cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:03-10-2015
Exécuté par robocop (administrateur) sur JOHNNY (04-10-2015 10:55:49)
Exécuté depuis C:\Users\robocop\Desktop
Profils chargés: robocop (Profils disponibles: robocop)
Platform: Windows 8.1 Connected (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(BitTorrent Inc.) C:\Users\robocop\AppData\Roaming\uTorrent\uTorrent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AppEx Networks Corporation) C:\Program Files\AMD Quick Stream\AMDQuickStream.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\robocop\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqgpc01.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13776088 2014-12-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\Run: [MalwareProtectionLive] => C:\Users\robocop\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [847392 2015-09-09] ()
HKU\S-1-5-21-3936836069-999480999-553099135-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
HKU\S-1-5-21-3936836069-999480999-553099135-1001\...\Run: [uTorrent] => C:\Users\robocop\AppData\Roaming\uTorrent\uTorrent.exe [1043536 2014-12-07] (BitTorrent Inc.)
HKU\S-1-5-21-3936836069-999480999-553099135-1001\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [482528 2014-03-31] (AppEx Networks Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2015-04-17]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{2722302D-6BD1-49AF-8488-62A824DCCF32}: [DhcpNameServer] 10.11.0.1
Tcpip\..\Interfaces\{AA7C284B-7242-4E95-916E-CACBD39C42F7}: [NameServer] 50.116.23.211,23.226.230.72
Tcpip\..\Interfaces\{AA7C284B-7242-4E95-916E-CACBD39C42F7}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{F6C89715-8A1A-48F1-B083-DD0B3BBC5C03}: [NameServer] 50.116.23.211,23.226.230.72
Tcpip\..\Interfaces\{F6C89715-8A1A-48F1-B083-DD0B3BBC5C03}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/CQDSK14/3
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/CQDSK14/3
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK14/3
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK14/3
HKU\S-1-5-21-3936836069-999480999-553099135-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/CQDSK14/3
HKU\S-1-5-21-3936836069-999480999-553099135-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/CQDSK14/3
SearchScopes: HKLM -> {8FCAD9E6-DB55-49E9-8568-28B6660B0C11} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {8FCAD9E6-DB55-49E9-8568-28B6660B0C11} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-3936836069-999480999-553099135-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3936836069-999480999-553099135-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3936836069-999480999-553099135-1001 -> {8FCAD9E6-DB55-49E9-8568-28B6660B0C11} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-08-28] (Oracle Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-28] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)

FireFox:
========
FF ProfilePath: C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default
FF DefaultSearchEngine: Startpage HTTPS - Francais
FF Homepage: hxxps://startpage.com/fra/?&
FF NetworkProxy: "backup.ftp", "80.227.12.90"
FF NetworkProxy: "backup.ftp_port", 8080
FF NetworkProxy: "backup.socks", "80.227.12.90"
FF NetworkProxy: "backup.socks_port", 8080
FF NetworkProxy: "backup.ssl", "80.227.12.90"
FF NetworkProxy: "backup.ssl_port", 8080
FF NetworkProxy: "ftp", "162.13.44.78"
FF NetworkProxy: "ftp_port", 8118
FF NetworkProxy: "share_proxy_settings", true
FF NetworkProxy: "socks", "162.13.44.78"
FF NetworkProxy: "socks_port", 8118
FF NetworkProxy: "ssl", "162.13.44.78"
FF NetworkProxy: "ssl_port", 8118
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-21] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-21] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-28] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-28] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\searchplugins\startpage---franais.xml [2015-09-10]
FF SearchPlugin: C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\searchplugins\startpage-https---francais.xml [2015-10-02]
FF Extension: WOT - C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-07-30]
FF Extension: YouTube auto HD 1080P and Download - C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\Extensions\jid1-TQvJxTBYHA8qXg@jetpack.xpi [2015-09-06]
FF Extension: Youtube and more - Easy Video Downloader - C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\Extensions\vdpure@link64.xpi [2015-05-30]
FF Extension: NoScript - C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-07-30]
FF Extension: Adblock Plus - C:\Users\robocop\AppData\Roaming\Mozilla\Firefox\Profiles\0t5n1v12.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-16]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2015-09-20]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-11-20] (Advanced Micro Devices, Inc.) [Fichier non signé]
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-09-20] (Kaspersky Lab ZAO)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company)
S3 Intel(R) TA SAM; C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [18064 2015-04-18] ()
R2 Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [144128 2015-07-31] (Intel(R) Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [481536 2015-07-31] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-06-09] ()
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-26] (IObit)
R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2823296 2015-06-04] (CybelSoft)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Fichier non signé]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Fichier non signé]
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [292568 2014-12-11] (Realtek Semiconductor)
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-07-02] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [229056 2014-10-28] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4282904 2015-05-12] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-06-21] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 hxctlflt; C:\Windows\system32\DRIVERS\hxctlflt.sys [111104 2009-02-09] (Guillemot Corporation) [Fichier non signé]
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [171192 2015-06-30] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [937656 2015-06-30] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-09-26] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [78008 2015-06-26] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2014-02-24] (CybelSoft)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R1 ndisrd; C:\Windows\system32\DRIVERS\ndisrfl.sys [41688 2015-04-30] (Intel Corporation)
S3 NetTap630; C:\Windows\system32\DRIVERS\nettap630.sys [67800 2015-04-30] (Intel Corporation)
S3 PAC7302; C:\Windows\system32\DRIVERS\PAC7302.SYS [527360 2007-09-10] (PixArt Imaging Inc.) [Fichier non signé]
S3 Passthru; C:\Windows\system32\DRIVERS\PPFlt.sys [28408 2015-01-18] ()
R3 PrivacyProtectorMP; C:\Windows\system32\DRIVERS\PPFlt.sys [28408 2015-01-18] ()
R3 ptun0901; C:\Windows\system32\DRIVERS\ptun0901.sys [27136 2014-08-08] (The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 AmUStor; \SystemRoot\system32\drivers\AmUStor.SYS [X]
U3 McAPExe; pas de ImagePath
U3 McMPFSvc; pas de ImagePath
U3 McNaiAnn; pas de ImagePath
U3 mfecore; pas de ImagePath
U3 MSK80Service; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-10-04 10:55 - 2015-10-04 10:56 - 00019005 _____ C:\Users\robocop\Desktop\FRST.txt
2015-10-04 10:55 - 2015-10-04 10:55 - 00000000 ____D C:\Users\robocop\Desktop\FRST-OlderVersion
2015-10-04 09:33 - 2015-10-04 09:33 - 00000368 _____ C:\windows\PFRO.log
2015-10-03 11:30 - 2015-10-04 09:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-10-02 17:07 - 2015-10-04 09:33 - 00000464 _____ C:\windows\setupact.log
2015-10-02 17:07 - 2015-10-02 17:07 - 00000000 _____ C:\windows\setuperr.log
2015-09-24 08:49 - 2015-09-24 08:49 - 00003746 _____ C:\windows\System32\Tasks\IntelTA-Upgrade-56460984-97c2-4bc7-a632-d776cf817f5d
2015-09-24 08:49 - 2015-09-24 08:49 - 00003500 _____ C:\windows\System32\Tasks\IntelTA-Upgrade-56460984-97c2-4bc7-a632-d776cf817f5d-Logon
2015-09-24 08:49 - 2015-09-24 08:49 - 00000000 ____D C:\Program Files (x86)\Intel Corporation
2015-09-21 14:54 - 2015-08-06 21:15 - 01658544 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2015-09-21 14:54 - 2015-08-06 21:15 - 01519592 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2015-09-21 14:54 - 2015-08-06 21:15 - 01487008 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2015-09-21 14:54 - 2015-08-06 21:15 - 01355848 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2015-09-21 14:53 - 2015-08-06 18:47 - 04710400 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2015-09-21 14:53 - 2015-08-06 18:18 - 04068352 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00901264 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00066400 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00022368 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00019808 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00016224 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00015712 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00013664 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00984448 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00063840 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00020832 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00019808 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00016224 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00015712 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00013664 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-09-21 14:49 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-09-21 14:49 - 2015-08-10 20:15 - 01084928 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2015-09-21 14:49 - 2015-08-10 20:15 - 00845312 _____ (Microsoft Corporation) C:\windows\system32\BFE.DLL
2015-09-21 14:49 - 2015-08-10 20:06 - 00422400 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2015-09-21 14:49 - 2015-08-10 19:49 - 00713216 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2015-09-21 14:49 - 2015-08-10 18:56 - 00272384 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2015-09-21 14:49 - 2015-08-10 18:46 - 00561664 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2015-09-21 14:49 - 2015-08-07 23:41 - 07460168 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-09-21 14:49 - 2015-08-07 23:40 - 01736520 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-09-21 14:49 - 2015-08-07 23:40 - 01499920 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-09-21 14:49 - 2015-08-07 23:40 - 01134752 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-09-21 14:49 - 2015-08-07 23:40 - 00686960 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-09-21 14:49 - 2015-08-07 23:40 - 00507176 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2015-09-21 14:49 - 2015-08-07 16:13 - 00862720 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-09-21 14:49 - 2015-08-06 19:05 - 00669184 _____ (Microsoft Corporation) C:\windows\system32\hhctrl.ocx
2015-09-21 14:49 - 2015-08-06 18:37 - 00536576 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhctrl.ocx
2015-09-21 14:49 - 2015-07-16 20:58 - 00074752 _____ (Microsoft Corporation) C:\windows\system32\NcdAutoSetup.dll
2015-09-21 13:54 - 2015-10-04 09:53 - 00640683 _____ C:\windows\WindowsUpdate.log
2015-09-20 22:58 - 2015-09-20 22:58 - 00000000 ____D C:\Users\robocop\AppData\Local\Pokki
2015-09-20 21:40 - 2015-09-20 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2015-09-20 21:37 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\windows\system32\Drivers\klhk.sys
2015-09-20 21:37 - 2015-06-30 01:05 - 00937656 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\klif.sys
2015-09-20 21:37 - 2015-06-30 01:05 - 00171192 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\klflt.sys
2015-09-20 21:22 - 2015-09-20 21:22 - 00000000 ____D C:\$WINDOWS.~BT
2015-09-20 21:16 - 2015-09-20 21:22 - 00000000 _____ C:\Recovery.txt
2015-09-20 20:50 - 2015-09-20 20:51 - 00000000 ____D C:\Users\robocop\AppData\Local\MalwareProtectionLive
2015-09-20 20:50 - 2015-09-20 20:50 - 00001284 _____ C:\Users\robocop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk
2015-09-20 09:02 - 2015-09-20 09:02 - 00000000 ____D C:\windows\SysWOW64\%Report%
2015-09-18 09:26 - 2015-09-18 09:26 - 00000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2015-09-17 09:17 - 2015-09-17 09:17 - 00000000 ____D C:\ProgramData\ATI
2015-09-16 10:31 - 2015-09-16 10:31 - 00058661 _____ C:\windows\SysWOW64\CCCInstall_201509161031013790.log
2015-09-16 10:02 - 2015-09-18 12:38 - 00000000 ____D C:\Program Files\DriversCloud.com
2015-09-16 10:02 - 2015-09-16 10:02 - 00000000 ____D C:\ProgramData\DriversCloud.com
2015-09-09 08:38 - 2015-08-27 04:48 - 00136904 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-09-09 08:38 - 2015-08-26 20:00 - 00721920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-09-09 08:38 - 2015-08-26 20:00 - 00124928 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-09-09 08:38 - 2015-08-26 20:00 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-09-09 08:38 - 2015-08-26 20:00 - 00029696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-09-09 08:38 - 2015-08-26 16:46 - 03705344 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-09-09 08:38 - 2015-08-26 16:29 - 02240512 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-09-09 08:38 - 2015-08-26 16:27 - 00891904 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-09-09 08:38 - 2015-08-26 16:27 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\WUSettingsProvider.dll
2015-09-09 08:38 - 2015-08-26 16:26 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-09-09 08:38 - 2015-08-26 16:26 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-09-09 08:38 - 2015-08-26 16:26 - 00035840 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-09-09 08:37 - 2015-09-03 04:18 - 02531400 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2015-09-09 08:37 - 2015-09-03 04:17 - 01903848 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2015-09-09 08:37 - 2015-09-02 20:48 - 02345472 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2015-09-09 08:37 - 2015-09-02 19:09 - 01556992 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2015-09-09 08:37 - 2015-08-22 20:19 - 25188352 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-09-09 08:37 - 2015-08-22 19:35 - 02886144 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-09-09 08:37 - 2015-08-22 19:34 - 00585216 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-09-09 08:37 - 2015-08-22 19:22 - 19856384 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-09-09 08:37 - 2015-08-22 19:21 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-09-09 08:37 - 2015-08-22 19:20 - 05923840 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-09-09 08:37 - 2015-08-22 18:55 - 00504832 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-09-09 08:37 - 2015-08-22 18:50 - 02279424 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-09-09 08:37 - 2015-08-22 18:50 - 01032704 _____ (Microsoft Corporation) C:\windows\system32\inetcomm.dll
2015-09-09 08:37 - 2015-08-22 18:45 - 00665600 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-09-09 08:37 - 2015-08-22 18:44 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-09-09 08:37 - 2015-08-22 18:41 - 14451712 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-09-09 08:37 - 2015-08-22 18:41 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-09-09 08:37 - 2015-08-22 18:41 - 00720384 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-09-09 08:37 - 2015-08-22 18:41 - 00374784 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-09-09 08:37 - 2015-08-22 18:39 - 02126336 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-09-09 08:37 - 2015-08-22 18:28 - 04520448 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-09-09 08:37 - 2015-08-22 18:26 - 02427392 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-09-09 08:37 - 2015-08-22 18:23 - 00880128 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcomm.dll
2015-09-09 08:37 - 2015-08-22 18:22 - 12857344 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-09-09 08:37 - 2015-08-22 18:20 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2015-09-09 08:37 - 2015-08-22 18:18 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-09-09 08:37 - 2015-08-22 18:18 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-09-09 08:37 - 2015-08-22 18:18 - 00327168 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-09-09 08:37 - 2015-08-22 18:14 - 01545728 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-09-09 08:37 - 2015-08-22 18:01 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-09-09 08:37 - 2015-08-22 18:00 - 01951232 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-09-09 08:37 - 2015-08-22 17:56 - 01310720 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-09-09 08:37 - 2015-08-22 17:55 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-09-09 08:37 - 2015-07-30 19:18 - 00268288 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll
2015-09-09 08:37 - 2015-07-30 18:22 - 00230912 _____ (Microsoft Corporation) C:\windows\SysWOW64\InkEd.dll
2015-09-09 08:36 - 2015-09-02 04:56 - 04175872 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-09-09 08:36 - 2015-09-02 04:55 - 00358912 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2015-09-09 08:36 - 2015-09-02 04:50 - 00044032 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2015-09-09 08:36 - 2015-09-02 04:17 - 00301568 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll
2015-09-09 08:36 - 2015-09-02 04:13 - 00035840 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll
2015-09-09 08:36 - 2015-08-03 23:15 - 00074928 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2015-09-09 08:36 - 2015-08-03 23:15 - 00065600 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2015-09-09 08:36 - 2015-08-01 16:22 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2015-09-09 08:36 - 2015-08-01 05:47 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\schtasks.exe
2015-09-09 08:36 - 2015-08-01 05:45 - 00182784 _____ (Microsoft Corporation) C:\windows\SysWOW64\schtasks.exe
2015-09-09 08:36 - 2015-08-01 05:38 - 01265152 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2015-09-09 08:36 - 2015-08-01 05:37 - 00468992 _____ (Microsoft Corporation) C:\windows\system32\taskeng.exe
2015-09-09 08:36 - 2015-08-01 05:37 - 00359936 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskeng.exe
2015-09-09 08:36 - 2015-07-22 16:34 - 02775552 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2015-09-09 08:36 - 2015-07-22 16:33 - 01728000 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2015-09-09 08:36 - 2015-07-22 16:25 - 02461184 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2015-09-09 08:36 - 2015-07-22 16:25 - 01546752 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2015-09-09 08:36 - 2015-07-18 20:31 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\shacct.dll
2015-09-09 08:36 - 2015-07-18 20:29 - 00655872 _____ (Microsoft Corporation) C:\windows\system32\SettingSync.dll
2015-09-09 08:36 - 2015-07-18 20:29 - 00148480 _____ (Microsoft Corporation) C:\windows\SysWOW64\shacct.dll
2015-09-09 08:36 - 2015-07-18 20:27 - 00520192 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSync.dll
2015-09-04 09:31 - 2015-09-20 09:06 - 00000000 ____D C:\Program Files\Common Files\AV

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-10-04 10:58 - 2014-09-16 01:24 - 00000000 ____D C:\Users\robocop\AppData\Roaming\uTorrent
2015-10-04 10:55 - 2015-09-01 12:58 - 02193408 _____ (Farbar) C:\Users\robocop\Desktop\FRST64.exe
2015-10-04 10:55 - 2015-07-31 08:42 - 00000000 ____D C:\FRST
2015-10-04 10:55 - 2014-08-12 00:07 - 00800448 _____ C:\windows\system32\perfh00C.dat
2015-10-04 10:55 - 2014-08-12 00:07 - 00174332 _____ C:\windows\system32\perfc00C.dat
2015-10-04 10:55 - 2014-03-18 17:32 - 01828242 _____ C:\windows\system32\PerfStringBackup.INI
2015-10-04 10:47 - 2014-09-25 14:28 - 00001002 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-10-04 10:44 - 2015-01-03 18:17 - 00000000 ____D C:\Users\robocop\Desktop\partage
2015-10-04 10:32 - 2014-10-06 21:22 - 00522240 ___SH C:\Users\robocop\Desktop\Thumbs.db
2015-10-04 10:02 - 2013-08-22 17:36 - 00000000 ____D C:\windows\system32\sru
2015-10-04 09:42 - 2014-09-16 01:33 - 00003936 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{C9F856A7-0E53-45FA-B122-C64C4BE69BC0}
2015-10-04 09:36 - 2014-09-18 12:11 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-10-04 09:33 - 2014-09-21 09:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-10-04 09:33 - 2013-08-22 16:45 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-10-04 09:33 - 2013-08-22 15:25 - 00262144 ___SH C:\windows\system32\config\BBI
2015-10-03 21:50 - 2015-08-08 09:50 - 00003172 _____ C:\windows\System32\Tasks\HPCeeScheduleForrobocop
2015-10-03 21:50 - 2015-08-08 09:50 - 00000354 _____ C:\windows\Tasks\HPCeeScheduleForrobocop.job
2015-10-03 21:20 - 2013-08-22 17:36 - 00000000 ____D C:\windows\rescache
2015-10-03 14:45 - 2014-09-29 11:02 - 00000000 ____D C:\Users\robocop\Desktop\Seb
2015-10-03 14:45 - 2014-09-17 17:44 - 00000000 ____D C:\Users\robocop\AppData\Roaming\vlc
2015-10-03 14:30 - 2014-09-16 01:17 - 00003596 _____ C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3936836069-999480999-553099135-1001
2015-10-03 10:16 - 2014-10-19 16:27 - 00000000 ____D C:\Users\robocop\Desktop\RatioMaster-1.9.1
2015-10-02 18:03 - 2013-08-22 17:36 - 00000000 ____D C:\windows\AppReadiness
2015-10-02 17:54 - 2013-08-22 17:36 - 00000000 ____D C:\windows\system32\FxsTmp
2015-10-02 17:00 - 2015-08-31 12:02 - 00000000 ____D C:\ProgramData\ProductData
2015-09-26 10:02 - 2015-06-08 19:43 - 00041352 _____ (AO Kaspersky Lab) C:\windows\system32\Drivers\klpd.sys
2015-09-25 21:00 - 2015-03-13 12:59 - 00000000 ____D C:\ProgramData\Intel
2015-09-25 08:25 - 2014-09-20 14:14 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log
2015-09-24 13:05 - 2015-03-13 13:00 - 00003718 _____ C:\windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2015-09-24 09:01 - 2013-08-22 17:20 - 00000000 ____D C:\windows\CbsTemp
2015-09-24 08:50 - 2014-04-02 16:46 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-21 21:48 - 2014-09-25 14:28 - 00003890 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-09-20 21:40 - 2014-09-18 12:11 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-20 21:39 - 2013-08-22 15:25 - 00262144 ___SH C:\windows\system32\config\ELAM
2015-09-20 21:16 - 2014-04-02 16:43 - 00000000 __SHD C:\Recovery
2015-09-20 20:54 - 2015-05-07 09:45 - 00000000 ____D C:\windows\Minidump
2015-09-19 10:11 - 2015-05-21 10:12 - 00000000 __RHD C:\ESD
2015-09-18 22:23 - 2014-09-16 01:11 - 00000000 ____D C:\Users\robocop
2015-09-18 12:38 - 2015-08-31 12:04 - 00000000 ____D C:\Users\robocop\AppData\Roaming\ProductData
2015-09-18 12:38 - 2015-06-10 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
2015-09-18 12:38 - 2015-06-10 09:22 - 00000000 ____D C:\Program Files\ma-config.com
2015-09-18 12:38 - 2015-06-09 11:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream
2015-09-18 12:38 - 2015-06-09 11:49 - 00000000 ____D C:\Program Files\AMD Quick Stream
2015-09-18 12:38 - 2015-06-09 11:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-09-18 12:38 - 2015-04-01 10:10 - 00000000 ___SD C:\windows\system32\GWX
2015-09-18 12:38 - 2014-03-18 17:09 - 00000000 ____D C:\windows\ShellNew
2015-09-18 12:38 - 2014-03-18 17:09 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-18 12:38 - 2013-08-22 17:36 - 00000000 __RSD C:\windows\Media
2015-09-18 12:38 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-09-18 12:38 - 2013-08-22 15:36 - 00000000 ____D C:\windows\system32\Dism
2015-09-18 12:31 - 2014-08-11 15:20 - 00000000 ____D C:\Program Files\AMD
2015-09-18 12:31 - 2013-08-22 17:36 - 00000000 ____D C:\windows\registration
2015-09-18 09:30 - 2015-04-10 10:45 - 00000000 ____D C:\Users\Séverine
2015-09-16 10:28 - 2015-06-09 11:47 - 00000000 ____D C:\ProgramData\AMD
2015-09-16 10:02 - 2015-06-10 09:22 - 00000000 ____D C:\ProgramData\ma-config.com
2015-09-15 03:18 - 2014-12-12 14:10 - 00812008 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-09-15 03:18 - 2014-12-12 14:10 - 00178152 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-10 10:14 - 2014-09-18 14:15 - 00000000 ____D C:\windows\system32\MRT
2015-09-09 10:01 - 2013-08-22 16:44 - 00378920 _____ C:\windows\system32\FNTCACHE.DAT
2015-09-09 09:25 - 2013-08-22 17:36 - 00000000 ____D C:\windows\PolicyDefinitions

==================== Fichiers à la racine de certains dossiers =======

2015-05-21 09:41 - 2015-05-21 11:50 - 0005120 _____ () C:\Users\robocop\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-05-26 10:39 - 2015-05-26 10:39 - 0003765 _____ () C:\Users\robocop\AppData\Local\recently-used.xbel
2015-06-15 10:36 - 2015-06-15 10:36 - 0007609 _____ () C:\Users\robocop\AppData\Local\Resmon.ResmonCfg
2015-04-17 09:54 - 2015-05-07 09:39 - 0002849 _____ () C:\ProgramData\hpzinstall.log

==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\windows\system32\wininit.exe => Le fichier est signé numériquement
C:\windows\explorer.exe => Le fichier est signé numériquement
C:\windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\windows\system32\svchost.exe => Le fichier est signé numériquement
C:\windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\windows\system32\services.exe => Le fichier est signé numériquement
C:\windows\system32\User32.dll => Le fichier est signé numériquement
C:\windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\windows\system32\userinit.exe => Le fichier est signé numériquement
C:\windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2015-10-02 18:03

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité