windows.google Javascript redirect

Started by p.steichen, October 02, 2014, 10:48:06 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

p.steichen

Hello,
Since 2 days, when I g to a web site, a page appears with "windows.google Javascript redirect" before the site appears. After that, the navigatiojn is very slow.

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17280
Run by Patrick at 10:56:26 on 2014-10-02
Microsoft Windows 7 Édition Familiale Premium   6.1.7601.1.1252.33.1036.18.4023.1669 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus *Enabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\SysWOW64\ANIWConnService.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
C:\Windows\system32\dgdersvc.exe
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Program Files (x86)\PDF Architect\HelperService.exe
C:\Program Files (x86)\PDF Architect\ConversionService.exe
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\OEM\USBDECTION\USBS3S4Detection.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Search Extensions\Client.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe
C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Users\Patrick\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\CCleaner\CCleaner64.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
uSearch Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
uSearch Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
mStart Page = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
mSearch Bar = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
mSearch Page = hxxps://fr.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
uProxyServer = hxxp=127.0.0.1:49292;https=127.0.0.1:49292
uProxyOverride = <-loopback>
uSearchAssistant = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - <orphaned>
uURLSearchHooks: {b9b97401-98e1-4942-930d-c36652dab7f2} - <orphaned>
uURLSearchHooks: {795828a9-f271-43a8-8536-4484bb991d3d} - <orphaned>
mURLSearchHooks: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - <orphaned>
mURLSearchHooks: {b9b97401-98e1-4942-930d-c36652dab7f2} - <orphaned>
mURLSearchHooks: {795828a9-f271-43a8-8536-4484bb991d3d} - <orphaned>
BHO: PDF Architect Helper: {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
BHO: {474597C5-AB09-49d6-A4D5-2E8D7341384E} - <orphaned>
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Programme d'aide de l'Assistant de connexion Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: LastPass Vault: {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: LastPass Toolbar: {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll
TB: PDF Architect Toolbar: {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [EPSON SX110 Series] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S65B5.tmp" /EF "HKCU"
uRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
uRun: [EPSON SX110 Series (Copie 2)] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S3C25.tmp" /EF "HKCU"
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Browser Infrastructure Helper] C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe startup
uRun: [CCleaner Monitoring] "C:\Program Files (x86)\CCleaner\CCleaner64.exe" /MONITOR
mRun: [ANIWZCS2Service] C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [Browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
dRun: [EPSON SX110 Series (Copie 1)] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S2C2E.tmp" /EF "HKCU"
StartupFolder: C:\Users\Patrick\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Patrick\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\INSTAL~2.LNK - C:\Program Files (x86)\Common Files\lpuninstall.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\INSTAL~1.LNK - C:\Program Files (x86)\Common Files\lpuninstall.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - C:\Users\Patrick\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: LastPass - C:\Users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=lastpass
IE: Rechercher sur le Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
IE: Remplissage de Formulaire LastPass - C:\Users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=fillforms
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {43699cd0-e34f-11de-8a39-0800200c9a66} - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} - hxxp://kitchenplanner.ikea.com/fr/Core/Player/2020PlayerAX_Win32.cab
DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68} - hxxp://picasaweb.google.com/s/v/66.36/uploader2.cab
DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} - hxxp://www.sibelius.com/download/software/win/ActiveXPlugin.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 212.27.40.240 212.27.40.241
TCP: Interfaces\{046D4512-46DA-4080-A2EB-32C6CF58B79F} : DHCPNameServer = 212.27.40.240 212.27.40.241
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: {474597C5-AB09-49d6-A4D5-2E8D7341384E} - <orphaned>
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\
FF - component: C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\FirefoxExtension\components\DataMngrHlpFF3.dll
FF - component: C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
FF - component: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\extensions\ffxtlbr@babylon.com\components\FFHst.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll
FF - plugin: C:\Program Files (x86)\Canon\Uploader for CANON iMAGE GATEWAY Plugin\npUploaderForCiG.dll
FF - plugin: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt\plugins\NPPDFArchitectPreviewerPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdisFlt;Avast! Firewall Driver;C:\Windows\System32\drivers\aswNdisFlt.sys [2014-7-6 448400]
R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2014-1-13 65776]
R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2014-1-13 224896]
R1 anodlwf;ANOD Network Security Filter driver;C:\Windows\System32\drivers\anodlwfx.sys [2010-9-13 15872]
R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2014-1-13 28184]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswsnx.sys [2014-1-13 1041168]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswsp.sys [2014-1-13 427360]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-3 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-3 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-3 60464]
R2 ANIWConnService;ANIWConn Service;C:\Windows\System32\ANIWConnService.exe --> C:\Windows\System32\ANIWConnService.exe [?]
R2 aswHwid;avast! HardwareID;C:\Windows\System32\drivers\aswHwid.sys [2014-4-29 29208]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2014-1-13 79184]
R2 aswStm;aswStm;C:\Windows\System32\drivers\aswstm.sys [2014-1-13 92008]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-7-6 50344]
R2 avast! Firewall;avast! Firewall;C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-7-6 106488]
R2 c2cautoupdatesvc;Skype Click to Call Updater;C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-7-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service;C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-7-14 1767520]
R2 dgdersvc;Device Error Recovery Service;C:\Windows\System32\dgdersvc.exe [2010-7-30 119632]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-8-28 1150496]
R3 dgderdrv;dgderdrv;C:\Windows\System32\drivers\dgderdrv.sys [2010-7-30 20552]
R3 hxctlflt;hxctlflt;C:\Windows\System32\drivers\hxctlflt.sys [2009-2-8 111104]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-3-20 346144]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-9-10 111616]
S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [2012-9-5 234776]
S3 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [2010-2-1 305520]
S3 TFsExDisk;TFsExDisk;C:\Windows\System32\drivers\TFsExDisk.sys [2011-11-26 16392]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-24 59392]
.
=============== Created Last 30 ================
.
2014-10-02 08:54:02   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0D91C792-256E-409D-8C91-DB7D9E6AAED4}
2014-10-02 08:53:59   --------   d-----w-   C:\Users\Patrick\AppData\Local\{35F5AD8E-FB2D-4B0B-86C0-87EF41D5F533}
2014-10-02 07:01:38   75888   ----a-w-   C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E26A429E-8933-493C-812F-6345273ED686}\offreg.dll
2014-10-01 20:53:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{FDD4CD72-3348-4B85-934F-BEDDCF110614}
2014-10-01 08:53:41   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D285E0CC-32E9-40E4-B4F6-1E65B3F2D371}
2014-10-01 08:53:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{3F9FCEDB-A13E-4DF8-B434-E5CB2F3F647A}
2014-10-01 05:43:24   519680   ----a-w-   C:\Windows\SysWow64\qdvd.dll
2014-10-01 05:43:24   371712   ----a-w-   C:\Windows\System32\qdvd.dll
2014-09-30 08:53:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{22508127-11D4-42DB-B8EA-3A1B6FE58424}
2014-09-30 08:53:22   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D1BB2971-47F6-4331-83C0-FDE1476E3F0E}
2014-09-30 06:24:20   11578928   ----a-w-   C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E26A429E-8933-493C-812F-6345273ED686}\mpengine.dll
2014-09-29 18:06:31   --------   d-----w-   C:\Program Files (x86)\MP3 Converter 1.9
2014-09-29 18:03:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\LPT
2014-09-29 18:03:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\Smartbar
2014-09-29 18:02:16   --------   d-----w-   C:\Users\Patrick\AppData\Roaming\VOPackage
2014-09-29 18:00:31   --------   d-----w-   C:\Program Files (x86)\Search Extensions
2014-09-29 08:51:33   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C06D0FDE-C673-4E6A-AA3F-B0133798C547}
2014-09-29 08:51:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{CADFD25A-9440-4AAA-9966-85803C8E4DC8}
2014-09-28 20:50:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0A7E98B4-FE73-4296-A27C-ACD160E9F5C1}
2014-09-28 08:50:45   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6737A63F-AF82-4F2A-9693-CBAD4A958CC6}
2014-09-27 08:48:46   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D3C07C83-BF54-4996-86CA-C64C2D2EEE84}
2014-09-27 08:48:35   --------   d-----w-   C:\Users\Patrick\AppData\Local\{896F9E16-A900-4D72-A58A-A129F2E0736D}
2014-09-26 20:46:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1A59F7D6-5EAA-442E-AA75-8AEA92125B5F}
2014-09-26 08:45:07   --------   d-----w-   C:\Users\Patrick\AppData\Local\{93DE3265-8F74-48A0-AAC8-71B9B4345C7D}
2014-09-26 08:44:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\{16E8AA86-3042-48CA-91EE-E3EC978A8874}
2014-09-25 20:43:00   --------   d-----w-   C:\Users\Patrick\AppData\Local\{16F41849-6E01-4109-9984-3476BAE47E9C}
2014-09-25 08:42:48   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1E192FC1-A836-4BB2-A200-C7BB39D34F19}
2014-09-25 08:42:37   --------   d-----w-   C:\Users\Patrick\AppData\Local\{BD926660-3530-4185-919D-7BE6AB6D0A7D}
2014-09-24 20:40:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1CA317BE-9842-4892-A375-A66B56A5D431}
2014-09-24 08:39:08   --------   d-----w-   C:\Users\Patrick\AppData\Local\{567E1765-B481-416C-AF45-F69BFC87FCB4}
2014-09-24 08:38:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{03288DF0-2ABD-4E26-BADD-B1F292BCCD26}
2014-09-24 05:42:08   2048   ----a-w-   C:\Windows\SysWow64\tzres.dll
2014-09-24 05:42:08   2048   ----a-w-   C:\Windows\System32\tzres.dll
2014-09-23 20:37:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{DC523C2E-50A0-48D2-9B46-1D203BE3FEB8}
2014-09-23 08:36:19   --------   d-----w-   C:\Users\Patrick\AppData\Local\{AAC3D3C6-C9C7-4986-9FE4-F2C44D7D7B42}
2014-09-23 08:36:09   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D08434E8-DB63-47E0-8D36-2204E7630643}
2014-09-22 20:35:01   --------   d-----w-   C:\Users\Patrick\AppData\Local\{836C128B-13C7-4790-9DE9-41B422C0467F}
2014-09-22 08:34:48   --------   d-----w-   C:\Users\Patrick\AppData\Local\{8ED776C2-FFC2-49BE-8D11-14803212FBDD}
2014-09-22 08:34:37   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6110C86B-17D5-464E-BDC6-15B1F60B43B3}
2014-09-21 08:32:13   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2E3A5BA1-BD38-4182-A78F-9D786126CAAD}
2014-09-20 19:43:54   --------   d-----w-   C:\Users\Patrick\AppData\Local\{94C98DDE-743A-49BD-9261-2633AF311AB0}
2014-09-20 19:43:32   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1AB770DD-7851-4474-8273-2466F7B779B5}
2014-09-20 07:41:47   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A1482CD6-FA88-47AC-B748-9F458A52F70F}
2014-09-20 07:41:36   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C5B2173D-96B3-4745-A325-839A15792CE9}
2014-09-19 19:39:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{4FA62440-E727-4FB2-A5C1-89CE8D59C697}
2014-09-19 07:37:13   --------   d-----w-   C:\Users\Patrick\AppData\Local\{F076A8E3-D7B8-4158-A3C2-D040B53452C2}
2014-09-18 06:28:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C2E2275A-811F-4AFE-8432-D21F06856DC9}
2014-09-17 06:11:22   --------   d-----w-   C:\Users\Patrick\AppData\Local\{9888D3C1-6E8A-4DCC-9B6C-92BB4D5E4988}
2014-09-16 05:16:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7C2EB1F8-419A-44F8-B285-82B0185D7013}
2014-09-15 05:09:21   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2C1C4DB6-AE70-4E07-B155-EF4E0D915A8E}
2014-09-14 18:21:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7AB075C4-3B58-45CD-9C89-BA3BD377761A}
2014-09-14 06:16:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{68022641-156E-408C-A806-71539D7A1F48}
2014-09-13 08:19:55   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7E916A1D-A37D-4206-BC4D-F98A83434B99}
2014-09-13 08:19:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B991D3B8-9F3E-491F-B940-D3779F75B958}
2014-09-12 08:21:27   --------   d-----w-   C:\Users\Patrick\AppData\Local\{E777C1E3-243D-4408-AC62-280D41973FFA}
2014-09-12 08:17:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{101D5A2F-60DA-438C-9EAE-4DC6092E92C4}
2014-09-11 18:05:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B62FF71D-3E96-4DB9-BB69-90CA373446EA}
2014-09-11 06:04:19   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C2C2B806-627A-49BE-8E4B-B1CEFABF4514}
2014-09-10 21:43:39   2777088   ----a-w-   C:\Windows\System32\msmpeg2vdec.dll
2014-09-10 21:43:38   2285056   ----a-w-   C:\Windows\SysWow64\msmpeg2vdec.dll
2014-09-10 17:41:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\{4DEF382E-85CB-4DBE-AFC5-DB55BE159A9C}
2014-09-10 05:40:25   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B7672682-D262-450C-9BF6-1D5F8DB7EF01}
2014-09-10 05:40:15   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D8FE1C6A-45A5-4775-9370-17F6B2D8AB5D}
2014-09-10 05:09:05   1031168   ----a-w-   C:\Windows\System32\TSWorkspace.dll
2014-09-10 05:09:04   793600   ----a-w-   C:\Windows\SysWow64\TSWorkspace.dll
2014-09-10 05:08:51   2565120   ----a-w-   C:\Windows\System32\d3d10warp.dll
2014-09-10 05:08:51   1987584   ----a-w-   C:\Windows\SysWow64\d3d10warp.dll
2014-09-10 05:08:41   96768   ----a-w-   C:\Windows\SysWow64\sspicli.dll
2014-09-10 05:08:41   728064   ----a-w-   C:\Windows\System32\kerberos.dll
2014-09-10 05:08:41   550912   ----a-w-   C:\Windows\SysWow64\kerberos.dll
2014-09-10 05:08:41   22016   ----a-w-   C:\Windows\SysWow64\secur32.dll
2014-09-10 05:08:41   1460736   ----a-w-   C:\Windows\System32\lsasrv.dll
2014-09-10 05:08:33   578048   ----a-w-   C:\Windows\System32\aepdu.dll
2014-09-10 05:08:32   424448   ----a-w-   C:\Windows\System32\aeinv.dll
2014-09-09 05:38:49   --------   d-----w-   C:\Users\Patrick\AppData\Local\{5725FE45-3422-42C2-AFCC-5220603226AF}
2014-09-08 18:38:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B227319A-271D-4075-8745-784400D78013}
2014-09-08 18:34:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0ECE6CEC-B217-4733-9ECE-08A905BB8DED}
2014-09-08 06:33:06   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2FD20CD7-97FE-404E-A7F7-1FE5810681CE}
2014-09-07 06:30:26   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A3E40F19-B762-4ABC-9AD4-1BC22BA80991}
2014-09-06 18:28:30   --------   d-----w-   C:\Users\Patrick\AppData\Local\{59F29D44-9D39-4293-9F8F-6012CCC74346}
2014-09-06 06:26:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\{EBF252BD-5317-472B-A3A6-A55B496A52D7}
2014-09-06 06:26:45   --------   d-----w-   C:\Users\Patrick\AppData\Local\{470D67F4-8087-4068-B987-0E74A55438DE}
2014-09-05 06:23:16   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1F1FA677-97FB-4548-93A1-402AE8BA14CA}
2014-09-05 06:23:05   --------   d-----w-   C:\Users\Patrick\AppData\Local\{FBAD29F6-1807-42A9-A120-E904E70A7B54}
2014-09-04 18:21:09   --------   d-----w-   C:\Users\Patrick\AppData\Local\{636C4AA4-EFFC-4037-A3E3-16CD84C5053A}
2014-09-04 12:50:16   188304   ----a-w-   C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
2014-09-04 06:18:59   --------   d-----w-   C:\Users\Patrick\AppData\Local\{9D7CE8BB-414B-4035-8805-E25CA678D389}
2014-09-03 05:19:20   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A91C9989-AC95-4C5B-B643-79E8E406F506}
2014-09-02 09:47:04   --------   d-----w-   C:\Users\Patrick\AppData\Local\{52EFA216-84B3-4187-90D8-87172E6E1AC0}
2014-09-02 09:46:53   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6988A472-8C9C-41A1-B1E0-0EE80C49E47C}
.
==================== Find3M  ====================
.
2014-09-23 18:40:10   71344   ----a-w-   C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-23 18:40:10   701104   ----a-w-   C:\Windows\SysWow64\FlashPlayerApp.exe
2014-09-15 07:06:02   278152   ------w-   C:\Windows\System32\MpSigStub.exe
2014-08-23 02:07:00   404480   ----a-w-   C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55   311808   ----a-w-   C:\Windows\SysWow64\gdi32.dll
2014-08-23 00:59:01   3163648   ----a-w-   C:\Windows\System32\win32k.sys
2014-08-18 22:29:49   2724864   ----a-w-   C:\Windows\System32\mshtml.tlb
2014-08-18 22:29:35   4096   ----a-w-   C:\Windows\System32\ieetwcollectorres.dll
2014-08-18 22:19:53   5833728   ----a-w-   C:\Windows\System32\jscript9.dll
2014-08-18 22:15:34   547328   ----a-w-   C:\Windows\System32\vbscript.dll
2014-08-18 22:15:09   66048   ----a-w-   C:\Windows\System32\iesetup.dll
2014-08-18 22:14:38   48640   ----a-w-   C:\Windows\System32\ieetwproxystub.dll
2014-08-18 22:14:10   83968   ----a-w-   C:\Windows\System32\MshtmlDac.dll
2014-08-18 22:08:55   4232704   ----a-w-   C:\Windows\SysWow64\jscript9.dll
2014-08-18 22:03:47   139264   ----a-w-   C:\Windows\System32\ieUnatt.exe
2014-08-18 22:03:37   111616   ----a-w-   C:\Windows\System32\ieetwcollector.exe
2014-08-18 22:03:01   758272   ----a-w-   C:\Windows\System32\jscript9diag.dll
2014-08-18 21:57:44   2724864   ----a-w-   C:\Windows\SysWow64\mshtml.tlb
2014-08-18 21:56:17   940032   ----a-w-   C:\Windows\System32\MsSpellCheckingFacility.exe
2014-08-18 21:46:26   454656   ----a-w-   C:\Windows\SysWow64\vbscript.dll
2014-08-18 21:45:23   61952   ----a-w-   C:\Windows\SysWow64\iesetup.dll
2014-08-18 21:45:12   72704   ----a-w-   C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-08-18 21:44:44   51200   ----a-w-   C:\Windows\SysWow64\ieetwproxystub.dll
2014-08-18 21:44:09   61952   ----a-w-   C:\Windows\SysWow64\MshtmlDac.dll
2014-08-18 21:36:07   112128   ----a-w-   C:\Windows\SysWow64\ieUnatt.exe
2014-08-18 21:35:24   597504   ----a-w-   C:\Windows\SysWow64\jscript9diag.dll
2014-08-18 21:23:17   2104832   ----a-w-   C:\Windows\System32\inetcpl.cpl
2014-08-18 21:23:16   1249280   ----a-w-   C:\Windows\System32\mshtmlmedia.dll
2014-08-18 21:22:48   60416   ----a-w-   C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-08-18 21:15:13   2310656   ----a-w-   C:\Windows\System32\wininet.dll
2014-08-18 21:08:54   2014208   ----a-w-   C:\Windows\SysWow64\inetcpl.cpl
2014-08-18 21:07:44   1068032   ----a-w-   C:\Windows\SysWow64\mshtmlmedia.dll
2014-08-18 20:46:48   1812992   ----a-w-   C:\Windows\SysWow64\wininet.dll
2014-07-25 00:35:46   875688   ----a-w-   C:\Windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 21:47:06   869544   ----a-w-   C:\Windows\System32\msvcr120_clr0400.dll
2014-07-14 02:02:45   1216000   ----a-w-   C:\Windows\System32\rpcrt4.dll
2014-07-14 01:40:58   664064   ----a-w-   C:\Windows\SysWow64\rpcrt4.dll
2014-07-06 20:18:33   92008   ----a-w-   C:\Windows\System32\drivers\aswstm.sys
2014-07-06 20:18:32   224896   ----a-w-   C:\Windows\System32\drivers\aswVmm.sys
2014-07-06 20:18:32   1041168   ----a-w-   C:\Windows\System32\drivers\aswsnx.sys
2014-07-06 20:18:31   79184   ----a-w-   C:\Windows\System32\drivers\aswMonFlt.sys
2014-07-06 20:18:31   65776   ----a-w-   C:\Windows\System32\drivers\aswRvrt.sys
2014-07-06 20:18:31   29208   ----a-w-   C:\Windows\System32\drivers\aswHwid.sys
2014-07-06 20:18:30   93568   ----a-w-   C:\Windows\System32\drivers\aswRdr2.sys
2014-07-06 20:18:29   43152   ----a-w-   C:\Windows\avastSS.scr
2014-07-06 20:18:09   28184   ----a-w-   C:\Windows\System32\drivers\aswKbd.sys
2014-07-06 20:18:04   448400   ----a-w-   C:\Windows\System32\drivers\aswNdisFlt.sys
2013-05-16 21:45:34   10965504   ----a-w-   C:\Program Files (x86)\Common Files\lpuninstall.exe
2010-01-26 09:11:08   444283   ----a-w-   C:\Program Files (x86)\Common Files\WinPcapNmap.exe
.
============= FINISH: 11:00:59,12 ===============

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Édition Familiale Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 09/09/2010 15:29:57
System Uptime: 02/10/2014 08:48:23 (3 hours ago)
.
Motherboard: Acer |  | Aspire X3950
Processor: Intel(R) Core(TM) i3 CPU         540  @ 3.07GHz | CPU 1 | 3067/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 459 GiB total, 201,007 GiB free.
D: is FIXED (NTFS) - 459 GiB total, 79,417 GiB free.
E: is CDROM ()
F: is FIXED (NTFS) - 14 GiB total, 6,651 GiB free.
I: is FIXED (NTFS) - 466 GiB total, 286,696 GiB free.
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
Description: Souris Microsoft PS/2
Device ID: ACPI\PNP0F03\4&153956B5&0
Manufacturer: Microsoft
Name: Souris Microsoft PS/2
PNP Device ID: ACPI\PNP0F03\4&153956B5&0
Service: i8042prt
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: User Mode Driver Frameworks Platform Driver
Device ID: ROOT\LEGACY_WUDFPF\0000
Manufacturer:
Name: User Mode Driver Frameworks Platform Driver
PNP Device ID: ROOT\LEGACY_WUDFPF\0000
Service: WudfPf
.
==== System Restore Points ===================
.
RP1179: 24/09/2014 07:42:47 - Windows Update
RP1180: 24/09/2014 23:24:31 - Windows Update
RP1181: 30/09/2014 08:23:12 - Windows Update
RP1182: 02/10/2014 00:25:11 - Windows Update
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
µTorrent
CCleaner
DealPly
Dropbox
Détection de l'application Winamp
Galerie de photos Windows Live
Microsoft .NET Framework 4.5.1
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access MUI (French) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Excel MUI (French) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove MUI (French) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office InfoPath MUI (French) 2007
Microsoft Office Language Pack 2007 - French/Français
Microsoft Office O MUI (French) 2007
Microsoft Office Office 64-bit Components 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office OneNote MUI (French) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office Outlook MUI (French) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint MUI (French) 2007
Microsoft Office PowerPoint Viewer 2007 (French)
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing (French) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Publisher MUI (French) 2007
Microsoft Office Shared 64-bit MUI (English) 2007
Microsoft Office Shared 64-bit MUI (French) 2007
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3)
Microsoft Office SharePoint Designer MUI (French) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Office Word MUI (French) 2007
Microsoft Office X MUI (French) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft Works
Mise à jour Microsoft Office Excel 2007 Help  (KB963678)
Mise à jour Microsoft Office Outlook 2007 Help  (KB963677)
Mise à jour Microsoft Office Powerpoint 2007 Help  (KB963669)
Mise à jour Microsoft Office Word 2007 Help  (KB963665)
Module de compatibilité pour Microsoft Office System 2007
Photo Story 3 for Windows
Realtek Ethernet Controller Driver For Windows 7
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596880) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880513) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office OneNote 2007 (KB2596857) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2880515) 32-Bit Edition
TomTom HOME Visual Studio Merge Modules
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2889914) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 (KB974631)
Update for Microsoft Office Word 2007 Help (KB963665)
Windows Live
Windows Live Communications Platform
Windows Live FolderShare
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Windows Media Player Firefox Plugin
.
==== End Of File ===========================


Results of screen317's Security Check version 0.99.87 
Windows 7 Service Pack 1 x64 (UAC is enabled) 
Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````[/u]
avast! Antivirus   
Antivirus up to date!   
`````````Anti-malware/Other Utilities Check:`````````[/u]
Adobe Flash Player 15.0.0.152 
Google Chrome 37.0.2062.120 
Google Chrome 37.0.2062.124 
````````Process Check: objlist.exe by Laurent````````[/u] 
AVAST Software Avast AvastSvc.exe 
AVAST Software Avast afwServ.exe 
AVAST Software Avast avastui.exe 
`````````````````System Health check`````````````````[/u]
Total Fragmentation on Drive C: =
````````````````````End of Log``````````````````````[/u]

Thank you for your help

Patrick

Corrine

Hi, Patrick.  Welcome to LandzDown Forum.

We will do our best to assist you.  However, in order to do so, please follow all instructions provided in the sequence given.  Do not install/re-install any programs or run any fixes or scanners that you have not been instructed to use.  This may cause conflicts with the tools being used in the cleanup process.   

If you have questions regarding any of the instructions or problems running any tools, please let us know.

1.  A strong word of caution:  P2P programs form a direct conduit on to your computer. They have always been a target of malware writers. P2P security measures are easily circumvented and if your P2P program is not configured correctly, you may be sharing more files than you realize. There have been cases where people's passwords, address books and other personal, private, and financial details have been exposed to the file sharing network by a badly configured program. Use of P2P programs can result in Identity Theft

With that in mind, I strongly encourage you to uninstall µTorrent.

2.  Please download Adware Cleaner by Xplode.    Please save it to your desktop!

  • Close all open programs and internet browsers.
  • Double-click AdwCleaner.exe to run the tool. 
    Note:  Windows Vista, Windows 7/8 users right-click and select Run As Administrator.
  • Click the Scan button.
  • AdwCleaner will begin.  Be patient as the scan may take some time to complete.
  • After the scan has finished, click the Report button.  A logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

p.steichen

Thank you for help.
I have unistalled Torrent.
This is the report of AdwCleaner :

# AdwCleaner v3.311 - Rapport créé le 09/10/2014 à 19:26:33
# Mis à jour le 30/09/2014 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Patrick - PATRICK-PC
# Exécuté depuis : C:\Users\Patrick\Downloads\adwcleaner_3.311.exe
# Option : Scanner

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Présent : C:\Program Files (x86)\Babylon
Dossier Présent : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Dossier Présent : C:\Program Files (x86)\Complitly
Dossier Présent : C:\Program Files (x86)\ConduitEngine
Dossier Présent : C:\Program Files (x86)\Fluendo
Dossier Présent : C:\Program Files (x86)\iMesh Applications
Dossier Présent : C:\Program Files (x86)\Moozy
Dossier Présent : C:\Program Files (x86)\Mozilla Firefox\Extensions\toolbar@planet-surf.com
Dossier Présent : C:\Program Files (x86)\Nosibay
Dossier Présent : C:\Program Files (x86)\OfferBox
Dossier Présent : C:\Program Files (x86)\Productivity_2
Dossier Présent : C:\Program Files (x86)\Software
Dossier Présent : C:\Program Files (x86)\TornTV.com
Dossier Présent : C:\Program Files (x86)\TranslatorBar_5
Dossier Présent : C:\Program Files (x86)\VideoConverter
Dossier Présent : C:\ProgramData\Babylon
Dossier Présent : C:\ProgramData\bProtector
Dossier Présent : C:\ProgramData\iMesh
Dossier Présent : C:\ProgramData\InstallBrainService
Dossier Présent : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMesh
Dossier Présent : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TornTV.com
Dossier Présent : C:\ProgramData\Partner
Dossier Présent : C:\ProgramData\Uniblue
Dossier Présent : C:\ProgramData\Uniblue\DriverScanner
Dossier Présent : C:\Users\Patrick\AppData\Local\Babylon
Dossier Présent : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Dossier Présent : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Dossier Présent : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp
Dossier Présent : C:\Users\Patrick\AppData\Local\iMesh
Dossier Présent : C:\Users\Patrick\AppData\Local\LPT
Dossier Présent : C:\Users\Patrick\AppData\Local\moovida air
Dossier Présent : C:\Users\Patrick\AppData\Local\PackageAware
Dossier Présent : C:\Users\Patrick\AppData\Local\Smartbar
Dossier Présent : C:\Users\Patrick\AppData\Local\Software
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\BS_Player
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\file2linkib
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\imeshbandmltbpi
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\mediabarim
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\Productivity_2
Dossier Présent : C:\Users\Patrick\AppData\LocalLow\TranslatorBar_5
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Babylon
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Complitly
Dossier Présent : C:\Users\Patrick\AppData\Roaming\dvdvideosoftiehelpers
Dossier Présent : C:\Users\Patrick\AppData\Roaming\file2linkib
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpecialSavings
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoConverter
Dossier Présent : C:\Users\Patrick\AppData\Roaming\moovida-1
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Conduit
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\mediabarim
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Smartbar
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\SweetIMToolbarData
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Nosibay
Dossier Présent : C:\Users\Patrick\AppData\Roaming\OfferBox
Dossier Présent : C:\Users\Patrick\AppData\Roaming\pdfforge
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Uniblue
Dossier Présent : C:\Users\Patrick\AppData\Roaming\Uniblue\DriverScanner
Dossier Présent : C:\Users\Patrick\AppData\Roaming\VOPackage
Fichier Présent : C:\Program Files (x86)\Mozilla Firefox\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Bubble Dock.boostrap.log
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iMesh.lnk
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\iMesh.lnk
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\bProtector_extensions.rdf
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
Fichier Présent : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\searchplugins\SearchTheWeb.xml
Fichier Présent : C:\Users\Patrick\Desktop\Configure VO Package.lnk
Fichier Présent : C:\Users\Public\Desktop\TornTV.lnk
Fichier Présent : C:\Windows\SysWOW64\conduitEngine.tmp

***** [ Tâches planifiées ] *****

Tâche Présente : bProtector
Tâche Présente : RocketTab Update Task
Tâche Présente : RocketTab

***** [ Raccourcis ] *****


***** [ Registre ] *****

Clé Présente : HKCU\Software\1ClickDownload
Clé Présente : HKCU\Software\AppDataLow\Software\mediabarim
Clé Présente : HKCU\Software\AppDataLow\Software\Productivity_2
Clé Présente : HKCU\Software\AppDataLow\Software\SpecialSavings
Clé Présente : HKCU\Software\AppDataLow\Software\TranslatorBar_5
Clé Présente : HKCU\Software\AppDataLow\Toolbar
Clé Présente : HKCU\Software\Blabbers
Clé Présente : HKCU\Software\Boxore
Clé Présente : HKCU\Software\bProtector
Clé Présente : HKCU\Software\BrowserCompanion
Clé Présente : HKCU\Software\Complitly
Clé Présente : HKCU\Software\DataMngr
Clé Présente : HKCU\Software\Imesh
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Rechercher sur le Web
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7DA17D5A-5718-4130-A605-FC316C827836}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Clé Présente : HKCU\Software\Nosibay
Clé Présente : HKCU\Software\Offerbox
Clé Présente : HKCU\Software\performersoft llc
Clé Présente : HKCU\Software\RocketTabInstalled
Clé Présente : HKCU\Software\Search Extensions
Clé Présente : HKCU\Software\SmartBar
Clé Présente : HKCU\Software\smartbarbackup
Clé Présente : HKCU\Software\smartbarlog
Clé Présente : HKCU\Software\Softonic
Clé Présente : HKCU\Software\Spointer
Clé Présente : HKCU\Software\YahooPartnerToolbar
Clé Présente : [x64] HKCU\Software\1ClickDownload
Clé Présente : [x64] HKCU\Software\Blabbers
Clé Présente : [x64] HKCU\Software\Boxore
Clé Présente : [x64] HKCU\Software\bProtector
Clé Présente : [x64] HKCU\Software\BrowserCompanion
Clé Présente : [x64] HKCU\Software\Complitly
Clé Présente : [x64] HKCU\Software\DataMngr
Clé Présente : [x64] HKCU\Software\Imesh
Clé Présente : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Clé Présente : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Présente : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Clé Présente : [x64] HKCU\Software\Nosibay
Clé Présente : [x64] HKCU\Software\Offerbox
Clé Présente : [x64] HKCU\Software\performersoft llc
Clé Présente : [x64] HKCU\Software\RocketTabInstalled
Clé Présente : [x64] HKCU\Software\Search Extensions
Clé Présente : [x64] HKCU\Software\SmartBar
Clé Présente : [x64] HKCU\Software\smartbarbackup
Clé Présente : [x64] HKCU\Software\smartbarlog
Clé Présente : [x64] HKCU\Software\Softonic
Clé Présente : [x64] HKCU\Software\Spointer
Clé Présente : [x64] HKCU\Software\YahooPartnerToolbar
Clé Présente : HKLM\SOFTWARE\Boxore
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Clé Présente : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\DiscoveryHelper.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\iMesh.exe
Clé Présente : HKLM\SOFTWARE\Classes\AppID\IMTrProgress.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\IMWeb.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Clé Présente : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{2656B92B-0207-4AFB-BEBF-F5FD231ECD39}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{34CB0620-E343-4772-BBA8-D3074BC47516}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{412CD209-DDA4-4275-8C79-55F1C93FBD47}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{59570C1F-B692-48C9-91B4-7809E6945287}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{63A0F7FA-2C95-4D7E-AF25-EFCC303D20A1}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{6559E502-6EE1-46B8-A83C-F3A45BDA23EE}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{A2858A72-758F-4486-B6A1-7F1DCC0924FA}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C63CA8A4-AB4E-49E5-A6C0-33FC86D80205}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{C6A7847E-8931-4A9A-B4EF-72A91E3CCF4D}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{DD0F1D24-E250-4E93-966C-65615720AEFB}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{EC1277BB-1C71-4C0D-BA6D-BFEA16E773A6}
Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Présente : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery
Clé Présente : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery.1
Clé Présente : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Clé Présente : HKLM\SOFTWARE\Classes\iMesh.Device
Clé Présente : HKLM\SOFTWARE\Classes\iMesh.file
Clé Présente : HKLM\SOFTWARE\Classes\imweb.imwebcontrol
Clé Présente : HKLM\SOFTWARE\Classes\Installer\Features\1A594BF8F3A4D1C4DB72F3A32B6E7636
Clé Présente : HKLM\SOFTWARE\Classes\Installer\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{5E8CD073-21DF-4117-9BBD-D03C45D36CAE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{E5DB89B8-5BE1-461C-A7EF-89B68211889D}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Clé Présente : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Clé Présente : HKLM\SOFTWARE\Classes\Prod.cap
Clé Présente : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\base64
Clé Présente : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\chrome
Clé Présente : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\prox
Clé Présente : HKLM\SOFTWARE\Classes\S
Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Clé Présente : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Clé Présente : HKLM\SOFTWARE\Classes\SoftonicApp.appCore
Clé Présente : HKLM\SOFTWARE\Classes\SoftonicApp.appCore.1
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{252C2315-CCE0-4446-8DA7-C00292A690BA}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{AD79BAD6-9504-4F09-ACEC-7B319584A4C1}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Clé Présente : HKLM\SOFTWARE\DataMngr
Clé Présente : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Clé Présente : HKLM\SOFTWARE\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom
Clé Présente : HKLM\SOFTWARE\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
Clé Présente : HKLM\SOFTWARE\Google\Chrome\Extensions\elchiiiejkobdbblfejjkbphbddgmljf
Clé Présente : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Présente : HKLM\SOFTWARE\Imesh
Clé Présente : HKLM\SOFTWARE\iMeshMediabarTb
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{157511C0-4298-4EAE-AE61-3C3C80D43DF3}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{784D809C-A55E-4142-923E-2E1B090FA19E}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87E1CF4F-88DF-48ED-86E2-A83BEF7E68DE}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE999702-CD3B-4D16-B6ED-B3A23E5AED44}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock Update_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock Update_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\IMBooster_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\IMBooster_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\moovida_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\moovida_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Clé Présente : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMPlayCDAudioOnArrival
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMRipCDAudioOnArrival
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowCDAudioOnArrival
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowVolumeOnArrival
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{08E3D5D6-2256-4212-ADFD-34AB77020DC8}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7FEF0ACF-CF48-49E6-BE61-4B95F66CE8C3}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Clé Présente : HKLM\SOFTWARE\Offerbox
Clé Présente : HKLM\SOFTWARE\Productivity_2
Clé Présente : HKLM\SOFTWARE\RocketTab
Clé Présente : HKLM\SOFTWARE\SimplyGen
Clé Présente : HKLM\SOFTWARE\Softonic
Clé Présente : HKLM\SOFTWARE\TranslatorBar_5
Clé Présente : HKLM\SOFTWARE\Uniblue
Clé Présente : HKLM\SOFTWARE\Uniblue\DriverScanner
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{5E8CD073-21DF-4117-9BBD-D03C45D36CAE}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Clé Présente : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Clé Présente : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Valeur Présente : HKCU\Software\Mozilla\Firefox\Extensions [specialsavings@superfish.com]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{28387537-E3F9-4ED7-860C-11E69AF4A8A0}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Browser companion helper]

***** [ Navigateurs ] *****

-\\ Internet Explorer v11.0.9600.17280

Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
Paramètre Présent : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] - hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}

-\\ Mozilla Firefox v32.0.3 (x86 fr)

[ Fichier : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\prefs.js ]


-\\ Google Chrome v37.0.2062.124

[ Fichier : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [33838 octets] - [09/10/2014 19:26:33]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [33899 octets] ##########

Corrine

Hi, Patrick.  That is definitely a lot of adware on your computer.  Let's see what we can do about getting things cleaned.

1.  Double-click AdwCleaner.exe to run the tool again.
  • Click the Scan button.
  • AdwCleaner will begin to scan your computer like it did before.
    Note:  Windows Vista, Windows 7/8 users right-click and select Run As Administrator.
  • After the scan has finished,
  • This time click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
2.  Please download Junkware Removal Tool to your desktop.

  • Disable your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it.  If you are using Windows Vista or Seven, right-mouse click it and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
3.  Please download Malwarebytes Anti-Malware FREE Version from here: http://downloads.malwarebytes.org/file/mbam and save it to your Desktop.

Note::  MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.

  • Make sure you are connected to the Internet.
  • Double-click to execute the installation. Accept the terms, and allow MBAM to install to the default location in your Program Files.
  • Please update the database by clicking on the Update Now button as shown below.


  • Following the update, click on the large green Scan Now button to begin the Threat Scan.
    Note: Optionally, you could have simply clicked Fix Now if it is displayed. That will automatically download updates and run a Threat Scan.
    If Malware or Potentially Unwanted Programs are found you will receive a Prompt so that you can decide what you want to do. I suggest "Quarantine". Click the button: Apply All Actions.
  • A window with an option to view the detailed log will appear. Click on View Detailed Log.

    • After viewing the results, please click on the Copy to Clipboard button > OK.

    • Paste your log into your next reply.
  • Note: If you lose the Clipboard copy and need to retrieve the log again it can be found by opening Malwarebytes and clicking on History> Application Logs with the date of the scan. Simply double-click on that in order to see the options for Copying to Clipboard or to Export to a .txt file (Notepad). etc.. The .txt file can be saved and posted when you are ready.


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

p.steichen

Hi Corine,
First, AdwCleaner report :

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17280
Run by Patrick at 10:56:26 on 2014-10-02
Microsoft Windows 7 Édition Familiale Premium   6.1.7601.1.1252.33.1036.18.4023.1669 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus *Enabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\SysWOW64\ANIWConnService.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
C:\Windows\system32\dgdersvc.exe
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE
C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE
C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
C:\Program Files (x86)\PDF Architect\HelperService.exe
C:\Program Files (x86)\PDF Architect\ConversionService.exe
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\OEM\USBDECTION\USBS3S4Detection.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Search Extensions\Client.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe
C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Users\Patrick\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\CCleaner\CCleaner64.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
uSearch Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
uSearch Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
mStart Page = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
mSearch Bar = hxxps://fr.yahoo.com?fr=hp-avast&type=avastbcl
mSearch Page = hxxps://fr.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
uProxyServer = hxxp=127.0.0.1:49292;https=127.0.0.1:49292
uProxyOverride = <-loopback>
uSearchAssistant = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - <orphaned>
uURLSearchHooks: {b9b97401-98e1-4942-930d-c36652dab7f2} - <orphaned>
uURLSearchHooks: {795828a9-f271-43a8-8536-4484bb991d3d} - <orphaned>
mURLSearchHooks: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - <orphaned>
mURLSearchHooks: {b9b97401-98e1-4942-930d-c36652dab7f2} - <orphaned>
mURLSearchHooks: {795828a9-f271-43a8-8536-4484bb991d3d} - <orphaned>
BHO: PDF Architect Helper: {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
BHO: {474597C5-AB09-49d6-A4D5-2E8D7341384E} - <orphaned>
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Programme d'aide de l'Assistant de connexion Windows Live ID: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: LastPass Vault: {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: LastPass Toolbar: {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll
TB: PDF Architect Toolbar: {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [EPSON SX110 Series] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S65B5.tmp" /EF "HKCU"
uRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
uRun: [EPSON SX110 Series (Copie 2)] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S3C25.tmp" /EF "HKCU"
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Browser Infrastructure Helper] C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe startup
uRun: [CCleaner Monitoring] "C:\Program Files (x86)\CCleaner\CCleaner64.exe" /MONITOR
mRun: [ANIWZCS2Service] C:\Program Files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [Browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /CHI={$CHROM_GUID_UNINSTALLS}
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
dRun: [EPSON SX110 Series (Copie 1)] C:\Windows\System32\spool\DRIVERS\x64\3\E_IATIFBE.EXE /FU "C:\Windows\TEMP\E_S2C2E.tmp" /EF "HKCU"
StartupFolder: C:\Users\Patrick\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Patrick\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\INSTAL~2.LNK - C:\Program Files (x86)\Common Files\lpuninstall.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\INSTAL~1.LNK - C:\Program Files (x86)\Common Files\lpuninstall.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - C:\Users\Patrick\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: LastPass - C:\Users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=lastpass
IE: Rechercher sur le Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
IE: Remplissage de Formulaire LastPass - C:\Users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=fillforms
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {43699cd0-e34f-11de-8a39-0800200c9a66} - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} - hxxp://kitchenplanner.ikea.com/fr/Core/Player/2020PlayerAX_Win32.cab
DPF: {3D3B42C2-11BF-4732-A304-A01384B70D68} - hxxp://picasaweb.google.com/s/v/66.36/uploader2.cab
DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} - hxxp://www.sibelius.com/download/software/win/ActiveXPlugin.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 212.27.40.240 212.27.40.241
TCP: Interfaces\{046D4512-46DA-4080-A2EB-32C6CF58B79F} : DHCPNameServer = 212.27.40.240 212.27.40.241
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: {474597C5-AB09-49d6-A4D5-2E8D7341384E} - <orphaned>
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-BHO: Skype Click to Call for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\
FF - component: C:\Program Files (x86)\iMesh Applications\MediaBar\Datamngr\FirefoxExtension\components\DataMngrHlpFF3.dll
FF - component: C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll
FF - component: C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\extensions\ffxtlbr@babylon.com\components\FFHst.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll
FF - plugin: C:\Program Files (x86)\Canon\Uploader for CANON iMAGE GATEWAY Plugin\npUploaderForCiG.dll
FF - plugin: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt\plugins\NPPDFArchitectPreviewerPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdisFlt;Avast! Firewall Driver;C:\Windows\System32\drivers\aswNdisFlt.sys [2014-7-6 448400]
R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2014-1-13 65776]
R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2014-1-13 224896]
R1 anodlwf;ANOD Network Security Filter driver;C:\Windows\System32\drivers\anodlwfx.sys [2010-9-13 15872]
R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2014-1-13 28184]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswsnx.sys [2014-1-13 1041168]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswsp.sys [2014-1-13 427360]
R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-3 22576]
R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-3 20016]
R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-3 60464]
R2 ANIWConnService;ANIWConn Service;C:\Windows\System32\ANIWConnService.exe --> C:\Windows\System32\ANIWConnService.exe [?]
R2 aswHwid;avast! HardwareID;C:\Windows\System32\drivers\aswHwid.sys [2014-4-29 29208]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2014-1-13 79184]
R2 aswStm;aswStm;C:\Windows\System32\drivers\aswstm.sys [2014-1-13 92008]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-7-6 50344]
R2 avast! Firewall;avast! Firewall;C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-7-6 106488]
R2 c2cautoupdatesvc;Skype Click to Call Updater;C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-7-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service;C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-7-14 1767520]
R2 dgdersvc;Device Error Recovery Service;C:\Windows\System32\dgdersvc.exe [2010-7-30 119632]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Acer\Registration\GregHSRW.exe [2009-8-28 1150496]
R3 dgderdrv;dgderdrv;C:\Windows\System32\drivers\dgderdrv.sys [2010-7-30 20552]
R3 hxctlflt;hxctlflt;C:\Windows\System32\drivers\hxctlflt.sys [2009-2-8 111104]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-3-20 346144]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-9-10 111616]
S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [2012-9-5 234776]
S3 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [2010-2-1 305520]
S3 TFsExDisk;TFsExDisk;C:\Windows\System32\drivers\TFsExDisk.sys [2011-11-26 16392]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-24 59392]
.
=============== Created Last 30 ================
.
2014-10-02 08:54:02   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0D91C792-256E-409D-8C91-DB7D9E6AAED4}
2014-10-02 08:53:59   --------   d-----w-   C:\Users\Patrick\AppData\Local\{35F5AD8E-FB2D-4B0B-86C0-87EF41D5F533}
2014-10-02 07:01:38   75888   ----a-w-   C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E26A429E-8933-493C-812F-6345273ED686}\offreg.dll
2014-10-01 20:53:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{FDD4CD72-3348-4B85-934F-BEDDCF110614}
2014-10-01 08:53:41   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D285E0CC-32E9-40E4-B4F6-1E65B3F2D371}
2014-10-01 08:53:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{3F9FCEDB-A13E-4DF8-B434-E5CB2F3F647A}
2014-10-01 05:43:24   519680   ----a-w-   C:\Windows\SysWow64\qdvd.dll
2014-10-01 05:43:24   371712   ----a-w-   C:\Windows\System32\qdvd.dll
2014-09-30 08:53:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{22508127-11D4-42DB-B8EA-3A1B6FE58424}
2014-09-30 08:53:22   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D1BB2971-47F6-4331-83C0-FDE1476E3F0E}
2014-09-30 06:24:20   11578928   ----a-w-   C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E26A429E-8933-493C-812F-6345273ED686}\mpengine.dll
2014-09-29 18:06:31   --------   d-----w-   C:\Program Files (x86)\MP3 Converter 1.9
2014-09-29 18:03:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\LPT
2014-09-29 18:03:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\Smartbar
2014-09-29 18:02:16   --------   d-----w-   C:\Users\Patrick\AppData\Roaming\VOPackage
2014-09-29 18:00:31   --------   d-----w-   C:\Program Files (x86)\Search Extensions
2014-09-29 08:51:33   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C06D0FDE-C673-4E6A-AA3F-B0133798C547}
2014-09-29 08:51:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{CADFD25A-9440-4AAA-9966-85803C8E4DC8}
2014-09-28 20:50:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0A7E98B4-FE73-4296-A27C-ACD160E9F5C1}
2014-09-28 08:50:45   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6737A63F-AF82-4F2A-9693-CBAD4A958CC6}
2014-09-27 08:48:46   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D3C07C83-BF54-4996-86CA-C64C2D2EEE84}
2014-09-27 08:48:35   --------   d-----w-   C:\Users\Patrick\AppData\Local\{896F9E16-A900-4D72-A58A-A129F2E0736D}
2014-09-26 20:46:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1A59F7D6-5EAA-442E-AA75-8AEA92125B5F}
2014-09-26 08:45:07   --------   d-----w-   C:\Users\Patrick\AppData\Local\{93DE3265-8F74-48A0-AAC8-71B9B4345C7D}
2014-09-26 08:44:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\{16E8AA86-3042-48CA-91EE-E3EC978A8874}
2014-09-25 20:43:00   --------   d-----w-   C:\Users\Patrick\AppData\Local\{16F41849-6E01-4109-9984-3476BAE47E9C}
2014-09-25 08:42:48   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1E192FC1-A836-4BB2-A200-C7BB39D34F19}
2014-09-25 08:42:37   --------   d-----w-   C:\Users\Patrick\AppData\Local\{BD926660-3530-4185-919D-7BE6AB6D0A7D}
2014-09-24 20:40:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1CA317BE-9842-4892-A375-A66B56A5D431}
2014-09-24 08:39:08   --------   d-----w-   C:\Users\Patrick\AppData\Local\{567E1765-B481-416C-AF45-F69BFC87FCB4}
2014-09-24 08:38:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{03288DF0-2ABD-4E26-BADD-B1F292BCCD26}
2014-09-24 05:42:08   2048   ----a-w-   C:\Windows\SysWow64\tzres.dll
2014-09-24 05:42:08   2048   ----a-w-   C:\Windows\System32\tzres.dll
2014-09-23 20:37:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{DC523C2E-50A0-48D2-9B46-1D203BE3FEB8}
2014-09-23 08:36:19   --------   d-----w-   C:\Users\Patrick\AppData\Local\{AAC3D3C6-C9C7-4986-9FE4-F2C44D7D7B42}
2014-09-23 08:36:09   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D08434E8-DB63-47E0-8D36-2204E7630643}
2014-09-22 20:35:01   --------   d-----w-   C:\Users\Patrick\AppData\Local\{836C128B-13C7-4790-9DE9-41B422C0467F}
2014-09-22 08:34:48   --------   d-----w-   C:\Users\Patrick\AppData\Local\{8ED776C2-FFC2-49BE-8D11-14803212FBDD}
2014-09-22 08:34:37   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6110C86B-17D5-464E-BDC6-15B1F60B43B3}
2014-09-21 08:32:13   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2E3A5BA1-BD38-4182-A78F-9D786126CAAD}
2014-09-20 19:43:54   --------   d-----w-   C:\Users\Patrick\AppData\Local\{94C98DDE-743A-49BD-9261-2633AF311AB0}
2014-09-20 19:43:32   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1AB770DD-7851-4474-8273-2466F7B779B5}
2014-09-20 07:41:47   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A1482CD6-FA88-47AC-B748-9F458A52F70F}
2014-09-20 07:41:36   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C5B2173D-96B3-4745-A325-839A15792CE9}
2014-09-19 19:39:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{4FA62440-E727-4FB2-A5C1-89CE8D59C697}
2014-09-19 07:37:13   --------   d-----w-   C:\Users\Patrick\AppData\Local\{F076A8E3-D7B8-4158-A3C2-D040B53452C2}
2014-09-18 06:28:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C2E2275A-811F-4AFE-8432-D21F06856DC9}
2014-09-17 06:11:22   --------   d-----w-   C:\Users\Patrick\AppData\Local\{9888D3C1-6E8A-4DCC-9B6C-92BB4D5E4988}
2014-09-16 05:16:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7C2EB1F8-419A-44F8-B285-82B0185D7013}
2014-09-15 05:09:21   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2C1C4DB6-AE70-4E07-B155-EF4E0D915A8E}
2014-09-14 18:21:39   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7AB075C4-3B58-45CD-9C89-BA3BD377761A}
2014-09-14 06:16:23   --------   d-----w-   C:\Users\Patrick\AppData\Local\{68022641-156E-408C-A806-71539D7A1F48}
2014-09-13 08:19:55   --------   d-----w-   C:\Users\Patrick\AppData\Local\{7E916A1D-A37D-4206-BC4D-F98A83434B99}
2014-09-13 08:19:44   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B991D3B8-9F3E-491F-B940-D3779F75B958}
2014-09-12 08:21:27   --------   d-----w-   C:\Users\Patrick\AppData\Local\{E777C1E3-243D-4408-AC62-280D41973FFA}
2014-09-12 08:17:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{101D5A2F-60DA-438C-9EAE-4DC6092E92C4}
2014-09-11 18:05:57   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B62FF71D-3E96-4DB9-BB69-90CA373446EA}
2014-09-11 06:04:19   --------   d-----w-   C:\Users\Patrick\AppData\Local\{C2C2B806-627A-49BE-8E4B-B1CEFABF4514}
2014-09-10 21:43:39   2777088   ----a-w-   C:\Windows\System32\msmpeg2vdec.dll
2014-09-10 21:43:38   2285056   ----a-w-   C:\Windows\SysWow64\msmpeg2vdec.dll
2014-09-10 17:41:58   --------   d-----w-   C:\Users\Patrick\AppData\Local\{4DEF382E-85CB-4DBE-AFC5-DB55BE159A9C}
2014-09-10 05:40:25   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B7672682-D262-450C-9BF6-1D5F8DB7EF01}
2014-09-10 05:40:15   --------   d-----w-   C:\Users\Patrick\AppData\Local\{D8FE1C6A-45A5-4775-9370-17F6B2D8AB5D}
2014-09-10 05:09:05   1031168   ----a-w-   C:\Windows\System32\TSWorkspace.dll
2014-09-10 05:09:04   793600   ----a-w-   C:\Windows\SysWow64\TSWorkspace.dll
2014-09-10 05:08:51   2565120   ----a-w-   C:\Windows\System32\d3d10warp.dll
2014-09-10 05:08:51   1987584   ----a-w-   C:\Windows\SysWow64\d3d10warp.dll
2014-09-10 05:08:41   96768   ----a-w-   C:\Windows\SysWow64\sspicli.dll
2014-09-10 05:08:41   728064   ----a-w-   C:\Windows\System32\kerberos.dll
2014-09-10 05:08:41   550912   ----a-w-   C:\Windows\SysWow64\kerberos.dll
2014-09-10 05:08:41   22016   ----a-w-   C:\Windows\SysWow64\secur32.dll
2014-09-10 05:08:41   1460736   ----a-w-   C:\Windows\System32\lsasrv.dll
2014-09-10 05:08:33   578048   ----a-w-   C:\Windows\System32\aepdu.dll
2014-09-10 05:08:32   424448   ----a-w-   C:\Windows\System32\aeinv.dll
2014-09-09 05:38:49   --------   d-----w-   C:\Users\Patrick\AppData\Local\{5725FE45-3422-42C2-AFCC-5220603226AF}
2014-09-08 18:38:52   --------   d-----w-   C:\Users\Patrick\AppData\Local\{B227319A-271D-4075-8745-784400D78013}
2014-09-08 18:34:40   --------   d-----w-   C:\Users\Patrick\AppData\Local\{0ECE6CEC-B217-4733-9ECE-08A905BB8DED}
2014-09-08 06:33:06   --------   d-----w-   C:\Users\Patrick\AppData\Local\{2FD20CD7-97FE-404E-A7F7-1FE5810681CE}
2014-09-07 06:30:26   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A3E40F19-B762-4ABC-9AD4-1BC22BA80991}
2014-09-06 18:28:30   --------   d-----w-   C:\Users\Patrick\AppData\Local\{59F29D44-9D39-4293-9F8F-6012CCC74346}
2014-09-06 06:26:56   --------   d-----w-   C:\Users\Patrick\AppData\Local\{EBF252BD-5317-472B-A3A6-A55B496A52D7}
2014-09-06 06:26:45   --------   d-----w-   C:\Users\Patrick\AppData\Local\{470D67F4-8087-4068-B987-0E74A55438DE}
2014-09-05 06:23:16   --------   d-----w-   C:\Users\Patrick\AppData\Local\{1F1FA677-97FB-4548-93A1-402AE8BA14CA}
2014-09-05 06:23:05   --------   d-----w-   C:\Users\Patrick\AppData\Local\{FBAD29F6-1807-42A9-A120-E904E70A7B54}
2014-09-04 18:21:09   --------   d-----w-   C:\Users\Patrick\AppData\Local\{636C4AA4-EFFC-4037-A3E3-16CD84C5053A}
2014-09-04 12:50:16   188304   ----a-w-   C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
2014-09-04 06:18:59   --------   d-----w-   C:\Users\Patrick\AppData\Local\{9D7CE8BB-414B-4035-8805-E25CA678D389}
2014-09-03 05:19:20   --------   d-----w-   C:\Users\Patrick\AppData\Local\{A91C9989-AC95-4C5B-B643-79E8E406F506}
2014-09-02 09:47:04   --------   d-----w-   C:\Users\Patrick\AppData\Local\{52EFA216-84B3-4187-90D8-87172E6E1AC0}
2014-09-02 09:46:53   --------   d-----w-   C:\Users\Patrick\AppData\Local\{6988A472-8C9C-41A1-B1E0-0EE80C49E47C}
.
==================== Find3M  ====================
.
2014-09-23 18:40:10   71344   ----a-w-   C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-23 18:40:10   701104   ----a-w-   C:\Windows\SysWow64\FlashPlayerApp.exe
2014-09-15 07:06:02   278152   ------w-   C:\Windows\System32\MpSigStub.exe
2014-08-23 02:07:00   404480   ----a-w-   C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55   311808   ----a-w-   C:\Windows\SysWow64\gdi32.dll
2014-08-23 00:59:01   3163648   ----a-w-   C:\Windows\System32\win32k.sys
2014-08-18 22:29:49   2724864   ----a-w-   C:\Windows\System32\mshtml.tlb
2014-08-18 22:29:35   4096   ----a-w-   C:\Windows\System32\ieetwcollectorres.dll
2014-08-18 22:19:53   5833728   ----a-w-   C:\Windows\System32\jscript9.dll
2014-08-18 22:15:34   547328   ----a-w-   C:\Windows\System32\vbscript.dll
2014-08-18 22:15:09   66048   ----a-w-   C:\Windows\System32\iesetup.dll
2014-08-18 22:14:38   48640   ----a-w-   C:\Windows\System32\ieetwproxystub.dll
2014-08-18 22:14:10   83968   ----a-w-   C:\Windows\System32\MshtmlDac.dll
2014-08-18 22:08:55   4232704   ----a-w-   C:\Windows\SysWow64\jscript9.dll
2014-08-18 22:03:47   139264   ----a-w-   C:\Windows\System32\ieUnatt.exe
2014-08-18 22:03:37   111616   ----a-w-   C:\Windows\System32\ieetwcollector.exe
2014-08-18 22:03:01   758272   ----a-w-   C:\Windows\System32\jscript9diag.dll
2014-08-18 21:57:44   2724864   ----a-w-   C:\Windows\SysWow64\mshtml.tlb
2014-08-18 21:56:17   940032   ----a-w-   C:\Windows\System32\MsSpellCheckingFacility.exe
2014-08-18 21:46:26   454656   ----a-w-   C:\Windows\SysWow64\vbscript.dll
2014-08-18 21:45:23   61952   ----a-w-   C:\Windows\SysWow64\iesetup.dll
2014-08-18 21:45:12   72704   ----a-w-   C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-08-18 21:44:44   51200   ----a-w-   C:\Windows\SysWow64\ieetwproxystub.dll
2014-08-18 21:44:09   61952   ----a-w-   C:\Windows\SysWow64\MshtmlDac.dll
2014-08-18 21:36:07   112128   ----a-w-   C:\Windows\SysWow64\ieUnatt.exe
2014-08-18 21:35:24   597504   ----a-w-   C:\Windows\SysWow64\jscript9diag.dll
2014-08-18 21:23:17   2104832   ----a-w-   C:\Windows\System32\inetcpl.cpl
2014-08-18 21:23:16   1249280   ----a-w-   C:\Windows\System32\mshtmlmedia.dll
2014-08-18 21:22:48   60416   ----a-w-   C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-08-18 21:15:13   2310656   ----a-w-   C:\Windows\System32\wininet.dll
2014-08-18 21:08:54   2014208   ----a-w-   C:\Windows\SysWow64\inetcpl.cpl
2014-08-18 21:07:44   1068032   ----a-w-   C:\Windows\SysWow64\mshtmlmedia.dll
2014-08-18 20:46:48   1812992   ----a-w-   C:\Windows\SysWow64\wininet.dll
2014-07-25 00:35:46   875688   ----a-w-   C:\Windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 21:47:06   869544   ----a-w-   C:\Windows\System32\msvcr120_clr0400.dll
2014-07-14 02:02:45   1216000   ----a-w-   C:\Windows\System32\rpcrt4.dll
2014-07-14 01:40:58   664064   ----a-w-   C:\Windows\SysWow64\rpcrt4.dll
2014-07-06 20:18:33   92008   ----a-w-   C:\Windows\System32\drivers\aswstm.sys
2014-07-06 20:18:32   224896   ----a-w-   C:\Windows\System32\drivers\aswVmm.sys
2014-07-06 20:18:32   1041168   ----a-w-   C:\Windows\System32\drivers\aswsnx.sys
2014-07-06 20:18:31   79184   ----a-w-   C:\Windows\System32\drivers\aswMonFlt.sys
2014-07-06 20:18:31   65776   ----a-w-   C:\Windows\System32\drivers\aswRvrt.sys
2014-07-06 20:18:31   29208   ----a-w-   C:\Windows\System32\drivers\aswHwid.sys
2014-07-06 20:18:30   93568   ----a-w-   C:\Windows\System32\drivers\aswRdr2.sys
2014-07-06 20:18:29   43152   ----a-w-   C:\Windows\avastSS.scr
2014-07-06 20:18:09   28184   ----a-w-   C:\Windows\System32\drivers\aswKbd.sys
2014-07-06 20:18:04   448400   ----a-w-   C:\Windows\System32\drivers\aswNdisFlt.sys
2013-05-16 21:45:34   10965504   ----a-w-   C:\Program Files (x86)\Common Files\lpuninstall.exe
2010-01-26 09:11:08   444283   ----a-w-   C:\Program Files (x86)\Common Files\WinPcapNmap.exe
.
============= FINISH: 11:00:59,12 ===============

Second, the JRT report :

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.2 (10.09.2014:1)
OS: Windows 7 Home Premium x64
Ran by Patrick on 10/10/2014 at 14:52:11,69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\browser companion helper
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\browser infrastructure helper
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{98889811-442D-49dd-99D7-DC866BE87DBC}
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL\\Default
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\APNStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\APNStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\Babylon_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\Babylon_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\dealio_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APNStub_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APNStub_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\Babylon_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\Babylon_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealio_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\dealio_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{9C81E024-53C7-45D1-8074-940D3F0B2874}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}



~~~ Files

Successfully deleted: [File] "C:\Windows\wininit.ini"



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Patrick\AppData\Roaming\complitly"
Successfully deleted: [Folder] "C:\Users\Patrick\AppData\Roaming\moovida-1"
Successfully deleted: [Folder] "C:\Users\Patrick\AppData\Roaming\nosibay"
Successfully deleted: [Folder] "C:\Users\Patrick\AppData\Roaming\vopackage"
Successfully deleted: [Folder] "C:\Users\Patrick\appdata\local\babylon"
Successfully deleted: [Folder] "C:\Users\Patrick\appdata\local\lpt"
Failed to delete: [Folder] "C:\Users\Patrick\appdata\local\smartbar"
Successfully deleted: [Folder] "C:\Users\Patrick\appdata\locallow\mediabarim"
Successfully deleted: [Folder] "C:\Program Files (x86)\complitly"
Successfully deleted: [Folder] "C:\Program Files (x86)\conduitengine"
Successfully deleted: [Folder] "C:\Program Files (x86)\imesh applications"
Successfully deleted: [Folder] "C:\Program Files (x86)\nosibay"
Successfully deleted: [Folder] "C:\Program Files (x86)\offerbox"
Successfully deleted: [Folder] "C:\Program Files (x86)\search extensions"
Successfully deleted: [Folder] "C:\Program Files (x86)\torntv.com"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\torntv.com"
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0001DDAB-6F47-47EA-A0BC-C57A73EACC9A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0043F28C-DE7C-46F1-9201-A8A7F21851EB}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{005B6DCF-68D4-4BD4-9F2D-BE1C5C2E3DE9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{005DBDFF-6266-4A8D-8201-C7539E0E89AF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{005E0829-A5F4-4A29-A540-55C01370F7C2}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00895872-C97A-4EA5-8324-A80C07AB816B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00C60A53-E2FD-417E-9D2B-A86287380ACC}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00CE5479-6576-4BAE-AD7E-441444DFDF9A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00E33986-4766-4720-9D15-1DA4CD5BC941}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00E5263C-5A3C-4A92-B7A5-025056EFAA47}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00ECAE97-7F04-4775-9FF3-2A3DE7E8299F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{00FE9E5B-A1D2-46FE-8913-7988E7C9A3A9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0103252D-8758-4222-9EEF-A97925DEF0F9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01051FD6-CAFF-473B-87B7-0BEACC96E4E0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0108643F-8F26-420A-A23B-0891AC3E90C3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{012F30AA-7B95-47E2-B8B9-86841620C4A9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0149C490-4312-495E-A776-B7CD0E724BA3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{014B38B4-62EF-4FAF-88FB-110C6284A3A1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{015CC670-1942-4FEB-B3B1-8E397E420E76}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0172C9B2-3177-4D23-96BE-F2822DBB8A09}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01874220-E4C7-43AB-AC1E-E26DE3B60F02}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01AC00C6-910A-40E5-A480-13D162002E59}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01B07BE0-3F2A-41E3-9478-C97F88CBDDEE}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01D5B540-DB55-46F4-97FA-9EAC1B41FA9D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01E57C6D-E523-4E0E-9CE4-343C7D372A55}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{01FA98DB-CFD1-4D02-84D4-2B192218F2A9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02077020-4410-401F-B167-273D444C8196}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{020B3839-3FC1-457E-9B46-4A861AB8D96D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{020DFB63-3032-4A5D-8476-C1398BC56672}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0236E760-CF09-4721-8E3C-D3F5FF72DF73}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02780AB7-0513-4DF4-9E01-1790A74B6DF9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0286A053-A701-48F5-9EB9-2142EB508CD5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02944CF8-0A56-4F16-8522-7660C4D33B8B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02B38B13-CF5E-4476-B45E-3C2327C9AB9B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02BC8F2D-0FFC-4768-A604-E0086B123A6A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02C11D9D-1151-4939-989D-D6842169E39A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02D68CB9-4754-4B1E-A2B3-A6E994C81512}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02DF0C5B-5334-4384-904A-5636D0F98CAF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02E0F3BF-54D3-4A9E-9EB9-F57CB26F01D6}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02E40B81-B216-4A20-9F6E-2CA39329289D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02F44AE0-697C-49C3-B901-5FBD3F999C34}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02FDDC78-BECC-4FD8-9A2D-E4DD367F8D04}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{02FEBBD2-D290-46CB-A36D-C4DCAD003D86}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{03150864-83C4-4C32-9439-49BE8A285E2A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{031EC470-F928-4A84-9DE8-299B8B94E252}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{03288DF0-2ABD-4E26-BADD-B1F292BCCD26}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0353FDCD-67BE-4FB2-B58B-727964E75F59}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{035CA905-8DCF-47FF-AED3-4E85261711A3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{039597F3-A23F-4D42-BD33-697B80AD9212}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{03B3D3F2-8FC9-4360-89EB-DE60D9A5C228}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{03BF7E32-EC10-473F-8D1A-4091965F2ABE}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{042819B2-22A7-418B-9841-1FF37372D1F1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{043D872C-625D-4143-A7DE-F7F0F95FC081}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0446A6FE-7C42-4FEC-990D-CC0BF452E22A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{04A131BE-156C-4738-81C5-FC688F261ED9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{04B99110-2DE5-4CF5-824C-A380B5207740}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{050C5343-BDBC-4D72-85C1-10543C053D07}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{053003B5-D99B-40CD-BADC-C32CE52ED3F5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{056619CA-4FD9-4A97-8284-23F689A540D3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{05714C12-A9E7-4F2C-B69B-B7B6B50FF974}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{05BC29A3-33B2-497F-A901-75895ABB2EA8}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{05D1CD59-1C58-45D3-B159-0D77D0A431D8}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{05D38898-379A-426C-A6F0-F012242EC22F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{05F6FEF9-E995-4FE4-9D97-40F7ABDFEF64}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{060A601C-4B6F-4970-87FB-BAFD4905E3CB}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0622A716-70B8-41F6-B2D9-EF4E3D303E4C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{062A63E7-1A95-4834-AE72-D0ECDC363D53}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{062B39B1-C20B-48E7-81EB-78AF404015B9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0642014F-ED2C-47FA-9DA2-43CD4A57E824}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{06681915-3648-4AAF-B901-377AEBE35886}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{066A52A2-C9F0-4F30-8C74-2D80400091B0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0689E940-9D4E-4089-AA5B-3D67C1782038}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0697F9F5-A9AD-4079-A7B1-1F94524EE7E5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{06A4423B-FDA3-458B-85FF-82C618673160}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{06A5301D-97F1-4861-9F67-A9437B081CF8}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{06BD4967-4005-416D-87E5-21CCFC6F6720}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{06E290DF-CE63-4539-9543-8F655BD571F5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0702B7EF-B3FA-42CF-9515-C2FEF17F098E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07317814-6E1F-40B3-BC62-19AACF4CD7B9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{073842C4-C07F-4C45-9314-627B1DB107CA}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{074BE249-22AF-4A52-B49E-A2252E850DD3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0758FBA5-A9B9-4F59-9D4A-24DD8ECEBA38}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{076BAE48-8ADF-4ECD-9C89-C45BA4BF5AB6}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{076C216D-027A-4E7D-AD2F-28245406F32C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{076C61CD-DFDC-4D7E-9829-5BDEBC84D7FE}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07757B03-E9B8-452D-8EA7-DF6B9BBE0104}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{079D4C5B-5C71-4F1D-9B08-7CD78F7B43AA}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07A06D67-203C-4BE0-AF06-E10A2B2FEEA2}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07A33FEC-6F80-4639-960D-60F06F5D4BD9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07AA3AC9-5DBB-4579-A072-B4609B8CEE39}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07B22853-6F30-4AED-A075-A62532F9E0E3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07BC91F9-BAC8-468A-B0D8-047993B0AFA0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{07E234E1-0B5F-4511-A259-5621264E1D02}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0838C403-5D96-4D32-8F71-64537188FC5D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{084F326E-16C5-4988-895B-2397F6B6981C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{086515A6-A3EB-4BD6-A734-936743B79EB9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{089D3F1A-9D70-4790-B91A-5ECB5E5D8D6D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{08AA5812-A8DC-424D-BC1A-296FDEF51B41}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{08B63094-9D52-4533-808C-C8E29BBB7D64}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{08BABDA4-A632-4BE6-8439-ECD5879E8BDB}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{08FE27D5-D6A6-4937-B9E6-4A2E57ADD8A2}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09100C5B-2104-4BD4-841F-DBF772851475}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0933B319-C1C3-4F14-B0B8-7398DB9D8B3C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09370B53-3732-4BCA-B032-C340B1A3F08F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09410368-7336-4CA3-AAC6-666635F1F835}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0949AA30-E92C-4368-9574-FD069429C874}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{096901A0-5C4C-4CAB-AF37-76CF6C3D567E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{099E3A3C-19A0-4037-8ED8-D2BC825689B3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09B4CDB3-7E5A-4706-8202-363458E1E326}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09BF59C4-4F19-4BE1-87AC-DE94B092FD36}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{09CCABEF-A176-4B03-B240-004A15DF31C4}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A19B039-971D-4E00-BA35-6B50CED47E6F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A5F7860-032A-477A-B39A-EAE8CF816046}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A7A323D-4752-47AC-93E7-17C5300405C3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A7E98B4-FE73-4296-A27C-ACD160E9F5C1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A8F929E-A9FE-4C2C-BAF2-63AAE5D9DC14}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0A962B93-65B7-4DC4-836B-8BA833BDDACA}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0AA14A85-24C8-4CB3-8706-2DA0D8B9E5AD}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0AADB716-71AD-45FE-9200-41D2B93C10A0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0AD4A6DB-995F-4AE2-869C-FBB686A7738F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0AFA925B-FDE8-4304-B0B6-FF3E925B8708}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B0C6BCD-A3D2-4375-AA58-871E7930ABB5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B2BB5F9-3FB6-4ABB-BD4E-847DC7BA4BE1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B76135C-5BA6-4BBF-ABD2-C2E8741E9C68}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B82E2AD-32DD-43CE-933D-4F80397347D6}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B8E64B5-6CBF-4A20-9650-0D43EFEEC2D4}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B92E4A6-1D2F-4380-85C9-09C4235461D1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0B9E62A0-E8F8-44D0-9E09-B4AADB0D307A}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0BAD86CA-A8E0-464F-9277-BBFED2B49AD6}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0BDD3031-179B-47AA-86CC-27900BB8A5CE}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0BE4ACB0-08C5-417A-A6E0-D35791002683}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0BEB5C25-2A91-4411-B842-AE3F9F45DFE1}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C162150-BE3C-4A69-BDD9-5BB98008DE03}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C16A78E-3CB4-493B-8E69-4ED37FB9E508}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C3A34CC-CFEF-4591-AEF3-735602B07594}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C444F34-ACFD-4DF2-9353-F3CE66695819}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C686036-7600-45D5-A621-29605BA28437}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0C9257F9-19C3-4203-872B-8CD232F3AC3D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0CD07CFC-B8D0-4874-8D57-EFE3773F5AE2}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D136A49-7B63-480D-A5DD-AB0954EE0778}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D1A510F-E039-4F6D-8CBA-D1CBA912CF20}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D1B87FA-1195-401B-9AF8-1B42B418D72C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D477B54-E454-4929-9DDA-AD894C77159D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D482140-3A86-457D-9380-B4BC696CEC31}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D90E78D-034D-4F5A-BAE3-ED405FC2249C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0D91C792-256E-409D-8C91-DB7D9E6AAED4}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0DD3806B-7370-4F20-AB90-8058FB4B6974}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0DE6798B-76A0-4D54-B75A-577DCB9F978D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0DED51FE-E6FF-4639-B283-74D8EE3153CB}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0E00881E-D0EA-4626-B1D5-4753F029292E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0E11416C-0FBD-42B3-AEEE-B167EB54F246}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0E3D9DF0-7334-4585-8251-44FEF85AF9C8}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0E80DCF7-F373-4119-8482-207BE9FDC7EA}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0ECE6CEC-B217-4733-9ECE-08A905BB8DED}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0ED9649E-A417-4074-AC9A-FB6C497976A7}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0EE1EA88-BAA8-4D7B-9881-0E1F1193081B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0F29F0A0-BF60-4218-BFD0-D6524B1AEF4B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0F2F4950-E1DC-4FF6-87C8-E7CA82A8E64E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0F34C63D-AA67-4A67-AF7B-BDF16E6B44DF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0F37793B-4F22-48B9-BA71-F1266F9E07D5}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0F7E2B19-14FF-4370-A89E-FFF17F09F355}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0FBD1891-B9C9-49C8-A1F3-983773654BAF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0FDCEA2D-CC2F-47B1-9554-3A943F07646F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{0FF039E3-5EBA-4D69-9CC4-AD5CFA93A5CF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{101D5A2F-60DA-438C-9EAE-4DC6092E92C4}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{10636F81-E7D4-4A74-B881-FC5C11F212C7}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{106B7CCE-B512-4A8B-9FAC-65CB446184D8}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{10778936-CBE6-4321-93C5-DF1AB2618824}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{107D120A-366D-463E-95D7-0DA101D38E2C}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{10827896-7ED2-42A1-BF32-812B5DB1D428}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{108428B6-5461-4449-9559-E5991F31CC50}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{109ECF72-F1AE-4A66-9496-F22E2BA1D382}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{10B4EDDD-2B6A-4FE5-A7BA-B0BFFDE2B94E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{10BE4410-5B89-4ECF-ADB0-2400212E4655}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11188FF9-400A-42A2-B75F-86768033E892}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11609D60-BA84-4129-A4E0-054D92A7E8E9}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11966901-42FE-4F02-8199-7DFBEB7C4433}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{1198409E-56E9-443D-B5FE-4DBDEE22E46F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{119C4396-3620-4A38-AC9F-38E4BDF467F0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11A80BDB-3B6B-47A9-BE28-A70062808685}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11CAC89F-7413-487D-B2D4-73EF24A3CC9F}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11D03EFE-3B6A-4E32-A91B-AC038DF155BF}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{11D43C2C-0ADE-4ABE-98DB-8CC1FC8DFC70}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{1203EEF9-46E7-43AB-AEE9-D5D81FF118D3}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{122D8137-18FC-40FE-90E0-F1F18B60CA3D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{123C9AD7-1716-4AB3-BF27-92ACF634680B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{124563C6-0F30-459D-B362-01E78559D496}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{124DCBF9-962A-4078-8EF6-DA091A07108E}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{125FC7BE-CB04-4139-B355-3E372FAA8874}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{12644C33-34DC-4E0B-877A-98D4807FE80D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{128B3C44-010A-4136-B80F-D503AE411044}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{128E91E6-085F-4B9E-BD84-74E4996A76B6}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{12AE236A-0B43-47C8-9BA6-67EFB3FC5B89}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{12DB1A12-31A8-44D1-82B3-4C101A6026D0}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{131BB347-A536-480A-B3B2-ECF7B0BCAC7D}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{131D8ED2-728B-49E3-B456-C45E57202CBD}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{13284C29-A21E-404B-92C8-9DDE44586532}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{13475797-D240-4A32-B343-DB9BB146ED7B}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{13676614-F11E-44F1-BD3E-8E519C65F114}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{1370DD76-4194-40F5-BE56-BBBA2DB1B334}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{137E1C68-0A0E-4967-901F-8B73DB79B191}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{13B9384A-C33F-4CBF-8926-1532AA5D8E32}
Successfully deleted: [Empty Folder] C:\Users\Patrick\appdata\local\{13BD33B5-12D4-4C01-8F37-6F51C4ECAB12}
Successfully deleted: [Empty Folde

Corrine

Hi, Patrick.

The logs got a bit jumbled.  Please go to the C:\AdwCleaner folder and open the AdwCleaner[R0].txt file and copy/paste it here as a reply.  It should have an October 10 date if you ran it today. 

Next, please my instructions above for running Malwarebytes Anti-Malware.

Thanks!


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

p.steichen

Hi Corine,

Sorry for the jumbling !...

First :

# AdwCleaner v3.311 - Rapport créé le 10/10/2014 à 12:51:23
# Mis à jour le 30/09/2014 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Patrick - PATRICK-PC
# Exécuté depuis : C:\Users\Patrick\Downloads\adwcleaner_3.311.exe
# Option : Nettoyer

***** [ Services ] *****


***** [ Fichiers / Dossiers ] *****

Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\bProtector
Dossier Supprimé : C:\ProgramData\iMesh
Dossier Supprimé : C:\ProgramData\InstallBrainService
Dossier Supprimé : C:\ProgramData\Partner
Dossier Supprimé : C:\ProgramData\Uniblue
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMesh
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TornTV.com
Dossier Supprimé : C:\Program Files (x86)\Babylon
Dossier Supprimé : C:\Program Files (x86)\Complitly
Dossier Supprimé : C:\Program Files (x86)\ConduitEngine
Dossier Supprimé : C:\Program Files (x86)\Fluendo
Dossier Supprimé : C:\Program Files (x86)\iMesh Applications
Dossier Supprimé : C:\Program Files (x86)\Moozy
Dossier Supprimé : C:\Program Files (x86)\Nosibay
Dossier Supprimé : C:\Program Files (x86)\OfferBox
Dossier Supprimé : C:\Program Files (x86)\TornTV.com
Dossier Supprimé : C:\Program Files (x86)\VideoConverter
Dossier Supprimé : C:\Program Files (x86)\Productivity_2
Dossier Supprimé : C:\Program Files (x86)\TranslatorBar_5
Dossier Supprimé : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Babylon
Dossier Supprimé : C:\Users\Patrick\AppData\Local\iMesh
Dossier Supprimé : C:\Users\Patrick\AppData\Local\LPT
Dossier Supprimé : C:\Users\Patrick\AppData\Local\moovida air
Dossier Supprimé : C:\Users\Patrick\AppData\Local\PackageAware
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Smartbar
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\BS_Player
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\file2linkib
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\imeshbandmltbpi
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\mediabarim
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\Productivity_2
Dossier Supprimé : C:\Users\Patrick\AppData\LocalLow\TranslatorBar_5
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Babylon
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Complitly
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\dvdvideosoftiehelpers
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\file2linkib
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\moovida-1
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Nosibay
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\OfferBox
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\pdfforge
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Uniblue
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\VOPackage
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpecialSavings
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoConverter
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Conduit
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\mediabarim
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Smartbar
Dossier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\SweetIMToolbarData
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Software
Dossier Supprimé : C:\Program Files (x86)\Software
Dossier Supprimé : C:\Program Files (x86)\Mozilla Firefox\Extensions\toolbar@planet-surf.com
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Dossier Supprimé : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbjlipmgfoamgjaogmbihaffnpkpjajp
Fichier Supprimé : C:\Program Files (x86)\Mozilla Firefox\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
Fichier Supprimé : C:\Users\Public\Desktop\TornTV.lnk
Fichier Supprimé : C:\Windows\SysWOW64\conduitEngine.tmp
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Bubble Dock.boostrap.log
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iMesh.lnk
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\iMesh.lnk
Fichier Supprimé : C:\Users\Patrick\Desktop\Configure VO Package.lnk
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\bProtector_extensions.rdf
Fichier Supprimé : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\searchplugins\SearchTheWeb.xml

***** [ Tâches planifiées ] *****

Tâche Supprimée : bProtector
Tâche Supprimée : RocketTab Update Task
Tâche Supprimée : RocketTab

***** [ Raccourcis ] *****


***** [ Registre ] *****

Valeur Supprimée : HKCU\Software\Mozilla\Firefox\Extensions [specialsavings@superfish.com]
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\elchiiiejkobdbblfejjkbphbddgmljf
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Rechercher sur le Web
Valeur Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\DiscoveryHelper.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\iMesh.exe
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\IMTrProgress.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\IMWeb.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\WMHelper.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery
Clé Supprimée : HKLM\SOFTWARE\Classes\DiscoveryHelper.iMesh6Discovery.1
Clé Supprimée : HKLM\SOFTWARE\Classes\iMesh.AudioCD
Clé Supprimée : HKLM\SOFTWARE\Classes\iMesh.Device
Clé Supprimée : HKLM\SOFTWARE\Classes\iMesh.file
Clé Supprimée : HKLM\SOFTWARE\Classes\imweb.imwebcontrol
Clé Supprimée : HKLM\SOFTWARE\Classes\Prod.cap
Clé Supprimée : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\base64
Clé Supprimée : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\chrome
Clé Supprimée : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\prox
Clé Supprimée : HKLM\SOFTWARE\Classes\S
Clé Supprimée : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Clé Supprimée : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftonicApp.appCore
Clé Supprimée : HKLM\SOFTWARE\Classes\SoftonicApp.appCore.1
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Babylon_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock BSetup_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock BSetup_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock Update_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock Update_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\Bubble Dock_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IMBooster_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\IMBooster_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\iMesh_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\moovida_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\moovida_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SearchSettings_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMPlayCDAudioOnArrival
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMRipCDAudioOnArrival
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowCDAudioOnArrival
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\IMShowVolumeOnArrival
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Browser companion helper]
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_dropbox[1]_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASAPI32
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_pour_microsoft-photo-story[1]_RASMANCS
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{A7DDCBDE-5C86-415C-8A37-763AE183E7E4}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{2656B92B-0207-4AFB-BEBF-F5FD231ECD39}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{34CB0620-E343-4772-BBA8-D3074BC47516}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{412CD209-DDA4-4275-8C79-55F1C93FBD47}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{59570C1F-B692-48C9-91B4-7809E6945287}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{63A0F7FA-2C95-4D7E-AF25-EFCC303D20A1}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6559E502-6EE1-46B8-A83C-F3A45BDA23EE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A2858A72-758F-4486-B6A1-7F1DCC0924FA}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C63CA8A4-AB4E-49E5-A6C0-33FC86D80205}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{C6A7847E-8931-4A9A-B4EF-72A91E3CCF4D}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{DD0F1D24-E250-4E93-966C-65615720AEFB}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EC1277BB-1C71-4C0D-BA6D-BFEA16E773A6}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5E8CD073-21DF-4117-9BBD-D03C45D36CAE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E5DB89B8-5BE1-461C-A7EF-89B68211889D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{11D9E165-B8C1-4734-A56C-BC4FCACA966B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{252C2315-CCE0-4446-8DA7-C00292A690BA}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{AD79BAD6-9504-4F09-ACEC-7B319584A4C1}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{CD082CCA-086F-4FD8-8FD7-247A0DBBD1CC}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{F126C9FC-9299-40F2-BD42-C59023AD1E7F}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7DA17D5A-5718-4130-A605-FC316C827836}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{08E3D5D6-2256-4212-ADFD-34AB77020DC8}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7FEF0ACF-CF48-49E6-BE61-4B95F66CE8C3}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4E42-A125-57C0A11DBCDE}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CF034EA-7B46-48D3-8895-8A14B32AE445}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87E1CF4F-88DF-48ED-86E2-A83BEF7E68DE}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{784D809C-A55E-4142-923E-2E1B090FA19E}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE999702-CD3B-4D16-B6ED-B3A23E5AED44}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{157511C0-4298-4EAE-AE61-3C3C80D43DF3}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{28387537-E3F9-4ED7-860C-11E69AF4A8A0}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{795828A9-F271-43A8-8536-4484BB991D3D}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{B9B97401-98E1-4942-930D-C36652DAB7F2}]
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{087CDC12-0A11-4D1D-8DCF-44185D7C3496}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{088BF3A9-6AE8-47B9-A3FB-26262F236C79}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{237FDFDB-3722-470E-8BA8-90196DABE967}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{2AC7B9EB-3881-4EB9-8DEE-0A731A309FDE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{349C0469-ACDD-49DF-9B3E-0D82E7C7DC4D}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{41226591-6F7A-4082-B63A-67FE4A0CF7A6}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{55D69CD1-6715-4C40-BF05-9519AC4DC6E6}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{5E8CD073-21DF-4117-9BBD-D03C45D36CAE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66C8FD57-54C4-4D4F-BC95-DCCC763B410A}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{717BAE33-7061-4279-8AE5-6C13BC8AF3F9}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{84F06F7A-F811-48D7-8B34-3F4145183D8F}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{88F6D55F-AA3F-4003-BE69-4AC1998D6492}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{8DBCDED5-08AD-41A2-9BBC-235D84F4FE06}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{A0F66203-1A86-4812-9603-A57E09A4D7A3}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B37B4BA6-334E-72C1-B57E-6AFE8F8A5AF3}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{B77AD4AC-C1C2-B293-7737-71E13A11FFEA}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{BC39D1B3-4471-41C1-AACA-E097FAF4B7AA}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{D5A1EF9A-7948-435D-8B87-D6A598317288}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{DEB85542-1311-4EC6-8A32-5372EB27FC94}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E773F2CF-5E6E-FF2B-81A1-AC581A26B2B2}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Clé Supprimée : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49D6-A4D5-2E8D7341384E}
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Clé Supprimée : HKCU\Software\1ClickDownload
Clé Supprimée : HKCU\Software\Blabbers
Clé Supprimée : HKCU\Software\Boxore
Clé Supprimée : HKCU\Software\bProtector
Clé Supprimée : HKCU\Software\BrowserCompanion
Clé Supprimée : HKCU\Software\Complitly
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\Imesh
Clé Supprimée : HKCU\Software\Nosibay
Clé Supprimée : HKCU\Software\Offerbox
Clé Supprimée : HKCU\Software\performersoft llc
Clé Supprimée : HKCU\Software\RocketTabInstalled
Clé Supprimée : HKCU\Software\Search Extensions
Clé Supprimée : HKCU\Software\SmartBar
Clé Supprimée : HKCU\Software\smartbarbackup
Clé Supprimée : HKCU\Software\smartbarlog
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKCU\Software\Spointer
Clé Supprimée : HKCU\Software\YahooPartnerToolbar
Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
Clé Supprimée : HKCU\Software\AppDataLow\Software\mediabarim
Clé Supprimée : HKCU\Software\AppDataLow\Software\SpecialSavings
Clé Supprimée : HKCU\Software\AppDataLow\Software\Productivity_2
Clé Supprimée : HKCU\Software\AppDataLow\Software\TranslatorBar_5
Clé Supprimée : HKLM\SOFTWARE\Boxore
Clé Supprimée : HKLM\SOFTWARE\DataMngr
Clé Supprimée : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Clé Supprimée : HKLM\SOFTWARE\Imesh
Clé Supprimée : HKLM\SOFTWARE\iMeshMediabarTb
Clé Supprimée : HKLM\SOFTWARE\Offerbox
Clé Supprimée : HKLM\SOFTWARE\RocketTab
Clé Supprimée : HKLM\SOFTWARE\SimplyGen
Clé Supprimée : HKLM\SOFTWARE\Softonic
Clé Supprimée : HKLM\SOFTWARE\Uniblue
Clé Supprimée : HKLM\SOFTWARE\Productivity_2
Clé Supprimée : HKLM\SOFTWARE\TranslatorBar_5
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Features\1A594BF8F3A4D1C4DB72F3A32B6E7636
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636
Clé Supprimée : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4

***** [ Navigateurs ] *****

-\\ Internet Explorer v11.0.9600.17280

Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Paramètre Restauré : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]

-\\ Mozilla Firefox v32.0.3 (x86 fr)

[ Fichier : C:\Users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\prefs.js ]


-\\ Google Chrome v37.0.2062.124

[ Fichier : C:\Users\Patrick\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [34292 octets] - [09/10/2014 19:26:33]
AdwCleaner[R1].txt - [34356 octets] - [10/10/2014 12:47:12]
AdwCleaner[R2].txt - [34414 octets] - [10/10/2014 12:50:23]
AdwCleaner[S0].txt - [31860 octets] - [10/10/2014 12:51:23]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [31921 octets] ##########

Second :

<?xml version="1.0" encoding="UTF-16" ?>
<mbam-log>
<header>
<date>2014/10/10 22:08:51 +0200</date>
<logfile>mbam-log-2014-10-10 (22-08-44).xml</logfile>
<isadmin>yes</isadmin>
</header>
<engine>
<version>2.00.2.1012</version>
<malware-database>v2014.10.10.09</malware-database>
<rootkit-database>v2014.10.08.01</rootkit-database>
<license>free</license>
<file-protection>disabled</file-protection>
<web-protection>disabled</web-protection>
<self-protection>disabled</self-protection>
</engine>
<system>
<osversion>Windows 7 Service Pack 1</osversion>
<arch>x64</arch>
<username>Patrick</username>
<filesys>NTFS</filesys>
</system>
<summary>
<type>threat</type>
<result>completed</result>
<objects>373352</objects>
<time>719</time>
<processes>1</processes>
<modules>32</modules>
<keys>0</keys>
<values>0</values>
<datas>0</datas>
<folders>3</folders>
<files>33</files>
<sectors>0</sectors>
</summary>
<options>
<memory>enabled</memory>
<startup>enabled</startup>
<filesystem>enabled</filesystem>
<archives>enabled</archives>
<rootkits>disabled</rootkits>
<deeprootkit>disabled</deeprootkit>
<heuristics>enabled</heuristics>
<pup>enabled</pup>
<pum>enabled</pum>
</options>
<items>
<process><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><pid>3708</pid><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></process>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\MACTrackBarLib.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sgml.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sidb.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spbl.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sidc.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\siem.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sipb.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smsp.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smta.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smtu.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spbe.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sppsm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spusm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srau.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srbs.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srbu.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srns.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srom.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srpdm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srut.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<module><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\fr\Smartbar.Resources.LanguageSettings.resources.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></module>
<folder><path>C:\Users\Patrick\AppData\Local\Smartbar</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></folder>
<folder><path>C:\Users\Patrick\AppData\Local\Smartbar\Application</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></folder>
<folder><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\fr</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></folder>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\MACTrackBarLib.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sgml.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sidb.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spbl.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sidc.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\siem.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sipb.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smsp.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smta.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\smtu.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spbe.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\sppsm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\spusm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srau.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srbs.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srbu.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srns.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srom.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srpdm.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\srut.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
<file><path>C:\Users\Patrick\AppData\Local\Smartbar\Application\fr\Smartbar.Resources.LanguageSettings.resources.dll</path><vendor>PUP.Optional.SmartBar.A</vendor><action>delete-on-reboot</action><hash>d43d44cf8bf1bc7a3d17e006bf4344bc</hash></file>
</items>
</mbam-log>

I hope it's OK now.

Thanks

Patrick

Corrine

Thank you, Patrick.  Although the Malwarebytes log didn't post in a very pretty fashion, it is readable so I can see that even though AdwCleaner and JRT addressed the same PUPs (Potentially Unwanted Programs), there was still a lot remaining.  As a result, I'd like to run yet one more tool.  Please follow these instructions carefully.

Download ComboFix from here.

!!! IMPORTANT !!! Save ComboFix.exe to your Desktop

Disable your antivirus and anti-malware security applications. If not disabled, these programs will likely interfere with cleanup process. This can usually be accomplished by a right-click on the icon in the System Tray. 

Note:  If you are unsure how to disable your security software, see the instructions in this topic at Tech Support Forum:  How to disable your security applications.

Now, please run ComboFix:

  • Note:  If infections are found, ComboFix will automatically reboot the machine to complete the removal process.  Please ensure all opened windows are closed before proceeding.
  • Double-click ComboFix.exe on your desktop and follow the prompts.
  • As part of the process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it is strongly recommended to have this pre-installed on your machine before doing any malware removal. The Recovery Console will allow you to start up the computer in a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

    Please note: If the Microsoft Windows Recovery Console is already installed on the computer, ComboFix will continue the malware removal procedures.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console.
  • When prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.


  • After the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:


  • Click "Yes" to continue scanning for malware.

  • When finished, a log will be produced. Please include the C:\ComboFix.txt in your next reply.


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

p.steichen

Hi Corinne,
This the Combofix report :

ComboFix 14-10-04.01 - Patrick 11/10/2014  23:59:23.1.4 - x64
Microsoft Windows 7 Édition Familiale Premium   6.1.7601.1.1252.33.1036.18.4023.1869 [GMT 2:00]
Lancé depuis: c:\users\Patrick\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
FW: avast! Antivirus *Disabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Autres suppressions   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\program files (x86)\Complitly
c:\program files (x86)\Complitly\FireFoxExtensionWithFF8Fix.exe
c:\program files (x86)\Complitly\FireFoxUninstaller.exe
c:\program files (x86)\Complitly\InstTracker.exe
c:\program files (x86)\Complitly\support@Complitly.com\chrome.manifest
c:\program files (x86)\Complitly\support@Complitly.com\chrome\content\options.js
c:\program files (x86)\Complitly\support@Complitly.com\chrome\content\utils.js
c:\program files (x86)\Complitly\support@Complitly.com\defaults\preferences\predictad.js
c:\program files (x86)\Complitly\System.Data.SQLite.dll
c:\program files (x86)\Complitly\unins000.exe
c:\program files (x86)\OfferBox
c:\program files (x86)\OfferBox\OfferBoxBHO.dll
c:\programdata\248
c:\programdata\248\{725E527E-3A2C-4CF7-9675-F87333069CFC}.swf
c:\users\Patrick\AppData\Roaming\Complitly
c:\users\Patrick\AppData\Roaming\Complitly\64\KeepMeUpdated.exe
c:\users\Patrick\AppData\Roaming\Complitly\Complitly.dll
c:\users\Patrick\AppData\Roaming\Complitly\KeepMeUpdated.exe
c:\windows\system32\spool\DRIVERS\x64\3\E_IATIFBE.exe
c:\windows\SysWow64\Packet.dll
c:\windows\SysWow64\pthreadVC.dll
c:\windows\SysWow64\System32\MASetupCleaner.exe
c:\windows\SysWow64\System32\muzapp.exe
c:\windows\SysWow64\wpcap.dll
I:\autorun.inf
.
.
(((((((((((((((((((((((((((((((((((((((   Pilotes/Services   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NPF
-------\Service_npf
.
.
(((((((((((((((((((((((((((((   Fichiers créés du 2014-09-11 au 2014-10-11  ))))))))))))))))))))))))))))))))))))
.
.
2014-10-10 14:35 . 2014-10-11 04:30   --------   d-----w-   c:\program files (x86)\Malwarebytes Anti-Malware
2014-10-10 14:35 . 2014-10-10 14:35   --------   d-----w-   c:\programdata\Malwarebytes
2014-10-10 12:52 . 2014-10-10 12:52   --------   d-----w-   c:\windows\ERUNT
2014-10-09 17:27 . 2010-08-30 06:34   536576   ----a-w-   c:\windows\SysWow64\sqlite3.dll
2014-10-09 17:26 . 2014-10-10 10:51   --------   d-----w-   C:\AdwCleaner
2014-10-01 05:43 . 2014-09-25 02:08   371712   ----a-w-   c:\windows\system32\qdvd.dll
2014-10-01 05:43 . 2014-09-25 01:40   519680   ----a-w-   c:\windows\SysWow64\qdvd.dll
2014-09-29 18:06 . 2014-09-30 10:20   --------   d-----w-   c:\program files (x86)\MP3 Converter 1.9
2014-09-29 18:03 . 2014-10-10 13:45   --------   d-----w-   c:\users\Patrick\AppData\Local\LPT
2014-09-29 18:03 . 2014-10-11 04:30   --------   d-----w-   c:\users\Patrick\AppData\Local\Smartbar
2014-09-29 18:02 . 2014-10-11 04:30   --------   d-----w-   c:\users\Patrick\AppData\Roaming\VOPackage
2014-09-29 18:00 . 2014-10-10 13:46   --------   d-----w-   c:\program files (x86)\Search Extensions
2014-09-24 05:42 . 2014-09-09 22:11   2048   ----a-w-   c:\windows\system32\tzres.dll
2014-09-24 05:42 . 2014-09-09 21:47   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
.
.
.
((((((((((((((((((((((((((((((((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-09-23 18:40 . 2012-05-02 09:15   71344   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-23 18:40 . 2012-05-02 09:15   701104   ----a-w-   c:\windows\SysWow64\FlashPlayerApp.exe
2014-09-15 07:06 . 2010-11-14 09:35   278152   ------w-   c:\windows\system32\MpSigStub.exe
2014-09-10 21:44 . 2010-09-13 20:32   101694776   ----a-w-   c:\windows\system32\MRT.exe
2014-09-09 02:05 . 2014-10-11 21:44   11578928   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{19C38BC6-5DCA-40C3-856F-F160F0534A03}\mpengine.dll
2014-09-05 02:10 . 2014-09-10 05:08   578048   ----a-w-   c:\windows\system32\aepdu.dll
2014-09-05 02:05 . 2014-09-10 05:08   424448   ----a-w-   c:\windows\system32\aeinv.dll
2014-08-23 02:07 . 2014-08-29 05:57   404480   ----a-w-   c:\windows\system32\gdi32.dll
2014-08-23 01:45 . 2014-08-29 05:57   311808   ----a-w-   c:\windows\SysWow64\gdi32.dll
2014-08-23 00:59 . 2014-08-29 05:57   3163648   ----a-w-   c:\windows\system32\win32k.sys
2014-08-19 18:17 . 2010-06-24 09:33   23256   ----a-w-   c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2014-08-19 18:05 . 2014-09-10 21:53   374968   ----a-w-   c:\windows\system32\iedkcs32.dll
2014-08-18 23:01 . 2014-09-10 21:53   23591424   ----a-w-   c:\windows\system32\mshtml.dll
2014-08-18 22:29 . 2014-09-10 21:53   2724864   ----a-w-   c:\windows\system32\mshtml.tlb
2014-08-18 22:29 . 2014-09-10 21:53   4096   ----a-w-   c:\windows\system32\ieetwcollectorres.dll
2014-08-18 22:20 . 2014-09-10 21:53   2793984   ----a-w-   c:\windows\system32\iertutil.dll
2014-08-18 22:19 . 2014-09-10 21:53   5833728   ----a-w-   c:\windows\system32\jscript9.dll
2014-08-18 22:15 . 2014-09-10 21:53   547328   ----a-w-   c:\windows\system32\vbscript.dll
2014-08-18 22:15 . 2014-09-10 21:53   66048   ----a-w-   c:\windows\system32\iesetup.dll
2014-08-18 22:14 . 2014-09-10 21:53   48640   ----a-w-   c:\windows\system32\ieetwproxystub.dll
2014-08-18 22:14 . 2014-09-10 21:53   83968   ----a-w-   c:\windows\system32\MshtmlDac.dll
2014-08-18 22:08 . 2014-09-10 21:53   51200   ----a-w-   c:\windows\system32\jsproxy.dll
2014-08-18 22:08 . 2014-09-10 21:53   4232704   ----a-w-   c:\windows\SysWow64\jscript9.dll
2014-08-18 22:08 . 2014-09-10 21:53   33792   ----a-w-   c:\windows\system32\iernonce.dll
2014-08-18 22:05 . 2014-09-10 21:53   596480   ----a-w-   c:\windows\system32\ieui.dll
2014-08-18 22:03 . 2014-09-10 21:53   139264   ----a-w-   c:\windows\system32\ieUnatt.exe
2014-08-18 22:03 . 2014-09-10 21:53   111616   ----a-w-   c:\windows\system32\ieetwcollector.exe
2014-08-18 22:03 . 2014-09-10 21:53   758272   ----a-w-   c:\windows\system32\jscript9diag.dll
2014-08-18 21:57 . 2014-09-10 21:53   2724864   ----a-w-   c:\windows\SysWow64\mshtml.tlb
2014-08-18 21:56 . 2014-09-10 21:53   940032   ----a-w-   c:\windows\system32\MsSpellCheckingFacility.exe
2014-08-18 21:51 . 2014-09-10 21:53   446464   ----a-w-   c:\windows\system32\dxtmsft.dll
2014-08-18 21:46 . 2014-09-10 21:53   454656   ----a-w-   c:\windows\SysWow64\vbscript.dll
2014-08-18 21:45 . 2014-09-10 21:53   61952   ----a-w-   c:\windows\SysWow64\iesetup.dll
2014-08-18 21:45 . 2014-09-10 21:53   72704   ----a-w-   c:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-18 21:44 . 2014-09-10 21:53   51200   ----a-w-   c:\windows\SysWow64\ieetwproxystub.dll
2014-08-18 21:44 . 2014-09-10 21:53   61952   ----a-w-   c:\windows\SysWow64\MshtmlDac.dll
2014-08-18 21:40 . 2014-09-10 21:53   195584   ----a-w-   c:\windows\system32\msrating.dll
2014-08-18 21:39 . 2014-09-10 21:53   85504   ----a-w-   c:\windows\system32\mshtmled.dll
2014-08-18 21:38 . 2014-09-10 21:53   289280   ----a-w-   c:\windows\system32\dxtrans.dll
2014-08-18 21:36 . 2014-09-10 21:53   112128   ----a-w-   c:\windows\SysWow64\ieUnatt.exe
2014-08-18 21:35 . 2014-09-10 21:53   597504   ----a-w-   c:\windows\SysWow64\jscript9diag.dll
2014-08-18 21:25 . 2014-09-10 21:53   727040   ----a-w-   c:\windows\system32\msfeeds.dll
2014-08-18 21:25 . 2014-09-10 21:53   707072   ----a-w-   c:\windows\system32\ie4uinit.exe
2014-08-18 21:23 . 2014-09-10 21:53   2104832   ----a-w-   c:\windows\system32\inetcpl.cpl
2014-08-18 21:23 . 2014-09-10 21:53   1249280   ----a-w-   c:\windows\system32\mshtmlmedia.dll
2014-08-18 21:22 . 2014-09-10 21:53   60416   ----a-w-   c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-08-18 21:16 . 2014-09-10 21:53   13588480   ----a-w-   c:\windows\system32\ieframe.dll
2014-08-18 21:15 . 2014-09-10 21:53   2310656   ----a-w-   c:\windows\system32\wininet.dll
2014-08-18 21:08 . 2014-09-10 21:53   2014208   ----a-w-   c:\windows\SysWow64\inetcpl.cpl
2014-08-18 21:07 . 2014-09-10 21:53   1068032   ----a-w-   c:\windows\SysWow64\mshtmlmedia.dll
2014-08-18 20:55 . 2014-09-10 21:53   1447424   ----a-w-   c:\windows\system32\urlmon.dll
2014-08-18 20:46 . 2014-09-10 21:53   1812992   ----a-w-   c:\windows\SysWow64\wininet.dll
2014-08-18 20:38 . 2014-09-10 21:53   775168   ----a-w-   c:\windows\system32\ieapfltr.dll
2014-08-01 11:53 . 2014-09-10 05:09   1031168   ----a-w-   c:\windows\system32\TSWorkspace.dll
2014-08-01 11:35 . 2014-09-10 05:09   793600   ----a-w-   c:\windows\SysWow64\TSWorkspace.dll
2014-07-25 00:35 . 2014-07-25 00:35   875688   ----a-w-   c:\windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 21:47 . 2014-07-24 21:47   869544   ----a-w-   c:\windows\system32\msvcr120_clr0400.dll
2014-07-14 02:02 . 2014-08-18 18:20   1216000   ----a-w-   c:\windows\system32\rpcrt4.dll
2014-07-14 01:40 . 2014-08-18 18:20   664064   ----a-w-   c:\windows\SysWow64\rpcrt4.dll
2013-05-16 21:45 . 2013-05-16 21:45   10965504   ----a-w-   c:\program files (x86)\Common Files\lpuninstall.exe
2010-01-26 09:11 . 2011-10-22 09:42   444283   ----a-w-   c:\program files (x86)\Common Files\WinPcapNmap.exe
.
.
(((((((((((((((((((((((((((((((((   Points de chargement Reg   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04   131480   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04   131480   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04   131480   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04   131480   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2010-02-01 18:03   120176   ----a-w-   c:\program files (x86)\EgisTec MyWinLocker\x86\PSDProtect.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2010-09-16 3366200]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-03-19 39408]
"Browser Infrastructure Helper"="c:\users\Patrick\AppData\Local\Smartbar\Application\Shopop.exe" [2014-08-28 29720]
"CCleaner Monitoring"="c:\program files (x86)\CCleaner\CCleaner64.exe" [2014-09-26 6482200]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"ANIWZCS2Service"="c:\program files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2009-08-21 98304]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2014-08-21 959176]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-01-20 43848]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-31 4085896]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-01-20 152392]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2014-01-17 421888]
.
c:\users\Patrick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Patrick\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-9-13 36414624]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Install LastPass FF RunOnce.lnk - c:\program files (x86)\Common Files\lpuninstall.exe -q -name=LastPass -ffuuid support@lastpass.com [2013-5-16 10965504]
Install LastPass IE RunOnce.lnk - c:\program files (x86)\Common Files\lpuninstall.exe -p -name=LastPass -ffuuid support@lastpass.com [2013-5-16 10965504]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 avast! Firewall;avast! Firewall;c:\program files\AVAST Software\Avast\afwServ.exe;c:\program files\AVAST Software\Avast\afwServ.exe

  • R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

  • R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe

  • R3 esgiguard;esgiguard;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys

  • R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe

  • R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe;c:\program files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe

  • R3 MWLService;MyWinLocker Service;c:\program files (x86)\EgisTec MyWinLocker\x86\MWLService.exe;c:\program files (x86)\EgisTec MyWinLocker\x86\MWLService.exe

  • R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys;c:\windows\SYSNATIVE\Drivers\TFsExDisk.sys

  • R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys

  • R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe

  • S0 aswRvrt;avast! Revert;

  • S0 aswVmm;avast! VM Monitor;

  • S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys;c:\windows\SYSNATIVE\Drivers\sptd.sys

  • S1 anodlwf;ANOD Network Security Filter driver;c:\windows\system32\DRIVERS\anodlwfx.sys;c:\windows\SYSNATIVE\DRIVERS\anodlwfx.sys

  • S1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys;c:\windows\SYSNATIVE\drivers\aswKbd.sys

  • S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys

  • S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys

  • S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys

  • S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys

  • S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys

  • S2 ANIWConnService;ANIWConn Service;c:\windows\system32\ANIWConnService.exe;c:\windows\SYSNATIVE\ANIWConnService.exe

  • S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys

  • S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys

  • S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys

  • S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe

  • S2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe

  • S2 dgdersvc;Device Error Recovery Service;c:\windows\system32\dgdersvc.exe;c:\windows\SYSNATIVE\dgdersvc.exe

  • S2 Greg_Service;GRegService;c:\program files (x86)\Acer\Registration\GregHSRW.exe;c:\program files (x86)\Acer\Registration\GregHSRW.exe

  • S2 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files (x86)\PDF Architect\HelperService.exe;c:\program files (x86)\PDF Architect\HelperService.exe

  • S2 PDF Architect Service;PDF Architect Service;c:\program files (x86)\PDF Architect\ConversionService.exe;c:\program files (x86)\PDF Architect\ConversionService.exe

  • S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

  • S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe

  • S2 Updater Service;Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe

  • S2 USBS3S4Detection;USBS3S4Detection;c:\oem\USBDECTION\USBS3S4Detection.exe;c:\oem\USBDECTION\USBS3S4Detection.exe

  • S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys;c:\windows\SYSNATIVE\drivers\dgderdrv.sys

  • S3 hxctlflt;hxctlflt;c:\windows\system32\Drivers\hxctlflt.sys;c:\windows\SYSNATIVE\Drivers\hxctlflt.sys

  • S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys

  • .
    .
    [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
    2014-09-25 06:30   1096520   ----a-w-   c:\program files (x86)\Google\Chrome\Application\37.0.2062.124\Installer\chrmstp.exe
    .
    Contenu du dossier 'Tâches planifiées'
    .
    2014-10-11 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-02 18:40]
    .
    2014-10-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-13 20:42]
    .
    2014-10-09 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-09-13 20:42]
    .
    .
    --------- X64 Entries -----------
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
    @="{472083B0-C522-11CF-8763-00608CC02F24}"
    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
    2014-07-06 20:18   634872   ----a-w-   c:\program files\AVAST Software\Avast\ashShA64.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
    @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
    2014-06-24 22:04   164760   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
    @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
    2014-06-24 22:04   164760   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
    @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
    2014-06-24 22:04   164760   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
    @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
    [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
    2014-06-24 22:04   164760   ----a-w-   c:\users\Patrick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
    @="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
    [HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
    2010-02-01 18:06   137584   ----a-w-   c:\program files (x86)\EgisTec MyWinLocker\x64\PSDProtect.dll
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-01-12 9955872]
    .
    ------- Examen supplémentaire -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    mStart Page = https://fr.yahoo.com?fr=hp-avast&type=avastbcl
    mLocal Page = c:\windows\SysWOW64\blank.htm
    mSearch Page = https://fr.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
    mSearch Bar = https://fr.yahoo.com?fr=hp-avast&type=avastbcl
    uInternet Settings,ProxyOverride = <-loopback>
    uInternet Settings,ProxyServer = http=127.0.0.1:49177;https=127.0.0.1:49177
    uSearchAssistant = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkCQ8dsjUrNBY-bweN-GeNKEF99BhkRkEk-8LZMScotNxI5JH97KHVjohvVDr4GnVeeKZp8Sy1ITvv3mfFcW43CvhAPpLZclBcjG41u_Mrxqc60eX77MFK6_GP0MAJrxShSLOqP4FqVlcA,,&q={searchTerms}
    uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
    IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
    IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
    IE: Free YouTube to MP3 Converter - c:\users\Patrick\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
    IE: LastPass - file://c:\users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=lastpass
    IE: Rechercher sur le Web - c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html
    IE: Remplissage de Formulaire LastPass - file://c:\users\Patrick\AppData\LocalLow\LastPass\context.html?cmd=fillforms
    TCP: DhcpNameServer = 212.27.40.240 212.27.40.241
    DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
    FF - ProfilePath - c:\users\Patrick\AppData\Roaming\Mozilla\Firefox\Profiles\7v8knj8u.default\
    .
    - - - - ORPHELINS SUPPRIMES - - - -
    .
    URLSearchHooks-{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - (no file)
    URLSearchHooks-{b9b97401-98e1-4942-930d-c36652dab7f2} - (no file)
    URLSearchHooks-{795828a9-f271-43a8-8536-4484bb991d3d} - (no file)
    BHO-{474597C5-AB09-49d6-A4D5-2E8D7341384E} - (no file)
    Toolbar-Locked - (no file)
    Toolbar-{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - (no file)
    Toolbar-{b9b97401-98e1-4942-930d-c36652dab7f2} - (no file)
    Toolbar-{795828a9-f271-43a8-8536-4484bb991d3d} - (no file)
    Toolbar-{28387537-e3f9-4ed7-860c-11e69af4a8a0} - (no file)
    Toolbar-10 - (no file)
    Wow6432Node-HKLM-Run-Browser companion helper - c:\program files (x86)\BrowserCompanion\BCHelper.exe
    HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
    BHO-{474597C5-AB09-49d6-A4D5-2E8D7341384E} - (no file)
    Toolbar-Locked - (no file)
    Toolbar-10 - (no file)
    WebBrowser-{B9B97401-98E1-4942-930D-C36652DAB7F2} - (no file)
    WebBrowser-{795828A9-F271-43A8-8536-4484BB991D3D} - (no file)
    AddRemove-DealPly - c:\users\Patrick\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe
    .
    .
    .
    --------------------- CLES DE REGISTRE BLOQUEES ---------------------
    .
    [HKEY_USERS\S-1-5-21-1034920144-2155261896-195262811-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
    @Denied: (2) (LocalSystem)
    "Progid"="WindowsLiveMail.Email.1"
    .
    [HKEY_USERS\S-1-5-21-1034920144-2155261896-195262811-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
    @Denied: (2) (LocalSystem)
    "Progid"="WindowsLiveMail.VCard.1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_167_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
    @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_167_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker6"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_167_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_167_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_167.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.15"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_167.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_167.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_167.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker6"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
    @="*Spammer*?????? v1"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
    @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
    @="*Spammer*?????? v2"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
    @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
    .
    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
    @Denied: (Full) (Everyone)
    .
    ------------------------ Autres processus actifs ------------------------
    .
    c:\program files\AVAST Software\Avast\AvastSvc.exe
    c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    c:\windows\SysWOW64\ANIWConnService.exe
    c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\program files (x86)\Search Extensions\Client.exe
    c:\program files (x86)\Cyberlink\Shared files\RichVideo.exe
    .
    **************************************************************************
    .
    Heure de fin: 2014-10-12  00:24:01 - La machine a redémarré
    ComboFix-quarantined-files.txt  2014-10-11 22:24
    .
    Avant-CF: 219 435 401 216 octets libres
    Après-CF: 219 553 112 064 octets libres
    .
    - - End Of File - - 08952B8D0A026FD6BC0613094F86A8A5

Corrine

Thank you, Patrick.  I'm glad I had you go that extra step.  ComboFix took care of the "browser hijacker" that the other tools weren't removing. 

How is your computer now?


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.