Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:11-05-2014 01
Ran by Pierre (administrator) on PC-DE-PIERRE on 13-05-2014 16:06:33
Running from C:\Users\Pierre\Desktop
Platform: Microsoft® Windows Vista? Édition Familiale Premium Service Pack 1 (X86) OS Language: French Standard
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
() C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files\PACKARD BELL\Packard Bell Recovery Management\Service\ETService.exe
(Nero AG) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
(Prolific Technology Inc.) C:\Windows\System32\IoctlSvc.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Google) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Packard Bell BV) C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Google) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Apple Computer, Inc.) C:\Program Files\QuickTime\qttask.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Matsushita Electric Industrial Co., Ltd.) C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Microsoft Corporation) C:\Windows\System32\sdclt.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [eRecoveryService] => [X]
HKLM\...\Run: [Google Desktop Search] => C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-09-29] (Google)
HKLM\...\Run: [SmpcSys] => C:\Program Files\Packard Bell\SetupMyPC\SmpSys.exe [1038136 2008-07-07] (Packard Bell BV)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [6265376 2008-08-04] (Realtek Semiconductor)
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [894512 2007-06-08] (Synaptics, Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\qttask.exe [282624 2006-09-01] (Apple Computer, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [AVP] => C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe [206448 2014-05-01] (Kaspersky Lab ZAO)
Winlogon\Notify\klogon: C:\Windows\system32\klogon.dll (Kaspersky Lab ZAO)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-136433714-1853483514-1551372721-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-136433714-1853483514-1551372721-1000\...\Run: [SmpcSys] => C:\Program Files\PACKARD BELL\SetUpMyPC\SmpSys.exe [1038136 2008-07-07] (Packard Bell BV)
HKU\S-1-5-21-136433714-1853483514-1551372721-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856 2009-08-23] (Google Inc.)
HKU\S-1-5-21-136433714-1853483514-1551372721-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-136433714-1853483514-1551372721-1000\...\MountPoints2: {10f5c724-9efb-11de-9f01-00238be94f9f} - F:\InstallTomTomHOME.exe
AppInit_DLLs: C:\PROGRA~1\GOOGLE\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-09-29] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LUMIX Simple Viewer.lnk
ShortcutTarget: LUMIX Simple Viewer.lnk -> C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe (Matsushita Electric Industrial Co., Ltd.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/?pc=UP21&ocid=UP21DHP&dt=041413
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=040c&s=2&o=vp32&d=0609&m=easynote_mh36
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.packardbell.com/rdr.aspx?b=ACPW&l=040c&s=2&o=vp32&d=0609&m=easynote_mh36
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW
SearchScopes: HKCU - DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_frFR341
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {42516755-8F1A-4C0B-AEEA-A2ED2C9067AA} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_frFR341
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_frFR341
SearchScopes: HKCU - {6E9556B3-796C-410A-A1C8-4B2721C59624} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_frFR341
SearchScopes: HKCU - {DE4A9329-53F6-4312-8120-D5C584C4AD5A} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=crm&q={searchTerms}&locale=fr_FR&apn_ptnrs=U3&apn_dtid=OSJ000YYFR&apn_uid=179FC018-F95E-4441-A7A9-3CB5638A19DA&apn_sauid=7F61F75E-5F73-48A4-AA91-8C0664D08055
BHO: IEVkbdBHO Class - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO)
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: FilterBHO Class - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM - WalterShop - {9ec204df-0e48-4c32-816e-2e928a4fd9c2} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 212.27.40.241 212.27.40.240

FireFox:
========
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.3 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
FF HKLM\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\virtualKeyboard@kaspersky.ru
FF Extension: Kaspersky Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\virtualKeyboard@kaspersky.ru [2014-05-01]
FF HKLM\...\Firefox\Extensions: [linkfilter@kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\linkfilter@kaspersky.ru
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\linkfilter@kaspersky.ru [2014-05-01]

Chrome:
=======
CHR HomePage:
CHR StartupUrls: "hxxp://fr.msn.com/?pc=UP21&ocid=UP21DHP&dt=041413"
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\22.0.1229.92\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.131\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.131\pdf.dll ()
CHR Plugin: (Skype Toolbars) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.5.0.7896_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll (Kaspersky Lab ZAO)
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\plugin/npUrlAdvisor.dll (Kaspersky Lab ZAO)
CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\plugin/npVKPlugin.dll (Kaspersky Lab ZAO)
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Computer, Inc.)
CHR Plugin: (QuickTime Plug-in 7.1.3) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Computer, Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Updater) - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U7) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.70.11) - C:\Windows\system32\npDeployJava1.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (YouTube) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-10-10]
CHR Extension: (Recherche Google) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-10-10]
CHR Extension: (Analyse des liens (URL Advisor)) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-05-13]
CHR Extension: (AdBlock) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-29]
CHR Extension: (Clavier virtuel) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2014-05-13]
CHR Extension: (Google Wallet) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-29]
CHR Extension: (Gmail) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-10-10]
CHR Extension: (Kaspersky Anti-bannière) - C:\Users\Pierre\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-05-13]
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ChromeExt\urladvisor.crx [2011-04-25]
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ChromeExt\virtkbd.crx [2011-04-25]
CHR HKLM\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\ChromeExt\ab.crx [2011-04-25]

========================== Services (Whitelisted) =================

R2 AdobeActiveFileMonitor6.0; C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-11] ()
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe [206448 2014-05-01] (Kaspersky Lab ZAO)
R2 ETService; C:\Program Files\Packard Bell\Packard Bell Recovery Management\Service\ETService.exe [24576 2008-07-16] ()
S3 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-09-29] (Google)
S2 gupdate1ca280866a71313; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-08-28] (Google Inc.)

==================== Drivers (Whitelisted) ====================

S3 Dot4Scan; C:\Windows\System32\DRIVERS\Dot4Scan.sys [10752 2008-01-21] (Microsoft Corporation)
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [133208 2011-03-04] (Kaspersky Lab ZAO)
R1 kl2; C:\Windows\System32\DRIVERS\kl2.sys [11352 2011-03-04] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [570160 2014-05-01] (Kaspersky Lab)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [23856 2011-03-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [19984 2009-11-02] (Kaspersky Lab)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-13 15:29 - 2014-05-13 15:30 - 00025085 _____ () C:\Users\Pierre\Desktop\Addition.txt
2014-05-13 13:33 - 2014-05-13 16:06 - 00018834 _____ () C:\Users\Pierre\Desktop\FRST.txt
2014-05-13 13:32 - 2014-05-13 16:06 - 00000000 ____D () C:\FRST
2014-05-13 13:31 - 2014-05-13 13:31 - 00004224 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log
2014-05-13 13:31 - 2014-05-13 13:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-13 13:31 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-05-13 13:31 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-13 13:31 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-13 13:31 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-13 13:27 - 2014-05-13 13:27 - 01056256 _____ (Farbar) C:\Users\Pierre\Desktop\FRST.exe
2014-05-01 17:52 - 2014-05-01 18:34 - 00116189 _____ () C:\Windows\system32\Drivers\klin.dat
2014-05-01 17:52 - 2014-05-01 18:34 - 00098168 _____ () C:\Windows\system32\Drivers\klick.dat
2014-05-01 17:52 - 2014-05-01 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2012
2014-05-01 17:49 - 2014-05-01 17:49 - 00000000 ____D () C:\Program Files\Kaspersky Lab
2014-05-01 17:48 - 2014-05-01 17:48 - 00570160 _____ (Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2014-05-01 17:03 - 2014-05-01 17:08 - 365230920 _____ (Microsoft Corporation) C:\Users\Pierre\Downloads\Windows6.0-KB948465-X86.exe
2014-05-01 17:01 - 2014-05-01 17:02 - 00000000 ____D () C:\92e6cf07f8104562cee9d1
2014-05-01 16:16 - 2014-05-01 16:18 - 00000000 ____D () C:\7dceb1d8581a89eaf0cd2f26789f
2014-05-01 11:23 - 2014-05-01 11:23 - 06780391 _____ (Nicolas Coolman ) C:\Users\Pierre\Downloads\ZHPDiag2.exe
2014-05-01 11:22 - 2014-05-01 11:22 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-01 11:21 - 2014-05-01 11:21 - 00000901 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-05-01 11:21 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-01 11:21 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-01 11:21 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-01 11:20 - 2014-05-01 11:20 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Pierre\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-01 11:20 - 2014-05-01 11:20 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Pierre\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-01 11:04 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-05-01 11:01 - 2014-05-01 11:13 - 00000000 ____D () C:\AdwCleaner
2014-05-01 10:59 - 2014-05-01 10:59 - 01310621 _____ () C:\Users\Pierre\Downloads\adwcleaner.exe
2014-05-01 10:47 - 2014-05-01 10:47 - 00096110 _____ () C:\Users\Pierre\Desktop\compatibilité seven.mht
2014-05-01 10:34 - 2014-05-01 10:34 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Microsoft Corporation
2014-05-01 10:15 - 2014-05-01 10:18 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-01 10:00 - 2014-05-01 10:00 - 00001998 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conseiller de mise à niveau vers Windows 7.lnk
2014-05-01 10:00 - 2014-05-01 10:00 - 00001986 _____ () C:\Users\Public\Desktop\Conseiller de mise à niveau vers Windows 7.lnk
2014-05-01 10:00 - 2014-05-01 10:00 - 00000000 ____D () C:\Program Files\Microsoft Windows 7 Upgrade Advisor

==================== One Month Modified Files and Folders =======

2014-05-13 16:06 - 2014-05-13 13:33 - 00018834 _____ () C:\Users\Pierre\Desktop\FRST.txt
2014-05-13 16:06 - 2014-05-13 13:32 - 00000000 ____D () C:\FRST
2014-05-13 15:30 - 2014-05-13 15:29 - 00025085 _____ () C:\Users\Pierre\Desktop\Addition.txt
2014-05-13 15:29 - 2010-05-06 17:46 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-05-13 15:28 - 2011-07-11 21:07 - 00000000 ____D () C:\Users\Pierre\AppData\Roaming\Skype
2014-05-13 15:28 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-13 15:28 - 2006-11-02 14:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-13 13:32 - 2013-10-26 09:05 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-13 13:31 - 2014-05-13 13:31 - 00004224 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log
2014-05-13 13:31 - 2014-05-13 13:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-13 13:31 - 2012-06-28 16:37 - 00000000 ____D () C:\Program Files\Java
2014-05-13 13:27 - 2014-05-13 13:27 - 01056256 _____ (Farbar) C:\Users\Pierre\Desktop\FRST.exe
2014-05-13 13:23 - 2009-08-28 20:01 - 00001052 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-13 13:23 - 2009-06-23 20:25 - 01931747 _____ () C:\Windows\WindowsUpdate.log
2014-05-13 13:10 - 2009-08-28 20:01 - 00001056 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-13 11:43 - 2009-06-23 20:34 - 00000000 _____ () C:\Windows\system32\LogConfigTemp.xml
2014-05-13 11:43 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-13 08:28 - 2006-11-02 15:01 - 00032564 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-01 18:34 - 2014-05-01 17:52 - 00116189 _____ () C:\Windows\system32\Drivers\klin.dat
2014-05-01 18:34 - 2014-05-01 17:52 - 00098168 _____ () C:\Windows\system32\Drivers\klick.dat
2014-05-01 17:52 - 2014-05-01 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2012
2014-05-01 17:51 - 2009-08-23 11:11 - 00000000 ____D () C:\Users\Pierre
2014-05-01 17:49 - 2014-05-01 17:49 - 00000000 ____D () C:\Program Files\Kaspersky Lab
2014-05-01 17:48 - 2014-05-01 17:48 - 00570160 _____ (Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2014-05-01 17:08 - 2014-05-01 17:03 - 365230920 _____ (Microsoft Corporation) C:\Users\Pierre\Downloads\Windows6.0-KB948465-X86.exe
2014-05-01 17:02 - 2014-05-01 17:01 - 00000000 ____D () C:\92e6cf07f8104562cee9d1
2014-05-01 17:00 - 2010-03-30 13:54 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2014-05-01 16:18 - 2014-05-01 16:16 - 00000000 ____D () C:\7dceb1d8581a89eaf0cd2f26789f
2014-05-01 14:16 - 2008-01-21 04:47 - 00056336 _____ () C:\Windows\PFRO.log
2014-05-01 11:23 - 2014-05-01 11:23 - 06780391 _____ (Nicolas Coolman ) C:\Users\Pierre\Downloads\ZHPDiag2.exe
2014-05-01 11:23 - 2008-01-21 10:41 - 01470810 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-01 11:22 - 2014-05-01 11:22 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-01 11:21 - 2014-05-01 11:21 - 00000901 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-01 11:21 - 2014-05-01 11:21 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-05-01 11:20 - 2014-05-01 11:20 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Pierre\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-01 11:20 - 2014-05-01 11:20 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Pierre\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-01 11:16 - 2010-05-06 18:42 - 00000434 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{7C1FC8D7-F05A-4DB9-BE4C-0C3D1527D658}.job
2014-05-01 11:13 - 2014-05-01 11:01 - 00000000 ____D () C:\AdwCleaner
2014-05-01 10:59 - 2014-05-01 10:59 - 01310621 _____ () C:\Users\Pierre\Downloads\adwcleaner.exe
2014-05-01 10:47 - 2014-05-01 10:47 - 00096110 _____ () C:\Users\Pierre\Desktop\compatibilité seven.mht
2014-05-01 10:34 - 2014-05-01 10:34 - 00000000 ____D () C:\Users\Pierre\AppData\Local\Microsoft Corporation
2014-05-01 10:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-05-01 10:18 - 2014-05-01 10:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-01 10:00 - 2014-05-01 10:00 - 00001998 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conseiller de mise à niveau vers Windows 7.lnk
2014-05-01 10:00 - 2014-05-01 10:00 - 00001986 _____ () C:\Users\Public\Desktop\Conseiller de mise à niveau vers Windows 7.lnk
2014-05-01 10:00 - 2014-05-01 10:00 - 00000000 ____D () C:\Program Files\Microsoft Windows 7 Upgrade Advisor
2014-05-01 09:38 - 2006-11-02 14:52 - 00119865 _____ () C:\Windows\setupact.log
2014-05-01 09:08 - 2010-06-04 06:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-01 09:08 - 2009-11-28 16:21 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-14 20:13 - 2014-05-13 13:31 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-04-14 20:05 - 2014-05-13 13:31 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-04-14 20:05 - 2014-05-13 13:31 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-04-14 20:04 - 2014-05-13 13:31 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe

Some content of TEMP:
====================
C:\Users\Pierre\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Pierre\AppData\Local\Temp\Quarantine.exe
C:\Users\Pierre\AppData\Local\Temp\setup.exe
C:\Users\Pierre\AppData\Local\Temp\_is1FA1.exe
C:\Users\Pierre\AppData\Local\Temp\_isA13E.exe
C:\Users\Pierre\AppData\Local\Temp\_isAE8.exe
C:\Users\Pierre\AppData\Local\Temp\_isC467.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-05-13 11:48

==================== End Of Log ============================