Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by Mediacom at 2015-04-09 20:31:28 Running from C:\Users\Mediacom\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 64 Bit HP CIO Components Installer (Version: 8.2.2 - Hewlett-Packard) Hidden 8600_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 8600_Readme (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.124 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated) ASUSUpdate (HKLM-x32\...\{587178E7-B1DF-494E-9838-FA4DD36E873C}) (Version: 7.18.03 - ASUSTeK Computer Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2215 - AVAST Software) BPDSoftware (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Brother MFL-Pro Suite MFC-J650DW (HKLM-x32\...\{7B4C83B6-17C1-4BFD-B86D-4D7AD4498CBB}) (Version: 1.0.4.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.04 - Piriform) Ciel Compta Evolution 10.20 (HKLM-x32\...\{821FEDA0-B3F0-497A-B306-C5E37BF531ED}) (Version: 230.00.432 - Ciel) Ciel Gestion Commerciale 17.0 (HKLM-x32\...\{F3EBBC50-C205-4314-9F6E-1495E7B433B6}) (Version: 138.00.742 - Ciel) Cool & Quiet (HKLM-x32\...\{1ADE1AA0-7F82-4BB1-B1BD-727DE438057B}) (Version: - ) EBP Btrieve 8.6 (HKLM-x32\...\EBP Btrieve 8.6) (Version: - EBP) EBP Btrieve 8.6 (x32 Version: 1.0 - EBP) Hidden EBP Paye PRO 2015 7.0 (OL Technology) (HKLM-x32\...\EBP Paye PRO 2015 7.0 (OL Technology)) (Version: 7.0.0 - EBP) EBP Paye PRO 2015 7.0 (OL Technology) (Version: 7.0.0 - EBP) Hidden EBP Utilitaire d'échanges 1.1 (HKLM-x32\...\EBP Utilitaire d'échanges 1.1) (Version: 1.1.0 - EBP) Étude pour l'amélioration du produit HP Officejet Pro 8600 (HKLM\...\{562D25FD-5778-4631-B733-0EC21968E37F}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Fichiers de support d'installation de Microsoft SQL Server 2008 (HKLM\...\{308350C4-5DA5-4035-A69B-12600021C9FA}) (Version: 10.1.2731.0 - Microsoft Corporation) Generic 36C-1Series (HKLM\...\Generic 36C-1Series Installer) (Version: - ) HP Officejet Pro 8600 Aide (HKLM-x32\...\{20033B23-1270-4E9C-92DC-2E167A367C73}) (Version: 28.0.0 - Hewlett Packard) HP Officejet Pro K8600 (HKLM\...\{1B06283F-BB48-48D5-A303-9834D9ADD485}) (Version: 13.0 - HP) HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Installation de Microsoft SQL Server 2008 R2 (Français) (HKLM\...\{5474BD46-FE7E-41AF-9FA7-24F318D9B7A2}) (Version: 10.51.2500.0 - Microsoft Corporation) K8600_Basic (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden Logiciel d'archivage WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) Logiciel de base du périphérique HP Officejet Pro 8600 (HKLM\...\{E588CA1D-AD74-4E04-8C53-AD9735C4CA54}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{FFFA0218-6C51-4828-AF6E-36F72119AC92}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft SQL Server Browser (HKLM-x32\...\{1141FF5B-5750-4583-AB0A-F893B1D90364}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{74AF6D20-B0B5-4DA0-9857-57CA74261170}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 (64 bits) (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mises à jour NVIDIA 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation) Mozilla Firefox 37.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 37.0.1 (x86 fr)) (Version: 37.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Network64 (Version: 130.0.579.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden Nuance PaperPort 12 (HKLM-x32\...\{869FCC6C-5669-4B0B-827E-2BBAACD88A87}) (Version: 12.1.0006 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.7 - NVIDIA Corporation) NVIDIA ForceWare Network Access Manager (HKLM-x32\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7316 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{B83FC356-B7C0-441F-8A4D-D71E088E7974}) (Version: 9.09.0428 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 311.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 311.06 - NVIDIA Corporation) NVIDIA Pilote graphique 311.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.06 - NVIDIA Corporation) Panneau de configuration NVIDIA 311.06 (Version: 311.06 - NVIDIA Corporation) Hidden PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 14.00.0000 - Nuance Communications, Inc.) PC Probe II (HKLM-x32\...\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}) (Version: 1.04.86 - ASUSTeK Computer Inc.) PDF Architect 2 (HKLM-x32\...\PDF Architect 2) (Version: 2.0.24.16092 - pdfforge GmbH) PDF Architect 2 View Module (HKLM-x32\...\{46889070-D447-4936-A5D3-246DB972FA2E}) (Version: 2.0.6.16537 - pdfforge GmbH) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) pdfforge Toolbar v6.2 (HKLM-x32\...\{2511D82C-2688-41C2-ABF8-AF237795989B}) (Version: 6.2 - Spigot, Inc.) <==== ATTENTION Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden Puran Defrag 7.7 (HKLM\...\Puran Defrag_is1) (Version: - Puran Software) Scansoft PDF Professional (x32 Version: - ) Hidden Semenier V2.0 (HKLM-x32\...\Semenier_is1) (Version: - GaillardT) Service Pack 1 pour SQL Server 2008 R2 (KB2528583) (64-bit) (HKLM\...\KB2528583) (Version: 10.51.2500.0 - Microsoft Corporation) SHARP MX/DX Series PCL/PS Printer Driver (HKLM-x32\...\SHARP MX-2300 2700 3500 4500 Series PCL PS Printer Driver) (Version: 1.00.000 - SHARP) sPAIEctacle 4.4.8 (HKLM-x32\...\sPAIEctacle 4.4.8) (Version: - ) sPAIEctacle 5.5.1 (HKLM-x32\...\sPAIEctacle 5.5.1) (Version: - ) SQL Server 2008 R2 SP1 Common Files (Version: 10.51.2500.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP1 Database Engine Services (Version: 10.51.2500.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP1 Database Engine Shared (Version: 10.51.2500.0 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 6.5.48.0 - 2BrightSparks) TeamViewer 7 (HKLM-x32\...\TeamViewer 7) (Version: 7.0.13989 - TeamViewer) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden Turbo Key (HKLM-x32\...\{B83F7FA5-3191-4E39-A1F2-8A9038BD0B04}) (Version: 1.01.03 - ) Utilitaire de mise à jour des logiciels EBP 1.1.3 (HKLM-x32\...\Utilitaire de mise à jour des logiciels EBP 1.1.3) (Version: 1.1.3 - EBP) Utilitaire de mise à jour des logiciels EBP 1.1.3 (Version: 1.1.3 - EBP) Hidden VIA Gestionnaire de périphériques de plate-forme (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 27-01-2015 23:58:18 Windows Update 31-01-2015 00:31:57 Windows Update 03-02-2015 20:25:08 Windows Update 10-02-2015 12:45:49 Windows Update 12-02-2015 04:00:37 Windows Update 12-02-2015 12:56:37 Removed Boxore Client 12-02-2015 13:01:28 avast! antivirus system restore point 12-02-2015 18:55:10 Windows Update 17-02-2015 23:45:25 Windows Update 24-02-2015 07:44:51 Windows Update 26-02-2015 04:00:13 Windows Update 03-03-2015 17:23:10 Windows Update 07-03-2015 02:11:35 Windows Update 11-03-2015 01:19:46 Windows Update 11-03-2015 04:00:47 Windows Update 17-03-2015 12:56:42 Windows Update 20-03-2015 20:54:31 Windows Update 25-03-2015 00:03:42 Windows Update 01-04-2015 03:31:43 Windows Update 05-04-2015 03:00:12 Windows Update 09-04-2015 14:59:22 avast! antivirus system restore point 09-04-2015 15:17:36 avast! antivirus system restore point 09-04-2015 16:30:54 avast! antivirus system restore point 09-04-2015 17:20:11 Removed Acrobat.com 09-04-2015 19:44:40 Removed Adobe Reader X (10.1.10) - Français. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-04-09 19:13 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {02372994-4749-4DD1-B6D3-B1547DFFE40B} - System32\Tasks\HPCustParticipation HP Officejet Pro 8600 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {1595C4DD-5F53-4ECD-8B6C-521CD89B5967} - \b0928d29-1952-4127-a0b8-8b3d46b08fae-1-6 No Task File <==== ATTENTION Task: {1F4EC89B-7179-4B15-BCFB-DA75133D34EA} - System32\Tasks\{2CDA6737-96EA-4A18-B0FF-1E145F983207} => pcalua.exe -a C:\Users\Mediacom\Downloads\sPAIEctacle54r1b.install(1).exe -d C:\Users\Mediacom\Downloads Task: {2944F610-6F6D-4D08-954A-CE1FB252806F} - System32\Tasks\{DA9164A4-4882-462F-94A2-752AFC1D8D9F} => pcalua.exe -a C:\Users\Mediacom\Downloads\sPAIEctacle551.install(2).exe -d C:\Users\Mediacom\Downloads Task: {3046B214-3BDF-4980-BC8D-0DE6AE75DEC1} - System32\Tasks\kong_games_updating_service => C:\Program Files (x86)\kong games\kong_games_updating_service.exe Task: {3076BBE0-6775-4DA8-BEB8-2828AF28B995} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {3FAE491B-BB08-4053-B88D-F24CCCF066A7} - \CreateChoiceProcessTask No Task File <==== ATTENTION Task: {509708C5-47EB-4C02-A71F-66F87D96935E} - System32\Tasks\{1F157692-4261-48A7-B483-2258475F8A6C} => C:\Program Files (x86)\PDFCreator\PDFCreator.exe [2014-07-24] (pdfforge GmbH) Task: {5B32881C-015F-43D9-B350-82698221C123} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation) Task: {61E8B9D1-704A-47F0-A069-52BC8D792224} - \b0928d29-1952-4127-a0b8-8b3d46b08fae-5_user No Task File <==== ATTENTION Task: {62FB09A1-9611-4859-A582-27C761A581F5} - System32\Tasks\{4F1F05AA-D982-4E5F-9477-5EB8E1BF5617} => pcalua.exe -a C:\Users\Mediacom\Downloads\sPAIEctacle551.install(1).exe -d C:\Users\Mediacom\Downloads Task: {73600567-6B3F-4ADC-B1E2-6141D3269E83} - \b0928d29-1952-4127-a0b8-8b3d46b08fae-10_user No Task File <==== ATTENTION Task: {7A456E5B-4289-4485-BBC8-6E93D2D49652} - \kong_games_notification_service No Task File <==== ATTENTION Task: {817E31BB-0C37-4077-8637-B1EB045F3615} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {87A2B5B5-8B41-48A9-88D9-8CA8CD4EFBCC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-03-07] (Adobe Systems Incorporated) Task: {92DD7166-1BD8-45A4-B9C5-B8D4B14AF8D1} - System32\Tasks\{F1FABCBE-E1F9-4435-9029-D238EDB4BA58} => pcalua.exe -a C:\Users\Mediacom\Desktop\WG1100.exe -d C:\Users\Mediacom\Desktop Task: {A4CB2364-78EA-4F7F-B213-6FF351AD7A3E} - System32\Tasks\{7D64E51C-297A-4BEB-8A9A-387FFED473BC} => pcalua.exe -a C:\Users\Mediacom\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=key7 <==== ATTENTION Task: {A6A97B44-D410-4C26-83AD-4AB5B9C23DE0} - System32\Tasks\avastBCLRestartS-1-5-21-2333523428-859584143-3742249913-1000 => Chrome.exe Task: {AF4F1F5E-E35D-4DA0-AD0F-EF661FD96517} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-03-13] (Piriform Ltd) Task: {B15B18B5-C557-4EA1-80C4-F76333D432F8} - System32\Tasks\{16DFA6AE-60B9-4C0F-8FE7-A4FF1D9E483E} => C:\Program Files (x86)\PDFCreator\PDFCreator.exe [2014-07-24] (pdfforge GmbH) Task: {B31BA9F8-F643-48E1-ACB9-B315C28903A1} - System32\Tasks\{D09D07B1-EF08-4149-A319-32D0E21E71CA} => C:\Program Files (x86)\PDFCreator\PDFCreator.exe [2014-07-24] (pdfforge GmbH) Task: {B8517AB1-A942-4919-8861-E140609CCA7B} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {C57485AA-E648-46C7-A95A-AEF853FDB8F1} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [2009-12-28] (ASUSTeK Computer Inc.) Task: {CF5C80C4-9276-41AF-87B7-8A12BE61DA01} - System32\Tasks\ASUS\ASUS RegRun Loader => C:\Program Files (x86)\ASUS\AASP\1.01.02\AsLoader.exe [2009-12-28] (ASUSTeK Computer Inc.) Task: {DBC69CAE-C54E-45DA-91BF-A2D2BFBB4AC4} - \b0928d29-1952-4127-a0b8-8b3d46b08fae-5 No Task File <==== ATTENTION Task: {E7A03799-317D-4A7F-9EFD-2EC0A4920047} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-09] (Adobe Systems Incorporated) Task: {F7FABB3E-593E-41B9-846B-CD978A7E7F21} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-09] (Avast Software s.r.o.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============== 2014-08-12 11:12 - 2005-04-22 06:36 - 00143360 ____R () C:\Windows\system32\BrSNMP64.dll 2010-09-06 15:30 - 2010-03-15 11:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2009-10-01 07:08 - 2009-10-01 07:08 - 00015360 _____ () C:\Windows\System32\KOAZ8JAL.DLL 2009-10-01 07:08 - 2009-10-01 07:08 - 00015360 _____ () C:\Windows\System32\KOAZ8AAL.DLL 2010-04-23 11:35 - 2010-04-23 11:35 - 00015360 _____ () C:\Windows\System32\KOAZ8WAL.DLL 2009-11-02 09:19 - 2009-11-02 09:19 - 00648704 _____ () C:\Windows\system32\spool\DRIVERS\x64\3\KOAZ8JAO.DLL 2015-04-09 16:36 - 2015-04-09 16:36 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-04-09 16:36 - 2015-04-09 16:36 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-04-09 16:36 - 2015-04-09 16:36 - 02925056 _____ () C:\Program Files\AVAST Software\Avast\defs\15040900\algo.dll 2015-04-09 16:43 - 2015-04-09 16:43 - 16858288 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Public\.DS_Store:AFP_AfpInfo AlternateDataStreams: C:\Users\Public\Extrait K-bis 170214.pdf:com.apple.quarantine AlternateDataStreams: C:\Users\Public\fiche soins.pdf:com.apple.metadatakMDItemDownloadedDate AlternateDataStreams: C:\Users\Public\fiche soins.pdf:com.apple.metadatakMDItemWhereFroms AlternateDataStreams: C:\Users\Public\fiche soins.pdf:com.apple.quarantine AlternateDataStreams: C:\Users\Public\Lettre DRAC + RIB No Logo productions.pdf:com.apple.metadatakMDItemDownloadedDate AlternateDataStreams: C:\Users\Public\Lettre DRAC + RIB No Logo productions.pdf:com.apple.metadatakMDItemWhereFroms AlternateDataStreams: C:\Users\Public\Lettre DRAC + RIB No Logo productions.pdf:com.apple.quarantine AlternateDataStreams: C:\Users\Public\Documents\.DS_Store:AFP_AfpInfo AlternateDataStreams: C:\Users\Public\Documents\Avoir JDM Musicast Utopia 270114.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Bon de commande SNA - Gladiators.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture JDM Mucicast Utopia janvier 2014.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture JDM Musicast Utopia 050213.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture JDM Musicast Utopia 180614.pdf:com.apple.quarantine AlternateDataStreams: C:\Users\Public\Documents\Facture JDM Musicast Utopia 220114.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor 050213.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Mediacom 020913.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Uopia 311213.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Utopia 041213.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Utopia 071113.pdf:com.apple.Preview.UIstate.v1 AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Utopia 090114 October sales.pdf:com.apple.quarantine AlternateDataStreams: C:\Users\Public\Documents\Facture Modulor Utopia ventes decembre 2013.pdf:com.apple.Preview.UIstate.v1 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2333523428-859584143-3742249913-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mediacom\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 212.27.40.240 - 212.27.40.241 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrateur (S-1-5-21-2333523428-859584143-3742249913-500 - Administrator - Disabled) Invité (S-1-5-21-2333523428-859584143-3742249913-501 - Limited - Enabled) Mediacom (S-1-5-21-2333523428-859584143-3742249913-1000 - Administrator - Enabled) => C:\Users\Mediacom UpdatusUser (S-1-5-21-2333523428-859584143-3742249913-1002 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/09/2015 08:06:29 PM) (Source: Adobe Reader) (EventID: 16) (User: ) Description: Error: (04/09/2015 07:48:50 PM) (Source: Adobe Reader) (EventID: 16) (User: ) Description: System errors: ============= Error: (04/09/2015 08:23:34 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (04/09/2015 07:37:48 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Le chargement de \??\C:\Windows\System32\drivers\TrueSight.sys a été bloqué en raison d’une incompatibilité avec ce système. Contactez l’éditeur de votre logiciel pour obtenir une version compatible du pilote. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ Percentage of memory in use: 46% Total physical RAM: 3967.17 MB Available physical RAM: 2135.64 MB Total Pagefile: 7932.53 MB Available Pagefile: 5986.37 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:297.99 GB) (Free:123.04 GB) NTFS Drive e: () (Removable) (Total:14.91 GB) (Free:3.93 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 7B740429) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS) ======================================================== Disk: 5 (Size: 14.9 GB) (Disk ID: 8337DCD3) Partition 1: (Not Active) - (Size=14.9 GB) - (Type=07 NTFS) ==================== End Of Log ============================