Hi Corrine,
I'm always satisfied about your devotion... thank you very much!
I think that my PC is a little faster again... the different bethween now and my first contact is relatively important, but it's difficult to see the different bethween each step.
I know that I can't ask it to be fast like a new one!
For the slow start ... I downloaded WinPatrol and removed all of the 3 programms that you have indicate! After that, I tried to understand how to work whit WinPatrol... it seem to be easy, but I'm affraid to do something wrong... I don't know what programms are important, necessary or not!! I think that WinPatrol can tell me about that... I have to put some time on this!
Anaway, after I removed the 3 programms, I restart my computer and it was longer than before!!!!!!!!!!! I was perplexed about that!
Also, my pc freeze again when I'm connecting to internet, but I observe that it occur when a programm is updating... AVG, Windows, ??
Otherwise... it's relatively prompt!! I'm satisfied enough of that! Thank you again!
So, I deactivate this to automaticals up-grader... I have to be attentive!
Thank you for your recommandations about Windows update... be sure that I ask some help in the post that you indicate!
I really happy to meet you, you seem to be a beautifull human.
Your devotion had impress me... the result is very good and everybody are contented!
Best regards
Claude
ComboFix 14-02-05.02 - Contrat2 05/02/2014 5:49.5.2 - x86
Microsoft® Windows Vista™ Édition Intégrale 6.0.6002.2.1252.2.1036.18.2941.1589 [GMT -5:00]
Lancé depuis: c:\gdg\UserData\Desktop\ComboFix.exe
Commutateurs utilisés :: c:\gdg\UserData\Desktop\CFScript.txt
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
FW: AVG Internet Security 2014 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\gdg\UserData\telechargements\ccsetup406(1).exe"
"c:\gdg\UserData\telechargements\DuplicateCleaner_setup.exe"
"c:\gdg\UserData\telechargements\FreeAudioConverter.exe"
"c:\gdg\UserData\telechargements\FreeStudio.exe"
"c:\gdg\UserData\telechargements\install_sld.exe"
"c:\gdg\UserData\telechargements\SoftonicDownloader_for_computer-repair-free.exe"
"c:\gdg\UserData\telechargements\speedupmypc.exe"
"c:\gdg\UserData\telechargements\supprimer-doublons.exe"
"c:\gdg\UserData\telechargements\sysrc_trial_3267_770481(1).exe"
"c:\gdg\UserData\telechargements\sysrc_trial_3267_770481.exe"
"c:\gdg\UserData\telechargements\sysrc_trial_9407_french01(1).exe"
"c:\gdg\UserData\telechargements\sysrc_trial_9407_french01(2).exe"
"c:\gdg\UserData\telechargements\sysrc_trial_9407_french01(3).exe"
"c:\gdg\UserData\telechargements\sysrc_trial_9407_french01.exe"
"c:\gdg\UserData\telechargements\vlcmediaplayer-setup.exe"
"c:\program files\Mozilla Firefox\browser\nsprotector.js"
"c:\program files\Uninstaller\Uninstall.exe"
"c:\users\Contrat2\AppData\Local\genienext\nengine.dll"
"c:\users\Contrat2\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll"
"c:\users\Contrat2\AppData\Roaming\newnext.me\nengine.dll"
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2014-01-05 au 2014-02-05 ))))))))))))))))))))))))))))))))))))
.
.
2014-02-05 08:03 . 2014-02-05 08:03 -------- d-----w- c:\users\Contrat2\AppData\Roaming\WinPatrol
2014-02-05 08:02 . 2014-02-05 08:02 -------- d-----w- c:\programdata\InstallMate
2014-02-05 08:02 . 2014-02-05 08:02 -------- d-----w- c:\program files\BillP Studios
2014-02-04 23:42 . 2014-02-05 11:16 -------- d-----w- c:\users\Contrat2\AppData\Local\temp
2014-02-03 06:26 . 2013-12-19 02:10 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-02-02 15:27 . 2014-02-02 15:27 -------- d-----w- c:\program files\ESET
2014-01-31 04:59 . 2014-01-31 04:59 -------- d-----w- c:\users\Contrat2\AppData\Roaming\ParetoLogic
2014-01-31 04:59 . 2014-01-31 04:59 -------- d-----w- c:\users\Contrat2\AppData\Roaming\DriverCure
2014-01-31 04:59 . 2014-01-31 06:01 -------- d-----w- c:\programdata\ParetoLogic
2014-01-28 06:41 . 2005-05-26 20:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2014-01-26 09:40 . 2014-01-26 09:54 -------- d-----w- c:\programdata\TuneUp Software
2014-01-26 09:39 . 2014-01-26 10:27 -------- d-sh--w- c:\programdata\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-01-26 09:02 . 2014-01-26 09:02 -------- d-----w- c:\users\Contrat2\AppData\Local\PassMark
2014-01-26 09:02 . 2014-01-26 09:02 -------- d-----w- c:\programdata\Passmark
2014-01-26 09:02 . 2014-01-26 09:02 -------- d-----w- c:\program files\PerformanceTest
2014-01-26 08:24 . 2014-01-26 08:24 -------- d-----w- c:\program files\Panda Security
2014-01-25 10:37 . 2013-12-04 02:57 7760024 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4D855812-5B87-493A-9388-D625B8587E3A}\mpengine.dll
2014-01-25 10:30 . 2014-01-25 10:30 -------- d-----w- c:\users\Contrat2\AppData\Roaming\AVG2014
2014-01-25 10:28 . 2014-01-26 09:49 -------- d-----w- c:\users\Contrat2\AppData\Roaming\TuneUp Software
2014-01-25 10:27 . 2014-01-25 10:29 -------- d-----w- c:\programdata\AVG2014
2014-01-25 10:25 . 2014-01-25 10:25 -------- d-----w- c:\program files\AVG
2014-01-25 10:20 . 2014-02-05 08:57 -------- d-----w- c:\programdata\MFAData
2014-01-25 10:20 . 2014-01-25 10:35 -------- d-----w- c:\users\Contrat2\AppData\Local\Avg2014
2014-01-25 10:20 . 2014-01-25 10:20 -------- d-----w- c:\users\Contrat2\AppData\Local\MFAData
2014-01-25 09:44 . 2014-01-25 09:44 -------- d-----w- c:\program files\VS Revo Group
2014-01-24 12:07 . 2014-01-24 14:53 -------- d-----w- c:\users\Contrat2\AppData\Local\CrashDumps
2014-01-24 11:27 . 2014-01-24 11:27 -------- d-----w- c:\users\Contrat2\AppData\Roaming\Malwarebytes
2014-01-24 11:27 . 2014-01-24 11:27 -------- d-----w- c:\programdata\Malwarebytes
2014-01-24 11:27 . 2014-01-24 11:27 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-01-24 07:00 . 2014-01-24 07:00 -------- d-----w- c:\program files\Enigma Software Group
2014-01-23 07:24 . 2014-01-23 07:24 -------- d-----w- c:\programdata\CrypKey
2014-01-23 07:22 . 2014-01-23 07:23 -------- d-----w- c:\program files\Stellar Phoenix Outlook PST Repair
2014-01-13 08:35 . 2014-01-25 06:46 -------- d-----w- c:\program files\Browsersafeguard
2014-01-13 08:31 . 2014-01-13 08:31 -------- d-----w- c:\programdata\SearchModule
2014-01-13 08:30 . 2014-01-16 17:06 -------- d-----w- c:\program files\Common Files\Goobzo
2014-01-13 08:30 . 2014-01-13 08:31 -------- d-----w- c:\users\Contrat2\AppData\Local\Installer
2014-01-13 08:30 . 2014-01-13 08:30 -------- d-----w- c:\users\Contrat2\AppData\Local\CrashRpt
2014-01-13 07:45 . 2014-01-13 07:45 -------- d-----w- c:\users\Contrat2\AppData\Local\AMD
2014-01-13 07:43 . 2014-01-13 07:43 -------- d-----w- c:\programdata\ATI
2014-01-09 09:56 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\uk-UA
2014-01-09 09:56 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\sr-Latn-CS
2014-01-09 09:56 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\sk-SK
2014-01-09 09:56 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\ro-RO
2014-01-08 20:11 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\tr-TR
2014-01-08 20:11 . 2014-01-08 20:11 -------- d-----w- c:\windows\system32\041F
2014-01-08 19:51 . 2014-01-08 19:51 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\tr\Microsoft.Ink.Resources.dll
2014-01-08 19:47 . 2014-01-08 19:47 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\tr-TR\LMPRTPRC.DLL.mui
2014-01-08 18:47 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\th-TH
2014-01-08 18:46 . 2014-01-08 18:46 -------- d-----w- c:\windows\th-TH
2014-01-08 17:36 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\sv-SE
2014-01-08 17:36 . 2014-01-08 17:36 -------- d-----w- c:\windows\system32\041D
2014-01-08 17:36 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\sv-SE
2014-01-08 17:36 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\sv-SE
2014-01-08 17:36 . 2014-01-08 17:36 -------- d-----w- c:\windows\sv-SE
2014-01-08 17:17 . 2014-01-08 17:17 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\sv\Microsoft.Ink.Resources.dll
2014-01-08 17:13 . 2014-01-08 17:13 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\sv-SE\LMPRTPRC.DLL.mui
2014-01-08 16:13 . 2014-01-08 16:13 -------- d-----w- c:\windows\sl-SI
2014-01-08 16:13 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\sl-SI
2014-01-08 15:05 . 2014-01-08 15:05 -------- d-----w- c:\windows\sk-SK
2014-01-08 15:05 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\sk-SK
2014-01-08 13:49 . 2014-01-08 13:49 -------- d-----w- c:\windows\sr-Latn-CS
2014-01-08 13:48 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\sr-Latn-CS
2014-01-08 12:42 . 2014-01-08 12:42 -------- d-----w- c:\windows\system32\0419
2014-01-08 12:42 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\ru-RU
2014-01-08 12:42 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\ru-RU
2014-01-08 12:42 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\ru-RU
2014-01-08 12:41 . 2014-01-08 12:41 -------- d-----w- c:\windows\ru-RU
2014-01-08 12:18 . 2014-01-08 12:18 49152 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\ru\Microsoft.Ink.Resources.dll
2014-01-08 12:12 . 2014-01-08 12:12 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\ru-RU\LMPRTPRC.DLL.mui
2014-01-08 11:07 . 2014-01-24 13:23 -------- d-----w- c:\windows\ro-RO
2014-01-08 11:07 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\ro-RO
2014-01-08 10:08 . 2014-01-08 10:08 -------- d-----w- c:\windows\pt-PT
2014-01-08 10:07 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\pt-PT
2014-01-08 10:07 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\pt-PT
2014-01-08 10:07 . 2014-01-08 10:07 -------- d-----w- c:\windows\system32\0816
2014-01-08 10:07 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\pt-PT
2014-01-08 09:49 . 2014-01-08 09:49 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\pt\Microsoft.Ink.Resources.dll
2014-01-08 09:44 . 2014-01-08 09:44 4096 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\pt-PT\LMPRTPRC.DLL.mui
2014-01-08 08:38 . 2014-01-08 08:38 -------- d-----w- c:\windows\pt-BR
2014-01-08 08:37 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\pt-BR
2014-01-08 08:37 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\pt-BR
2014-01-08 08:37 . 2014-01-08 08:37 -------- d-----w- c:\windows\system32\0416
2014-01-08 08:37 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\pt-BR
2014-01-08 08:20 . 2014-01-08 08:20 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\pt-BR\Microsoft.Ink.Resources.dll
2014-01-08 08:19 . 2014-01-08 08:19 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\pt-BR\LMPRTPRC.DLL.mui
2014-01-08 07:24 . 2014-01-08 07:24 -------- d-----w- c:\windows\pl-PL
2014-01-08 07:24 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\pl-PL
2014-01-08 07:24 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\pl-PL
2014-01-08 07:23 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\pl-PL
2014-01-08 07:23 . 2014-01-08 07:23 -------- d-----w- c:\windows\system32\0415
2014-01-08 07:09 . 2014-01-08 07:09 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\pl\Microsoft.Ink.Resources.dll
2014-01-08 07:04 . 2014-01-08 07:04 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\pl-PL\LMPRTPRC.DLL.mui
2014-01-08 06:02 . 2014-01-08 06:02 -------- d-----w- c:\windows\lt-LT
2014-01-08 06:02 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\lt-LT
2014-01-08 05:17 . 2014-01-08 05:17 -------- d-----w- c:\windows\lv-LV
2014-01-08 05:17 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\lv-LV
2014-01-08 04:22 . 2014-01-08 04:22 -------- d-----w- c:\windows\ko-KR
2014-01-08 04:22 . 2014-01-08 04:22 -------- d-----w- c:\windows\system32\0412
2014-01-08 04:22 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\ko-KR
2014-01-08 04:22 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\ko-KR
2014-01-08 04:22 . 2014-01-08 04:22 -------- d-----w- c:\windows\system32\ko
2014-01-08 04:22 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\ko-KR
2014-01-08 04:09 . 2014-01-08 04:09 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\ko\Microsoft.Ink.Resources.dll
2014-01-08 04:06 . 2014-01-08 04:06 3072 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\ko-KR\LMPRTPRC.DLL.mui
2014-01-08 03:07 . 2014-01-08 03:07 -------- d-----w- c:\windows\ja-JP
2014-01-08 03:06 . 2014-01-08 03:06 -------- d-----w- c:\windows\system32\ja
2014-01-08 03:06 . 2014-01-08 03:06 -------- d-----w- c:\windows\system32\0411
2014-01-08 03:06 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\ja-JP
2014-01-08 03:06 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\ja-JP
2014-01-08 03:06 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\ja-JP
2014-01-08 02:53 . 2014-01-08 02:53 45056 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\ja\Microsoft.Ink.Resources.dll
2014-01-08 02:48 . 2014-01-08 02:48 3072 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\ja-JP\LMPRTPRC.DLL.mui
2014-01-08 01:58 . 2014-01-08 01:58 -------- d-----w- c:\windows\nl-NL
2014-01-08 01:58 . 2014-01-08 01:58 -------- d-----w- c:\windows\system32\0413
2014-01-08 01:57 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\nl-NL
2014-01-08 01:57 . 2014-01-09 09:56 -------- d-----w- c:\windows\system32\drivers\UMDF\nl-NL
2014-01-08 01:57 . 2014-01-09 09:12 -------- d-----w- c:\windows\system32\wbem\nl-NL
2014-01-08 01:43 . 2014-01-08 01:43 40960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\nl\Microsoft.Ink.Resources.dll
2014-01-08 01:42 . 2014-01-08 01:42 3584 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\nl-NL\LMPRTPRC.DLL.mui
2014-01-08 00:52 . 2014-01-08 00:52 -------- d-----w- c:\windows\zh-TW
2014-01-08 00:52 . 2014-01-08 00:52 -------- d-----w- c:\windows\system32\zh-CHT
2014-01-08 00:52 . 2014-01-09 10:12 -------- d-----w- c:\windows\system32\drivers\zh-TW
2014-01-08 00:52 . 2014-01-08 00:52 -------- d-----w- c:\windows\system32\drivers\zh-HK
2014-01-08 00:52 . 2014-01-08 00:52 -------- d-----w- c:\windows\system32\drivers\UMDF\zh-TW
2014-01-08 00:52 . 2014-01-08 00:52 -------- d-----w- c:\windows\system32\wbem\zh-TW
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-01-28 07:23 . 2012-06-13 15:02 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-01-28 07:23 . 2011-09-07 13:39 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-25 09:00 . 2014-01-13 08:58 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 15872 ----a-w- c:\windows\system32\drivers\ws2ifsl.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 40448 ----a-w- c:\windows\system32\drivers\WpdUsb.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 17976 ----a-w- c:\windows\system32\drivers\wmilib.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 11264 ----a-w- c:\windows\system32\drivers\wmiacpi.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 31616 ----a-w- c:\windows\system32\drivers\winusb.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 7040 ----a-w- c:\windows\system32\drivers\whfltr2k.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 22072 ----a-w- c:\windows\system32\drivers\wd.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 33280 ----a-w- c:\windows\system32\drivers\watchdog.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 62464 ----a-w- c:\windows\system32\drivers\wanarp.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 20608 ----a-w- c:\windows\system32\drivers\wacompen.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 130616 ----a-w- c:\windows\system32\drivers\vsmraid.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 224640 ----a-w- c:\windows\system32\drivers\volsnap.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 292840 ----a-w- c:\windows\system32\drivers\volmgrx.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 52792 ----a-w- c:\windows\system32\drivers\volmgr.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 110080 ----a-w- c:\windows\system32\drivers\videoprt.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 20024 ----a-w- c:\windows\system32\drivers\viaide.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 41472 ----a-w- c:\windows\system32\drivers\viac7.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 56888 ----a-w- c:\windows\system32\drivers\VIAAGP.SYS.bak
2014-01-25 09:00 . 2014-01-13 08:58 26112 ----a-w- c:\windows\system32\drivers\vgapnp.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 25088 ----a-w- c:\windows\system32\drivers\vga.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 18432 ----a-w- c:\windows\system32\drivers\UVCFTR_S.SYS.bak
2014-01-25 09:00 . 2014-01-13 08:58 134272 ----a-w- c:\windows\system32\drivers\usbvideo.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 23552 ----a-w- c:\windows\system32\drivers\usbuhci.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 65536 ----a-w- c:\windows\system32\drivers\USBSTOR.SYS.bak
2014-01-25 09:00 . 2014-01-13 08:58 35328 ----a-w- c:\windows\system32\drivers\usbscan.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 18944 ----a-w- c:\windows\system32\drivers\usbprint.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 226304 ----a-w- c:\windows\system32\drivers\usbport.sys.bak
2014-01-25 09:00 . 2014-01-13 08:58 19456 ----a-w- c:\windows\system32\drivers\usbohci.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 6016 ----a-w- c:\windows\system32\drivers\usbd.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 68608 ----a-w- c:\windows\system32\drivers\usbcir.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 73216 ----a-w- c:\windows\system32\drivers\usbccgp.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 25856 ----a-w- c:\windows\system32\drivers\USBCAMD2.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 44544 ----a-w- c:\windows\system32\drivers\usbaapl.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 25856 ----a-w- c:\windows\system32\drivers\USBCAMD.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 7680 ----a-w- c:\windows\system32\drivers\umpass.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 34816 ----a-w- c:\windows\system32\drivers\umbus.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 115816 ----a-w- c:\windows\system32\drivers\ulsata2.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 98408 ----a-w- c:\windows\system32\drivers\ulsata.sys.bak
2014-01-25 08:59 . 2014-01-13 08:58 238648 ----a-w- c:\windows\system32\drivers\uliahci.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 60984 ----a-w- c:\windows\system32\drivers\ULIAGPKX.SYS.bak
2014-01-25 08:59 . 2014-01-13 08:57 226816 ----a-w- c:\windows\system32\drivers\udfs.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 59448 ----a-w- c:\windows\system32\drivers\UAGP35.SYS.bak
2014-01-25 08:59 . 2014-01-13 08:57 23640 ----a-w- c:\windows\system32\drivers\TVALZ_O.SYS.bak
2014-01-25 08:59 . 2014-01-13 08:57 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 15360 ----a-w- c:\windows\system32\drivers\TUNMP.SYS.bak
2014-01-25 08:59 . 2014-01-13 08:57 24064 ----a-w- c:\windows\system32\drivers\tssecsrv.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 7463 ----a-w- c:\windows\system32\drivers\tkbtnpn.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 53224 ----a-w- c:\windows\system32\drivers\termdd.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 72192 ----a-w- c:\windows\system32\drivers\tdx.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 29184 ----a-w- c:\windows\system32\drivers\tdtcp.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 17920 ----a-w- c:\windows\system32\drivers\tdpipe.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 20992 ----a-w- c:\windows\system32\drivers\tdi.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 16128 ----a-w- c:\windows\system32\drivers\tdcmdpst.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 31232 ----a-w- c:\windows\system32\drivers\tcpipreg.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 914880 ----a-w- c:\windows\system32\drivers\tcpip.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 24576 ----a-w- c:\windows\system32\drivers\tape.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 203312 ----a-w- c:\windows\system32\drivers\SynTP.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 34920 ----a-w- c:\windows\system32\drivers\sym_u3.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 31848 ----a-w- c:\windows\system32\drivers\sym_hi.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 35944 ----a-w- c:\windows\system32\drivers\symc8xx.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 24840 ----a-w- c:\windows\system32\drivers\swmsflt.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 15288 ----a-w- c:\windows\system32\drivers\swenum.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 13464 ----a-w- c:\windows\system32\drivers\SWDUMon.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 52992 ----a-w- c:\windows\system32\drivers\stream.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 122344 ----a-w- c:\windows\system32\drivers\Storport.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 146432 ----a-w- c:\windows\system32\drivers\srv2.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 305152 ----a-w- c:\windows\system32\drivers\srv.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 684032 ----a-w- c:\windows\system32\drivers\spsys.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 21048 ----a-w- c:\windows\system32\drivers\spldr.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 17408 ----a-w- c:\windows\system32\drivers\smclib.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 66560 ----a-w- c:\windows\system32\drivers\smb.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 74808 ----a-w- c:\windows\system32\drivers\sisraid4.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 41016 ----a-w- c:\windows\system32\drivers\sisraid2.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 55864 ----a-w- c:\windows\system32\drivers\SISAGP.SYS.bak
2014-01-25 08:59 . 2014-01-13 08:57 13312 ----a-w- c:\windows\system32\drivers\sfloppy.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 11776 ----a-w- c:\windows\system32\drivers\sffp_sd.sys.bak
2014-01-25 08:59 . 2014-01-13 08:57 12288 ----a-w- c:\windows\system32\drivers\sffp_mmc.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 13312 ----a-w- c:\windows\system32\drivers\sffdisk.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 19968 ----a-w- c:\windows\system32\drivers\sermouse.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 83456 ----a-w- c:\windows\system32\drivers\serial.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 17920 ----a-w- c:\windows\system32\drivers\serenum.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 20480 ----a-w- c:\windows\system32\drivers\secdrv.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 142904 ----a-w- c:\windows\system32\drivers\scsiport.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 76392 ----a-w- c:\windows\system32\drivers\sbp2port.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 209112 ----a-w- c:\windows\system32\drivers\RtsUStor.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 62464 ----a-w- c:\windows\system32\drivers\RTSTOR.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 454288 ----a-w- c:\windows\system32\drivers\Rtlh86.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 2888536 ----a-w- c:\windows\system32\drivers\RTKVHDA.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 60416 ----a-w- c:\windows\system32\drivers\rspndr.sys.bak
2014-01-25 08:58 . 2014-01-13 08:57 238696 ----a-w- c:\windows\system32\drivers\RsFx0105.sys.bak
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM"="c:\programdata\FLEXnet\Connect\11\ISUSPM.exe" [2009-05-05 222496]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"WinPatrol"="c:\program files\BillP Studios\WinPatrol\winpatrol.exe" [2014-01-24 429120]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Bell Canada Connection Manager"="c:\program files\Bell\Mobile Connect\BellCanadaCM.exe" [2010-05-26 87320]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-08-14 1348904]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2013-10-24 12017368]
"PDF5 Registry Controller"="c:\program files\Nuance\PDF Viewer Plus\RegistryController.exe" [2010-03-05 62752]
"LtMoh"="c:\program files\ltmoh\Ltmoh.exe" [2007-01-09 191552]
"LogMeIn GUI"="c:\program files\LogMeIn\x86\LogMeInSystray.exe" [2010-09-17 63048]
"iSkysoft Helper Compact.exe"="c:\program files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe" [2013-05-29 1734144]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2007-11-01 54608]
"BrStsMon00"="c:\program files\Browny02\Brother\BrStMonW.exe" [2011-05-19 2629632]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-01-20 43848]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-01-22 712704]
"BrowserSafeguard"="c:\program files\Browsersafeguard\BrowserSafeguard.exe" [2013-12-31 412672]
"AVG_UI"="c:\program files\AVG\AVG2014\avgui.exe" [2013-11-08 4956176]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2014-01-20 152392]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-24 926896]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoThumbnailCache"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ sasnative32\0autocheck autochk *
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7070D8E0-650A-46b3-B03C-9497582E6A74}]
2008-04-11 21:23 38400 ----a-w- c:\windows\System32\SoundSchemes.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-04 19:21 1211720 ----a-w- c:\program files\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{B3688A53-AB2A-4b1d-8CEF-8F93D8C51C24}]
2008-08-28 14:50 30720 ----a-w- c:\windows\System32\soundschemes2.exe
.
Contenu du dossier 'Tâches planifiées'
.
2014-02-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-13 07:23]
.
2014-02-05 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-11-30 18:46]
.
2014-02-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-11-30 18:46]
.
.
------- Examen supplémentaire -------
.
uStart Page = about:blank
mStart Page = hxxp://www.shoptoshiba.ca/welcome
uInternet Settings,ProxyOverride = <-loopback>
uInternet Settings,ProxyServer = http=127.0.0.1:49171;https=127.0.0.1:49171
uSearchAssistant = hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=Tuguu&co=CA&userid=8aa00f75-bc22-84db-0eac-8c33f83d1f22&searchtype=ds&q={searchTerms}&installDate=05/01/2014
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Ouvrir avec PDF Viewer Plus - c:\program files\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll/PlusIEContextMenu.htm
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Contrat2\AppData\Roaming\Mozilla\Firefox\Profiles\6nckl4da.default-1390634376769\
FF - prefs.js: browser.startup.homepage - hxxps://snt148.mail.live.com/mail/?n=271082233&fid=1&cid=1337c784-270b-a2b2-204c-0cae78c9cc91|
Nicolet, Québec - Vos Prévisions locales - MétéoMédia
FF - user.js: network.http.max-connections-per-server - 6
FF - user.js: network.http.max-persistent-connections-per-server - 3
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: content.notify.interval - 750000
FF - user.js: content.max.tokenizing.time - 2250000
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
GMER - Rootkit Detector and Remover
Rootkit scan 2014-02-05 06:16
Windows 6.0.6002 Service Pack 2 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet013\Services\TrueSight]
"ImagePath"="\??\"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_170_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet013\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet013\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Heure de fin: 2014-02-05 06:27:10
ComboFix-quarantined-files.txt 2014-02-05 11:26
ComboFix2.txt 2014-02-04 23:42
ComboFix3.txt 2014-02-03 22:46
ComboFix4.txt 2014-02-03 05:12
ComboFix5.txt 2014-02-05 10:43
.
Avant-CF: 24 826 535 936 octets libres
Après-CF: 23 865 659 392 octets libres
.
- - End Of File - - 9D70E797513F7CC9F0E182A3EB99E22B
5C616939100B85E558DA92B899A0FC36