Log.txt
ComboFix 13-09-16.01 - Allaire 2013-09-16 23:26:51.1.4 - x64
Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.2.1036.18.8154.5906 [GMT -4:00]
Lancé depuis: c:\users\Allaire\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
AV: Webroot SecureAnywhere *Disabled/Updated* {9C0666FC-6C7D-3E97-3C40-0C6B33FC7401}
SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Webroot SecureAnywhere *Disabled/Updated* {27678718-4A47-3119-06F0-3719487B3EBC}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\WinZip Driver Updater
c:\program files (x86)\WinZip Driver Updater\Chinese_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Danish_rcp.ini
c:\program files (x86)\WinZip Driver Updater\difxapi.dll
c:\program files (x86)\WinZip Driver Updater\difxapi64.dll
c:\program files (x86)\WinZip Driver Updater\Dutch_rcp.ini
c:\program files (x86)\WinZip Driver Updater\eng_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Finnish_rcp_fi.ini
c:\program files (x86)\WinZip Driver Updater\French_rcp.ini
c:\program files (x86)\WinZip Driver Updater\German_rcp.ini
c:\program files (x86)\WinZip Driver Updater\isxdl.dll
c:\program files (x86)\WinZip Driver Updater\Italian_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Japanese_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Norwegian_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Portuguese_rcp.ini
c:\program files (x86)\WinZip Driver Updater\russian_rcp_ru.ini
c:\program files (x86)\WinZip Driver Updater\Spanish_rcp.ini
c:\program files (x86)\WinZip Driver Updater\Swedish_rcp.ini
c:\program files (x86)\WinZip Driver Updater\unins000.exe
c:\program files (x86)\WinZip Driver Updater\unrar.dll
c:\program files (x86)\WinZip Driver Updater\updater\amd64Helper\difxapi.dll
c:\program files (x86)\WinZip Driver Updater\updater\amd64Helper\DriverUpdateHelper64.exe
c:\program files (x86)\WinZip Driver Updater\updater\amd64Helper\DriverUpdateHelper64.manifest
c:\program files (x86)\WinZip Driver Updater\updater\extract\7z.dll
c:\program files (x86)\WinZip Driver Updater\updater\extract\7z.exe
c:\program files (x86)\WinZip Driver Updater\WDUUninstall.exe
c:\program files (x86)\WinZip Driver Updater\winzipdu.exe
c:\users\Allaire\AppData\Local\Google\Chrome\User Data\Default\Preferences
c:\windows\SysWow64\conhost.exe
c:\windows\SysWow64\dwm.exe
c:\windows\SysWow64\lsm.exe
c:\windows\SysWow64\nvvsvc.exe
c:\windows\SysWow64\spoolsv.exe
c:\windows\SysWow64\taskhost.exe
c:\windows\SysWow64\ViakaraokeSrv.exe
c:\windows\SysWow64\wuauclt.exe
c:\windows\Tasks\WinZipDriverUpdater_UPDATES.job
D:\install.exe
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2013-08-17 au 2013-09-17 ))))))))))))))))))))))))))))))))))))
.
.
2013-09-16 22:55 . 2013-09-05 05:32 9694160 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{F2AF2C71-3112-4058-BD6C-E0A4093C5F3D}\mpengine.dll
2013-09-16 04:14 . 2013-09-16 04:40 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable)
2013-09-15 21:22 . 2013-09-15 21:22 -------- d-----w- c:\users\Allaire\AppData\Local\CrashDumps
2013-09-15 19:02 . 2013-09-15 19:08 -------- d-----w- c:\users\Allaire\AppData\Local\NPE
2013-09-15 19:02 . 2013-09-15 19:02 -------- d-----w- c:\programdata\Norton
2013-09-15 17:24 . 2013-09-15 17:24 0 ----a-w- c:\windows\SysWow64\winlogon.exe
2013-09-15 17:24 . 2013-09-15 17:24 0 ----a-w- c:\windows\SysWow64\smss.exe
2013-09-15 17:24 . 2013-09-15 17:24 0 ----a-w- c:\windows\SysWow64\services.exe
2013-09-15 17:24 . 2013-09-15 17:24 0 ----a-w- c:\windows\SysWow64\lsass.exe
2013-09-15 17:16 . 2013-09-15 17:16 -------- d-----w- c:\users\Allaire\AppData\Roaming\QuickScan
2013-09-15 16:38 . 2013-08-06 08:58 9515512 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-09-15 00:00 . 2013-09-15 00:00 -------- d-----w- c:\users\Allaire\AppData\Roaming\SUPERAntiSpyware.com
2013-09-15 00:00 . 2013-09-15 00:00 -------- d-----w- c:\program files\SUPERAntiSpyware
2013-09-15 00:00 . 2013-09-15 00:00 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2013-09-14 23:58 . 2013-09-16 22:42 150160 ----a-w- c:\windows\SysWow64\WRusr.dll
2013-09-14 23:58 . 2013-09-14 23:58 113152 ----a-w- c:\windows\system32\drivers\WRkrn.sys
2013-09-14 23:58 . 2013-09-14 23:58 -------- d-----w- c:\program files\Webroot
2013-09-14 23:39 . 2013-08-05 02:25 155584 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-09-14 22:15 . 2013-09-16 04:05 -------- d-----w- c:\programdata\WRData
2013-09-14 17:49 . 2013-09-15 18:55 -------- d-----w- c:\users\Allaire\AppData\Local\ElevatedDiagnostics
2013-09-14 16:49 . 2013-09-14 16:49 -------- d-----w- c:\users\Allaire\AppData\Roaming\Creative
2013-09-07 00:50 . 2013-09-14 18:29 -------- d-----w- c:\users\Allaire\AppData\Roaming\WinZip
2013-09-07 00:49 . 2013-09-14 18:29 -------- d-----w- c:\users\Allaire\.swt
2013-09-07 00:49 . 2013-09-14 17:52 -------- d-----w- c:\users\Allaire\AppData\Roaming\.spotflux
2013-09-05 21:51 . 2013-09-05 21:51 965008 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{B944A6F0-1416-41DB-8E59-F31F2C8973F3}\gapaengine.dll
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-09-14 23:47 . 2012-09-11 17:27 79143768 ----a-w- c:\windows\system32\MRT.exe
2013-09-08 18:08 . 2012-09-18 23:27 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-08 18:08 . 2012-09-18 23:27 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-08-22 22:17 . 2012-10-03 22:04 941720 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2013-08-17 01:53 . 2013-08-17 01:53 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-08-17 01:53 . 2012-09-20 23:58 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-02 01:48 . 2013-09-14 23:39 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2013-07-25 09:25 . 2013-08-14 23:18 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-25 08:57 . 2013-08-14 23:18 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
2013-07-19 01:58 . 2013-08-14 23:18 2048 ----a-w- c:\windows\system32\tzres.dll
2013-07-19 01:41 . 2013-08-14 23:18 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2013-07-09 05:52 . 2013-08-14 23:18 224256 ----a-w- c:\windows\system32\wintrust.dll
2013-07-09 05:51 . 2013-08-14 23:18 1217024 ----a-w- c:\windows\system32\rpcrt4.dll
2013-07-09 05:46 . 2013-08-14 23:18 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2013-07-09 05:46 . 2013-08-14 23:18 1472512 ----a-w- c:\windows\system32\crypt32.dll
2013-07-09 05:46 . 2013-08-14 23:18 139776 ----a-w- c:\windows\system32\cryptnet.dll
2013-07-09 04:52 . 2013-08-14 23:18 663552 ----a-w- c:\windows\SysWow64\rpcrt4.dll
2013-07-09 04:52 . 2013-08-14 23:18 175104 ----a-w- c:\windows\SysWow64\wintrust.dll
2013-07-09 04:46 . 2013-08-14 23:18 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2013-07-09 04:46 . 2013-08-14 23:18 1166848 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-07-09 04:46 . 2013-08-14 23:18 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2013-07-08 22:47 . 2013-07-08 22:47 1066 ----a-w- c:\windows\Fonts\FCEBO__0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1087 ----a-w- c:\windows\Fonts\FUBO___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1080 ----a-w- c:\windows\Fonts\FUB____0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1111 ----a-w- c:\windows\Fonts\FUCLO__0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1081 ----a-w- c:\windows\Fonts\FUCBO__0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1074 ----a-w- c:\windows\Fonts\FUCB___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1068 ----a-w- c:\windows\Fonts\FUCEB__0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1104 ----a-w- c:\windows\Fonts\FUCL___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1077 ----a-w- c:\windows\Fonts\FUCO___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1105 ----a-w- c:\windows\Fonts\FUEBO__0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1070 ----a-w- c:\windows\Fonts\FUC____0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1098 ----a-w- c:\windows\Fonts\FUEB___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1082 ----a-w- c:\windows\Fonts\FUHO___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1085 ----a-w- c:\windows\Fonts\FULO___0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1078 ----a-w- c:\windows\Fonts\FUL____0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1075 ----a-w- c:\windows\Fonts\FUH____0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1081 ----a-w- c:\windows\Fonts\FUO____0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1189 ----a-w- c:\windows\Fonts\FUTUFB_0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1252 ----a-w- c:\windows\Fonts\FUTUFC_0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1092 ----a-w- c:\windows\Fonts\FUTUFCB_0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1214 ----a-w- c:\windows\Fonts\FUTUFM_0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 1212 ----a-w- c:\windows\Fonts\FUTUFEB_0.PFM
2013-07-08 22:47 . 2013-07-08 22:47 580 ----a-w- c:\windows\Fonts\FUTUFPP_0.PFM
2013-07-08 22:46 . 2013-07-08 22:47 1188 ----a-w- c:\windows\Fonts\FUTUF_0.PFM
2013-07-08 22:46 . 2013-07-08 22:47 1099 ----a-w- c:\windows\Fonts\FUWO___0.PFM
2013-07-08 22:46 . 2013-07-08 22:47 1092 ----a-w- c:\windows\Fonts\FUW____0.PFM
2013-07-08 22:46 . 2013-07-08 22:47 1073 ----a-w- c:\windows\Fonts\FU_____0.PFM
2013-07-08 20:12 . 2013-07-08 20:12 39104 ----a-w- c:\windows\system32\drivers\tapSF0901.sys
2013-07-06 06:03 . 2013-08-14 23:18 1910208 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-07-02 03:30 . 2013-07-02 03:30 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-07-02 03:30 . 2013-07-02 03:30 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2013-07-02 03:30 . 2013-07-02 03:30 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2013-07-02 03:30 . 2013-07-02 03:30 61952 ----a-w- c:\windows\SysWow64\tdc.ocx
2013-07-02 03:30 . 2013-07-02 03:30 523264 ----a-w- c:\windows\SysWow64\vbscript.dll
2013-07-02 03:30 . 2013-07-02 03:30 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2013-07-02 03:30 . 2013-07-02 03:30 38400 ----a-w- c:\windows\SysWow64\imgutil.dll
2013-07-02 03:30 . 2013-07-02 03:30 361984 ----a-w- c:\windows\SysWow64\html.iec
2013-07-02 03:30 . 2013-07-02 03:30 226304 ----a-w- c:\windows\system32\elshyph.dll
2013-07-02 03:30 . 2013-07-02 03:30 185344 ----a-w- c:\windows\SysWow64\elshyph.dll
2013-07-02 03:30 . 2013-07-02 03:30 158720 ----a-w- c:\windows\SysWow64\msls31.dll
2013-07-02 03:30 . 2013-07-02 03:30 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2013-07-02 03:30 . 2013-07-02 03:30 138752 ----a-w- c:\windows\SysWow64\wextract.exe
2013-07-02 03:30 . 2013-07-02 03:30 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2013-07-02 03:30 . 2013-07-02 03:30 12800 ----a-w- c:\windows\SysWow64\mshta.exe
2013-07-02 03:30 . 2013-07-02 03:30 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2013-07-02 03:30 . 2013-07-02 03:30 97280 ----a-w- c:\windows\system32\mshtmled.dll
2013-07-02 03:30 . 2013-07-02 03:30 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-07-02 03:30 . 2013-07-02 03:30 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-07-02 03:30 . 2013-07-02 03:30 81408 ----a-w- c:\windows\system32\icardie.dll
2013-07-02 03:30 . 2013-07-02 03:30 77312 ----a-w- c:\windows\system32\tdc.ocx
2013-07-02 03:30 . 2013-07-02 03:30 762368 ----a-w- c:\windows\system32\ieapfltr.dll
2013-07-02 03:30 . 2013-07-02 03:30 62976 ----a-w- c:\windows\system32\pngfilt.dll
2013-07-02 03:30 . 2013-07-02 03:30 599552 ----a-w- c:\windows\system32\vbscript.dll
2013-07-02 03:30 . 2013-07-02 03:30 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2013-07-02 03:30 . 2013-07-02 03:30 51200 ----a-w- c:\windows\system32\imgutil.dll
2013-07-02 03:30 . 2013-07-02 03:30 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-07-02 03:30 . 2013-07-02 03:30 452096 ----a-w- c:\windows\system32\dxtmsft.dll
2013-07-02 03:30 . 2013-07-02 03:30 441856 ----a-w- c:\windows\system32\html.iec
2013-07-02 03:30 . 2013-07-02 03:30 281600 ----a-w- c:\windows\system32\dxtrans.dll
2013-07-02 03:30 . 2013-07-02 03:30 27648 ----a-w- c:\windows\system32\licmgr10.dll
2013-07-02 03:30 . 2013-07-02 03:30 270848 ----a-w- c:\windows\system32\iedkcs32.dll
2013-07-02 03:30 . 2013-07-02 03:30 247296 ----a-w- c:\windows\system32\webcheck.dll
2013-07-02 03:30 . 2013-07-02 03:30 235008 ----a-w- c:\windows\system32\url.dll
2013-07-02 03:30 . 2013-07-02 03:30 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll
2013-07-02 03:30 . 2013-07-02 03:30 216064 ----a-w- c:\windows\system32\msls31.dll
2013-07-02 03:30 . 2013-07-02 03:30 197120 ----a-w- c:\windows\system32\msrating.dll
2013-07-02 03:30 . 2013-07-02 03:30 173568 ----a-w- c:\windows\system32\ieUnatt.exe
2013-07-02 03:30 . 2013-07-02 03:30 167424 ----a-w- c:\windows\system32\iexpress.exe
2013-07-02 03:30 . 2013-07-02 03:30 1509376 ----a-w- c:\windows\system32\inetcpl.cpl
2013-07-02 03:30 . 2013-07-02 03:30 149504 ----a-w- c:\windows\system32\occache.dll
2013-07-02 03:30 . 2013-07-02 03:30 144896 ----a-w- c:\windows\system32\wextract.exe
2013-07-02 03:30 . 2013-07-02 03:30 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2013-07-02 03:30 . 2013-07-02 03:30 1400416 ----a-w- c:\windows\system32\ieapfltr.dat
2013-07-02 03:30 . 2013-07-02 03:30 13824 ----a-w- c:\windows\system32\mshta.exe
2013-07-02 03:30 . 2013-07-02 03:30 136192 ----a-w- c:\windows\system32\iepeers.dll
2013-07-02 03:30 . 2013-07-02 03:30 135680 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-07-02 03:30 . 2013-07-02 03:30 12800 ----a-w- c:\windows\system32\msfeedssync.exe
2013-07-02 03:30 . 2013-07-02 03:30 102912 ----a-w- c:\windows\system32\inseng.dll
2013-06-26 23:21 . 2013-06-26 23:21 23208 ----a-w- c:\windows\system32\drivers\Sftvolwin7.sys
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\1TortoiseNormal]
@="{C5994560-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994560-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\2TortoiseModified]
@="{C5994561-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994561-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\3TortoiseConflict]
@="{C5994562-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994562-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\4TortoiseLocked]
@="{C5994563-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994563-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\5TortoiseReadOnly]
@="{C5994564-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994564-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\6TortoiseDeleted]
@="{C5994565-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994565-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\7TortoiseAdded]
@="{C5994566-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994566-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\8TortoiseIgnored]
@="{C5994567-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994567-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\9TortoiseUnversioned]
@="{C5994568-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994568-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 64792 ----a-w- c:\program files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Power2GoExpress"="NA" [X]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-21 19875432]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2013-08-15 6581488]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2012-01-12 5028464]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-30 284440]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-01-27 291608]
"CLMLServer"="c:\program files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [2010-08-20 107816]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2007-05-11 624248]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"iTunesHelper"="d:\itunes\iTunesHelper.exe" [2012-12-12 152544]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"WRSVC"="c:\program files\Webroot\WRSA.exe" [2013-09-14 754760]
.
c:\users\Allaire\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
CurseClientStartup.ccip [2012-9-21 0]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 OpenVPNTechOVPN_Instantiator;OpenVPNTech Instantiator Service AS;d:\openvpntech\bin\instant-xmlserv.exe;d:\openvpntech\bin\instant-xmlserv.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 SpotfluxUpdateService;Spotflux Update Service;d:\spotflux\services\SpotfluxUpdateService.exe;d:\spotflux\services\SpotfluxUpdateService.exe [x]
R2 WRSVC;WRSVC;c:\program files\Webroot\WRSA.exe;c:\program files\Webroot\WRSA.exe [x]
R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [x]
R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Inspection du réseau Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iusb3hcs;Pilote de commutateur de contrôleur d'hôte Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hcs.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hcs.sys [x]
S0 WRkrn;WRkrn;c:\windows\System32\drivers\WRkrn.sys;c:\windows\SYSNATIVE\drivers\WRkrn.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe;c:\windows\SYSNATIVE\viakaraokesrv.exe [x]
S3 iusb3hub;Pilote de concentrateur Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Pilote du contrôleur d'hôte extensible Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfswin7.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfswin7.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaywin7.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaywin7.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirwin7.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirwin7.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvolwin7.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvolwin7.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
S3 tapoas;TAP-Win32 Adapter OAS;c:\windows\system32\DRIVERS\tapoas.sys;c:\windows\SYSNATIVE\DRIVERS\tapoas.sys [x]
S3 tapSF0901;Spotflux Virtual Network Device Driver;c:\windows\system32\DRIVERS\tapSF0901.sys;c:\windows\SYSNATIVE\DRIVERS\tapSF0901.sys [x]
S3 UHSfiltv;UHSfiltv;c:\windows\system32\drivers\UHSfiltv.sys;c:\windows\SYSNATIVE\drivers\UHSfiltv.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x]
S3 VUSB3HUB;VIA USB 3 Root Hub Service;c:\windows\system32\DRIVERS\ViaHub3.sys;c:\windows\SYSNATIVE\DRIVERS\ViaHub3.sys [x]
S3 xhcdrv;VIA USB eXtensible Host Controller Service;c:\windows\system32\DRIVERS\xhcdrv.sys;c:\windows\SYSNATIVE\DRIVERS\xhcdrv.sys [x]
.
.
Contenu du dossier 'Tâches planifiées'
.
2013-09-17 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task 9ac67530-b51e-4e91-84e1-50672214dd97.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2013-05-23 20:21]
.
2013-09-15 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task a9ff7a5a-2944-47ef-88c7-29e7af91f4a7.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2013-05-23 20:21]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\1TortoiseNormal]
@="{C5994560-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994560-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\2TortoiseModified]
@="{C5994561-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994561-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\3TortoiseConflict]
@="{C5994562-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994562-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\4TortoiseLocked]
@="{C5994563-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994563-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\5TortoiseReadOnly]
@="{C5994564-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994564-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\6TortoiseDeleted]
@="{C5994565-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994565-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\7TortoiseAdded]
@="{C5994566-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994566-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\8TortoiseIgnored]
@="{C5994567-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994567-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\9TortoiseUnversioned]
@="{C5994568-53D9-4125-87C9-F193FC689CB2}"
[HKEY_CLASSES_ROOT\CLSID\{C5994568-53D9-4125-87C9-F193FC689CB2}]
2011-06-13 15:20 75544 ----a-w- c:\program files\Common Files\TortoiseOverlays\TortoiseOverlays.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VIAxHCUtl"="c:\via_xhci\usb3Monitor.exe" [2011-07-12 331776]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-06-21 1356240]
.
------- Examen supplémentaire -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://
www.google.ca/
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: Ajouter au fichier PDF existant - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convertir en Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la cible du lien en Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la cible du lien en un fichier PDF existant - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convertir la sélection en Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convertir la sélection en un fichier PDF existant - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convertir les liens sélectionnés en Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convertir les liens sélectionnés en un fichier PDF existant - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
TCP: DhcpNameServer = 192.168.0.1
FF - ProfilePath - c:\users\Allaire\AppData\Roaming\Mozilla\Firefox\Profiles\uotrdqik.default\
FF - prefs.js: browser.startup.homepage - hxxp://
www.google.ca/
FF - ExtSQL: 2013-08-02 23:12; {b9db16a4-6edc-47ec-a1f4-b86292ed211d}; c:\users\Allaire\AppData\Roaming\Mozilla\Firefox\Profiles\uotrdqik.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF - ExtSQL: 2013-09-14 19:16; {8ac62a8b-8b3f-43ba-9b1a-90c299b9dfda}; c:\users\Allaire\AppData\Roaming\Mozilla\Firefox\Profiles\uotrdqik.default\extensions\{8ac62a8b-8b3f-43ba-9b1a-90c299b9dfda}
FF - ExtSQL: 2013-09-15 13:16; {e001c731-5e37-4538-a5cb-8168736a2360}; c:\users\Allaire\AppData\Roaming\Mozilla\Firefox\Profiles\uotrdqik.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
.
.
------- Associations de fichier -------
.
txtfile="c:\program files (x86)\PSPad editor\PSPad.exe" "%1"
.
- - - - ORPHELINS SUPPRIMES - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
ShellIconOverlayIdentifiers-{8D7FC74C-E409-42DF-8EEE-69D45FAE2F30} - c:\windows\system32\WRusr.dll
ShellIconOverlayIdentifiers-{6DA1ED92-315E-4D0B-B354-9D5F519DBA95} - c:\windows\system32\WRusr.dll
ShellIconOverlayIdentifiers-{1914B27A-33C8-46F8-A1C2-F993268D4564} - c:\windows\system32\WRusr.dll
ShellIconOverlayIdentifiers-{C14874EA-ACE4-4A47-8A81-18C4D1C40868} - c:\windows\system32\WRusr.dll
AddRemove-HandBrake - d:\handbrake\uninst.exe
AddRemove-{9854A5C4-5BE5-46E2-A989-352DD8B37E20}_is1 - c:\program files (x86)\WinZip Driver Updater\unins000.exe
.
.
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_278_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_278_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_278_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_278_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_278.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_278.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_278.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_278.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Heure de fin: 2013-09-16 23:30:39
ComboFix-quarantined-files.txt 2013-09-17 03:30
.
Avant-CF: 88 896 872 448 octets libres
Après-CF: 88 623 132 672 octets libres
.
- - End Of File - - E987690CC125E6DD6B9F2B91F4C951F8
---------------------------------------------------------------------------------------