Répondre à : Aider moi a trouver une solution pour désinfecter mon flash 2016-09-08T13:05:35+00:00
kazanastra
Nombre d'articles : 0

OTL logfile created on: 10/09/2013 23:59:08 – Run 1
OTL by OldTimer – Version 3.2.69.0 Folder = C:UsersAdministrateurDesktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) – Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16660)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

5,96 Gb Total Physical Memory | 3,15 Gb Available Physical Memory | 52,90% Memory free
11,92 Gb Paging File | 8,05 Gb Available in Paging File | 67,50% Paging File free
Paging file location(s): ?:pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:windows | %ProgramFiles% = C:Program Files (x86)
Drive C: | 449,65 Gb Total Space | 324,07 Gb Free Space | 72,07% Space Free | Partition Type: NTFS
Drive F: | 3,90 Gb Total Space | 0,79 Gb Free Space | 20,16% Space Free | Partition Type: FAT32

Computer Name: USER-TOSH | User Name: Administrateur | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC – File not found —
PRC – [2013/09/09 14:31:56 | 000,602,112 | —- | M] (OldTimer Tools) — C:UsersAdministrateurDesktopOTL.exe
PRC – [2013/09/02 21:35:59 | 000,829,392 | —- | M] (Google Inc.) — C:Program Files (x86)GoogleChromeApplicationchrome.exe
PRC – [2013/08/30 03:41:32 | 000,356,376 | —- | M] (Kaspersky Lab ZAO) — C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013avp.exe
PRC – [2013/07/13 04:47:29 | 000,217,992 | —- | M] (Google Inc.) — C:Program Files (x86)GoogleUpdate1.3.21.153GoogleCrashHandler.exe
PRC – [2013/04/04 14:50:32 | 000,701,512 | —- | M] (Malwarebytes Corporation) — C:Program Files (x86)Malwarebytes’ Anti-Malwarembamservice.exe
PRC – [2013/04/04 14:50:32 | 000,532,040 | —- | M] (Malwarebytes Corporation) — C:Program Files (x86)Malwarebytes’ Anti-Malwarembamgui.exe
PRC – [2013/04/04 14:50:32 | 000,418,376 | —- | M] (Malwarebytes Corporation) — C:Program Files (x86)Malwarebytes’ Anti-Malwarembamscheduler.exe
PRC – [2013/02/26 02:28:44 | 000,357,456 | —- | M] (VMware, Inc.) — C:WindowsSysWOW64vmnetdhcp.exe
PRC – [2013/02/26 02:28:26 | 000,436,304 | —- | M] (VMware, Inc.) — C:WindowsSysWOW64vmnat.exe
PRC – [2013/02/26 01:30:42 | 000,087,120 | —- | M] (VMware, Inc.) — C:Program Files (x86)VMwareVMware Playervmware-authd.exe
PRC – [2012/10/23 18:42:06 | 000,347,120 | —- | M] () — C:Program Files (x86)InternetEverywhereInternetEverywhere_Service.exe
PRC – [2012/10/23 18:41:44 | 001,739,760 | —- | M] () — C:Program Files (x86)InternetEverywhereInternetEverywhere.exe
PRC – [2012/10/23 18:41:41 | 000,637,936 | —- | M] () — C:Program Files (x86)InternetEverywhereInternetEverywhere_Launcher.exe
PRC – [2012/02/05 05:41:10 | 000,231,328 | —- | M] (TOSHIBA CORPORATION) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosLeSrvUseMng.exe
PRC – [2012/02/05 05:40:56 | 000,219,048 | —- | M] (TOSHIBA CORPORATION) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosLeSrvProvider.exe
PRC – [2012/02/04 21:47:54 | 000,251,808 | —- | M] (TOSHIBA CORPORATION) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosLeBtMng.exe
PRC – [2012/02/04 21:16:54 | 002,824,104 | —- | M] (TOSHIBA CORPORATION.) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosBtMng.exe
PRC – [2012/01/21 00:29:26 | 000,277,784 | —- | M] (Intel Corporation) — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe
PRC – [2011/11/04 14:40:06 | 000,687,400 | —- | M] (Nero AG) — C:Program Files (x86)NeroUpdateNASvc.exe
PRC – [2011/08/08 21:43:00 | 000,690,072 | —- | M] (TOSHIBA CORPORATION.) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosA2dp.exe
PRC – [2011/08/08 21:36:00 | 000,087,960 | —- | M] (TOSHIBA CORPORATION.) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosBtHid.exe
PRC – [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) — C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
PRC – [2011/03/14 16:27:28 | 000,236,384 | —- | M] (Huawei Technologies Co., Ltd.) — C:ProgramDataDatacardServiceDCSHelper.exe
PRC – [2011/02/03 23:18:00 | 000,742,800 | —- | M] (TOSHIBA CORPORATION.) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosAVRC.exe
PRC – [2010/11/21 04:25:10 | 000,164,864 | —- | M] (Microsoft Corporation) — C:Program Files (x86)Windows Media Playerwmplayer.exe
PRC – [2010/09/07 00:18:00 | 000,746,384 | —- | M] (TOSHIBA CORPORATION.) — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosBtHSP.exe

========== Modules (No Company Name) ==========

MOD – [2013/09/02 21:35:56 | 000,410,576 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66ppgooglenaclpluginchrome.dll
MOD – [2013/09/02 21:35:55 | 013,599,184 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66PepperFlashpepflashplayer.dll
MOD – [2013/09/02 21:35:54 | 004,053,456 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66pdf.dll
MOD – [2013/09/02 21:35:04 | 000,709,584 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66libglesv2.dll
MOD – [2013/09/02 21:35:03 | 000,099,792 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66libegl.dll
MOD – [2013/09/02 21:35:01 | 001,604,560 | —- | M] () — C:Program Files (x86)GoogleChromeApplication29.0.1547.66ffmpegsumo.dll
MOD – [2012/10/23 18:41:44 | 001,739,760 | —- | M] () — C:Program Files (x86)InternetEverywhereInternetEverywhere.exe
MOD – [2012/10/23 18:41:41 | 000,637,936 | —- | M] () — C:Program Files (x86)InternetEverywhereInternetEverywhere_Launcher.exe
MOD – [2012/10/23 18:40:44 | 000,249,344 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgMobileBroadband7.dll
MOD – [2012/10/23 18:38:48 | 000,606,208 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgCore.dll
MOD – [2012/10/23 18:38:04 | 000,204,800 | —- | M] () — C:Program Files (x86)InternetEverywhereLiveBoxCM.dll
MOD – [2012/10/23 18:37:38 | 000,073,728 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgDriverInstall.dll
MOD – [2012/10/23 18:37:27 | 000,376,832 | —- | M] () — C:Program Files (x86)InternetEverywhereWTGSMSPCClient.dll
MOD – [2012/10/23 18:37:18 | 000,139,264 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgBluetooth.dll
MOD – [2012/10/23 18:37:10 | 000,212,992 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgDetection.dll
MOD – [2012/10/23 18:36:57 | 000,126,976 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgWiFi.dll
MOD – [2012/10/23 18:36:46 | 000,081,920 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgDialup.dll
MOD – [2012/10/23 18:36:29 | 000,102,400 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgDatabase.dll
MOD – [2012/10/23 18:36:22 | 000,159,744 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgPorts.dll
MOD – [2012/10/23 18:36:16 | 000,106,496 | —- | M] () — C:Program Files (x86)InternetEverywhereWtgUtil.dll
MOD – [2012/10/23 18:35:54 | 000,602,112 | —- | M] () — C:Program Files (x86)InternetEverywhereWTGXMLUtil.dll
MOD – [2012/08/17 21:40:16 | 000,068,024 | —- | M] () — C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013QtWebKitqmlwebkitplugin4.dll
MOD – [2012/08/17 21:38:56 | 000,479,160 | —- | M] () — C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013dblite.dll
MOD – [2012/01/25 18:57:12 | 000,172,032 | —- | M] () — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosGatt.dll
MOD – [2011/11/10 08:48:48 | 001,105,920 | —- | M] () — C:Program Files (x86)InternetEverywhereNDISAPI.dll
MOD – [2007/02/27 19:44:00 | 000,823,296 | —- | M] () — C:Program Files (x86)InternetEverywherelibeay32.dll

========== Services (SafeList) ==========

SRV:64bit: – [2013/05/27 06:50:47 | 001,011,712 | —- | M] (Microsoft Corporation) [Auto | Running] — C:Program FilesWindows DefenderMpSvc.dll — (WinDefend)
SRV:64bit: – [2012/01/20 12:27:28 | 000,235,520 | —- | M] (AMD) [Auto | Running] — C:WindowsSysNativeatiesrxx.exe — (AMD External Events Utility)
SRV:64bit: – [2011/12/16 07:16:48 | 000,583,088 | —- | M] (TOSHIBA Corporation) [Auto | Running] — C:Program FilesTOSHIBAPower SaverTosCoSrv.exe — (TosCoSrv)
SRV:64bit: – [2011/12/14 23:11:38 | 000,833,976 | —- | M] (TOSHIBA Corporation) [On_Demand | Running] — C:Program FilesTOSHIBATPHMTPCHSrv.exe — (TPCHSrv)
SRV:64bit: – [2011/11/26 02:52:36 | 000,138,152 | —- | M] (TOSHIBA Corporation) [On_Demand | Running] — C:Program FilesTOSHIBATOSHIBA HDD SSD AlertTosSmartSrv.exe — (TOSHIBA HDD SSD Alert Service)
SRV:64bit: – [2011/11/24 21:20:38 | 000,294,848 | —- | M] (TOSHIBA Corporation) [Auto | Running] — C:Program FilesTOSHIBATECOTecoService.exe — (TOSHIBA eco Utility Service)
SRV:64bit: – [2010/10/20 22:41:00 | 000,138,656 | —- | M] (TOSHIBA Corporation) [Auto | Running] — C:WindowsSysNativeTODDSrv.exe — (TODDSrv)
SRV:64bit: – [2010/09/22 18:10:10 | 000,057,184 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:Program FilesWindows LiveMeshwlcrasvc.exe — (wlcrasvc)
SRV:64bit: – [2010/09/10 01:26:34 | 000,162,824 | —- | M] () [Auto | Running] — C:WindowsSysNativeGFNEXSrv.exe — (GFNEXSrv)
SRV:64bit: – [2009/12/16 16:44:44 | 003,750,400 | —- | M] (SafeNet Inc.) [Auto | Running] — C:WindowsSysNativehasplms.exe — (hasplms)
SRV – [2013/08/30 03:41:32 | 000,356,376 | —- | M] (Kaspersky Lab ZAO) [Auto | Running] — C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013avp.exe — (AVP)
SRV – [2013/04/04 14:50:32 | 000,701,512 | —- | M] (Malwarebytes Corporation) [Auto | Running] — C:Program Files (x86)Malwarebytes’ Anti-Malwarembamservice.exe — (MBAMService)
SRV – [2013/04/04 14:50:32 | 000,418,376 | —- | M] (Malwarebytes Corporation) [Auto | Running] — C:Program Files (x86)Malwarebytes’ Anti-Malwarembamscheduler.exe — (MBAMScheduler)
SRV – [2013/02/26 02:28:44 | 000,357,456 | —- | M] (VMware, Inc.) [Auto | Running] — C:WindowsSysWOW64vmnetdhcp.exe — (VMnetDHCP)
SRV – [2013/02/26 02:28:26 | 000,436,304 | —- | M] (VMware, Inc.) [Auto | Running] — C:WindowsSysWOW64vmnat.exe — (VMware NAT Service)
SRV – [2013/02/26 01:30:42 | 000,087,120 | —- | M] (VMware, Inc.) [Auto | Running] — C:Program Files (x86)VMwareVMware Playervmware-authd.exe — (VMAuthdService)
SRV – [2012/10/23 18:42:06 | 000,347,120 | —- | M] () [Auto | Running] — C:Program Files (x86)InternetEverywhereInternetEverywhere_Service.exe — (InternetEverywhere_Service)
SRV – [2012/10/11 16:15:30 | 000,918,680 | —- | M] (VMware, Inc.) [Auto | Running] — C:Program Files (x86)Common FilesVMwareUSBvmware-usbarbitrator64.exe — (VMUSBArbService)
SRV – [2012/07/13 13:28:36 | 000,160,944 | —- | M] (Skype Technologies) [Auto | Stopped] — C:Program Files (x86)SkypeUpdaterUpdater.exe — (SkypeUpdate)
SRV – [2012/01/21 00:29:26 | 000,277,784 | —- | M] (Intel Corporation) [Auto | Running] — C:Program Files (x86)IntelIntel(R) Management Engine ComponentsLMSLMS.exe — (LMS)
SRV – [2011/11/04 14:40:06 | 000,687,400 | —- | M] (Nero AG) [Auto | Running] — C:Program Files (x86)NeroUpdateNASvc.exe — (NAUpdate)
SRV – [2011/07/12 01:16:06 | 000,057,216 | —- | M] (TOSHIBA Corporation) [On_Demand | Stopped] — C:Program Files (x86)TOSHIBATOSHIBA Service StationTMachInfo.exe — (TMachInfo)
SRV – [2011/06/06 12:55:28 | 000,064,952 | —- | M] (Adobe Systems Incorporated) [Auto | Running] — C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe — (AdobeARMservice)
SRV – [2011/04/02 01:42:00 | 000,198,064 | —- | M] (TOSHIBA CORPORATION) [On_Demand | Running] — C:Program Files (x86)TOSHIBABluetooth Toshiba StackTosBtSrv.exe — (TOSHIBA Bluetooth Service)
SRV – [2011/03/14 16:27:34 | 000,346,976 | —- | M] () [Auto | Running] — C:ProgramDataDatacardServiceHWDeviceService64.exe — (HWDeviceService64.exe)
SRV – [2011/02/10 09:25:36 | 000,112,080 | —- | M] (Toshiba Europe GmbH) [Auto | Running] — C:Program Files (x86)Toshiba TEMPROTemproSvc.exe — (TemproMonitoringService)
SRV – [2010/10/12 18:59:12 | 000,206,072 | —- | M] (WildTangent, Inc.) [On_Demand | Stopped] — C:Program Files (x86)WildTangent GamesAppGamesAppService.exe — (GamesAppService)
SRV – [2010/03/18 13:16:28 | 000,130,384 | —- | M] (Microsoft Corporation) [Auto | Stopped] — C:WindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe — (clr_optimization_v4.0.30319_32)
SRV – [2010/02/19 13:37:14 | 000,517,096 | —- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] — C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe — (SwitchBoard)
SRV – [2009/06/10 22:23:09 | 000,066,384 | —- | M] (Microsoft Corporation) [Disabled | Stopped] — C:WindowsMicrosoft.NETFrameworkv2.0.50727mscorsvw.exe — (clr_optimization_v2.0.50727_32)

========== Driver Services (SafeList) ==========

DRV:64bit: – [2013/08/30 04:22:17 | 000,178,448 | —- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] — C:WindowsSysNativedriverskneps.sys — (kneps)
DRV:64bit: – [2013/08/30 04:22:17 | 000,054,368 | —- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] — C:WindowsSysNativedriverskltdi.sys — (kltdi)
DRV:64bit: – [2013/08/30 04:22:17 | 000,029,528 | —- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversklmouflt.sys — (klmouflt)
DRV:64bit: – [2013/08/30 04:22:16 | 000,620,128 | —- | M] (Kaspersky Lab ZAO) [File_System | System | Running] — C:WindowsSysNativedriversklif.sys — (KLIF)
DRV:64bit: – [2013/08/30 04:22:16 | 000,029,016 | —- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversklkbdflt.sys — (klkbdflt)
DRV:64bit: – [2013/04/30 09:51:09 | 000,040,616 | —- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriverstap0901.sys — (tap0901)
DRV:64bit: – [2013/04/15 10:50:30 | 000,127,384 | —- | M] (Power Software Ltd) [Kernel | System | Running] — C:windowsSysNativedriversscdemu.sys — (SCDEmu)
DRV:64bit: – [2013/04/04 14:50:32 | 000,025,928 | —- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] — C:WindowsSysNativedriversmbam.sys — (MBAMProtector)
DRV:64bit: – [2013/02/26 02:28:48 | 000,067,664 | —- | M] (VMware, Inc.) [Kernel | Auto | Running] — C:WindowsSysNativedriversvmx86.sys — (vmx86)
DRV:64bit: – [2013/02/26 02:28:14 | 000,030,800 | —- | M] (VMware, Inc.) [Kernel | Auto | Running] — C:WindowsSysNativedriversvmnetuserif.sys — (VMnetuserif)
DRV:64bit: – [2013/02/26 02:27:48 | 000,045,720 | —- | M] (VMware, Inc.) [Kernel | Auto | Running] — C:WindowsSysNativedriversvmnetbridge.sys — (VMnetBridge)
DRV:64bit: – [2013/02/26 02:27:44 | 000,033,360 | —- | M] (VMware, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversVMkbd.sys — (vmkbd2)
DRV:64bit: – [2013/01/01 17:11:02 | 000,422,400 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbwwan.sys — (ewusbmbb)
DRV:64bit: – [2012/12/25 15:37:54 | 000,223,232 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewusbmdm.sys — (hwdatacard)
DRV:64bit: – [2012/12/25 15:37:54 | 000,117,248 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversew_hwusbdev.sys — (ew_hwusbdev)
DRV:64bit: – [2012/12/25 15:37:54 | 000,098,304 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversew_jucdcacm.sys — (huawei_cdcacm)
DRV:64bit: – [2012/12/25 15:37:54 | 000,087,040 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversew_jubusenum.sys — (huawei_enumerator)
DRV:64bit: – [2012/12/25 15:37:54 | 000,072,192 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversew_jucdcecm.sys — (huawei_cdcecm)
DRV:64bit: – [2012/12/25 15:37:54 | 000,028,672 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversew_juextctrl.sys — (huawei_ext_ctrl)
DRV:64bit: – [2012/12/25 15:37:54 | 000,013,952 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversew_usbenumfilter.sys — (ew_usbenumfilter)
DRV:64bit: – [2012/11/30 17:35:28 | 000,112,896 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversewsercd.sys — (ewsercd)
DRV:64bit: – [2012/10/24 14:17:14 | 000,070,296 | —- | M] (VMware, Inc.) [Kernel | Boot | Running] — C:WindowsSysNativedriversvsock.sys — (vsock)
DRV:64bit: – [2012/10/24 14:17:10 | 000,085,104 | —- | M] (VMware, Inc.) [Kernel | Boot | Running] — C:WindowsSysNativedriversvmci.sys — (vmci)
DRV:64bit: – [2012/10/11 16:15:32 | 000,052,376 | —- | M] (VMware, Inc.) [Kernel | Auto | Running] — C:WindowsSysNativedrivershcmon.sys — (hcmon)
DRV:64bit: – [2012/10/11 16:15:06 | 000,037,680 | —- | M] (VMware, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversvmusb.sys — (vmusb)
DRV:64bit: – [2012/08/02 15:09:34 | 000,028,504 | —- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] — C:WindowsSysNativedriversklim6.sys — (KLIM6)
DRV:64bit: – [2012/06/29 20:39:02 | 000,004,608 | —- | M] (RealVNC Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversvncmirror.sys — (vncmirror)
DRV:64bit: – [2012/06/19 17:28:12 | 000,458,584 | —- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] — C:WindowsSysNativedriverskl1.sys — (kl1)
DRV:64bit: – [2012/03/01 07:46:16 | 000,023,408 | —- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] — C:windowsSysNativedriversfs_rec.sys — (Fs_Rec)
DRV:64bit: – [2012/01/30 22:14:00 | 000,304,696 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosrfbd.sys — (tosrfbd)
DRV:64bit: – [2012/01/20 12:53:32 | 010,731,520 | —- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversatikmdag.sys — (amdkmdag)
DRV:64bit: – [2012/01/20 11:34:36 | 000,328,192 | —- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversatikmpag.sys — (amdkmdap)
DRV:64bit: – [2012/01/17 01:20:38 | 001,082,472 | —- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversrtwlane.sys — (RTL8192Ce)
DRV:64bit: – [2012/01/05 21:42:32 | 000,021,096 | —- | M] (Realtek Microelectronics) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversRtkBtfilter.sys — (RtkBtFilter)
DRV:64bit: – [2012/01/05 11:58:50 | 000,786,200 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversiusb3xhc.sys — (iusb3xhc)
DRV:64bit: – [2012/01/05 11:58:50 | 000,355,096 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversiusb3hub.sys — (iusb3hub)
DRV:64bit: – [2012/01/05 11:58:50 | 000,016,152 | —- | M] (Intel Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriversiusb3hcs.sys — (iusb3hcs)
DRV:64bit: – [2011/12/19 20:15:10 | 000,411,920 | —- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversSynTP.sys — (SynTP)
DRV:64bit: – [2011/12/17 01:24:00 | 000,079,040 | —- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosrfusb.sys — (Tosrfusb)
DRV:64bit: – [2011/12/01 11:42:44 | 000,072,240 | —- | M] (Nero AG) [Kernel | Boot | Running] — C:WindowsSysNativedriversNBVol.sys — (NBVol)
DRV:64bit: – [2011/12/01 11:42:44 | 000,015,920 | —- | M] (Nero AG) [Kernel | Boot | Running] — C:WindowsSysNativedriversNBVolUp.sys — (NBVolUp)
DRV:64bit: – [2011/11/30 03:40:32 | 000,568,600 | —- | M] (Intel Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriversiaStor.sys — (iaStor)
DRV:64bit: – [2011/11/10 09:04:14 | 000,060,184 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversHECIx64.sys — (MEIx64)
DRV:64bit: – [2011/10/17 20:40:50 | 000,093,712 | —- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversAtihdW76.sys — (AtiHDAudioService)
DRV:64bit: – [2011/08/24 05:57:24 | 000,565,352 | —- | M] (Realtek ) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversRt64win7.sys — (RTL8167)
DRV:64bit: – [2011/08/17 22:27:06 | 000,251,496 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversRtsUStor.sys — (RSUSBSTOR)
DRV:64bit: – [2011/03/18 23:03:18 | 000,482,384 | —- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriverstos_sps64.sys — (tos_sps64)
DRV:64bit: – [2011/03/11 07:41:12 | 000,107,904 | —- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsata.sys — (amdsata)
DRV:64bit: – [2011/03/11 07:41:12 | 000,027,008 | —- | M] (Advanced Micro Devices) [Kernel | Boot | Running] — C:WindowsSysNativedriversamdxata.sys — (amdxata)
DRV:64bit: – [2011/02/09 03:07:00 | 000,038,096 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversPGEffect.sys — (PGEffect)
DRV:64bit: – [2010/11/29 19:47:00 | 000,082,224 | —- | M] (TOSHIBA Corporation) [Kernel | System | Running] — C:WindowsSysNativedriverstosrfcom.sys — (Tosrfcom)
DRV:64bit: – [2010/11/21 04:24:33 | 000,059,392 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversTsUsbFlt.sys — (TsUsbFlt)
DRV:64bit: – [2010/11/21 04:23:47 | 000,078,720 | —- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversHpSAMD.sys — (HpSAMD)
DRV:64bit: – [2010/11/21 04:23:47 | 000,031,232 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversTsUsbGD.sys — (TsUsbGD)
DRV:64bit: – [2010/11/11 18:27:00 | 000,050,864 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosrfbnp.sys — (tosrfbnp)
DRV:64bit: – [2010/08/30 18:48:00 | 000,094,528 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversTosrfhid.sys — (Tosrfhid)
DRV:64bit: – [2010/06/19 00:45:00 | 000,018,872 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosrfec.sys — (tosrfec)
DRV:64bit: – [2010/04/26 19:48:00 | 000,063,488 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversTosRfSnd.sys — (TosRfSnd)
DRV:64bit: – [2009/09/23 02:46:18 | 000,066,304 | —- | M] (Microsoft Corporation) [Kernel | System | Running] — C:WindowsSysNativedriversvpcnfltr.sys — (vpcnfltr)
DRV:64bit: – [2009/09/23 02:46:17 | 000,359,552 | —- | M] (Microsoft Corporation) [Kernel | System | Running] — C:WindowsSysNativedriversvpcvmm.sys — (vpcvmm)
DRV:64bit: – [2009/09/23 02:32:39 | 000,095,232 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversvpcusb.sys — (vpcusb)
DRV:64bit: – [2009/09/23 02:32:33 | 000,187,904 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversvpchbus.sys — (vpcbus)
DRV:64bit: – [2009/09/21 08:07:26 | 000,071,040 | —- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] — C:WindowsSysNativedriversaksdf.sys — (aksdf)
DRV:64bit: – [2009/08/20 07:02:06 | 000,130,816 | —- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] — C:WindowsSysNativedriversaksfridge.sys — (aksfridge)
DRV:64bit: – [2009/07/31 04:22:04 | 000,027,784 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstdcmdpst.sys — (tdcmdpst)
DRV:64bit: – [2009/07/24 19:33:00 | 000,026,472 | —- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosrfnds.sys — (tosrfnds)
DRV:64bit: – [2009/07/15 00:31:18 | 000,026,840 | —- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] — C:WindowsSysNativedriversTVALZ_O.SYS — (TVALZ)
DRV:64bit: – [2009/07/14 02:52:20 | 000,194,128 | —- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversamdsbs.sys — (amdsbs)
DRV:64bit: – [2009/07/14 02:48:04 | 000,065,600 | —- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriverslsi_sas2.sys — (LSI_SAS2)
DRV:64bit: – [2009/07/14 02:45:55 | 000,024,656 | —- | M] (Promise Technology) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversstexstor.sys — (stexstor)
DRV:64bit: – [2009/07/14 01:10:47 | 000,011,264 | —- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriversrootmdm.sys — (ROOTMODEM)
DRV:64bit: – [2009/06/20 03:15:22 | 000,014,472 | —- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] — C:WindowsSysNativedriversTVALZFL.sys — (TVALZFL)
DRV:64bit: – [2009/06/17 20:01:00 | 000,054,664 | —- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] — C:WindowsSysNativedriverstosporte.sys — (tosporte)
DRV:64bit: – [2009/06/10 21:34:33 | 003,286,016 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversevbda.sys — (ebdrv)
DRV:64bit: – [2009/06/10 21:34:28 | 000,468,480 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversbxvbda.sys — (b06bdrv)
DRV:64bit: – [2009/06/10 21:34:23 | 000,270,848 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedriversb57nd60a.sys — (b57nd60a)
DRV:64bit: – [2009/06/10 21:31:59 | 000,031,232 | —- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] — C:WindowsSysNativedrivershcw85cir.sys — (hcw85cir)
DRV:64bit: – [2009/03/13 10:55:38 | 000,318,464 | —- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] — C:WindowsSysNativedrivershardlock.sys — (hardlock)
DRV – [2013/01/01 17:11:03 | 000,098,304 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysWOW64driversew_jucdcacm.sys — (huawei_cdcacm)
DRV – [2013/01/01 17:11:03 | 000,087,040 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysWOW64driversew_jubusenum.sys — (huawei_enumerator)
DRV – [2013/01/01 17:11:03 | 000,072,192 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysWOW64driversew_jucdcecm.sys — (huawei_cdcecm)
DRV – [2013/01/01 17:11:03 | 000,028,672 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysWOW64driversew_juextctrl.sys — (huawei_ext_ctrl)
DRV – [2013/01/01 17:11:03 | 000,013,952 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] — C:WindowsSysWOW64driversew_usbenumfilter.sys — (ew_usbenumfilter)
DRV – [2013/01/01 17:11:02 | 000,422,400 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysWOW64driversewusbwwan.sys — (ewusbmbb)
DRV – [2013/01/01 17:11:02 | 000,274,944 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysWOW64driversewusbnet.sys — (ewusbnet)
DRV – [2013/01/01 17:11:02 | 000,223,232 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysWOW64driversewusbmdm.sys — (hwdatacard)
DRV – [2013/01/01 17:11:02 | 000,117,248 | —- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] — C:WindowsSysWOW64driversew_hwusbdev.sys — (ew_hwusbdev)
DRV – [2009/07/14 02:19:10 | 000,019,008 | —- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] — C:WindowsSysWOW64driverswimmount.sys — (WIMMount)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE:64bit: – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = about:blank
IE:64bit: – HKLM..SearchScopes,DefaultScope = {207A80BF-3A4A-4226-B000-87445381F153}
IE:64bit: – HKLM..SearchScopes{207A80BF-3A4A-4226-B000-87445381F153}: “URL” = http://www.google.com/search?sourceid=ie7&q=” onclick=”window.open(this.href);return false;{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TEUA;
IE – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
IE – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Search bar = http://search.msn.com/spbasic.htm” onclick=”window.open(this.href);return false;
IE – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Secondary Start Pages = Reg Error: Value error.
IE – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = about:blank
IE – HKLM..URLSearchHook: – No CLSID value found
IE – HKLM..SearchScopes,DefaultScope =
IE – HKLM..SearchScopes{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: “URL” = http://www.bing.com/search?q=” onclick=”window.open(this.href);return false;{searchTerms}&FORM=IE8SRC
IE – HKLM..SearchScopes{207A80BF-3A4A-4226-B000-87445381F153}: “URL” = http://www.google.com/search?sourceid=ie7&q=” onclick=”window.open(this.href);return false;{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TEUA;

IE – HKU.DEFAULT..SearchScopes,DefaultScope =
IE – HKU.DEFAULTSoftwareMicrosoftWindowsCurrentVersionInternet Settings: “ProxyEnable” = 0

IE – HKUS-1-5-18..SearchScopes,DefaultScope =
IE – HKUS-1-5-18SoftwareMicrosoftWindowsCurrentVersionInternet Settings: “ProxyEnable” = 0

IE – HKUS-1-5-19..SearchScopes,DefaultScope =

IE – HKUS-1-5-20..SearchScopes,DefaultScope =

IE – HKUS-1-5-21-3799678134-1094475672-2913924675-500SOFTWAREMicrosoftInternet ExplorerMain,Start Page = about:blank
IE – HKUS-1-5-21-3799678134-1094475672-2913924675-500..SearchScopes,DefaultScope = {207A80BF-3A4A-4226-B000-87445381F153}
IE – HKUS-1-5-21-3799678134-1094475672-2913924675-500..SearchScopes${searchCLSID}: “URL” = http://search.live.com/results.aspx?q=” onclick=”window.open(this.href);return false;{searchTerms}&src={referrer:source?}
IE – HKUS-1-5-21-3799678134-1094475672-2913924675-500..SearchScopes{207A80BF-3A4A-4226-B000-87445381F153}: “URL” = http://www.google.com/search?sourceid=ie7&q=” onclick=”window.open(this.href);return false;{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TEUA_frTN490
IE – HKUS-1-5-21-3799678134-1094475672-2913924675-500SoftwareMicrosoftWindowsCurrentVersionInternet Settings: “ProxyEnable” = 0

========== FireFox ==========

FF:64bit:HKLMSoftwareMozillaPlugins@adobe.com/FlashPlayer: C:windowssystem32MacromedFlashNPSWF64_11_7_700_224.dll File not found
FF:64bit:HKLMSoftwareMozillaPlugins@microsoft.com/GENUINE: disabled File not found
FF:64bit:HKLMSoftwareMozillaPlugins@Microsoft.com/NpCtrl,version=1.0: c:Program FilesMicrosoft Silverlight5.1.20513.0npctrl.dll ( Microsoft Corporation)
FF – HKLMSoftwareMozillaPlugins@adobe.com/FlashPlayer: C:windowsSysWOW64MacromedFlashNPSWF32_11_7_700_224.dll ()
FF – HKLMSoftwareMozillaPlugins@adobe.com/ShockwavePlayer: C:windowsSysWOW64AdobeDirectornp32dsw_1202122.dll (Adobe Systems, Inc.)
FF – HKLMSoftwareMozillaPlugins@google.com/npPicasa3,version=3.0.0: C:Program Files (x86)GooglePicasa3npPicasa3.dll (Google, Inc.)
FF – HKLMSoftwareMozillaPlugins@java.com/JavaPlugin: C:Program Files (x86)Javajre6binnew_pluginnpjp2.dll (Sun Microsystems, Inc.)
FF – HKLMSoftwareMozillaPlugins@microsoft.com/GENUINE: disabled File not found
FF – HKLMSoftwareMozillaPlugins@Microsoft.com/NpCtrl,version=1.0: c:Program Files (x86)Microsoft Silverlight5.1.20513.0npctrl.dll ( Microsoft Corporation)
FF – HKLMSoftwareMozillaPlugins@microsoft.com/WLPG,version=15.4.3502.0922: C:Program Files (x86)Windows LivePhoto GalleryNPWLPG.dll (Microsoft Corporation)
FF – HKLMSoftwareMozillaPlugins@microsoft.com/WLPG,version=15.4.3538.0513: C:Program Files (x86)Windows LivePhoto GalleryNPWLPG.dll (Microsoft Corporation)
FF – HKLMSoftwareMozillaPlugins@Nero.com/KM: C:PROGRA~2COMMON~1NeroBROWSE~1NPBROW~1.DLL (Nero AG)
FF – HKLMSoftwareMozillaPlugins@real.com/nppl3260;version=15.0.6.14: C:Program Files (x86)RealRealPlayerNetscape6nppl3260.dll (RealNetworks, Inc.)
FF – HKLMSoftwareMozillaPlugins@real.com/nprjplug;version=15.0.6.14: C:Program Files (x86)RealRealPlayerNetscape6nprjplug.dll (RealNetworks, Inc.)
FF – HKLMSoftwareMozillaPlugins@real.com/nprpchromebrowserrecordext;version=15.0.6.14: C:ProgramDataRealRealPlayerBrowserRecordPluginMozillaPluginsnprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF – HKLMSoftwareMozillaPlugins@real.com/nprphtml5videoshim;version=15.0.6.14: C:ProgramDataRealRealPlayerBrowserRecordPluginMozillaPluginsnprphtml5videoshim.dll (RealNetworks, Inc.)
FF – HKLMSoftwareMozillaPlugins@real.com/nprpplugin;version=15.0.6.14: C:Program Files (x86)RealRealPlayerNetscape6nprpplugin.dll (RealPlayer)
FF – HKLMSoftwareMozillaPlugins@richmediaplayer.com/nppluginrichmediaplayer: C:Program Files (x86)Mozilla Firefoxpluginsnppluginrichmediaplayer.dll ()
FF – HKLMSoftwareMozillaPlugins@tools.google.com/Google Update;version=3: C:Program Files (x86)GoogleUpdate1.3.21.153npGoogleUpdate3.dll (Google Inc.)
FF – HKLMSoftwareMozillaPlugins@tools.google.com/Google Update;version=9: C:Program Files (x86)GoogleUpdate1.3.21.153npGoogleUpdate3.dll (Google Inc.)
FF – HKLMSoftwareMozillaPlugins@videolan.org/vlc,version=2.0.4: C:Program Files (x86)VideoLANVLCnpvlc.dll (VideoLAN)
FF – HKLMSoftwareMozillaPlugins@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll ()
FF – HKLMSoftwareMozillaPluginsAdobe Reader: C:Program Files (x86)AdobeReader 10.0ReaderAIRnppdf32.dll (Adobe Systems Inc.)
FF – HKCUSoftwareMozillaPlugins@Skype Limited.com/Facebook Video Calling Plugin: C:UsersAdministrateurAppDataLocalFacebookVideoSkypenpFacebookVideoCalling.dll (Skype Limited)
FF – HKCUSoftwareMozillaPlugins@unity3d.com/UnityPlayer,version=1.0: C:UsersAdministrateurAppDataLocalLowUnityWebPlayerloadernpUnity3D32.dll (Unity Technologies ApS)

FF – HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensions\{0153E448-190B-4987-BDE1-F256CADA672F}: C:ProgramDataRealRealPlayerBrowserRecordPluginFirefoxExt [2012/12/08 17:23:23 | 000,000,000 | —D | M]
FF – HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensions\{3DF4B26D-DB19-45DF-962A-6719D071245B}: C:UsersAdministrateurAppDataLocalRich Media PlayerBrowserExtensionsFirefox{3DF4B26D-DB19-45DF-962A-6719D071245B} [2013/08/28 18:51:18 | 000,000,000 | —D | M]
FF – HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensions\url_advisor@kaspersky.com: C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013FFExturl_advisor@kaspersky.com [2013/08/30 04:22:25 | 000,000,000 | —D | M]
FF – HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensions\virtual_keyboard@kaspersky.com: C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013FFExtvirtual_keyboard@kaspersky.com [2013/08/30 04:22:25 | 000,000,000 | —D | M]
FF – HKEY_LOCAL_MACHINEsoftwaremozillaFirefoxExtensions\content_blocker@kaspersky.com: C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013FFExtcontent_blocker@kaspersky.com [2013/08/30 04:22:25 | 000,000,000 | —D | M]

[2013/01/03 18:45:41 | 000,000,000 | —D | M] (No name found) — C:Program Files (x86)Mozilla Firefoxextensions
[2013/03/12 09:27:46 | 000,093,976 | —- | M] () — C:Program Files (x86)mozilla firefoxpluginsnppluginrichmediaplayer.dll

========== Chrome ==========

CHR – default_search_provider: google (Enabled)
CHR – default_search_provider: search_url = http://www.google.fr/search?q=” onclick=”window.open(this.href);return false;{searchTerms}
CHR – default_search_provider: suggest_url =
CHR – plugin: Shockwave Flash (Enabled) = C:Program Files (x86)GoogleChromeApplication29.0.1547.66PepperFlashpepflashplayer.dll
CHR – plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR – plugin: Native Client (Enabled) = C:Program Files (x86)GoogleChromeApplication29.0.1547.66ppGoogleNaClPluginChrome.dll
CHR – plugin: Chrome PDF Viewer (Enabled) = C:Program Files (x86)GoogleChromeApplication29.0.1547.66pdf.dll
CHR – plugin: Java Deployment Toolkit 6.0.300.12 (Enabled) = C:Program Files (x86)Javajre6binnew_pluginnpdeployJava1.dll
CHR – plugin: Nero Kwik Media Helper (Enabled) = C:PROGRA~2COMMON~1NeroBROWSE~1NPBROW~1.DLL
CHR – plugin: Adobe Acrobat (Enabled) = C:Program Files (x86)AdobeReader 10.0ReaderAIRnppdf32.dll
CHR – plugin: Picasa (Enabled) = C:Program Files (x86)GooglePicasa3npPicasa3.dll
CHR – plugin: Google Update (Enabled) = C:Program Files (x86)GoogleUpdate1.3.21.153npGoogleUpdate3.dll
CHR – plugin: Java(TM) Platform SE 6 U30 (Enabled) = C:Program Files (x86)Javajre6binnew_pluginnpjp2.dll
CHR – plugin: PluginRichmediaplayer (Enabled) = C:Program Files (x86)Mozilla Firefoxpluginsnppluginrichmediaplayer.dll
CHR – plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:Program Files (x86)RealRealPlayerNetscape6nppl3260.dll
CHR – plugin: RealJukebox NS Plugin (Enabled) = C:Program Files (x86)RealRealPlayerNetscape6nprjplug.dll
CHR – plugin: RealPlayer Download Plugin (Enabled) = C:Program Files (x86)RealRealPlayerNetscape6nprpplugin.dll
CHR – plugin: VLC Web Plugin (Enabled) = C:Program Files (x86)VideoLANVLCnpvlc.dll
CHR – plugin: WildTangent Games App V2 Presence Detector (Enabled) = C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll
CHR – plugin: Windows Liveu0099 Photo Gallery (Enabled) = C:Program Files (x86)Windows LivePhoto GalleryNPWLPG.dll
CHR – plugin: RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) (Enabled) = C:ProgramDataRealRealPlayerBrowserRecordPluginMozillaPluginsnprpchromebrowserrecordext.dll
CHR – plugin: RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) (Enabled) = C:ProgramDataRealRealPlayerBrowserRecordPluginMozillaPluginsnprphtml5videoshim.dll
CHR – plugin: Unity Player (Enabled) = C:UsersAdministrateurAppDataLocalLowUnityWebPlayerloadernpUnity3D32.dll
CHR – plugin: Facebook Video Calling Plugin (Enabled) = C:UsersAdministrateurAppDataLocalFacebookVideoSkypenpFacebookVideoCalling.dll
CHR – plugin: Shockwave for Director (Enabled) = C:windowsSysWOW64AdobeDirectornp32dsw_1202122.dll
CHR – plugin: Shockwave Flash (Enabled) = C:windowsSysWOW64MacromedFlashNPSWF32_11_7_700_224.dll
CHR – plugin: Silverlight Plug-In (Enabled) = c:Program Files (x86)Microsoft Silverlight5.1.20513.0npctrl.dll
CHR – Extension: Documents Google = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake.0.0.6_0
CHR – Extension: Documents Google = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake.5_0
CHR – Extension: Googleu00A0Drive = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf6.2_0
CHR – Extension: Googleu00A0Drive = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf6.3_0
CHR – Extension: YouTube = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo4.2.5_0
CHR – Extension: YouTube = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo4.2.6_0
CHR – Extension: Recherche Google = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf.0.0.19_0
CHR – Extension: Recherche Google = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf.0.0.20_0
CHR – Extension: Kaspersky URL Advisor = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsdchlnpcodkpfdpacogkljefecpegganj13.0.1.4190_0
CHR – Extension: Download Video = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsdoagiokpgboiomffjfhaiimafndmmpni1.3.1_0
CHR – Extension: RealPlayer HTML5Video Downloader Extension = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsjfmjfhklogoienhpfnppmbcbjfjnkonk1.5_0
CHR – Extension: RealPlayer HTML5Video Downloader Extension = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsjfmjfhklogoienhpfnppmbcbjfjnkonk1.5_1
CHR – Extension: Chrome In-App Payments service = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda.0.4.10_0
CHR – Extension: Chrome In-App Payments service = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda.0.4.10_1
CHR – Extension: Gmail = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia7_0
CHR – Extension: Gmail = C:UsersAdministrateurAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia7_1

O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | —- | M]) – C:WindowsSysNativedriversetchosts
O2:64bit: – BHO: (Content Blocker Plugin) – {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013x64IEExtContentBlockerie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: – BHO: (Virtual Keyboard Plugin) – {73455575-E40C-433C-9784-C78DC7761455} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013x64IEExtVirtualKeyboardie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2:64bit: – BHO: (Google Toolbar Helper) – {AA58ED58-01DD-4d91-8333-CF10577473F7} – C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O2:64bit: – BHO: (URL Advisor Plugin) – {E33CF602-D945-461A-83F0-819F76A199F8} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013x64IEExtUrlAdvisorklwtbbho.dll (Kaspersky Lab ZAO)
O2:64bit: – BHO: (TOSHIBA Media Controller Plug-in) – {F3C88694-EFFA-4d78-B409-54B7B2535B14} – C:Program Files (x86)TOSHIBATOSHIBA Media Controller Plug-inx64TOSHIBAMediaControllerIE.dll ()
O2 – BHO: (RealPlayer Download and Record Plugin for Internet Explorer) – {3049C3E9-B461-4BC5-8870-4C09146192CA} – C:ProgramDataRealRealPlayerBrowserRecordPluginIErpbrowserrecordplugin.dll (RealPlayer)
O2 – BHO: (Content Blocker Plugin) – {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013IEExtContentBlockerie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2 – BHO: (Virtual Keyboard Plugin) – {73455575-E40C-433C-9784-C78DC7761455} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013IEExtVirtualKeyboardie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2 – BHO: (Java(tm) Plug-In SSV Helper) – {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} – C:Program Files (x86)Javajre6binssv.dll (Sun Microsystems, Inc.)
O2 – BHO: (Rich Media Downloader) – {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} – C:UsersAdministrateurAppDataLocalRich Media PlayerBrowserExtensionsIERichMediaDownloader.dll (Radiocom CJSC)
O2 – BHO: (Google Toolbar Helper) – {AA58ED58-01DD-4d91-8333-CF10577473F7} – C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll File not found
O2 – BHO: (URL Advisor Plugin) – {E33CF602-D945-461A-83F0-819F76A199F8} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013IEExtUrlAdvisorklwtbbho.dll (Kaspersky Lab ZAO)
O2 – BHO: (TOSHIBA Media Controller Plug-in) – {F3C88694-EFFA-4d78-B409-54B7B2535B14} – C:Program Files (x86)TOSHIBATOSHIBA Media Controller Plug-inTOSHIBAMediaControllerIE.dll ()
O2 – BHO: (Rich Media Player) – {FEB703F7-E7B2-4AB0-9566-87658AC70095} – C:UsersAdministrateurAppDataLocalRich Media PlayerBrowserExtensionsIEPluginRichmediaplayer.dll ()
O3:64bit: – HKLM..Toolbar: (no name) – Locked – No CLSID value found.
O3 – HKLM..Toolbar: (Google Toolbar) – {2318C2B1-4965-11d4-9B18-009027A5CD4F} – C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll File not found
O3 – HKLM..Toolbar: (no name) – Locked – No CLSID value found.
O4:64bit: – HKLM..Run: [] File not found
O4:64bit: – HKLM..Run: [AdobeAAMUpdater-1.0] C:Program Files (x86)Common FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: – HKLM..Run: [RtHDVCpl] C:Program FilesRealtekAudioHDARAVCpl64.exe (Realtek Semiconductor)
O4:64bit: – HKLM..Run: [SRS Premium Sound HD] C:Program FilesSRS LabsSRS Control PanelSRSPanel_64.exe (SRS Labs, Inc.)
O4:64bit: – HKLM..Run: [TCrdMain] C:Program FilesTOSHIBAFlashCardsTCrdMain.exe (TOSHIBA Corporation)
O4:64bit: – HKLM..Run: [Teco] C:Program FilesTOSHIBATECOTeco.exe (TOSHIBA Corporation)
O4:64bit: – HKLM..Run: [Toshiba Registration] C:Program FilesTOSHIBARegistrationToshibaReminder.exe (Toshiba Europe GmbH)
O4:64bit: – HKLM..Run: [Toshiba TEMPRO] C:Program Files (x86)Toshiba TEMPROTemproTray.exe (Toshiba Europe GmbH)
O4:64bit: – HKLM..Run: [TosSENotify] C:Program FilesTOSHIBATOSHIBA HDD SSD AlertTosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: – HKLM..Run: [TosVolRegulator] C:Program FilesTOSHIBATosVolRegulatorTosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: – HKLM..Run: [TosWaitSrv] C:Program FilesTOSHIBATPHMTosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: – HKLM..Run: [TPwrMain] C:Program FilesTOSHIBAPower SaverTPwrMain.exe (TOSHIBA Corporation)
O4 – HKLM..Run: [AdobeCS6ServiceManager] C:Program Files (x86)Common FilesAdobeCS6ServiceManagerCS6ServiceManager.exe (Adobe Systems Incorporated)
O4 – HKLM..Run: [AVP] C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013avp.exe (Kaspersky Lab ZAO)
O4 – HKLM..Run: [NBAgent] C:Program Files (x86)NeroNero 11Nero BackItUpNBAgent.exe (Nero AG)
O4 – HKLM..Run: [StartCCC] C:Program Files (x86)ATI TechnologiesATI.ACECore-StaticCLIStart.exe (Advanced Micro Devices, Inc.)
O4 – HKLM..Run: [SwitchBoard] C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe (Adobe Systems Incorporated)
O4 – HKLM..Run: [TkBellExe] C:Program Files (x86)RealRealPlayerupdaterealsched.exe (RealNetworks, Inc.)
O4 – HKU.DEFAULT..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe (TOSHIBA)
O4 – HKUS-1-5-18..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe (TOSHIBA)
O4 – HKUS-1-5-19..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 – HKUS-1-5-19..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe (TOSHIBA)
O4 – HKUS-1-5-20..Run: [Sidebar] C:Program Files (x86)Windows SidebarSidebar.exe (Microsoft Corporation)
O4 – HKUS-1-5-20..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe (TOSHIBA)
O4 – HKUS-1-5-21-3799678134-1094475672-2913924675-500..Run: [Facebook Update] C:UsersAdministrateurAppDataLocalFacebookUpdateFacebookUpdate.exe (Facebook Inc.)
O4 – HKUS-1-5-21-3799678134-1094475672-2913924675-500..Run: [TOPI.EXE] C:Program Files (x86)TOSHIBATOSHIBA Online Product Informationtopi.exe (TOSHIBA)
O4 – HKUS-1-5-19..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe File not found
O4 – HKUS-1-5-20..RunOnce: [mctadmin] C:WindowsSystem32mctadmin.exe File not found
O4 – Startup: C:UsersDefaultAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupTRDCReminder.lnk = C:Program Files (x86)TOSHIBATRDCReminderTRDCReminder.exe (TOSHIBA Europe)
O4 – Startup: C:UsersDefault UserAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupTRDCReminder.lnk = C:Program Files (x86)TOSHIBATRDCReminderTRDCReminder.exe (TOSHIBA Europe)
O4 – Startup: C:UsersInvitéAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupTRDCReminder.lnk = C:Program Files (x86)TOSHIBATRDCReminderTRDCReminder.exe (TOSHIBA Europe)
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoActiveDesktop = 1
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveAutoRun = 3
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveTypeAutoRun = 0
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorAdmin = 0
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: ConsentPromptBehaviorUser = 3
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: PromptOnSecureDesktop = 0
O6 – HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciesSystem: EnableLinkedConnections = 1
O7 – HKUS-1-5-21-3799678134-1094475672-2913924675-500SOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveTypeAutoRun = 0
O7 – HKUS-1-5-21-3799678134-1094475672-2913924675-500SOFTWAREMicrosoftWindowsCurrentVersionpoliciesExplorer: NoDriveAutoRun = 3
O8:64bit: – Extra context menu item: Add to Google Photos Screensa&ver – res://C” onclick=”window.open(this.href);return false;:windowssystem32GPhotos.scr/200 File not found
O8 – Extra context menu item: Add to Google Photos Screensa&ver – C:windowsSysWow64GPhotos.scr (Google Inc.)
O9:64bit: – Extra Button: Virtual Keyboard – {0C4CC089-D306-440D-9772-464E226F6539} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013x64IEExtVirtualKeyboardie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9:64bit: – Extra Button: URLs check – {CCF151D8-D089-449F-A5A4-D9909053F20F} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013x64IEExtUrlAdvisorklwtbbho.dll (Kaspersky Lab ZAO)
O9 – Extra Button: Virtual Keyboard – {0C4CC089-D306-440D-9772-464E226F6539} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013IEExtVirtualKeyboardie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9 – Extra Button: Rich Media Downloader – {A7DF592F-6E2A-45C4-9A87-4BD217D714ED} – C:UsersAdministrateurAppDataLocalRich Media PlayerBrowserExtensionsIERichMediaDownloader.dll (Radiocom CJSC)
O9 – Extra Button: URLs check – {CCF151D8-D089-449F-A5A4-D9909053F20F} – C:Program Files (x86)Kaspersky LabKaspersky Anti-Virus 2013IEExtUrlAdvisorklwtbbho.dll (Kaspersky Lab ZAO)
O10:64bit: – Protocol_Catalog9Catalog_Entries6400000000012 – C:WindowsSysNativevsocklib.dll (VMware, Inc.)
O10:64bit: – Protocol_Catalog9Catalog_Entries6400000000013 – C:WindowsSysNativevsocklib.dll (VMware, Inc.)
O10 – Protocol_Catalog9Catalog_Entries00000000012 – C:WindowsSysWOW64vsocklib.dll (VMware, Inc.)
O10 – Protocol_Catalog9Catalog_Entries00000000013 – C:WindowsSysWOW64vsocklib.dll (VMware, Inc.)
O1364bit: – gopher Prefix: missing
O13 – gopher Prefix: missing
O16 – DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab” onclick=”window.open(this.href);return false; (Java Plug-in 1.6.0_30)
O16 – DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab” onclick=”window.open(this.href);return false; (Java Plug-in 1.6.0_30)
O16 – DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab” onclick=”window.open(this.href);return false; (Java Plug-in 1.6.0_30)
O17 – HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 10.47.9.34 193.95.122.30
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{3AA4AC40-DE5B-46A7-88FD-F8AF6C06778D}: DhcpNameServer = 192.1.1.13 192.1.1.28
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{424CAE7A-7FF0-4B70-AB48-BCB9F861625E}: NameServer = 196.203.80.4 196.203.82.4
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{7CD145E9-81AC-4AB6-87AF-8A3CBD8285B1}: DhcpNameServer = 10.47.9.34 193.95.122.30
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{8AFC0B4A-8564-41F5-901F-9DD8D667FAAC}: DhcpNameServer = 10.47.9.34 193.95.122.30
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{94886D77-FC1C-4772-AA76-EA2FE0E2A52D}: DhcpNameServer = 10.47.9.34 193.95.122.30
O17 – HKLMSystemCCSServicesTcpipParametersInterfaces{F9508140-3B1F-4982-9E10-5A25E921B693}: NameServer = 196.203.80.4 196.203.82.4
O18:64bit: – ProtocolHandlerlivecall – No CLSID value found
O18:64bit: – ProtocolHandlermsdaipp – No CLSID value found
O18:64bit: – ProtocolHandlermsdaippx00000001 – No CLSID value found
O18:64bit: – ProtocolHandlermsdaippoledb – No CLSID value found
O18:64bit: – ProtocolHandlerms-help – No CLSID value found
O18:64bit: – ProtocolHandlermsnim – No CLSID value found
O18:64bit: – ProtocolHandlermso-offdap11 – No CLSID value found
O18:64bit: – ProtocolHandlerskype4com – No CLSID value found
O18:64bit: – ProtocolHandlerwlmailhtml – No CLSID value found
O18:64bit: – ProtocolHandlerwlpg – No CLSID value found
O18 – ProtocolHandlermsdaippx00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} – C:Program Files (x86)Common FilesSystemOle DBMSDAIPP.DLL (Microsoft Corporation)
O18 – ProtocolHandlermsdaippoledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} – C:Program Files (x86)Common FilesSystemOle DBMSDAIPP.DLL (Microsoft Corporation)
O18 – ProtocolHandlerskype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} – C:Program Files (x86)Common FilesSkypeSkype4COM.dll (Skype Technologies)
O20:64bit: – HKLM Winlogon: Shell – (Explorer.exe) – C:windowsexplorer.exe (Microsoft Corporation)
O20:64bit: – HKLM Winlogon: UserInit – (C:windowssystem32userinit.exe) – C:WindowsSysNativeuserinit.exe (Microsoft Corporation)
O20 – HKLM Winlogon: Shell – (Explorer.exe) – C:windowsSysWow64explorer.exe (Microsoft Corporation)
O20 – HKLM Winlogon: UserInit – (userinit.exe) – C:windowsSysWow64userinit.exe (Microsoft Corporation)
O21:64bit: – SSODL: WebCheck – {E6FB5E20-DE35-11CF-9C87-00AA005127ED} – No CLSID value found.
O21 – SSODL: WebCheck – {E6FB5E20-DE35-11CF-9C87-00AA005127ED} – No CLSID value found.
O32 – HKLM CDRom: AutoRun – 0
O32 – AutoRun File – [2013/08/26 22:34:51 | 000,000,000 | RHSD | M] – C:Autorun.inf — [ NTFS ]
O34 – HKLM BootExecute: (autocheck autochk *)
O35:64bit: – HKLM..comfile [open] — “%1” %*
O35:64bit: – HKLM..exefile [open] — “%1” %*
O35 – HKLM..comfile [open] — “%1” %*
O35 – HKLM..exefile [open] — “%1” %*
O37:64bit: – HKLM…com [@ = comfile] — “%1” %*
O37:64bit: – HKLM…exe [@ = exefile] — “%1” %*
O37 – HKLM…com [@ = comfile] — “%1” %*
O37 – HKLM…exe [@ = exefile] — “%1” %*
O38 – SubSystems\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 – SubSystems\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 – SubSystems\Windows: (ServerDll=sxssrv,4)