.1:53977;https=127.0.0.1:53977
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {AAB96620-B601-4176-B21A-18BC16B880A1} URL = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {815EE9BA-DF31-4F9A-8967-B1538CFB7F3A} URL = http://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3275174362-358141482-1195275605-1000 -> {815EE9BA-DF31-4F9A-8967-B1538CFB7F3A} URL =
SearchScopes: HKU\S-1-5-21-3275174362-358141482-1195275605-1000 -> {B5604965-8037-4D1A-8701-95D853A32221} URL = http://rover.ebay.com/rover/1/709-44555-9400-8/4?satitle={searchTerms}
BHO: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff64.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff32.dll No File
BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> No File
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Firefox improver - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack [2015-01-13]
FF Extension: I - Cinema - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\***@*** [2015-01-09]
FF Extension: 7CEA821D3DAB4238B424BF7324531750 - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\{7CEA821D-3DAB-4238-B424-BF7324531750} [2015-01-12]
FF Extension: d62bb6fa719247fdb640ad8855c444f3 - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\{d62bb6fa-7192-47fd-b640-ad8855c444f3} [2015-01-16]
FF HKLM\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [***@***] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-12]
Chrome:
=======
CHR HomePage: Default -> https://www.google.fr/
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3327155&octid=EB_ORIGINAL_CTID&ISID=MA7812575-B2D3-41A3-89B4-4481CD7E8FC4&SearchSource=55&CUI=&UM=8&UP=SP78175077-9C60-434D-8F5C-97616B4FF6CC&SSPV="
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-04]
CHR Extension: (Google Docs) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-04]
CHR Extension: (Google Drive) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-04]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-04]
CHR Extension: (YouTube) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-04]
CHR Extension: (cfhdojbkjhnklbpkdaibdccddilifddb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-18]
CHR Extension: (Google Search) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-04]
CHR Extension: (Avast SafePrice) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-01-18]
CHR Extension: (PlumoWeb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh [2015-01-05]
CHR Extension: (Avast Online Security) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-01-13]
CHR Extension: (khagclindddokccfbmfmckaflngbmpon) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\khagclindddokccfbmfmckaflngbmpon [2015-01-17]
CHR Extension: (mghenlmbmjcpehccoangkdpagbcbkdpc) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2015-01-09]
CHR Extension: (Google Wallet) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-04]
CHR Extension: (Gmail) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-04]
CHR Extension: (pnnfemgpilpdaojpnkjdgfgbnnjojfik) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik [2015-01-13]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-01-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-12]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-12] (AVAST Software)
S2 c7522d84; c:\Program Files (x86)\Optimizer Pro 3.27\OptProMon.dll [2462800 2015-01-13] ()
R2 NykhXwKZNJ; C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe [2726256 2015-01-04] (Small Island Development)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-02-11] (Toshiba Europe GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 wpsvc_1.10.0.6; C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe [277584 2015-01-07] (Word Proser)
S2 70F4EEDB-1367-4b4f-8247-3133551A7415; "C:\Program Files\shopperz\grunt.exe" [X]
S2 csrcc; "C:\Program Files\shopperz\csrcc.exe" [X]
S2 serversu; C:\Users\Pierre\AppData\Roaming\SoftwareUpdater\SUsrv.exe [X]
S2 wpsvc_1.10.0.4; "C:\Program Files (x86)\WordProser_1.10.0.4\Service\wpsvc.exe" [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-12] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-12] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-12] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-12] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-12] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-12] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-12] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-12] ()
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 mwiynzm4ndy1yjz; C:\Windows\System32\drivers\mwiynzm4ndy1yjz.sys [50504 2015-01-05] (Windows (R) Win 7 DDK provider)
R1 wpnfd_1_10_0_6; C:\Windows\System32\drivers\wpnfd_1_10_0_6.sys [58240 2015-01-07] (Word Proser)
S1 ccnfd_1_10_0_5; system32\drivers\ccnfd_1_10_0_5.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 11:29 - 2015-01-18 11:30 - 00021122 _____ () C:\Users\Pierre\Downloads\FRST.txt
2015-01-18 11:29 - 2015-01-18 11:29 - 00000000 ____D () C:\FRST
2015-01-18 11:23 - 2015-01-18 11:24 - 02126336 _____ (Farbar) C:\Users\Pierre\Downloads\FRST64.exe
2015-01-18 10:35 - 2015-01-18 10:36 - 00049536 _____ (Absolute Software Corp.) C:\Windows\SysWOW64\agremove.exe
2015-01-17 13:41 - 2015-01-17 13:41 - 00000000 ____D () C:\Windows\system32\SPReview
2015-01-16 12:36 - 2015-01-16 12:36 - 00000000 ____D () C:\Windows\system32\EventProviders
2015-01-16 00:52 - 2015-01-16 00:52 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TVWizard
2015-01-16 00:44 - 2015-01-16 00:45 - 02191360 _____ () C:\Users\Pierre\Downloads\adwcleaner_4.107.exe
2015-01-16 00:35 - 2015-01-16 00:35 - 00003268 _____ () C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB}
2015-01-13 01:44 - 2015-01-13 01:44 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.27
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Firefox improver
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Software
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Program Files (x86)\Software
2015-01-13 01:18 - 2015-01-13 01:18 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-13 01:11 - 2015-01-13 01:14 - 00002199 _____ () C:\Users\Pierre\Desktop\chrome.lnk
2015-01-12 23:09 - 2015-01-12 23:09 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Dropbox
2015-01-12 21:51 - 2015-01-12 21:51 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\AVAST Software
2015-01-12 21:47 - 2015-01-12 21:47 - 00001971 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-01-12 21:47 - 2015-01-12 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-01-12 21:46 - 2015-01-18 11:25 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-12 21:46 - 2015-01-12 21:47 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-01-12 21:46 - 2015-01-12 21:47 - 00087912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswmonflt.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-01-12 21:46 - 2015-01-12 21:46 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-01-12 21:46 - 2015-01-12 21:46 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-01-12 21:46 - 2015-01-12 21:46 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-01-12 21:40 - 2015-01-12 21:40 - 00000000 ____D () C:\Program Files\AVAST Software
2015-01-12 21:38 - 2015-01-12 21:40 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-01-12 20:29 - 2015-01-18 10:53 - 00000616 _____ () C:\Windows\setupact.log
2015-01-12 20:29 - 2015-01-16 00:50 - 00149864 _____ () C:\Windows\PFRO.log
2015-01-12 20:29 - 2015-01-12 20:29 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-09 22:39 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90
2015-01-09 22:31 - 2015-01-12 20:31 - 00001336 _____ () C:\Windows\Tasks\SSF.job
2015-01-09 22:31 - 2015-01-09 22:31 - 00000000 ____D () C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929
2015-01-09 22:30 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03
2015-01-09 22:28 - 2015-01-18 10:33 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-09 22:28 - 2015-01-09 22:28 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-09 22:28 - 2015-01-09 22:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-01-09 22:27 - 2015-01-18 10:53 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-09 22:27 - 2015-01-09 22:27 - 00003642 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-09 22:25 - 2015-01-09 22:39 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Deployment
2015-01-09 22:25 - 2015-01-09 22:25 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Apps\2.0
2015-01-09 22:18 - 2015-01-09 22:18 - 00003622 _____ () C:\Windows\System32\Tasks\gtaUpt
2015-01-09 22:18 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2015-01-09 22:17 - 2015-01-12 20:31 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-09 22:12 - 2015-01-09 22:12 - 00000000 ____D () C:\Program Files (x86)\WordProser_1.10.0.6
2015-01-09 21:56 - 2015-01-06 04:36 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-07 23:45 - 2015-01-07 23:45 - 00058240 _____ (Word Proser) C:\Windows\system32\Drivers\wpnfd_1_10_0_6.sys
2015-01-06 05:59 - 2009-11-25 12:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2015-01-06 05:59 - 2009-11-25 12:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2015-01-06 05:59 - 2009-11-25 12:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2015-01-06 05:59 - 2009-11-25 12:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ____D () C:\Windows\system32\appraiser
2015-01-05 23:22 - 2015-01-05 23:22 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2015-01-05 22:50 - 2015-01-05 22:50 - 02009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 01522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 00000000 ____D () C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb
2015-01-05 22:49 - 2015-01-16 00:49 - 00000000 ____D () C:\AdwCleaner
2015-01-05 22:37 - 2015-01-13 01:45 - 00001615 _____ () C:\Users\Pierre\Desktop\Continue AdwCleaner.lnk
2015-01-05 22:35 - 2011-04-09 07:45 - 05509504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-05 22:35 - 2011-04-09 07:13 - 03957632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-05 22:35 - 2011-04-09 07:13 - 03901824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-05 22:30 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-01-05 22:30 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-01-05 22:02 - 2015-01-13 01:14 - 00001166 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-01-05 22:02 - 2015-01-13 01:14 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-01-05 22:02 - 2015-01-05 22:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-05 21:56 - 2015-01-05 21:56 - 00000290 __RSH () C:\ProgramData\ntuser.pol
2015-01-05 21:40 - 2015-01-12 21:39 - 00000070 _____ () C:\Users\Pierre\AppData\Roaming\WB.CFG
2015-01-05 21:21 - 2014-12-04 03:32 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-01-05 21:21 - 2014-12-04 03:32 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-01-05 21:21 - 2014-12-04 03:32 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-01-05 21:21 - 2014-12-04 03:31 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-01-05 21:21 - 2014-12-04 03:26 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-01-05 21:21 - 2014-12-02 00:21 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-01-05 21:12 - 2015-01-05 21:12 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TOSHIBA_Corporation
2015-01-05 20:56 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\2355320829
2015-01-05 20:42 - 2015-01-05 20:42 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-01-05 20:42 - 2015-01-05 20:42 - 00000829 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-01-05 20:42 - 2015-01-05 20:42 - 00000000 ____D () C:\Program Files\CCleaner
2015-01-05 20:40 - 2015-01-05 20:40 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNHK_01009.Wdf
2015-01-05 20:19 - 2014-09-15 01:44 - 03195392 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-01-05 20:18 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-05 20:06 - 2015-01-12 22:19 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-01-05 01:52 - 2015-01-05 01:52 - 00050504 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys
2015-01-04 01:17 - 2015-01-04 01:17 - 00000000 ____D () C:\Windows\SysWOW64\Flash
2015-01-04 01:04 - 2015-01-18 10:57 - 00001002 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-04 01:04 - 2015-01-17 23:29 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-01-04 01:04 - 2015-01-16 00:00 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-04 01:04 - 2015-01-16 00:00 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-04 01:04 - 2015-01-16 00:00 - 00003940 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-04 01:04 - 2015-01-04 01:04 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-01-04 01:04 - 2015-01-04 01:04 - 00000000 ____D () C:\Windows\system32\Macromed
2015-01-04 01:02 - 2015-01-13 01:32 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Adobe
2015-01-04 00:45 - 2015-01-04 00:45 - 00003846 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1420328719
2015-01-04 00:45 - 2015-01-04 00:45 - 00001142 _____ () C:\Users\Public\Desktop\Opera.lnk
2015-01-04 00:45 - 2015-01-04 00:45 - 00001142 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-01-04 00:45 - 2015-01-04 00:45 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Opera Software
2015-01-04 00:45 - 2015-01-04 00:45 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Opera Software
2015-01-04 00:41 - 2015-01-18 10:58 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-01-04 00:21 - 2015-01-05 22:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-04 00:21 - 2015-01-04 00:22 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Mozilla
2015-01-04 00:21 - 2015-01-04 00:22 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Mozilla
2015-01-04 00:21 - 2015-01-04 00:21 - 00000000 ____D () C:\ProgramData\Mozilla
2015-01-04 00:07 - 2015-01-09 22:28 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-04 00:07 - 2015-01-04 00:08 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Google
2015-01-04 00:06 - 2015-01-12 22:20 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 00:01 - 2015-01-04 00:02 - 00000000 ____D () C:\ProgramData\QmhkcqAXn
2015-01-04 00:01 - 2015-01-04 00:01 - 01982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-04 00:00 - 2015-01-05 21:09 - 00001776 _____ () C:\Windows\patsearch.bin
2015-01-04 00:00 - 2015-01-04 00:00 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNewH_01009.Wdf
2015-01-03 23:59 - 2015-01-03 23:59 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Toshiba
2015-01-03 23:55 - 2015-01-03 23:55 - 00615488 _____ () C:\Users\Pierre\Desktop\ChromeSetup.exe
2015-01-03 23:54 - 2015-01-03 23:54 - 00001388 _____ () C:\Users\Pierre\Desktop\XVIIIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001381 _____ () C:\Users\Pierre\Desktop\XVIIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001374 _____ () C:\Users\Pierre\Desktop\XVIe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00001367 _____ () C:\Users\Pierre\Desktop\XVe siècle - Raccourci.lnk
2015-01-03 23:54 - 2015-01-03 23:54 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Adobe
2015-01-03 23:44 - 2015-01-13 01:14 - 00000907 _____ () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Nero
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\ATI
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Toshiba
2015-01-03 23:44 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre\AppData\Local\ATI
2015-01-03 23:43 - 2015-01-03 23:43 - 00000000 ____D () C:\Users\Pierre\AppData\Local\VirtualStore
2015-01-03 23:42 - 2015-01-03 23:42 - 00057560 _____ () C:\Users\Pierre\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-03 23:42 - 2015-01-03 23:42 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-01-03 23:42 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-01-03 23:42 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-01-03 23:42 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-01-03 23:42 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-01-03 23:42 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-01-03 23:42 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-01-03 23:42 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-01-03 23:41 - 2015-01-03 23:44 - 00000000 ____D () C:\Users\Pierre
2015-01-03 23:41 - 2015-01-03 23:41 - 00000020 ___SH () C:\Users\Pierre\ntuser.ini
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Public\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Voisinage réseau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Voisinage d'impression
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Pierre\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Voisinage réseau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Voisinage d'impression
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Mes vidéos
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Mes images
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\Documents\Ma musique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historique
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Modèles
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Menu Démarrer
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Favoris
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\ProgramData\Bureau
2015-01-03 23:41 - 2015-01-03 23:41 - 00000000 _SHDL () C:\Program Files\Fichiers communs
2015-01-03 23:41 - 2010-04-13 08:00 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Macromedia
2015-01-03 23:41 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-03 23:41 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Pierre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-03 23:37 - 2015-01-03 23:37 - 00000000 __RSH () C:\Windows\SysWOW64\Drivers\TOSHIBA_Satellite L670_12208-FR_PSK3EE-06C00.MRK
2015-01-03 23:35 - 2015-01-03 23:35 - 00000000 ____D () C:\Windows\OemDrv
2015-01-03 23:33 - 2015-01-03 23:33 - 00002435 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
2015-01-03 23:33 - 2015-01-03 23:33 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-03 23:33 - 2015-01-03 23:33 - 00000000 _____ () C:\Windows\NDSTray.INI
2015-01-03 23:32 - 2015-01-03 23:32 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2015-01-03 23:28 - 2015-01-03 23:30 - 00000000 ____D () C:\ProgramData\Toshiba
2015-01-03 23:28 - 2009-06-22 17:06 - 00035008 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\PGEffect.sys
2015-01-03 23:26 - 2015-01-03 23:27 - 00000000 ____D () C:\Program Files (x86)\Realtek WLAN Driver
2015-01-03 23:26 - 2010-04-28 11:32 - 00932384 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192ce.sys
2015-01-03 23:26 - 2010-04-27 01:23 - 01103904 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8192se.sys
2015-01-03 23:26 - 2010-04-08 10:07 - 00612352 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl819xp.sys
2015-01-03 23:26 - 2010-04-01 14:01 - 00442368 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8187Se.sys
2015-01-03 23:26 - 2010-03-31 11:10 - 00450048 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtl8187B.sys
2015-01-03 23:26 - 2009-02-05 02:49 - 00451072 ____N () C:\Windows\SysWOW64\ISSRemoveSP.exe
2015-01-03 23:23 - 2015-01-03 23:23 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2015-01-03 23:23 - 2015-01-03 23:23 - 00000000 ____D () C:\Program Files\Realtek
2015-01-03 23:23 - 1999-10-12 19:47 - 00024576 _____ (Toshiba) C:\Windows\SysWOW64\TSCI.dll
2015-01-03 23:23 - 1999-10-12 19:45 - 00024576 _____ (Toshiba) C:\Windows\SysWOW64\THCI.dll
2015-01-03 23:22 - 2015-01-03 23:23 - 00003346 _____ () C:\RHDSetup.log
2015-01-03 23:22 - 2015-01-03 23:23 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-01-03 23:22 - 2010-03-22 11:21 - 02719504 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 02298400 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-01-03 23:22 - 2010-03-22 11:21 - 02197264 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01929760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01660448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01247776 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 01210912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00612384 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-01-03 23:22 - 2010-03-22 11:21 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00477216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00372936 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00338848 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00332320 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00325904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00307920 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00201928 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00168288 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00149536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00099016 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00076488 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-01-03 23:22 - 2010-03-22 11:21 - 00069664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 01691680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RHDMEx64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 01638432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkHDM64.dll
2015-01-03 23:22 - 2009-12-02 15:01 - 00213280 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtHDMIVX.sys
2015-01-03 23:22 - 2009-12-02 15:01 - 00064032 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RHCoInst64.dll
2015-01-03 23:22 - 2009-03-09 05:32 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RH3DAA64.dll
2015-01-03 23:22 - 2009-03-09 05:31 - 00304640 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RH3DHT64.dll
2015-01-03 23:21 - 2010-01-06 00:46 - 00189984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTInstaller64.exe
2015-01-03 23:19 - 2015-01-03 23:19 - 00000000 ____D () C:\ProgramData\ATI
2015-01-03 23:19 - 2010-01-15 12:22 - 00538136 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStor.sys
2015-01-03 23:18 - 2015-01-03 23:18 - 00000000 _____ () C:\Windows\ativpsrm.bin
2015-01-03 23:17 - 2015-01-03 23:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-03 23:16 - 2015-01-03 23:17 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2015-01-03 23:16 - 2015-01-03 23:16 - 00000000 ____D () C:\Program Files\ATI
2015-01-03 23:15 - 2010-03-15 10:06 - 06403072 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atipmdag.sys
2015-01-03 23:15 - 2010-03-15 10:06 - 06403072 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-01-03 23:15 - 2010-03-15 10:00 - 00143360 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2015-01-03 23:15 - 2010-03-15 10:00 - 00033624 _____ () C:\Windows\system32\atiapfxx.blb
2015-01-03 23:15 - 2010-03-15 09:59 - 00497152 _____ (ATI Technologies Inc. ) C:\Windows\system32\aticfx64.dll
2015-01-03 23:15 - 2010-03-15 09:59 - 00446464 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2015-01-03 23:15 - 2010-03-15 09:58 - 18798592 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2015-01-03 23:15 - 2010-03-15 09:57 - 00446464 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2015-01-03 23:15 - 2010-03-15 09:56 - 00450560 _____ (AMD) C:\Windows\system32\atieclxx.exe
2015-01-03 23:15 - 2010-03-15 09:56 - 00202752 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2015-01-03 23:15 - 2010-03-15 09:54 - 00420864 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdl64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\atipdlxx.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\Oemdspif.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll
2015-01-03 23:15 - 2010-03-15 09:54 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-01-03 23:15 - 2010-03-15 09:53 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2015-01-03 23:15 - 2010-03-15 09:50 - 03131392 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2015-01-03 23:15 - 2010-03-15 09:42 - 03800064 _____ (ATI Technologies Inc. ) C:\Windows\system32\atidxx64.dll
2015-01-03 23:15 - 2010-03-15 09:38 - 14226944 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2015-01-03 23:15 - 2010-03-15 09:33 - 03703808 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2015-01-03 23:15 - 2010-03-15 09:27 - 04801536 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumd64.dll
2015-01-03 23:15 - 2010-03-15 09:20 - 02716160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2015-01-03 23:15 - 2010-03-15 09:18 - 00511072 _____ () C:\Windows\system32\atiumd6a.cap
2015-01-03 23:15 - 2010-03-15 09:17 - 00055296 _____ (AMD) C:\Windows\system32\coinst.dll
2015-01-03 23:15 - 2010-03-15 09:14 - 02993152 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00511072 _____ () C:\Windows\SysWOW64\atiumdva.cap
2015-01-03 23:15 - 2010-03-15 09:13 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00043008 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2015-01-03 23:15 - 2010-03-15 09:13 - 00039936 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2015-01-03 23:15 - 2010-03-15 09:12 - 04781568 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2015-01-03 23:15 - 2010-03-15 09:12 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2015-01-03 23:15 - 2010-03-15 09:11 - 03657728 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00053248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00053248 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00052224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2015-01-03 23:15 - 2010-03-15 09:02 - 00052224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00330752 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00237568 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00016896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00015360 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2015-01-03 23:15 - 2010-03-15 09:01 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00188928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2015-01-03 23:15 - 2010-03-15 09:00 - 00036352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00028160 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00027648 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2015-01-03 23:15 - 2010-03-15 09:00 - 00020480 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2015-01-03 23:15 - 2010-03-15 08:59 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-01-03 23:15 - 2010-03-02 14:57 - 00020692 _____ () C:\Windows\atiogl.xml
2015-01-03 23:15 - 2010-02-25 13:55 - 00201875 _____ () C:\Windows\system32\atiicdxx.dat
2015-01-03 23:15 - 2010-02-23 10:15 - 00001105 _____ () C:\Windows\SysWOW64\atipblag.dat
2015-01-03 23:15 - 2010-02-23 10:15 - 00001105 _____ () C:\Windows\system32\atipblag.dat
2015-01-03 23:15 - 2009-05-11 16:35 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2015-01-03 23:15 - 2009-02-18 12:55 - 00332288 _____ () C:\Windows\system32\ATIODE.exe
2015-01-03 23:15 - 2009-02-03 15:52 - 00051200 _____ () C:\Windows\system32\ATIODCLI.exe
2015-01-03 23:14 - 2009-09-17 12:54 - 00056344 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys
2015-01-03 23:13 - 2015-01-18 11:28 - 00833157 _____ () C:\Windows\WindowsUpdate.log
2015-01-03 23:08 - 2015-01-18 10:23 - 00017920 _____ () C:\Windows\system32\rpcnetp.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-18 11:05 - 2009-07-14 05:45 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-18 11:05 - 2009-07-14 05:45 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-18 11:00 - 2009-07-14 16:24 - 00704480 _____ () C:\Windows\system32\perfh00C.dat
2015-01-18 11:00 - 2009-07-14 16:24 - 00130754 _____ () C:\Windows\system32\perfc00C.dat
2015-01-18 11:00 - 2009-07-14 06:13 - 01549700 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-18 10:53 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-05 23:52 - 2009-07-14 05:45 - 00265680 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-05 23:51 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2015-01-05 23:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-05 22:56 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-05 22:41 - 2009-07-14 03:34 - 00000505 _____ () C:\Windows\win.ini
2015-01-05 21:56 - 2010-04-13 07:58 - 00000000 ____D () C:\ProgramData\McAfee
2015-01-05 21:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2015-01-05 20:44 - 2010-04-13 06:31 - 00000000 ____D () C:\Windows\Panther
2015-01-03 23:43 - 2010-04-13 06:20 - 00000000 ____D () C:\Toshiba
2015-01-03 23:41 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2015-01-03 23:41 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2015-01-03 23:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT
2015-01-03 23:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-01-03 23:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2015-01-03 23:35 - 2009-07-14 16:24 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-03 23:33 - 2010-04-13 07:48 - 00000000 ____D () C:\Program Files\TOSHIBA
2015-01-03 23:32 - 2010-04-13 07:52 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2015-01-03 23:31 - 2010-04-13 07:51 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-01-03 23:22 - 2010-04-13 07:53 - 00000000 ____D () C:\Program Files (x86)\Realtek
2015-01-03 23:19 - 2010-04-13 07:49 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-03 23:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
==================== Files in the root of some directories =======
2015-01-04 00:01 - 2015-01-04 00:01 - 1982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 2009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2014-09-01 09:18 - 2014-09-01 09:18 - 0002086 _____ () C:\Users\Pierre\AppData\Roaming\SSF
2015-01-05 22:50 - 2015-01-05 22:50 - 1522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 21:40 - 2015-01-12 21:39 - 0000070 _____ () C:\Users\Pierre\AppData\Roaming\WB.CFG
Some content of TEMP:
====================
C:\Users\Pierre\AppData\Local\Temp\BackupSetup.exe
C:\Users\Pierre\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe
C:\Users\Pierre\AppData\Local\Temp\install_flashplayer16x32_mssa_aaa_aih.exe
C:\Users\Pierre\AppData\Local\Temp\optprosetup.exe
C:\Users\Pierre\AppData\Local\Temp\Quarantine.exe
C:\Users\Pierre\AppData\Local\Temp\Sp-downloader.exe
C:\Users\Pierre\AppData\Local\Temp\sprz.exe
C:\Users\Pierre\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2010-04-13 06:32
==================== End Of Log ============================
addition :
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-01-2015
Ran by Pierre at 2015-01-18 11:30:29
Running from C:\Users\Pierre\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.45.2 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.257 - Adobe Systems Incorporated)
Adobe Reader 9.3 - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-A93000000001}) (Version: 9.3.0 - Adobe Systems Incorporated)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
ATI Catalyst Install Manager (HKLM\...\{B5896016-3143-B94F-585D-DF75DAF1D879}) (Version: 3.0.765.0 - ATI Technologies, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
ccc-core-static (x32 Version: 2010.0315.1050.17562 - Nom de votre société) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.00 - Piriform)
Chuzzle Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82 - WildTangent) Hidden
eBay (HKLM-x32\...\{FDE58148-57E7-43BF-879A-29CCE818C078}) (Version: 1.1.9 - eBay Inc.)
FATE (x32 Version: 2.2.0.82 - WildTangent) Hidden
Firefox improver (HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Firefox improver) (Version: 1 - FirefoxImprover Limited)
Galerie de photos Windows Live (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.65 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Installation Windows Live (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.7.1002 - Intel Corporation)
Java(TM) 6 Update 17 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216017FF}) (Version: 6.0.170 - Sun Microsystems, Inc.)
Jeux WildTangent (HKLM-x32\...\WildTangent toshiba Master Uninstall) (Version: 1.0.0.80 - WildTangent)
Jewel Quest II (x32 Version: 2.2.0.82 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Module linguistique Microsoft .NET Framework 4 Client Profile FRA (HKLM\...\Microsoft .NET Framework 4 Client Profile FRA Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 fr) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 fr)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM-x32\...\{020b9b3a-903f-43dd-a14e-2dc370b6a4ca}) (Version: - Nero AG)
Nero BackItUp (HKLM-x32\...\{0420F95C-11FF-4E02-B967-6CC22B188F9F}) (Version: 5.2.21001 - Nero AG)
Nero BackItUp and Burn (HKLM-x32\...\{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}) (Version: 1.2.0030 - Nero AG)
Nero BurnRights (HKLM-x32\...\{397516AE-7DFE-4F90-84E0-BD616D559434}) (Version: 3.6.26001 - Nero AG)
Nero Express (HKLM-x32\...\{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}) (Version: 9.6.16000 - Nero AG)
Nero RescueAgent (HKLM-x32\...\{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}) (Version: 2.6.25002 - Nero AG)
Opera Stable 26.0.1656.60 (HKLM-x32\...\Opera 26.0.1656.60) (Version: 26.0.1656.60 - Opera Software ASA)
Outil de téléchargement Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Penguins! (x32 Version: 2.2.0.82 - WildTangent) Hidden
Plants vs. Zombies (x32 Version: 2.2.0.82 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (x32 Version: 2.2.0.82 - WildTangent) Hidden
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.13.112.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6069 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30111 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173001290E16}) (Version: 2.00.0013 - REALTEK Semiconductor Corp.)
Setup Support for SearchProtect (HKLM-x32\...\Setup Support for SearchProtect) (Version: 1.0 - Sono Control Inc.)
Skype Toolbars (HKLM-x32\...\{981029E0-7FC9-4CF3-AB39-6F133621921A}) (Version: 1.0.4051 - Skype Technologies S.A.)
Skype(TM) 4.2 (HKLM-x32\...\{D103C4BA-F905-437A-8049-DB24763BBE36}) (Version: 4.2.152 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.8.1 - Synaptics Incorporated)
Toshiba Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.11 - TOSHIBA CORPORATION)
TOSHIBA Bulletin Board (HKLM-x32\...\InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}) (Version: 1.6.07.64 - TOSHIBA Corporation)
TOSHIBA ConfigFree (HKLM-x32\...\{607BE7BF-7C28-4ADB-A4A0-385962B901C3}) (Version: 8.0.28 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.2.11.64 - TOSHIBA Corporation)
TOSHIBA Face Recognition (HKLM-x32\...\InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}) (Version: 3.1.3.64 - TOSHIBA Corporation)
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.63.0.6C - TOSHIBA CORPORATION)
TOSHIBA Hardware Setup (HKLM-x32\...\InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}) (Version: 1.63.0.22C - Nom de votre société)
TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Toshiba Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.01 - TOSHIBA)
TOSHIBA Media Controller (HKLM-x32\...\{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}) (Version: 1.0.80.3.64 - TOSHIBA CORPORATION)
TOSHIBA Media Controller Plug-in (HKLM-x32\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.5.10 - TOSHIBA CORPORATION)
TOSHIBA Mot de passe responsable (HKLM-x32\...\InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}) (Version: 1.63.0.9C - TOSHIBA CORPORATION)
TOSHIBA Online Product Information (HKLM-x32\...\{2290A680-4083-410A-ADCC-7092C67FC052}) (Version: 2.09.0001 - TOSHIBA)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.6.0.64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 x64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.00.0019 - TOSHIBA)
TOSHIBA ReelTime (HKLM-x32\...\InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6}) (Version: 1.6.06.64 - TOSHIBA Corporation)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.40 - TOSHIBA)
Toshiba TEMPRO (HKLM-x32\...\{2B000B80-A3FA-4B92-A5FF-D9AD402B6701}) (Version: 3.30 - Toshiba Europe GmbH)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.3.3.64 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.15 - TOSHIBA Corporation)
TRORMCLauncher (HKLM-x32\...\InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}) (Version: - )
TRORMCLauncher (Version: 1.0.0.9 - TOSHIBA) Hidden
Utility Common Driver (x32 Version: 1.0.52.1C - TOSHIBA) Hidden
WildTangent ORB Game Console (x32 Version: - WildTangent) Hidden
Windows Live FolderShare (HKLM-x32\...\{2075CB0A-D26F-4DAA-B424-5079296B43BA}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Word Proser 1.10.0.6 (HKLM-x32\...\WordProser_1.10.0.6) (Version: 1.10.0.6 - Word Proser) <==== ATTENTION
Zuma Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
17-01-2015 13:41:13 Windows 7 Service Pack 1
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0E313589-A834-4F90-A051-2FE2C8B6CC56} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-09] (Google Inc.)
Task: {4D2E17A8-713B-4B36-B29F-706458C16465} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-16] (Adobe Systems Incorporated)
Task: {58EA4639-3FA5-4103-89CE-F780E7E78FD3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-09] (Google Inc.)
Task: {64B82A8F-8115-4420-A947-B6E8D14CCDB0} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-02-22] (TOSHIBA CORPORATION)
Task: {6A2DED38-0614-4D0D-A4D8-BD504D925EE5} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-01-12] (AVAST Software)
Task: {A09DC1CE-D363-456C-92C7-08E1E8179E48} - System32\Tasks\Opera scheduled Autoupdate 1420328719 => C:\Program Files (x86)\Opera\launcher.exe [2014-12-16] (Opera Software)
Task: {A3C5DAF5-2725-42A9-91E8-EB92D568F2B7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-11-21] (Piriform Ltd)
Task: {BDFF71E0-9D27-43F9-842C-51F5350DB341} - System32\Tasks\gtaUpt => C:\Program Files\shopperz\zaeed.bat
Task: {CFB35DB6-F564-4E83-B384-50FCCB9F2EBD} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: {D33A05A8-E0D0-4BC5-B486-BBD954AC5BB1} - System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}\setup.exe" -c -runfromtemp -l0x040c
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SSF.job => C:\Users\Pierre\AppData\Roaming\SSF.exe <==== ATTENTION
==================== Loaded Modules (whitelisted) =============
2010-03-19 13:28 - 2010-03-19 13:28 - 03409256 _____ () C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 08762680 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll
2009-11-03 13:26 - 2009-11-03 13:26 - 00053560 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll
2010-04-13 07:48 - 2009-06-22 13:40 - 00022328 _____ () C:\Program Files\TOSHIBA\Toshiba Assist\NotifyX.dll
2009-03-12 19:08 - 2009-03-12 19:08 - 00048640 _____ () C:\Program Files (x86)\Toshiba\PCDiag\NotifyPCD.dll
2009-07-25 15:38 - 2009-07-25 15:38 - 00017800 _____ () C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\NotifyTDC.dll
2009-10-13 10:00 - 2009-10-13 10:00 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2015-01-03 23:17 - 2015-01-03 23:17 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-02-05 17:44 - 2010-02-05 17:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2015-01-18 10:24 - 2015-01-18 10:24 - 02911744 _____ () C:\Program Files\AVAST Software\Avast\defs\15011701\algo.dll
2015-01-12 21:46 - 2015-01-12 21:46 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Administrateur (S-1-5-21-3275174362-358141482-1195275605-500 - Administrator - Disabled)
Invité (S-1-5-21-3275174362-358141482-1195275605-501 - Limited - Disabled)
Pierre (S-1-5-21-3275174362-358141482-1195275605-1000 - Administrator - Enabled) => C:\Users\Pierre
==================== Faulty Device Manager Devices =============
Name: ccnfd_1_10_0_5
Description: ccnfd_1_10_0_5
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ccnfd_1_10_0_5
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/18/2015 10:33:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante KtwUJdvL.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0xb14
Heure de début de l'application défaillante : 0xKtwUJdvL.exe0
Chemin d'accès de l'application défaillante : KtwUJdvL.exe1
Chemin d'accès du module défaillant: KtwUJdvL.exe2
ID de rapport : KtwUJdvL.exe3
Error: (01/17/2015 01:50:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante BOCpgtgswfE.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0xa94
Heure de début de l'application défaillante : 0xBOCpgtgswfE.exe0
Chemin d'accès de l'application défaillante : BOCpgtgswfE.exe1
Chemin d'accès du module défaillant: BOCpgtgswfE.exe2
ID de rapport : BOCpgtgswfE.exe3
Error: (01/17/2015 01:40:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante BOCpgtgswfE.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0x1be8
Heure de début de l'application défaillante : 0xBOCpgtgswfE.exe0
Chemin d'accès de l'application défaillante : BOCpgtgswfE.exe1
Chemin d'accès du module défaillant: BOCpgtgswfE.exe2
ID de rapport : BOCpgtgswfE.exe3
Error: (01/16/2015 00:40:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante explorer.exe, version : 6.1.7600.16450, horodatage : 0x4aeba271
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d'exception : 0xc0000005
Décalage d'erreur : 0x6ad6649e
ID du processus défaillant : 0x14e4
Heure de début de l'application défaillante : 0xexplorer.exe0
Chemin d'accès de l'application défaillante : explorer.exe1
Chemin d'accès du module défaillant: explorer.exe2
ID de rapport : explorer.exe3
Error: (01/13/2015 01:46:48 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )
Description: Échec de la récupération de la mise à jour automatique du certificat racine tiers à partir de : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt> avec l'erreur : Cette opération s'est terminée car le délai d'attente a expiré.
.
Error: (01/13/2015 01:42:29 AM) (Source: MsiInstaller) (EventID: 11316) (User: Laocoon)
Description: Product: Software Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Software\Update\1.3.25.0\GoogleUpdateHelper.msi
Error: (01/13/2015 01:11:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante Uninstall.exe_unknown, version : 0.0.0.0, horodatage : 0x54af0d00
Nom du module défaillant : Uninstall.exe, version : 0.0.0.0, horodatage : 0x54af0d00
Code d'exception : 0xc0000005
Décalage d'erreur : 0x0000752f
ID du processus défaillant : 0x14d0
Heure de début de l'application défaillante : 0xUninstall.exe_unknown0
Chemin d'accès de l'application défaillante : Uninstall.exe_unknown1
Chemin d'accès du module défaillant: Uninstall.exe_unknown2
ID de rapport : Uninstall.exe_unknown3
Error: (01/09/2015 10:38:58 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
Error: (01/09/2015 10:31:12 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
Error: (01/09/2015 10:30:24 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
System errors:
=============
Error: (01/18/2015 10:53:42 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger :
ccnfd_1_10_0_5
Error: (01/18/2015 10:53:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Word Proser 1.10.0.4 Client Service n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SU Service component n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service csrcc n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:20 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service 70F4EEDB-1367-4b4f-8247-3133551A7415 n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:24:12 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger :
ccnfd_1_10_0_5
Error: (01/18/2015 10:23:50 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Word Proser 1.10.0.4 Client Service n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:50 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SU Service component n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service csrcc n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service 70F4EEDB-1367-4b4f-8247-3133551A7415 n'a pas pu démarrer en raison de l'erreur :
%%2
Microsoft Office Sessions:
=========================
Error: (01/18/2015 10:33:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: KtwUJdvL.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b727b1401d03301df3ac69bC:\ProgramData\QmhkcqAXn\dat\KtwUJdvL.exeC:\Windows\syswow64\KERNELBASE.dll1e772ebe-9ef5-11e4-bf20-88ae1de89119
Error: (01/17/2015 01:50:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BOCpgtgswfE.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b727a9401d0325432076cb8C:\ProgramData\QmhkcqAXn\dat\BOCpgtgswfE.exeC:\Windows\syswow64\KERNELBASE.dll715428c9-9e47-11e4-bf25-88ae1de89119
Error: (01/17/2015 01:40:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BOCpgtgswfE.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b7271be801d03252cc6e495fC:\ProgramData\QmhkcqAXn\dat\BOCpgtgswfE.exeC:\Windows\syswow64\KERNELBASE.dll0d5a30c1-9e46-11e4-bf25-88ae1de89119
Error: (01/16/2015 00:40:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7600.164504aeba271unknown0.0.0.000000000c00000056ad6649e14e401d0311c9b68b971C:\Windows\SysWOW64\explorer.exeunknownda5a47a4-9d0f-11e4-b1c6-88ae1de89119
Error: (01/13/2015 01:46:48 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crtCette opération s'est terminée car le délai d'attente a expiré.
Error: (01/13/2015 01:42:29 AM) (Source: MsiInstaller) (EventID: 11316) (User: Laocoon)
Description: Product: Software Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Software\Update\1.3.25.0\GoogleUpdateHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/13/2015 01:11:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Uninstall.exe_unknown0.0.0.054af0d00Uninstall.exe0.0.0.054af0d00c00000050000752f14d001d02ec589a137b7C:\Program Files (x86)\HQProVideo 1.6V09.01\Uninstall.exeC:\Program Files (x86)\HQProVideo 1.6V09.01\Uninstall.exec9c22de0-9ab8-11e4-9d55-88ae1de89119
Error: (01/09/2015 10:38:58 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2015 10:31:12 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2015 10:30:24 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
==================== Memory info ===========================
Processor: Intel(R) Pentium(R) CPU P6100 @ 2.00GHz
Percentage of memory in use: 23%
Total physical RAM: 3954.67 MB
Available physical RAM: 3014.82 MB
Total Pagefile: 7907.49 MB
Available Pagefile: 6378.51 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:298.09 GB) (Free:270.69 GB) NTFS
Drive d: (Data) (Fixed) (Total:297.69 GB) (Free:191.98 GB) NTFS
Drive e: (<BORGIA_S3_DVD2>) (CDROM) (Total:7.59 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 06D86F1E)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=297.7 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-01-2015
Ran by Pierre at 2015-01-18 11:30:29
Running from C:\Users\Pierre\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.45.2 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.257 - Adobe Systems Incorporated)
Adobe Reader 9.3 - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-A93000000001}) (Version: 9.3.0 - Adobe Systems Incorporated)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
ATI Catalyst Install Manager (HKLM\...\{B5896016-3143-B94F-585D-DF75DAF1D879}) (Version: 3.0.765.0 - ATI Technologies, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
ccc-core-static (x32 Version: 2010.0315.1050.17562 - Nom de votre société) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.00 - Piriform)
Chuzzle Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82 - WildTangent) Hidden
eBay (HKLM-x32\...\{FDE58148-57E7-43BF-879A-29CCE818C078}) (Version: 1.1.9 - eBay Inc.)
FATE (x32 Version: 2.2.0.82 - WildTangent) Hidden
Firefox improver (HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Firefox improver) (Version: 1 - FirefoxImprover Limited)
Galerie de photos Windows Live (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.65 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Installation Windows Live (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.7.1002 - Intel Corporation)
Java(TM) 6 Update 17 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216017FF}) (Version: 6.0.170 - Sun Microsystems, Inc.)
Jeux WildTangent (HKLM-x32\...\WildTangent toshiba Master Uninstall) (Version: 1.0.0.80 - WildTangent)
Jewel Quest II (x32 Version: 2.2.0.82 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Module linguistique Microsoft .NET Framework 4 Client Profile FRA (HKLM\...\Microsoft .NET Framework 4 Client Profile FRA Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 fr) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 fr)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM-x32\...\{020b9b3a-903f-43dd-a14e-2dc370b6a4ca}) (Version: - Nero AG)
Nero BackItUp (HKLM-x32\...\{0420F95C-11FF-4E02-B967-6CC22B188F9F}) (Version: 5.2.21001 - Nero AG)
Nero BackItUp and Burn (HKLM-x32\...\{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}) (Version: 1.2.0030 - Nero AG)
Nero BurnRights (HKLM-x32\...\{397516AE-7DFE-4F90-84E0-BD616D559434}) (Version: 3.6.26001 - Nero AG)
Nero Express (HKLM-x32\...\{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}) (Version: 9.6.16000 - Nero AG)
Nero RescueAgent (HKLM-x32\...\{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}) (Version: 2.6.25002 - Nero AG)
Opera Stable 26.0.1656.60 (HKLM-x32\...\Opera 26.0.1656.60) (Version: 26.0.1656.60 - Opera Software ASA)
Outil de téléchargement Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Penguins! (x32 Version: 2.2.0.82 - WildTangent) Hidden
Plants vs. Zombies (x32 Version: 2.2.0.82 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Polar Bowler (x32 Version: 2.2.0.82 - WildTangent) Hidden
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.13.112.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6069 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30111 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173001290E16}) (Version: 2.00.0013 - REALTEK Semiconductor Corp.)
Setup Support for SearchProtect (HKLM-x32\...\Setup Support for SearchProtect) (Version: 1.0 - Sono Control Inc.)
Skype Toolbars (HKLM-x32\...\{981029E0-7FC9-4CF3-AB39-6F133621921A}) (Version: 1.0.4051 - Skype Technologies S.A.)
Skype(TM) 4.2 (HKLM-x32\...\{D103C4BA-F905-437A-8049-DB24763BBE36}) (Version: 4.2.152 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.8.1 - Synaptics Incorporated)
Toshiba Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.11 - TOSHIBA CORPORATION)
TOSHIBA Bulletin Board (HKLM-x32\...\InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}) (Version: 1.6.07.64 - TOSHIBA Corporation)
TOSHIBA ConfigFree (HKLM-x32\...\{607BE7BF-7C28-4ADB-A4A0-385962B901C3}) (Version: 8.0.28 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.2.11.64 - TOSHIBA Corporation)
TOSHIBA Face Recognition (HKLM-x32\...\InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}) (Version: 3.1.3.64 - TOSHIBA Corporation)
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.63.0.6C - TOSHIBA CORPORATION)
TOSHIBA Hardware Setup (HKLM-x32\...\InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}) (Version: 1.63.0.22C - Nom de votre société)
TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Toshiba Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.01 - TOSHIBA)
TOSHIBA Media Controller (HKLM-x32\...\{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}) (Version: 1.0.80.3.64 - TOSHIBA CORPORATION)
TOSHIBA Media Controller Plug-in (HKLM-x32\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.5.10 - TOSHIBA CORPORATION)
TOSHIBA Mot de passe responsable (HKLM-x32\...\InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}) (Version: 1.63.0.9C - TOSHIBA CORPORATION)
TOSHIBA Online Product Information (HKLM-x32\...\{2290A680-4083-410A-ADCC-7092C67FC052}) (Version: 2.09.0001 - TOSHIBA)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.6.0.64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 x64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.00.0019 - TOSHIBA)
TOSHIBA ReelTime (HKLM-x32\...\InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6}) (Version: 1.6.06.64 - TOSHIBA Corporation)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.40 - TOSHIBA)
Toshiba TEMPRO (HKLM-x32\...\{2B000B80-A3FA-4B92-A5FF-D9AD402B6701}) (Version: 3.30 - Toshiba Europe GmbH)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.3.3.64 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.15 - TOSHIBA Corporation)
TRORMCLauncher (HKLM-x32\...\InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}) (Version: - )
TRORMCLauncher (Version: 1.0.0.9 - TOSHIBA) Hidden
Utility Common Driver (x32 Version: 1.0.52.1C - TOSHIBA) Hidden
WildTangent ORB Game Console (x32 Version: - WildTangent) Hidden
Windows Live FolderShare (HKLM-x32\...\{2075CB0A-D26F-4DAA-B424-5079296B43BA}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Word Proser 1.10.0.6 (HKLM-x32\...\WordProser_1.10.0.6) (Version: 1.10.0.6 - Word Proser) <==== ATTENTION
Zuma Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
17-01-2015 13:41:13 Windows 7 Service Pack 1
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0E313589-A834-4F90-A051-2FE2C8B6CC56} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-09] (Google Inc.)
Task: {4D2E17A8-713B-4B36-B29F-706458C16465} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-16] (Adobe Systems Incorporated)
Task: {58EA4639-3FA5-4103-89CE-F780E7E78FD3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-09] (Google Inc.)
Task: {64B82A8F-8115-4420-A947-B6E8D14CCDB0} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-02-22] (TOSHIBA CORPORATION)
Task: {6A2DED38-0614-4D0D-A4D8-BD504D925EE5} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-01-12] (AVAST Software)
Task: {A09DC1CE-D363-456C-92C7-08E1E8179E48} - System32\Tasks\Opera scheduled Autoupdate 1420328719 => C:\Program Files (x86)\Opera\launcher.exe [2014-12-16] (Opera Software)
Task: {A3C5DAF5-2725-42A9-91E8-EB92D568F2B7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-11-21] (Piriform Ltd)
Task: {BDFF71E0-9D27-43F9-842C-51F5350DB341} - System32\Tasks\gtaUpt => C:\Program Files\shopperz\zaeed.bat
Task: {CFB35DB6-F564-4E83-B384-50FCCB9F2EBD} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: {D33A05A8-E0D0-4BC5-B486-BBD954AC5BB1} - System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}\setup.exe" -c -runfromtemp -l0x040c
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SSF.job => C:\Users\Pierre\AppData\Roaming\SSF.exe <==== ATTENTION
==================== Loaded Modules (whitelisted) =============
2010-03-19 13:28 - 2010-03-19 13:28 - 03409256 _____ () C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 08762680 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll
2009-11-03 13:26 - 2009-11-03 13:26 - 00053560 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll
2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll
2010-04-13 07:48 - 2009-06-22 13:40 - 00022328 _____ () C:\Program Files\TOSHIBA\Toshiba Assist\NotifyX.dll
2009-03-12 19:08 - 2009-03-12 19:08 - 00048640 _____ () C:\Program Files (x86)\Toshiba\PCDiag\NotifyPCD.dll
2009-07-25 15:38 - 2009-07-25 15:38 - 00017800 _____ () C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\NotifyTDC.dll
2009-10-13 10:00 - 2009-10-13 10:00 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2015-01-03 23:17 - 2015-01-03 23:17 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-02-05 17:44 - 2010-02-05 17:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2015-01-18 10:24 - 2015-01-18 10:24 - 02911744 _____ () C:\Program Files\AVAST Software\Avast\defs\15011701\algo.dll
2015-01-12 21:46 - 2015-01-12 21:46 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Administrateur (S-1-5-21-3275174362-358141482-1195275605-500 - Administrator - Disabled)
Invité (S-1-5-21-3275174362-358141482-1195275605-501 - Limited - Disabled)
Pierre (S-1-5-21-3275174362-358141482-1195275605-1000 - Administrator - Enabled) => C:\Users\Pierre
==================== Faulty Device Manager Devices =============
Name: ccnfd_1_10_0_5
Description: ccnfd_1_10_0_5
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ccnfd_1_10_0_5
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/18/2015 10:33:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante KtwUJdvL.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0xb14
Heure de début de l'application défaillante : 0xKtwUJdvL.exe0
Chemin d'accès de l'application défaillante : KtwUJdvL.exe1
Chemin d'accès du module défaillant: KtwUJdvL.exe2
ID de rapport : KtwUJdvL.exe3
Error: (01/17/2015 01:50:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante BOCpgtgswfE.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0xa94
Heure de début de l'application défaillante : 0xBOCpgtgswfE.exe0
Chemin d'accès de l'application défaillante : BOCpgtgswfE.exe1
Chemin d'accès du module défaillant: BOCpgtgswfE.exe2
ID de rapport : BOCpgtgswfE.exe3
Error: (01/17/2015 01:40:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante BOCpgtgswfE.exe, version : 1.0.0.0, horodatage : 0x547ebd99
Nom du module défaillant : KERNELBASE.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdbdf
Code d'exception : 0xc06d007e
Décalage d'erreur : 0x0000b727
ID du processus défaillant : 0x1be8
Heure de début de l'application défaillante : 0xBOCpgtgswfE.exe0
Chemin d'accès de l'application défaillante : BOCpgtgswfE.exe1
Chemin d'accès du module défaillant: BOCpgtgswfE.exe2
ID de rapport : BOCpgtgswfE.exe3
Error: (01/16/2015 00:40:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante explorer.exe, version : 6.1.7600.16450, horodatage : 0x4aeba271
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d'exception : 0xc0000005
Décalage d'erreur : 0x6ad6649e
ID du processus défaillant : 0x14e4
Heure de début de l'application défaillante : 0xexplorer.exe0
Chemin d'accès de l'application défaillante : explorer.exe1
Chemin d'accès du module défaillant: explorer.exe2
ID de rapport : explorer.exe3
Error: (01/13/2015 01:46:48 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )
Description: Échec de la récupération de la mise à jour automatique du certificat racine tiers à partir de : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crt> avec l'erreur : Cette opération s'est terminée car le délai d'attente a expiré.
.
Error: (01/13/2015 01:42:29 AM) (Source: MsiInstaller) (EventID: 11316) (User: Laocoon)
Description: Product: Software Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Software\Update\1.3.25.0\GoogleUpdateHelper.msi
Error: (01/13/2015 01:11:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l'application défaillante Uninstall.exe_unknown, version : 0.0.0.0, horodatage : 0x54af0d00
Nom du module défaillant : Uninstall.exe, version : 0.0.0.0, horodatage : 0x54af0d00
Code d'exception : 0xc0000005
Décalage d'erreur : 0x0000752f
ID du processus défaillant : 0x14d0
Heure de début de l'application défaillante : 0xUninstall.exe_unknown0
Chemin d'accès de l'application défaillante : Uninstall.exe_unknown1
Chemin d'accès du module défaillant: Uninstall.exe_unknown2
ID de rapport : Uninstall.exe_unknown3
Error: (01/09/2015 10:38:58 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
Error: (01/09/2015 10:31:12 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
Error: (01/09/2015 10:30:24 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.
System errors:
=============
Error: (01/18/2015 10:53:42 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger :
ccnfd_1_10_0_5
Error: (01/18/2015 10:53:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Word Proser 1.10.0.4 Client Service n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SU Service component n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service csrcc n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:53:20 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service 70F4EEDB-1367-4b4f-8247-3133551A7415 n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:24:12 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger :
ccnfd_1_10_0_5
Error: (01/18/2015 10:23:50 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Word Proser 1.10.0.4 Client Service n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:50 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SU Service component n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service csrcc n'a pas pu démarrer en raison de l'erreur :
%%2
Error: (01/18/2015 10:23:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service 70F4EEDB-1367-4b4f-8247-3133551A7415 n'a pas pu démarrer en raison de l'erreur :
%%2
Microsoft Office Sessions:
=========================
Error: (01/18/2015 10:33:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: KtwUJdvL.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b727b1401d03301df3ac69bC:\ProgramData\QmhkcqAXn\dat\KtwUJdvL.exeC:\Windows\syswow64\KERNELBASE.dll1e772ebe-9ef5-11e4-bf20-88ae1de89119
Error: (01/17/2015 01:50:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BOCpgtgswfE.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b727a9401d0325432076cb8C:\ProgramData\QmhkcqAXn\dat\BOCpgtgswfE.exeC:\Windows\syswow64\KERNELBASE.dll715428c9-9e47-11e4-bf25-88ae1de89119
Error: (01/17/2015 01:40:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: BOCpgtgswfE.exe1.0.0.0547ebd99KERNELBASE.dll6.1.7600.163854a5bdbdfc06d007e0000b7271be801d03252cc6e495fC:\ProgramData\QmhkcqAXn\dat\BOCpgtgswfE.exeC:\Windows\syswow64\KERNELBASE.dll0d5a30c1-9e46-11e4-bf25-88ae1de89119
Error: (01/16/2015 00:40:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: explorer.exe6.1.7600.164504aeba271unknown0.0.0.000000000c00000056ad6649e14e401d0311c9b68b971C:\Windows\SysWOW64\explorer.exeunknownda5a47a4-9d0f-11e4-b1c6-88ae1de89119
Error: (01/13/2015 01:46:48 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4.crtCette opération s'est terminée car le délai d'attente a expiré.
Error: (01/13/2015 01:42:29 AM) (Source: MsiInstaller) (EventID: 11316) (User: Laocoon)
Description: Product: Software Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\Software\Update\1.3.25.0\GoogleUpdateHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/13/2015 01:11:58 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Uninstall.exe_unknown0.0.0.054af0d00Uninstall.exe0.0.0.054af0d00c00000050000752f14d001d02ec589a137b7C:\Program Files (x86)\HQProVideo 1.6V09.01\Uninstall.exeC:\Program Files (x86)\HQProVideo 1.6V09.01\Uninstall.exec9c22de0-9ab8-11e4-9d55-88ae1de89119
Error: (01/09/2015 10:38:58 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2015 10:31:12 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (01/09/2015 10:30:24 PM) (Source: MsiInstaller) (EventID: 11309) (User: Laocoon)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)
==================== Memory info ===========================
Processor: Intel(R) Pentium(R) CPU P6100 @ 2.00GHz
Percentage of memory in use: 23%
Total physical RAM: 3954.67 MB
Available physical RAM: 3014.82 MB
Total Pagefile: 7907.49 MB
Available Pagefile: 6378.51 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:298.09 GB) (Free:270.69 GB) NTFS
Drive d: (Data) (Fixed) (Total:297.69 GB) (Free:191.98 GB) NTFS
Drive e: (<BORGIA_S3_DVD2>) (CDROM) (Total:7.59 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 06D86F1E)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=297.7 GB) - (Type=07 NTFS)
==================== End Of Log ============================
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
18 janv. 2015 à 15:24
18 janv. 2015 à 15:24
Salut,
AdwCleaner a été mis à jour, supprime-le, retélécharge-le ici : https://toolslib.net/downloads/viewdownload/1-adwcleaner/
Relance-le, rechercher et nettoyer
Poste le rapport
AdwCleaner a été mis à jour, supprime-le, retélécharge-le ici : https://toolslib.net/downloads/viewdownload/1-adwcleaner/
Relance-le, rechercher et nettoyer
Poste le rapport
# AdwCleaner v4.108 - Rapport créé le 18/01/2015 à 22:04:06
# Mis à jour le 17/01/2015 par Xplode
# Database : 2015-01-18.1 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43]
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ##########
# Mis à jour le 17/01/2015 par Xplode
# Database : 2015-01-18.1 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43]
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ##########
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
18 janv. 2015 à 22:44
18 janv. 2015 à 22:44
Mouais ...
AdwCleaner est passé à côté de plein de choses.
▶ /!\ Crée un point de restauration manuel avant d'appliquer le correctif - Tutoriel en images/!\
▶ Ouvre le Bloc-notes (Démarrer => Tous les programmes => Accessoires => Bloc-notes)
▶ Copie/colle la totalité du contenu de la zone Code ci-dessous dans le Bloc-notes
▶ Enregistre le fichier sur ton Bureau (au même endroit que FRST) sous le nom fixlist.txt
▶ Ferme toutes les applications, y compris ton navigateur
▶ Double-clique sur FRST.exe
/!\ Sous Vista, Windows 7 et 8, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
▶ Sur le menu principal, clique une seule fois sur Fix et patiente le temps de la correction
▶ L'outil va créer un rapport de correction Fixlog.txt. Poste ce rapport dans ta réponse.
▶ /!\ Ce script a été établi pour cet utilisateur, il ne doit, en aucun cas, être appliqué sur un autre système, au risque de provoquer de graves dysfonctionnement et endommager Windows /!\
AdwCleaner est passé à côté de plein de choses.
▶ /!\ Crée un point de restauration manuel avant d'appliquer le correctif - Tutoriel en images/!\
▶ Ouvre le Bloc-notes (Démarrer => Tous les programmes => Accessoires => Bloc-notes)
▶ Copie/colle la totalité du contenu de la zone Code ci-dessous dans le Bloc-notes
START
(Word Proser) C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe
(Small Island Development) C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [Selection Tools] => "C:\Users\Pierre\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
BHO: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff64.dll No File
BHO-x32: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff32.dll No File
FF Extension: Firefox improver - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack [2015-01-13]
FF HKLM\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3327155&octid=EB_ORIGINAL_CTID&ISID=MA7812575-B2D3-41A3-89B4-4481CD7E8FC4&SearchSource=55&CUI=&UM=8&UP=SP78175077-9C60-434D-8F5C-97616B4FF6CC&SSPV="
CHR Extension: (PlumoWeb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh [2015-01-05]
CHR Extension: (mghenlmbmjcpehccoangkdpagbcbkdpc) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2015-01-09]
CHR Extension: (pnnfemgpilpdaojpnkjdgfgbnnjojfik) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik [2015-01-13]
S2 c7522d84; c:\Program Files (x86)\Optimizer Pro 3.27\OptProMon.dll [2462800 2015-01-13] ()
R2 NykhXwKZNJ; C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe [2726256 2015-01-04] (Small Island Development)
R2 wpsvc_1.10.0.6; C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe [277584 2015-01-07] (Word Proser)
S2 70F4EEDB-1367-4b4f-8247-3133551A7415; "C:\Program Files\shopperz\grunt.exe" [X]
S2 csrcc; "C:\Program Files\shopperz\csrcc.exe" [X]
S2 serversu; C:\Users\Pierre\AppData\Roaming\SoftwareUpdater\SUsrv.exe [X]
S2 wpsvc_1.10.0.4; "C:\Program Files (x86)\WordProser_1.10.0.4\Service\wpsvc.exe" [X]
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 mwiynzm4ndy1yjz; C:\Windows\System32\drivers\mwiynzm4ndy1yjz.sys [50504 2015-01-05] (Windows Win 7 DDK provider)
R1 wpnfd_1_10_0_6; C:\Windows\System32\drivers\wpnfd_1_10_0_6.sys [58240 2015-01-07] (Word Proser)
S1 ccnfd_1_10_0_5; system32\drivers\ccnfd_1_10_0_5.sys [X]
2015-01-16 00:52 - 2015-01-16 00:52 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TVWizard
2015-01-16 00:35 - 2015-01-16 00:35 - 00003268 _____ () C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB}
2015-01-13 01:44 - 2015-01-13 01:44 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.27
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Firefox improver
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Software
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Program Files (x86)\Software
2015-01-13 01:18 - 2015-01-13 01:18 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-13 01:11 - 2015-01-13 01:14 - 00002199 _____ () C:\Users\Pierre\Desktop\chrome.lnk
2015-01-09 22:39 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90
2015-01-09 22:31 - 2015-01-12 20:31 - 00001336 _____ () C:\Windows\Tasks\SSF.job
2015-01-09 22:31 - 2015-01-09 22:31 - 00000000 ____D () C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929
2015-01-09 22:30 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03
2015-01-09 22:25 - 2015-01-09 22:25 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Apps\2.0
2015-01-09 22:18 - 2015-01-09 22:18 - 00003622 _____ () C:\Windows\System32\Tasks\gtaUpt
2015-01-09 22:18 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2015-01-09 22:17 - 2015-01-12 20:31 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-09 22:12 - 2015-01-09 22:12 - 00000000 ____D () C:\Program Files (x86)\WordProser_1.10.0.6
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ____D () C:\Windows\system32\appraiser
2015-01-05 22:50 - 2015-01-05 22:50 - 02009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 01522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 00000000 ____D () C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb
2015-01-05 20:56 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\2355320829
2015-01-05 20:18 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-05 20:06 - 2015-01-12 22:19 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-01-05 01:52 - 2015-01-05 01:52 - 00050504 _____ (Windows Win 7 DDK provider) C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys
2015-01-04 00:06 - 2015-01-12 22:20 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 00:01 - 2015-01-04 00:02 - 00000000 ____D () C:\ProgramData\QmhkcqAXn
2015-01-04 00:01 - 2015-01-04 00:01 - 01982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-03 23:35 - 2015-01-03 23:35 - 00000000 ____D () C:\Windows\OemDrv
end
▶ Enregistre le fichier sur ton Bureau (au même endroit que FRST) sous le nom fixlist.txt
▶ Ferme toutes les applications, y compris ton navigateur
▶ Double-clique sur FRST.exe
/!\ Sous Vista, Windows 7 et 8, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
▶ Sur le menu principal, clique une seule fois sur Fix et patiente le temps de la correction
▶ L'outil va créer un rapport de correction Fixlog.txt. Poste ce rapport dans ta réponse.
▶ /!\ Ce script a été établi pour cet utilisateur, il ne doit, en aucun cas, être appliqué sur un autre système, au risque de provoquer de graves dysfonctionnement et endommager Windows /!\
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-01-2015 03
Ran by Pierre at 2015-01-19 00:34:55 Run:1
Running from C:\Users\Pierre\Desktop
Loaded Profiles: Pierre (Available profiles: Pierre)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
# AdwCleaner v4.108 - Rapport créé le 18/01/2015 à 22:04:06
# Mis à jour le 17/01/2015 par Xplode
# Database : 2015-01-18.1 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43]
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ##########
*****************
# AdwCleaner v4.108 - Rapport créé le 18/01/2015 à 22:04:06 => Error: No automatic fix found for this entry.
# Mis à jour le 17/01/2015 par Xplode => Error: No automatic fix found for this entry.
# Database : 2015-01-18.1 [Live] => Error: No automatic fix found for this entry.
# Système d'exploitation : Windows 7 Home Premium (64 bits) => Error: No automatic fix found for this entry.
# Nom d'utilisateur : Pierre - LAOCOON => Error: No automatic fix found for this entry.
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe => Error: No automatic fix found for this entry.
# Option : Nettoyer => Error: No automatic fix found for this entry.
***** [ Services ] ***** => Error: No automatic fix found for this entry.
***** [ Fichiers / Dossiers ] ***** => Error: No automatic fix found for this entry.
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard => Error: No automatic fix found for this entry.
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal => Error: No automatic fix found for this entry.
***** [ Tâches planifiées ] ***** => Error: No automatic fix found for this entry.
***** [ Raccourcis ] ***** => Error: No automatic fix found for this entry.
***** [ Registre ] ***** => Error: No automatic fix found for this entry.
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => Error: No automatic fix found for this entry.
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} => Error: No automatic fix found for this entry.
***** [ Navigateurs ] ***** => Error: No automatic fix found for this entry.
-\\ Internet Explorer v8.0.7600.16385 => Error: No automatic fix found for this entry.
-\\ Mozilla Firefox v34.0.5 (x86 fr) => Error: No automatic fix found for this entry.
-\\ Google Chrome v39.0.2171.65 => Error: No automatic fix found for this entry.
-\\ Opera v26.0.1656.60 => Error: No automatic fix found for this entry.
************************* => Error: No automatic fix found for this entry.
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24] => Error: No automatic fix found for this entry.
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29] => Error: No automatic fix found for this entry.
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43] => Error: No automatic fix found for this entry.
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02] => Error: No automatic fix found for this entry.
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02] => Error: No automatic fix found for this entry.
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19] => Error: No automatic fix found for this entry.
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43] => Error: No automatic fix found for this entry.
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06] => Error: No automatic fix found for this entry.
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ########## => Error: No automatic fix found for this entry.
==== End of Fixlog 00:34:56 ====
Ran by Pierre at 2015-01-19 00:34:55 Run:1
Running from C:\Users\Pierre\Desktop
Loaded Profiles: Pierre (Available profiles: Pierre)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
# AdwCleaner v4.108 - Rapport créé le 18/01/2015 à 22:04:06
# Mis à jour le 17/01/2015 par Xplode
# Database : 2015-01-18.1 [Live]
# Système d'exploitation : Windows 7 Home Premium (64 bits)
# Nom d'utilisateur : Pierre - LAOCOON
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal
***** [ Tâches planifiées ] *****
***** [ Raccourcis ] *****
***** [ Registre ] *****
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
***** [ Navigateurs ] *****
-\\ Internet Explorer v8.0.7600.16385
-\\ Mozilla Firefox v34.0.5 (x86 fr)
-\\ Google Chrome v39.0.2171.65
-\\ Opera v26.0.1656.60
*************************
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24]
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29]
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43]
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02]
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02]
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19]
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43]
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ##########
*****************
# AdwCleaner v4.108 - Rapport créé le 18/01/2015 à 22:04:06 => Error: No automatic fix found for this entry.
# Mis à jour le 17/01/2015 par Xplode => Error: No automatic fix found for this entry.
# Database : 2015-01-18.1 [Live] => Error: No automatic fix found for this entry.
# Système d'exploitation : Windows 7 Home Premium (64 bits) => Error: No automatic fix found for this entry.
# Nom d'utilisateur : Pierre - LAOCOON => Error: No automatic fix found for this entry.
# Exécuté depuis : C:\Users\Pierre\Downloads\adwcleaner_4.108.exe => Error: No automatic fix found for this entry.
# Option : Nettoyer => Error: No automatic fix found for this entry.
***** [ Services ] ***** => Error: No automatic fix found for this entry.
***** [ Fichiers / Dossiers ] ***** => Error: No automatic fix found for this entry.
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\TVWizard => Error: No automatic fix found for this entry.
[!] Dossier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.boostsaves.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.boostsaves.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.re-markable00.re-markable.net_0.localstorage-journal => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage => Error: No automatic fix found for this entry.
Fichier Supprimé : C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.select-n-go00.select-n-go.com_0.localstorage-journal => Error: No automatic fix found for this entry.
***** [ Tâches planifiées ] ***** => Error: No automatic fix found for this entry.
***** [ Raccourcis ] ***** => Error: No automatic fix found for this entry.
***** [ Registre ] ***** => Error: No automatic fix found for this entry.
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => Error: No automatic fix found for this entry.
Clé Supprimée : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} => Error: No automatic fix found for this entry.
***** [ Navigateurs ] ***** => Error: No automatic fix found for this entry.
-\\ Internet Explorer v8.0.7600.16385 => Error: No automatic fix found for this entry.
-\\ Mozilla Firefox v34.0.5 (x86 fr) => Error: No automatic fix found for this entry.
-\\ Google Chrome v39.0.2171.65 => Error: No automatic fix found for this entry.
-\\ Opera v26.0.1656.60 => Error: No automatic fix found for this entry.
************************* => Error: No automatic fix found for this entry.
AdwCleaner[R0].txt - [24482 octets] - [05/01/2015 22:50:24] => Error: No automatic fix found for this entry.
AdwCleaner[R1].txt - [38948 octets] - [13/01/2015 01:47:29] => Error: No automatic fix found for this entry.
AdwCleaner[R2].txt - [3252 octets] - [16/01/2015 00:45:43] => Error: No automatic fix found for this entry.
AdwCleaner[R3].txt - [3292 octets] - [18/01/2015 21:59:02] => Error: No automatic fix found for this entry.
AdwCleaner[S0].txt - [23801 octets] - [05/01/2015 22:56:02] => Error: No automatic fix found for this entry.
AdwCleaner[S1].txt - [36600 octets] - [13/01/2015 01:54:19] => Error: No automatic fix found for this entry.
AdwCleaner[S2].txt - [3342 octets] - [16/01/2015 00:49:43] => Error: No automatic fix found for this entry.
AdwCleaner[S3].txt - [3237 octets] - [18/01/2015 22:04:06] => Error: No automatic fix found for this entry.
########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3297 octets] ########## => Error: No automatic fix found for this entry.
==== End of Fixlog 00:34:56 ====
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
19 janv. 2015 à 09:44
19 janv. 2015 à 09:44
mmmh, tu m'as fait quoi là ? lol
je t'ai pas demandé de copier/coller le rapport AdwCleaner dans un bloc note comme instructions à FRST :) relis bien
je t'ai pas demandé de copier/coller le rapport AdwCleaner dans un bloc note comme instructions à FRST :) relis bien
ah oui en effet je me suis trompé !
voici le vrai rapport fixlog :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-01-2015 03
Ran by Pierre at 2015-01-19 23:12:59 Run:2
Running from C:\Users\Pierre\Desktop
Loaded Profiles: Pierre (Available profiles: Pierre)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
START
(Word Proser) C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe
(Small Island Development) C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [Selection Tools] => "C:\Users\Pierre\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
BHO: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff64.dll No File
BHO-x32: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff32.dll No File
FF Extension: Firefox improver - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack [2015-01-13]
FF HKLM\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3327155&octid=EB_ORIGINAL_CTID&ISID=MA7812575-B2D3-41A3-89B4-4481CD7E8FC4&SearchSource=55&CUI=&UM=8&UP=SP78175077-9C60-434D-8F5C-97616B4FF6CC&SSPV="
CHR Extension: (PlumoWeb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh [2015-01-05]
CHR Extension: (mghenlmbmjcpehccoangkdpagbcbkdpc) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2015-01-09]
CHR Extension: (pnnfemgpilpdaojpnkjdgfgbnnjojfik) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik [2015-01-13]
S2 c7522d84; c:\Program Files (x86)\Optimizer Pro 3.27\OptProMon.dll [2462800 2015-01-13] ()
R2 NykhXwKZNJ; C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe [2726256 2015-01-04] (Small Island Development)
R2 wpsvc_1.10.0.6; C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe [277584 2015-01-07] (Word Proser)
S2 70F4EEDB-1367-4b4f-8247-3133551A7415; "C:\Program Files\shopperz\grunt.exe" [X]
S2 csrcc; "C:\Program Files\shopperz\csrcc.exe" [X]
S2 serversu; C:\Users\Pierre\AppData\Roaming\SoftwareUpdater\SUsrv.exe [X]
S2 wpsvc_1.10.0.4; "C:\Program Files (x86)\WordProser_1.10.0.4\Service\wpsvc.exe" [X]
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 mwiynzm4ndy1yjz; C:\Windows\System32\drivers\mwiynzm4ndy1yjz.sys [50504 2015-01-05] (Windows Win 7 DDK provider)
R1 wpnfd_1_10_0_6; C:\Windows\System32\drivers\wpnfd_1_10_0_6.sys [58240 2015-01-07] (Word Proser)
S1 ccnfd_1_10_0_5; system32\drivers\ccnfd_1_10_0_5.sys [X]
2015-01-16 00:52 - 2015-01-16 00:52 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TVWizard
2015-01-16 00:35 - 2015-01-16 00:35 - 00003268 _____ () C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB}
2015-01-13 01:44 - 2015-01-13 01:44 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.27
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Firefox improver
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Software
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Program Files (x86)\Software
2015-01-13 01:18 - 2015-01-13 01:18 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-13 01:11 - 2015-01-13 01:14 - 00002199 _____ () C:\Users\Pierre\Desktop\chrome.lnk
2015-01-09 22:39 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90
2015-01-09 22:31 - 2015-01-12 20:31 - 00001336 _____ () C:\Windows\Tasks\SSF.job
2015-01-09 22:31 - 2015-01-09 22:31 - 00000000 ____D () C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929
2015-01-09 22:30 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03
2015-01-09 22:25 - 2015-01-09 22:25 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Apps\2.0
2015-01-09 22:18 - 2015-01-09 22:18 - 00003622 _____ () C:\Windows\System32\Tasks\gtaUpt
2015-01-09 22:18 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2015-01-09 22:17 - 2015-01-12 20:31 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-09 22:12 - 2015-01-09 22:12 - 00000000 ____D () C:\Program Files (x86)\WordProser_1.10.0.6
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ____D () C:\Windows\system32\appraiser
2015-01-05 22:50 - 2015-01-05 22:50 - 02009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 01522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 00000000 ____D () C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb
2015-01-05 20:56 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\2355320829
2015-01-05 20:18 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-05 20:06 - 2015-01-12 22:19 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-01-05 01:52 - 2015-01-05 01:52 - 00050504 _____ (Windows Win 7 DDK provider) C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys
2015-01-04 00:06 - 2015-01-12 22:20 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 00:01 - 2015-01-04 00:02 - 00000000 ____D () C:\ProgramData\QmhkcqAXn
2015-01-04 00:01 - 2015-01-04 00:01 - 01982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-03 23:35 - 2015-01-03 23:35 - 00000000 ____D () C:\Windows\OemDrv
end
*****************
[2352] C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe => Process closed successfully.
[2544] C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe => Process closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\shopperz => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\shopperz64 => value deleted successfully.
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Selection Tools => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKCR\CLSID\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack => Moved successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\{5081D2D4-1637-404c-B74F-50526718257D} => value deleted successfully.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{5081D2D4-1637-404c-B74F-50526718257D} => value deleted successfully.
Chrome StartupUrls deleted successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh => Moved successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc => Moved successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik => Moved successfully.
c7522d84 => Service deleted successfully.
NykhXwKZNJ => Service deleted successfully.
wpsvc_1.10.0.6 => Service deleted successfully.
70F4EEDB-1367-4b4f-8247-3133551A7415 => Service deleted successfully.
csrcc => Service deleted successfully.
serversu => Service deleted successfully.
wpsvc_1.10.0.4 => Service deleted successfully.
cherimoya => Unable to stop service
cherimoya => Service deleted successfully.
mwiynzm4ndy1yjz => Service stopped successfully.
mwiynzm4ndy1yjz => Service deleted successfully.
wpnfd_1_10_0_6 => Unable to stop service
wpnfd_1_10_0_6 => Service deleted successfully.
ccnfd_1_10_0_5 => Service deleted successfully.
C:\Users\Pierre\AppData\Local\TVWizard => Moved successfully.
C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB} => Moved successfully.
C:\Program Files (x86)\Optimizer Pro 3.27 => Moved successfully.
C:\Users\Pierre\AppData\Roaming\Firefox improver => Moved successfully.
C:\Users\Pierre\AppData\Local\Software => Moved successfully.
C:\Program Files (x86)\Software => Moved successfully.
C:\Program Files (x86)\Setup Support for SearchProtect => Moved successfully.
C:\Users\Pierre\Desktop\chrome.lnk => Moved successfully.
C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90 => Moved successfully.
C:\Windows\Tasks\SSF.job => Moved successfully.
C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929 => Moved successfully.
C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03 => Moved successfully.
C:\Users\Pierre\AppData\Local\Apps\2.0 => Moved successfully.
C:\Windows\System32\Tasks\gtaUpt => Moved successfully.
C:\Windows\system32\Drivers\cherimoya.sys => Moved successfully.
C:\Users\Public\Temp => Moved successfully.
C:\Program Files (x86)\WordProser_1.10.0.6 => Moved successfully.
C:\Windows\system32\CompatTel => Moved successfully.
C:\Windows\system32\appraiser => Moved successfully.
C:\Users\Pierre\AppData\Roaming\MQWF.exe => Moved successfully.
C:\Users\Pierre\AppData\Roaming\UO.exe => Moved successfully.
C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb => Moved successfully.
C:\ProgramData\2355320829 => Moved successfully.
C:\ProgramData\1887373585 => Moved successfully.
C:\Program Files (x86)\Smwyyntm1ndi1zdz => Moved successfully.
C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys => Moved successfully.
C:\Program Files (x86)\Umtayyznhndq1ntz => Moved successfully.
C:\ProgramData\QmhkcqAXn => Moved successfully.
C:\Users\Pierre\AppData\Roaming\CYQSW.exe => Moved successfully.
C:\Windows\OemDrv => Moved successfully.
The system needed a reboot.
==== End of Fixlog 23:13:18 ====
voici le vrai rapport fixlog :
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-01-2015 03
Ran by Pierre at 2015-01-19 23:12:59 Run:2
Running from C:\Users\Pierre\Desktop
Loaded Profiles: Pierre (Available profiles: Pierre)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
START
(Word Proser) C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe
(Small Island Development) C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\...\Run: [Selection Tools] => "C:\Users\Pierre\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup
BHO: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff64.dll No File
BHO-x32: shopperz -> {5081D2D4-1637-404c-B74F-50526718257D} -> C:\Program Files\shopperz\mseff32.dll No File
FF Extension: Firefox improver - C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack [2015-01-13]
FF HKLM\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{5081D2D4-1637-404c-B74F-50526718257D}] - C:\Program Files\shopperz\Firefox
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3327155&octid=EB_ORIGINAL_CTID&ISID=MA7812575-B2D3-41A3-89B4-4481CD7E8FC4&SearchSource=55&CUI=&UM=8&UP=SP78175077-9C60-434D-8F5C-97616B4FF6CC&SSPV="
CHR Extension: (PlumoWeb) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh [2015-01-05]
CHR Extension: (mghenlmbmjcpehccoangkdpagbcbkdpc) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2015-01-09]
CHR Extension: (pnnfemgpilpdaojpnkjdgfgbnnjojfik) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik [2015-01-13]
S2 c7522d84; c:\Program Files (x86)\Optimizer Pro 3.27\OptProMon.dll [2462800 2015-01-13] ()
R2 NykhXwKZNJ; C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe [2726256 2015-01-04] (Small Island Development)
R2 wpsvc_1.10.0.6; C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe [277584 2015-01-07] (Word Proser)
S2 70F4EEDB-1367-4b4f-8247-3133551A7415; "C:\Program Files\shopperz\grunt.exe" [X]
S2 csrcc; "C:\Program Files\shopperz\csrcc.exe" [X]
S2 serversu; C:\Users\Pierre\AppData\Roaming\SoftwareUpdater\SUsrv.exe [X]
S2 wpsvc_1.10.0.4; "C:\Program Files (x86)\WordProser_1.10.0.4\Service\wpsvc.exe" [X]
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R1 mwiynzm4ndy1yjz; C:\Windows\System32\drivers\mwiynzm4ndy1yjz.sys [50504 2015-01-05] (Windows Win 7 DDK provider)
R1 wpnfd_1_10_0_6; C:\Windows\System32\drivers\wpnfd_1_10_0_6.sys [58240 2015-01-07] (Word Proser)
S1 ccnfd_1_10_0_5; system32\drivers\ccnfd_1_10_0_5.sys [X]
2015-01-16 00:52 - 2015-01-16 00:52 - 00000000 ____D () C:\Users\Pierre\AppData\Local\TVWizard
2015-01-16 00:35 - 2015-01-16 00:35 - 00003268 _____ () C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB}
2015-01-13 01:44 - 2015-01-13 01:44 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.27
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Firefox improver
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Software
2015-01-13 01:42 - 2015-01-13 01:42 - 00000000 ____D () C:\Program Files (x86)\Software
2015-01-13 01:18 - 2015-01-13 01:18 - 00000000 ____D () C:\Program Files (x86)\Setup Support for SearchProtect
2015-01-13 01:11 - 2015-01-13 01:14 - 00002199 _____ () C:\Users\Pierre\Desktop\chrome.lnk
2015-01-09 22:39 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90
2015-01-09 22:31 - 2015-01-12 20:31 - 00001336 _____ () C:\Windows\Tasks\SSF.job
2015-01-09 22:31 - 2015-01-09 22:31 - 00000000 ____D () C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929
2015-01-09 22:30 - 2015-01-09 22:39 - 00000000 ____D () C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03
2015-01-09 22:25 - 2015-01-09 22:25 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Apps\2.0
2015-01-09 22:18 - 2015-01-09 22:18 - 00003622 _____ () C:\Windows\System32\Tasks\gtaUpt
2015-01-09 22:18 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
2015-01-09 22:17 - 2015-01-12 20:31 - 00000000 ___HD () C:\Users\Public\Temp
2015-01-09 22:12 - 2015-01-09 22:12 - 00000000 ____D () C:\Program Files (x86)\WordProser_1.10.0.6
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-01-05 23:51 - 2015-01-05 23:51 - 00000000 ____D () C:\Windows\system32\appraiser
2015-01-05 22:50 - 2015-01-05 22:50 - 02009576 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\MQWF.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 01522664 _____ (HQ-VideoV05.01) C:\Users\Pierre\AppData\Roaming\UO.exe
2015-01-05 22:50 - 2015-01-05 22:50 - 00000000 ____D () C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb
2015-01-05 20:56 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\2355320829
2015-01-05 20:18 - 2015-01-05 20:56 - 00000000 ____D () C:\ProgramData\1887373585
2015-01-05 20:06 - 2015-01-12 22:19 - 00000000 ____D () C:\Program Files (x86)\Smwyyntm1ndi1zdz
2015-01-05 01:52 - 2015-01-05 01:52 - 00050504 _____ (Windows Win 7 DDK provider) C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys
2015-01-04 00:06 - 2015-01-12 22:20 - 00000000 ____D () C:\Program Files (x86)\Umtayyznhndq1ntz
2015-01-04 00:01 - 2015-01-04 00:02 - 00000000 ____D () C:\ProgramData\QmhkcqAXn
2015-01-04 00:01 - 2015-01-04 00:01 - 01982440 _____ (HQProVideoV03.01) C:\Users\Pierre\AppData\Roaming\CYQSW.exe
2015-01-03 23:35 - 2015-01-03 23:35 - 00000000 ____D () C:\Windows\OemDrv
end
*****************
[2352] C:\Program Files (x86)\WordProser_1.10.0.6\Service\wpsvc.exe => Process closed successfully.
[2544] C:\ProgramData\QmhkcqAXn\NykhXwKZNJ.exe => Process closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\shopperz => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\shopperz64 => value deleted successfully.
HKU\S-1-5-21-3275174362-358141482-1195275605-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Selection Tools => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKCR\CLSID\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{5081D2D4-1637-404c-B74F-50526718257D}" => Key deleted successfully.
C:\Users\Pierre\AppData\Roaming\Mozilla\Firefox\Profiles\vdikkjbf.default\Extensions\jid1-U7omKQ6kQfxMaQ@jetpack => Moved successfully.
HKLM\Software\Mozilla\Firefox\Extensions\\{5081D2D4-1637-404c-B74F-50526718257D} => value deleted successfully.
HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{5081D2D4-1637-404c-B74F-50526718257D} => value deleted successfully.
Chrome StartupUrls deleted successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjbbkpldlhcmidldjaocedgehohjipjh => Moved successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc => Moved successfully.
C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnnfemgpilpdaojpnkjdgfgbnnjojfik => Moved successfully.
c7522d84 => Service deleted successfully.
NykhXwKZNJ => Service deleted successfully.
wpsvc_1.10.0.6 => Service deleted successfully.
70F4EEDB-1367-4b4f-8247-3133551A7415 => Service deleted successfully.
csrcc => Service deleted successfully.
serversu => Service deleted successfully.
wpsvc_1.10.0.4 => Service deleted successfully.
cherimoya => Unable to stop service
cherimoya => Service deleted successfully.
mwiynzm4ndy1yjz => Service stopped successfully.
mwiynzm4ndy1yjz => Service deleted successfully.
wpnfd_1_10_0_6 => Unable to stop service
wpnfd_1_10_0_6 => Service deleted successfully.
ccnfd_1_10_0_5 => Service deleted successfully.
C:\Users\Pierre\AppData\Local\TVWizard => Moved successfully.
C:\Windows\System32\Tasks\{2ACC0E79-3B9D-46B3-AEED-25D7FAD84EEB} => Moved successfully.
C:\Program Files (x86)\Optimizer Pro 3.27 => Moved successfully.
C:\Users\Pierre\AppData\Roaming\Firefox improver => Moved successfully.
C:\Users\Pierre\AppData\Local\Software => Moved successfully.
C:\Program Files (x86)\Software => Moved successfully.
C:\Program Files (x86)\Setup Support for SearchProtect => Moved successfully.
C:\Users\Pierre\Desktop\chrome.lnk => Moved successfully.
C:\Program Files (x86)\352f245e-413c-408d-bba5-816cd02b7c90 => Moved successfully.
C:\Windows\Tasks\SSF.job => Moved successfully.
C:\Program Files (x86)\3fc59a7d-4fca-4522-8054-90fddf7ad929 => Moved successfully.
C:\Program Files (x86)\31c724dd-7ad0-4961-b503-11f1fdc23d03 => Moved successfully.
C:\Users\Pierre\AppData\Local\Apps\2.0 => Moved successfully.
C:\Windows\System32\Tasks\gtaUpt => Moved successfully.
C:\Windows\system32\Drivers\cherimoya.sys => Moved successfully.
C:\Users\Public\Temp => Moved successfully.
C:\Program Files (x86)\WordProser_1.10.0.6 => Moved successfully.
C:\Windows\system32\CompatTel => Moved successfully.
C:\Windows\system32\appraiser => Moved successfully.
C:\Users\Pierre\AppData\Roaming\MQWF.exe => Moved successfully.
C:\Users\Pierre\AppData\Roaming\UO.exe => Moved successfully.
C:\Program Files (x86)\03ae9504-0df5-4807-83d2-21c1173140cb => Moved successfully.
C:\ProgramData\2355320829 => Moved successfully.
C:\ProgramData\1887373585 => Moved successfully.
C:\Program Files (x86)\Smwyyntm1ndi1zdz => Moved successfully.
C:\Windows\system32\Drivers\mwiynzm4ndy1yjz.sys => Moved successfully.
C:\Program Files (x86)\Umtayyznhndq1ntz => Moved successfully.
C:\ProgramData\QmhkcqAXn => Moved successfully.
C:\Users\Pierre\AppData\Roaming\CYQSW.exe => Moved successfully.
C:\Windows\OemDrv => Moved successfully.
The system needed a reboot.
==== End of Fixlog 23:13:18 ====
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
20 janv. 2015 à 11:40
20 janv. 2015 à 11:40
Bien !
Alors ça doit aller mieux non ?
Alors ça doit aller mieux non ?
ça va mieux mais j'ai toujours des fenêtres publicitaires qui apparaissent avec marqué "ad by info", parfois même des onglets ou des fenêtres supplémentaires qui s'ouvrent tout seul. Mais cependant c'est beaucoup moins systématique qu'avant, même si ça ralentit toujours pas mal...
Merci beaucoup en tout cas ! Je ne sais pas s'il y a encore à faire...
Merci beaucoup en tout cas ! Je ne sais pas s'il y a encore à faire...
juju666
Messages postés
35446
Date d'inscription
jeudi 18 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
21 avril 2024
4 796
21 janv. 2015 à 12:00
21 janv. 2015 à 12:00
Salut,
Oui c'est pas fini alors si tu as toujours des problèmes de pubs ...
reparamètres tes navigateurs WEB :
* Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
* Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
* Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=
Oui c'est pas fini alors si tu as toujours des problèmes de pubs ...
reparamètres tes navigateurs WEB :
* Internet Explorer et modules complémentaires / moteurs de recherche : https://forum.malekal.com/viewtopic.php?t=41399&start=
* Firefox : https://www.malekal.com/reparer-firefox/?t=36057&start=
* Google Chrome : https://www.malekal.com/reparer-google-chrome/?t=35837&start=