cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:28-12-2015
Exécuté par Nadia (administrateur) sur EXCELSIORNESS (28-12-2015 17:56:01)
Exécuté depuis C:\Users\Nadia\Desktop
Profils chargés: Nadia (Profils disponibles: Nadia)
Platform: Windows 8.1 Connected (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\ramaint.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfefire.exe
() C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfefire.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
(Intel Corporation) C:\Windows\temp\DPTF\esif_assist_64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
(© 2015 Microsoft Corporation) C:\Users\Nadia\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
() C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
(AVAST Software) C:\Program Files\AVAST Software\SecureLine\secureline.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Enigma Software Group USA, LLC.) C:\Users\Nadia\AppData\Local\Temp\esg_uninstall.exe~
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
() C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8459480 2015-03-27] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349224 2015-07-24] (ELAN Microelectronics Corp.)
HKLM\...\Run: [LogMeIn GUI] => C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe [57928 2015-06-15] (LogMeIn, Inc.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [654088 2015-02-17] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [isa] => C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [330240 2015-02-18] ()
HKU\S-1-5-21-4141437926-1730005790-1736156375-1001\...\Run: [BingSvc] => C:\Users\Nadia\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-4141437926-1730005790-1736156375-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [479744 2014-11-21] (Microsoft Corporation)
HKU\S-1-5-21-4141437926-1730005790-1736156375-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50385536 2015-12-17] (Skype Technologies S.A.)
GroupPolicy: Restriction - Chrome <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

AutoConfigURL: [S-1-5-21-4141437926-1730005790-1736156375-1001] => seriesturcas.blogspot.fr
Tcpip\Parameters: [DhcpNameServer] 192.168.51.1
Tcpip\..\Interfaces\{18037BE6-5A7C-4059-B99A-93447711BCBC}: [DhcpNameServer] 192.168.51.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp13.msn.com
HKU\S-1-5-21-4141437926-1730005790-1736156375-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM -> {9143e921-7c9a-4d27-ac43-eaccc78cc55a} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll => Pas de fichier
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-25] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-25] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-25] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-12-25] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-11-10] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-11-10] (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-11-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-11-10] ()
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2015-12-25] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-28] (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [firefox@bho.com] - C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt
FF Extension: HP SimplePass - C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt [2015-06-18] [non signé]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-12-16] [non signé]

Chrome:
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=fr-fr
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR Profile: C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-28]
CHR Extension: (Google Docs) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-28]
CHR Extension: (Google Drive) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-28]
CHR Extension: (YouTube) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-28]
CHR Extension: (Recherche Google) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-28]
CHR Extension: (Bing) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2015-12-28]
CHR Extension: (Google Sheets) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-28]
CHR Extension: (Google Docs hors connexion) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-28]
CHR Extension: (Skype) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-28]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-28]
CHR Extension: (Gmail) - C:\Users\Nadia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-28]
CHR HKU\S-1-5-21-4141437926-1730005790-1736156375-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-13] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2748600 2015-12-04] (Microsoft Corporation)
R2 esifsvc; C:\Windows\SysWOW64\esif_uf.exe [1332184 2015-03-27] (Intel Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144616 2015-07-24] (ELAN Microelectronics Corp.)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company)
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [608520 2015-02-17] (Hewlett-Packard Development Company, L.P.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [342728 2015-04-02] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [881152 2014-10-03] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [330240 2015-02-18] () [Fichier non signé]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-02-18] () [Fichier non signé]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [172320 2014-12-10] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [417288 2015-11-30] (LogMeIn, Inc.)
R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [507400 2015-11-30] (LogMeIn, Inc.)
R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2015-06-15] (LogMeIn, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [863448 2015-11-10] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [332528 2014-03-12] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe [1694152 2015-12-02] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [679120 2015-10-20] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [233680 2015-09-21] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [378848 2015-10-21] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [256840 2015-09-21] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [451960 2015-11-02] (McAfee, Inc.)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [103424 2015-01-30] (Softex Inc.) [Fichier non signé]
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [293080 2015-03-27] (Realtek Semiconductor)
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [452456 2015-12-16] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-06-19] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-06-19] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-13] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7533784 2015-07-13] (Broadcom Corporation)
S3 BtwSerialBus; C:\Windows\System32\drivers\BtwSerialBus.sys [153304 2014-04-23] (Broadcom Corporation.)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [80760 2015-09-23] (McAfee, Inc.)
R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [45648 2015-03-27] (Intel Corporation)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [41552 2015-03-27] (Intel Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [243792 2015-03-27] (Intel Corporation)
R3 ETDSMBus; C:\Windows\System32\drivers\ETDSMBus.sys [22712 2015-03-27] (ELAN Microelectronic Corp.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.)
R3 igfxLP; C:\Windows\system32\DRIVERS\igdkmd64lp.sys [4515768 2015-04-02] (Intel Corporation)
R3 iusb3adp; C:\Windows\System32\drivers\iusb3adp.sys [23824 2015-03-27] (Intel)
R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2015-06-15] (LogMeIn, Inc.)
S4 LMIRfsClientNP; pas de ImagePath
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [415976 2015-09-23] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [351120 2015-09-23] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [82072 2015-09-23] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [497888 2015-09-23] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [841944 2015-09-23] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [537192 2015-10-06] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109480 2015-10-06] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [244544 2015-09-23] (McAfee, Inc.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [114976 2014-11-23] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-06-19] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-06-19] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-06-19] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
S3 EsgScanner; system32\DRIVERS\EsgScanner.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-12-28 17:56 - 2015-12-28 17:56 - 00022255 _____ C:\Users\Nadia\Desktop\FRST.txt
2015-12-28 17:54 - 2015-12-28 17:54 - 00001710 _____ C:\Users\Nadia\Downloads\fixlist (4).txt
2015-12-28 17:52 - 2015-12-28 17:52 - 00001710 _____ C:\Users\Nadia\Downloads\fixlist (3).txt
2015-12-28 17:50 - 2015-12-28 17:50 - 00001710 _____ C:\Users\Nadia\Downloads\fixlist (2).txt
2015-12-28 17:49 - 2015-12-28 17:49 - 00001710 _____ C:\Users\Nadia\Downloads\fixlist.txt
2015-12-28 17:49 - 2015-12-28 17:49 - 00001710 _____ C:\Users\Nadia\Desktop\fixlist (1).txt
2015-12-28 17:43 - 2015-12-28 17:56 - 00000000 ____D C:\FRST
2015-12-28 17:42 - 2015-12-28 17:42 - 02370560 _____ (Farbar) C:\Users\Nadia\Desktop\FRST64.exe
2015-12-28 17:38 - 2015-12-28 17:48 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-28 17:38 - 2015-12-28 17:48 - 00001100 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-28 17:38 - 2015-12-28 17:43 - 00004076 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-28 17:38 - 2015-12-28 17:43 - 00003840 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-28 17:38 - 2015-12-28 17:38 - 00002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-28 17:38 - 2015-12-28 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-28 17:34 - 2015-12-28 17:34 - 01622528 _____ C:\Users\Nadia\Downloads\ResetBrowser.exe
2015-12-28 17:28 - 2015-12-28 17:28 - 00001872 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2015-12-28 17:28 - 2015-12-28 17:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2015-12-28 17:28 - 2015-12-28 17:28 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2015-12-28 17:27 - 2015-12-28 17:28 - 03521617 _____ (Nicolas Coolman ) C:\Users\Nadia\Downloads\ZHPFix.exe
2015-12-28 17:24 - 2015-12-28 17:24 - 00005587 _____ C:\Users\Nadia\Desktop\ZHPCleaner.txt
2015-12-28 17:13 - 2015-12-28 17:24 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\ZHP
2015-12-28 17:13 - 2015-12-28 17:13 - 00000845 _____ C:\Users\Nadia\Desktop\ZHPCleaner.lnk
2015-12-28 17:12 - 2015-12-28 17:12 - 01972736 _____ C:\Users\Nadia\Downloads\ZHPCleaner.exe
2015-12-28 16:59 - 2015-12-28 17:09 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\Enigma Software Group
2015-12-28 16:55 - 2015-12-28 16:55 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Nadia\Downloads\SpyHunter-Installer (5).exe
2015-12-28 15:44 - 2015-12-28 15:45 - 01743360 _____ C:\Users\Nadia\Downloads\adwcleaner_5.026.exe
2015-12-28 15:43 - 2015-12-28 15:43 - 01972736 _____ C:\Users\Nadia\Downloads\ob_0a22e9_zhpcleaner.exe
2015-12-25 21:17 - 2015-12-28 16:42 - 00000000 ____D C:\AdwCleaner
2015-12-25 21:17 - 2015-12-25 21:17 - 01743360 _____ C:\Users\Nadia\Desktop\adwcleaner_5.026.exe
2015-12-25 20:12 - 2015-12-25 20:12 - 01743360 _____ C:\Users\Nadia\Downloads\ob_d54c68_adwcleaner-5-026.exe
2015-12-25 20:10 - 2015-12-25 20:10 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Nadia\Downloads\SpyHunter-Installer (4).exe
2015-12-25 20:09 - 2015-12-25 20:09 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Nadia\Downloads\SpyHunter-Installer (3).exe
2015-12-25 20:07 - 2015-12-25 20:07 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Nadia\Downloads\SpyHunter-Installer (2).exe
2015-12-25 20:07 - 2015-12-25 20:07 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Nadia\Downloads\SpyHunter-Installer (1).exe
2015-12-25 13:44 - 2015-12-25 13:44 - 00023382 _____ C:\Users\Nadia\Downloads\Calendrier TimeStamp 2015 (1).xlsx
2015-12-25 13:39 - 2015-12-26 14:54 - 00003106 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-4141437926-1730005790-1736156375-1001
2015-12-25 13:39 - 2015-12-25 13:39 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-25 13:37 - 2015-07-17 14:51 - 00984448 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:51 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00901264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-12-25 13:37 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-12-25 13:08 - 2015-12-25 13:08 - 00002464 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002464 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00002387 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2015-12-25 13:08 - 2015-12-25 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016
2015-12-25 12:48 - 2015-12-25 12:48 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-12-25 12:46 - 2015-12-25 12:47 - 03191464 _____ (Microsoft Corporation) C:\Users\Nadia\Downloads\Setup.X86.fr-FR_O365HomePremRetail_8b3782c9-305b-4628-8e10-d87ba5c289f9_TX_DB_.exe
2015-12-25 12:44 - 2015-12-25 12:44 - 00023382 _____ C:\Users\Nadia\Downloads\Calendrier TimeStamp 2015.xlsx
2015-12-23 13:05 - 2015-12-23 13:06 - 00816292 _____ C:\Users\Nadia\Downloads\Planning S52.xlsm
2015-12-19 18:18 - 2015-12-19 18:18 - 00037690 _____ C:\Users\Nadia\Downloads\Tarifs des Aires 2015 (1).xlsx
2015-12-19 18:17 - 2015-12-19 18:17 - 00037690 _____ C:\Users\Nadia\Downloads\Tarifs des Aires 2015.xlsx
2015-12-19 00:11 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-12-19 00:11 - 2014-04-16 00:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-12-16 20:52 - 2015-12-16 20:52 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\AVAST Software
2015-12-16 13:54 - 2015-12-16 13:54 - 00022298 _____ C:\Users\Nadia\Downloads\petit-dejeuner-turc-L-VZ1Ewa.jpeg
2015-12-15 22:00 - 2015-12-15 22:00 - 00021937 _____ C:\Users\Nadia\Downloads\I-Like-Hugs-Facebook-Covers-996.jpeg
2015-12-14 21:56 - 2015-12-14 21:56 - 00346067 _____ C:\Users\Nadia\Downloads\Planning CCP 2015 -S51.pdf
2015-12-13 15:34 - 2015-12-25 00:02 - 00000000 ____D C:\Users\Nadia\AppData\Local\LogMeInIgnition
2015-12-12 14:32 - 2015-12-12 14:32 - 00001971 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk
2015-12-12 14:32 - 2015-12-12 14:32 - 00000000 ____D C:\Program Files (x86)\LogMeIn Ignition
2015-12-12 14:30 - 2015-12-28 16:43 - 00001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk
2015-12-12 14:30 - 2015-12-12 14:30 - 00000000 ____D C:\Users\Nadia\AppData\Local\LogMeIn
2015-12-12 14:30 - 2015-11-30 15:07 - 00122400 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIRfsClientNP.dll
2015-12-12 14:30 - 2015-11-30 15:07 - 00035328 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIport.dll
2015-12-12 14:30 - 2015-06-15 08:14 - 00072216 _____ (LogMeIn, Inc.) C:\Windows\system32\Drivers\LMIRfsDriver.sys
2015-12-12 14:27 - 2015-12-28 17:24 - 00000000 ____D C:\ProgramData\LogMeIn
2015-12-12 14:27 - 2015-12-12 14:33 - 00000000 ____D C:\Program Files (x86)\LogMeIn
2015-12-12 14:27 - 2015-12-12 14:27 - 00001024 _____ C:\.rnd
2015-12-12 14:27 - 2015-11-30 15:07 - 00107008 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIinit.dll
2015-12-12 14:25 - 2015-12-12 14:26 - 25849856 _____ C:\Users\Nadia\Downloads\logmein.msi
2015-12-09 12:18 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-09 12:18 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-09 12:18 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-09 12:18 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-09 12:18 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-09 12:18 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-09 12:18 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-12-09 12:18 - 2015-11-10 00:41 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-12-09 12:18 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-09 12:18 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-12-09 12:18 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-09 12:18 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-09 12:18 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-12-09 12:18 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-09 12:18 - 2015-11-08 22:25 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-12-09 12:18 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-09 12:18 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-09 12:18 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-12-09 12:17 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-12-09 12:17 - 2015-11-11 16:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-12-09 12:17 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-12-09 12:17 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-12-09 12:17 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-12-09 12:17 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-12-09 12:17 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-09 12:17 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-09 12:17 - 2015-11-10 00:36 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-09 12:17 - 2015-11-10 00:25 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-12-09 12:17 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-09 12:17 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-12-09 12:17 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-12-09 12:17 - 2015-11-08 22:32 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-12-09 12:17 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-12-09 12:17 - 2015-11-08 22:16 - 00372224 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-09 12:17 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-09 12:17 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-09 12:17 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-09 12:17 - 2015-11-08 21:53 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-12-09 12:17 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-09 12:14 - 2015-11-22 07:59 - 07455064 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-12-09 12:14 - 2015-11-22 07:59 - 01735000 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-12-09 12:14 - 2015-11-22 07:59 - 01659568 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-12-09 12:14 - 2015-11-22 07:59 - 01519592 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-12-09 12:14 - 2015-11-22 07:59 - 01487008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-12-09 12:14 - 2015-11-22 07:59 - 01355848 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-12-09 12:14 - 2015-11-22 07:58 - 01499920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-12-09 12:14 - 2015-11-21 19:32 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-12-09 12:14 - 2015-11-21 18:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-12-09 12:14 - 2015-11-21 17:59 - 01706496 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-09 12:14 - 2015-11-21 17:49 - 01344000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-09 12:14 - 2015-11-21 17:47 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-09 12:14 - 2015-11-21 17:40 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-09 12:14 - 2015-11-05 09:59 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-09 12:13 - 2015-11-20 23:47 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-09 12:13 - 2015-11-20 19:18 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-09 12:13 - 2015-11-20 17:58 - 03706880 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-09 12:13 - 2015-11-20 17:47 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-12-09 12:13 - 2015-11-20 17:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-12-09 12:13 - 2015-11-20 17:44 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-12-09 12:13 - 2015-11-20 17:44 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-12-09 12:13 - 2015-11-20 17:43 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-12-09 12:13 - 2015-11-20 17:42 - 02243584 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-12-09 12:13 - 2015-11-20 17:30 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-12-09 12:13 - 2015-11-20 17:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-12-09 12:13 - 2015-11-20 17:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-12-09 12:13 - 2015-11-20 17:27 - 00726528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-12-09 12:13 - 2015-11-09 01:41 - 01540728 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-09 12:13 - 2015-11-08 23:30 - 04176384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-09 12:13 - 2015-11-08 22:23 - 01994752 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-12-09 12:13 - 2015-11-08 22:13 - 01383936 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-12-09 12:13 - 2015-11-08 22:01 - 01753600 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-12-09 12:13 - 2015-11-08 21:52 - 01559552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-12-09 12:13 - 2015-11-08 21:48 - 01376256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-09 12:13 - 2015-11-08 21:42 - 01490944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-12-09 12:12 - 2015-10-28 16:49 - 02775552 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-12-09 12:12 - 2015-10-28 16:29 - 02462720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-12-06 21:43 - 2015-12-06 21:44 - 01504384 _____ (Skype Technologies S.A.) C:\Users\Nadia\Downloads\SkypeSetup (1).exe
2015-12-05 03:31 - 2015-12-05 03:31 - 00004076 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d12f04ffb0e040
2015-12-05 00:43 - 2015-12-05 00:43 - 00331882 _____ C:\Users\Nadia\Downloads\Planning CCP 2015 -S49.pdf
2015-12-04 11:10 - 2015-12-04 11:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-04 07:21 - 2015-12-04 07:21 - 00625848 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2015-12-04 07:21 - 2015-12-04 07:21 - 00381128 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2015-12-04 07:21 - 2015-12-04 07:21 - 00323792 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2015-12-04 07:21 - 2015-12-04 07:21 - 00079544 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2015-12-04 05:22 - 2015-12-04 05:22 - 00430264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll
2015-12-04 05:22 - 2015-12-04 05:22 - 00257736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll
2015-12-04 05:22 - 2015-12-04 05:22 - 00234192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll
2015-12-04 05:22 - 2015-12-04 05:22 - 00075960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll
2015-12-03 21:02 - 2015-12-03 21:02 - 00002254 _____ C:\Users\Nadia\Desktop\HP Support Assistant.lnk
2015-12-03 20:52 - 2015-12-03 20:52 - 00000000 ____D C:\swsetup
2015-11-30 21:35 - 2015-11-30 21:36 - 01256318 _____ C:\Users\Nadia\Downloads\cerfa_15186-final.pdf
2015-11-30 19:25 - 2015-11-30 19:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-11-30 15:00 - 2015-11-30 15:00 - 00035616 _____ (LogMeIn, Inc.) C:\Windows\system32\lmimirr.dll
2015-11-30 15:00 - 2015-11-30 15:00 - 00014624 _____ (LogMeIn, Inc.) C:\Windows\system32\lmimirr2.dll
2015-11-30 15:00 - 2015-11-30 15:00 - 00011552 _____ (LogMeIn, Inc.) C:\Windows\system32\Drivers\lmimirr.sys
2015-11-29 20:39 - 2015-11-29 20:40 - 01598436 _____ C:\Users\Nadia\Downloads\Cerfa a remplir et imprimer.zip

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-12-28 17:46 - 2015-11-10 15:33 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4141437926-1730005790-1736156375-1001
2015-12-28 17:46 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-12-28 17:44 - 2015-11-11 19:26 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\Skype
2015-12-28 17:38 - 2015-11-10 20:53 - 00000000 ____D C:\Program Files (x86)\Google
2015-12-28 17:35 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2015-12-28 16:53 - 2015-06-19 03:46 - 00847910 _____ C:\Windows\system32\perfh00C.dat
2015-12-28 16:53 - 2015-06-19 03:46 - 00174984 _____ C:\Windows\system32\perfc00C.dat
2015-12-28 16:53 - 2014-11-21 05:42 - 01966994 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-28 16:53 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2015-12-28 16:44 - 2015-11-10 15:35 - 00000000 ___DO C:\Users\Nadia\OneDrive
2015-12-28 16:44 - 2015-11-10 15:27 - 00000000 __SHD C:\Users\Nadia\IntelGraphicsProfiles
2015-12-28 16:43 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-28 16:43 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-12-28 13:08 - 2015-11-10 15:37 - 00003956 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{E18B2A41-AD89-4C94-BBDC-6857896CD8D1}
2015-12-27 18:52 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-12-25 21:57 - 2015-11-11 00:16 - 00001533 _____ C:\Users\Nadia\Desktop\Lanceur d'applications Google Chrome.lnk
2015-12-25 21:54 - 2015-11-11 00:17 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome
2015-12-25 21:54 - 2015-11-11 00:16 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-25 21:54 - 2015-11-10 21:42 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chromium
2015-12-25 21:45 - 2015-07-13 11:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-12-25 21:28 - 2013-08-22 15:44 - 00480280 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-25 14:56 - 2015-11-10 15:27 - 00000000 ____D C:\Users\Nadia\AppData\Local\Packages
2015-12-25 13:38 - 2013-08-22 16:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-25 13:38 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2015-12-25 12:48 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-12-21 10:19 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache
2015-12-21 00:21 - 2015-11-11 19:25 - 00000000 ____D C:\ProgramData\Skype
2015-12-20 22:50 - 2015-11-10 15:26 - 00000000 ____D C:\Users\Nadia
2015-12-19 23:27 - 2015-11-10 15:26 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-19 23:27 - 2015-11-10 15:26 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-17 22:12 - 2015-07-13 11:35 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-12-17 20:23 - 2015-07-13 11:35 - 00000000 ____D C:\Program Files\Common Files\McAfee
2015-12-17 19:29 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-12-17 19:27 - 2015-11-10 15:50 - 00000000 ____D C:\Windows\System32\Tasks\McAfee
2015-12-17 06:25 - 2015-07-13 11:35 - 00000000 ____D C:\ProgramData\McAfee
2015-12-15 14:15 - 2015-11-10 21:13 - 00000290 __RSH C:\ProgramData\ntuser.pol
2015-12-12 10:24 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2015-12-09 22:49 - 2015-11-11 21:28 - 00000000 ____D C:\Windows\system32\MRT
2015-12-09 22:44 - 2015-11-11 21:28 - 140158008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-12-04 17:30 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-04 11:10 - 2015-11-13 21:01 - 00002713 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-04 11:10 - 2015-11-13 21:01 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-04 11:10 - 2015-11-11 19:27 - 00000000 ____D C:\Users\Nadia\AppData\Local\Skype
2015-12-03 21:35 - 2015-07-13 11:06 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard
2015-12-03 21:35 - 2015-06-18 18:43 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2015-12-03 21:02 - 2015-07-13 11:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2015-12-03 21:02 - 2015-06-18 18:44 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-12-03 21:02 - 2015-06-18 18:43 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2015-12-03 20:54 - 2015-11-10 15:32 - 00000000 ____D C:\Users\Nadia\AppData\Roaming\hpqlog
2015-12-01 18:19 - 2014-11-21 13:47 - 00826872 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-12-01 18:19 - 2014-11-21 13:47 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

Certains fichiers dans TEMP:
====================
C:\Users\Nadia\AppData\Local\Temp\BingSvc.exe
C:\Users\Nadia\AppData\Local\Temp\BSvcProcessor.exe
C:\Users\Nadia\AppData\Local\Temp\BSvcUpdater.exe
C:\Users\Nadia\AppData\Local\Temp\HPSFUpdater.exe
C:\Users\Nadia\AppData\Local\Temp\ScoreSelector.dll
C:\Users\Nadia\AppData\Local\Temp\sqlite3.dll
C:\Users\Nadia\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\Nadia\AppData\Local\Temp\Wizard.exe
C:\Users\Nadia\AppData\Local\Temp\{F4ECD872-F82E-4B59-A69A-C7BB8464E1C4}-46.0.2490.80_chrome_installer.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2015-12-21 09:43

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité