Spoiler: ¤¤¤¤¤¤¤¤¤¤ | Shortcut_Module | g3n-h@ckm@n | 11.03.2014.4
¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤ - Start 19:26:39 - 11/03/2014
Mis à jour le : 11/03/2014 | 18.10 par g3n-h@ckm@n
Contact :
http://www.sosvirus.net
Boot : Normal
Système : Windows 8.1 (64 bits) Core
Mémoire RAM = Total (MB) : 8331 | Libre (MB) : 6469
Pagefile = Total (MB) : 9642 | Libre (MB) : 7296
Virtuelle = Total (MB) : 4194 | Libre (MB) : 3999
Registre sauvegardé , pour restaurer : C:\Shortcut_Module\Save\Clean\ERDNT.exe
¤¤¤¤¤¤¤¤¤¤ | Mises à jour Windows
Aucune mise à jour détectée !!!
¤¤¤¤¤¤¤¤¤¤ | Navigateurs
IE : 11.0.9600.16518 (© Microsoft Corporation. Tous droits réservés.)
GC : 32.0.1700.102 (Copyright 2012 Google Inc. All rights reserved.)
¤¤¤¤¤¤¤¤¤¤ | Processus tués
920 | C:\Windows\system32\atiesrxx.exe (.AMD - AMD External Events Service Module.) - (6.14.11.1168) - C:\Windows\system32\atiesrxx.exe
440 | C:\Windows\system32\atieclxx.exe (.AMD - AMD External Events Client Module.) - (6.14.11.1168) - atieclxx
1468 | C:\Windows\System32\spoolsv.exe (.Microsoft Corporation - Application sous-système spouleur.) - (6.3.9600.16384) - C:\Windows\System32\spoolsv.exe
1516 | C:\Windows\system32\taskhostex.exe (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (6.3.9600.16384) - taskhostex.exe
1728 | C:\Windows\system32\taskeng.exe (.Microsoft Corporation - Moteur du Planificateur de tâches.) - (6.3.9600.16384) - taskeng.exe {8D7D4AC2-6B6D-4AB4-93BF-9E4F8FFF0599}
1780 | C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.Google Inc. - Programme d'installation de Google.) - (1.3.21.103) - "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
1992 | C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (.Apple Inc. - MobileDeviceService.) - (17.323.0.9) - "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
1048 | C:\Program Files\Bonjour\mDNSResponder.exe (.Apple Inc. - Bonjour Service.) - (3.0.0.10) - "C:\Program Files\Bonjour\mDNSResponder.exe"
2064 | C:\Program Files\Intel\iCLS Client\HeciServer.exe (.Intel(R) Corporation - Intel(R) Capability Licensing Service Interface.) - (1.31.8.1) - "C:\Program Files\Intel\iCLS Client\HeciServer.exe"
2116 | C:\Windows\system32\dashost.exe (.Microsoft Corporation - Device Association Framework Provider Host.) - (6.3.9600.16384) - dashost.exe {c57c28a7-179b-4ec5-b40207de4c75fcfa}
2132 | C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (. - ISCT Agent Application.) - (4.2.40.2418) - "C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
2208 | C:\Program Files\ma-config.com\MaConfigAgent.exe (.CybelSoft - Service de détection matériel.) - (7.1.3.0) - "C:\Program Files\ma-config.com\MaConfigAgent.exe"
2292 | C:\Program Files (x86)\MSI\CommandCenter\MSIControlService.exe (. - .) - (0.0.0.0) - "C:\Program Files (x86)\MSI\CommandCenter\MSIControlService.exe"
2492 | C:\Windows\SysWOW64\PnkBstrA.exe (. - .) - (0.0.0.0) - C:\Windows\SysWOW64\PnkBstrA.exe
2964 | C:\Program Files (x86)\MSI\CommandCenter\CPU\MSICPUService.exe (. - .) - (0.0.0.0) - "C:\Program Files (x86)\MSI\CommandCenter\CPU\MSICPUService.exe"
3100 | C:\Windows\system32\SearchIndexer.exe (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - (7.0.9600.16384) - C:\Windows\system32\SearchIndexer.exe /Embedding
3572 | C:\Windows\System32\skydrive.exe (.Microsoft Corporation - SkyDrive Sync Engine Host.) - (6.3.9600.16507) - C:\Windows\System32\skydrive.exe -Embedding
3596 | C:\Windows\System32\SettingSyncHost.exe (.Microsoft Corporation - Host Process for Setting Synchronization.) - (6.3.9600.16474) - "C:\Windows\System32\SettingSyncHost.exe" -Embedding
4212 | C:\Program Files (x86)\MSI\CommandCenter\CPU\CPU_Ratio\CPU_Ratio.exe (.MSI CO.,LTD. - MSI CPU Ratio.) - (1.0.0.1) - CPU_Ratio\CPU_Ratio.exe
4332 | C:\Windows\System32\RuntimeBroker.exe (.Microsoft Corporation - Runtime Broker.) - (6.3.9600.16384) - C:\Windows\System32\RuntimeBroker.exe -Embedding
4552 | C:\Program Files (x86)\Skype\Phone\Skype.exe (.Skype Technologies S.A. - Skype .) - (6.11.0.102) - "C:\Program Files (x86)\Skype\Phone\Skype.exe"
4536 | C:\Program Files\SmartTechnology\Software\SaiMfd.exe (.Saitek - Saitek MFD File System Driver.) - (7.0.27.13) - "C:\Program Files\SmartTechnology\Software\SaiMfd.exe"
4780 | C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) - (1.0.0.321) - "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
4496 | C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (.Intel Corporation - ISCT SysTray.) - (4.2.40.2418) - "C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
4292 | C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (.Oracle Corporation - Java(TM) Update Scheduler.) - (2.1.9.8) - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
4148 | C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) - (4.5.0.0) - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
5184 | C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (.ATI Technologies Inc. - Catalyst Control Center: Host application.) - (4.5.0.0) - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
6108 | C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe (.Microsoft Corporation - Windows Reader.) - (6.3.9600.16422) - "C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe" -ServerName:Microsoft.Reader.AppXtszmc7avrx02s7n8gch63tzwg517wd9k.mca
1308 | C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (.Intel Corporation - IAStorIcon.) - (12.9.0.1001) - "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
6104 | C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (.Intel Corporation - IAStorDataSvc.) - (12.9.0.1001) - "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
5868 | C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (.Intel Corporation - Intel(R) Dynamic Application Loader Host Interface.) - (9.5.12.1682) - "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
3876 | C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (.Intel Corporation - Intel(R) Local Management Service.) - (9.5.10.1628) - "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
6120 | C:\Program Files\Windows Media Player\wmpnetwk.exe (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) - (12.0.9600.16384) - "C:\Program Files\Windows Media Player\wmpnetwk.exe"
4356 | C:\Windows\explorer.exe (.Microsoft Corporation - Explorateur Windows.) - (6.3.9600.16441) - C:\Windows\explorer.exe
3724 | C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.Google Inc. - Google Chrome.) - (32.0.1700.102) - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
3900 | C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.Google Inc. - Google Chrome.) - (32.0.1700.102) - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3724.0.732595523\806915121" --disable-image-transport-surface --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,13,23 --gpu-vendor-id=0x1002 --gpu-device-id=0x6798 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.350.1005.0 --ignored=" --type=renderer " /prefetch:822062411
5808 | C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.Google Inc. - Google Chrome.) - (32.0.1700.102) - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=fr --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="3724.2.154993294\705936340" /prefetch:673131151
5076 | C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.Google Inc. - Google Chrome.) - (32.0.1700.102) - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=fr --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --extension-process --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="3724.3.171988829\1126760858" /prefetch:673131151
3548 | C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.Google Inc. - Google Chrome.) - (32.0.1700.102) - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=fr --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/ChromeSuggestions/Default/DeferBackgroundExtensionCreation/RateLimited/EmbeddedSearch/Group5 pct:10e stable:pp1 use_cacheable_ntp:1 espv:210 suppress_on_srp:1/ManagedModeLaunch/Active/OmniboxBundledExperimentV1/StandardR2/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_01/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --enable-delegated-renderer --enable-deadline-scheduling --renderer-print-preview --disable-html-notifications --enable-software-compositing --channel="3724.4.1297511714\1836280745" /prefetch:673131151
1440 | C:\Windows\syswow64\wwahost.exe (.Microsoft Corporation - Hôte Microsoft WWA.) - (6.3.9600.16431) - "C:\Windows\syswow64\wwahost.exe" -ServerName:App.wwa
3696 | C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe\LiveComm.exe (.Microsoft Corporation - Communications Service.) - (17.5.9600.20413) - "C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
2952 | C:\Windows\system32\taskhost.exe (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (6.3.9600.16384) - taskhost.exe $(Arg0)
¤¤¤¤¤¤¤¤¤¤ | Processus démarrés
[22/08/2013 03:48:05] - 788 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k DcomLaunch [31552 Ko]
[22/08/2013 03:48:05] - 828 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k RPCSS [31552 Ko]
[22/08/2013 03:48:05] - 984 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [31552 Ko]
[22/08/2013 03:48:05] - 1020 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k netsvcs [31552 Ko]
[22/08/2013 03:48:05] - 352 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k LocalService [31552 Ko]
[22/08/2013 03:48:05] - 544 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [31552 Ko]
[22/08/2013 03:48:05] - 1060 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k NetworkService [31552 Ko]
[06/03/2014 13:40:11] - 1164 | C:\Program Files\AVAST Software\Avast\AvastSvc.exe (.AVAST Software - avast! Service.) - (9.0.2013.292) - "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" [50344 Ko]
[22/08/2013 03:48:05] - 1536 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork [31552 Ko]
[22/08/2013 03:48:05] - 2628 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k imgsvc [31552 Ko]
[22/08/2013 03:48:05] - 1656 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [31552 Ko]
[22/08/2013 03:48:05] - 3204 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted [31552 Ko]
[22/08/2013 03:48:05] - 3708 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.3.9600.16384) - C:\Windows\System32\svchost.exe -k LocalServicePeerNet [31552 Ko]
[06/03/2014 13:40:11] - 4472 | C:\Program Files\AVAST Software\Avast\AvastUI.exe (.AVAST Software - avast! Antivirus.) - (9.0.2013.292) - "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui [3767096 Ko]
[22/08/2013 03:47:24] - 4600 | C:\Windows\system32\DllHost.exe (.Microsoft Corporation - COM Surrogate.) - (6.3.9600.16384) - C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7} [17760 Ko]
[11/03/2014 19:25:31] - 5468 | C:\Users\valentin\Desktop\Shortcut_Module.exe (. - Shortcut_Module.) - (11.3.2014.4) - "C:\Users\valentin\Desktop\Shortcut_Module.exe" [2151936 Ko]
[22/08/2013 05:17:05] - 2620 | C:\Windows\system32\wbem\wmiprvse.exe (.Microsoft Corporation - WMI Provider Host.) - (6.3.9600.16384) - C:\Windows\system32\wbem\wmiprvse.exe [374784 Ko]
[18/12/2013 13:19:03] - 2716 | C:\Windows\explorer.exe (.Microsoft Corporation - Explorateur Windows.) - (6.3.9600.16441) - explorer.exe [2328872 Ko]
[22/08/2013 03:47:24] - 2480 | C:\Windows\system32\DllHost.exe (.Microsoft Corporation - COM Surrogate.) - (6.3.9600.16384) - C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683} [17760 Ko]
[22/08/2013 04:38:29] - 1968 | C:\Windows\System32\ThumbnailExtractionHost.exe (.Microsoft Corporation - Thumbnail Handler Extraction Host.) - (6.3.9600.16384) - C:\Windows\System32\ThumbnailExtractionHost.exe -Embedding [27136 Ko]
[27/08/2013 14:32:14] - 4116 | C:\Program Files\Intel\iCLS Client\HeciServer.exe (.Intel(R) Corporation - Intel(R) Capability Licensing Service Interface.) - (1.31.8.1) - "C:\Program Files\Intel\iCLS Client\HeciServer.exe" [747520 Ko]
¤¤¤¤¤¤¤¤¤¤ | Services
¤¤¤¤¤¤¤¤¤¤ | Hosts
C:\Windows\System32\Drivers\etc\hosts : Remis a zéro avec succès
¤¤¤¤¤¤¤¤¤¤ | Registre
Supprimé avec succès : [64]HKLM\Software\Classes\AppID\{6A070EEA-E3F8-411E-9D3A-F3814ED6D1A8} : SoftwareUpdateApp
Supprimé avec succès : [64]HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Microsoft-Windows-CertificateServicesClient : {73370bd6-85e5-430b-b60a-fea1285808a7}
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\000021599B0090400000000000F01FEC : C:\Users\valentin\AppData\Local\Temp\30319.01.10\1036\VC_EXP\wcu\watson\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\2B0163E6D0340BE4183EB2758E9BEDD8 : C:\Users\valentin\AppData\Local\Temp\IXP529.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\34C399E498E82A648AC9450ABC4512AD : C:\Users\valentin\AppData\Local\Temp\testnsis\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\3e43b73803c7c394f8a6b2f0402e19c2 : C:\Users\valentin\AppData\Local\Temp\IXP001.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\46B5A9879DD95AB419A50FCFA0B1B7EF : C:\Users\valentin\AppData\Local\Temp\IXP529.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\5A440F64B8EC691489E4B56D25E563D1 : C:\Users\valentin\AppData\Local\Temp\IXP529.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\8A84FEFC8BFBCAE3B85AEDF4A82A76EC : C:\Users\valentin\AppData\Local\Temp\30319.01.10\1036\VC_EXP\wcu\mtpack\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\99E260789CBEAC84D886AED1B59DADF9 : C:\Windows\temp\MadCatz\Saitek_X52Pro_Flight_Controller_SD7_64_Software\00000005\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\A62ADACF2765DD13FBE0AB67CE9F0BD2 : C:\Users\valentin\AppData\Local\Temp\IXP03C93.tmp\wcu\help\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\A92AED72C2228F547BD0A0B703F37CB1 : C:\Users\valentin\AppData\Local\Temp\IIFA7D0.tmp\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\CF522E254BCF7F1438B7E673BF50DBB7 : c:\users\valentin\appdata\local\temp\airff91.tmp\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\DAEC106DF4E2BBB458CC2CA9C46E3A0C : C:\Users\valentin\AppData\Local\Temp\IXP529.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\E78D5FE2DB7BF85448824E0D8B4B6EC5 : C:\Users\valentin\AppData\Local\Temp\IXP529.TMP\
Supprimé avec succès : [64]HKLM\Software\Classes\Installer\Products\9eab5ec6ac3d99b498a1d16c1c815acf : C:\Users\valentin\AppData\Local\Temp\IXP001.TMP\
Supprimé avec succès : [32]HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2916E43B5BE8010448F91C6EE9188B68] : C:\Users\valentin\AppData\Local\Temp\DirectX_Setup\
Supprimé avec succès : [32]HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E267F3919F8EB74F903A18F1C011D14] : C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTSoftwareUpdate.dll
Supprimé avec succès : [64][HKLM\Software\Microsoft\Windows\CurrentVersion\Run]|[Live Update 5] : C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe /reminder
¤¤¤¤¤¤¤¤¤¤ | IFEO
¤¤¤¤¤¤¤¤¤¤ | Dossiers
Supprimé avec succès : C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
Supprimé avec succès : C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
Supprimé avec succès : C:\ProgramData\InstallMate
Supprimé avec succès : C:\Users\valentin\AppData\Local\Temp\jrt\datamngr_del.reg
¤¤¤¤¤¤¤¤¤¤ | Détournements de raccourcis
¤¤¤¤¤¤¤¤¤¤ | Détournement internet Explorer
Réparé : [HKU\S-1-5-21-1277216981-3572851224-3477042884-1001\Software\Microsoft\Internet Explorer\Main]|[Start Page] :
http://www.google.com -
http://www.google.com/
Réparé : [HKU\S-1-5-21-1277216981-3572851224-3477042884-1001\Software\Microsoft\Internet Explorer\Main]|[Local Page] : C:\Windows\system32\blank.htm - C:\Windows\SysWOW64\blank.htm
Réparé : [HKU\S-1-5-21-1277216981-3572851224-3477042884-1001\Software\Microsoft\Internet Explorer\Main]|[Search Page] :
http://go.microsoft.com/fwlink/?LinkId=54896 -
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
Réparé : [64][HKLM\Software\Microsoft\Internet Explorer\Main]|[Start Page] :
http://www.google.com -
http://go.microsoft.com/fwlink/?LinkId=69157
Réparé : [64][HKLM\Software\Microsoft\Internet Explorer\Main]|[Default_Page_URL] :
http://go.microsoft.com/fwlink/p/?LinkId=255141 -
http://go.microsoft.com/fwlink/?LinkId=69157
Réparé : [32][HKLM\Software\Microsoft\Internet Explorer\Main]|[Start Page] :
http://go.microsoft.com/fwlink/p/?LinkId=255141 -
http://go.microsoft.com/fwlink/?LinkId=69157
Réparé : [32][HKLM\Software\Microsoft\Internet Explorer\Main]|[Local Page] : C:\Windows\System32\blank.htm - C:\Windows\SysWOW64\blank.htm
Réparé : [32][HKLM\Software\Microsoft\Internet Explorer\Main]|[Default_Page_URL] :
http://go.microsoft.com/fwlink/p/?LinkId=255141 -
http://go.microsoft.com/fwlink/?LinkId=69157
¤¤¤¤¤¤¤¤¤¤ | Détournement Google Chrome
[Administrateur] Remis a zéro avec succès : SearchURL
[Administrateur] Remis a zéro avec succès : Preferences
[valentin] Remis a zéro avec succès : SearchURL
[valentin] Remis a zéro avec succès : Preferences
¤¤¤¤¤¤¤¤¤¤ | Détournement Firefox
¤¤¤¤¤¤¤¤¤¤ | Détournement des clés StartMenuInternet
Réparé : [64][HKLM\Software\Clients\StartMenuInternet\IExplore.exe\shell\open\command] : C:\Program Files\Internet Explorer\iexplore.exe - "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
¤¤¤¤¤¤¤¤¤¤ | AppInit_DLLs
[64][HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
[32][HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
¤¤¤¤¤¤¤¤¤¤ | Détournement Javascript
¤¤¤¤¤¤¤¤¤¤ | Firewall
Réparé : [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]|[EnableFirewall] : 1 - 0
Réparé : [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]|[EnableFirewall] : 1 - 0
Réparé : [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]|[EnableFirewall] : 1 - 0
¤¤¤¤¤¤¤¤¤¤ | Fichiers temporaires
[Default User] Fichiers temporaires Supprimés : 0 Ko
[All Users] Fichiers temporaires Supprimés : 0 Ko
[Default] Fichiers temporaires Supprimés : 0 Ko
[Public] Fichiers temporaires Supprimés : 0 Ko
[Administrateur] Fichiers temporaires Supprimés : 15 Ko
[valentin] Fichiers temporaires Supprimés : 15399 Ko
Autre rapport
¤¤¤¤¤¤¤¤¤¤ |EOF| ¤¤¤¤¤¤¤¤¤¤ | 19:32:07