cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version:28-12-2015
Exécuté par Elise et Fred (administrateur) sur FREDELISE-PC (01-01-2016 18:10:26)
Exécuté depuis C:\Users\fred elise\Desktop
Profils chargés: Elise et Fred (Profils disponibles: Elise et Fred & DefaultAppPool)
Platform: Microsoft Windows 10 Famille Version 1511 (X86) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Lavasoft Limited) C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
(SEC) C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe
(SAMSUNG Electronics) C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE
(CANON INC.) C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Lavasoft) C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMUPDT.EXE
(CANON INC.) C:\Program Files\Canon\Quick Menu\CNQMSWCS.EXE
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1541416 2009-07-15] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7744032 2009-09-29] (Realtek Semiconductor)
HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [218408 2009-02-25] (CyberLink Corp.)
HKLM\...\Run: [CanonQuickMenu] => C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE [1282632 2013-04-02] (CANON INC.)
HKLM\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2015-12-02] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [596528 2015-10-06] (Oracle Corporation)
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\...\Run: [Google+ Auto Backup] => C:\Users\fred elise\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [3619096 2014-01-06] (Google Inc.)
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe [1905032 2015-04-28] (TomTom)
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6602152 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\...\Run: [Web Companion] => C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe [1409296 2015-11-27] (Lavasoft)
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [792064 2015-10-30] (Microsoft Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\fred elise\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-03] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-12-02] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2015-12-22]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\Users\fred elise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-12-22]
ShortcutTarget: Dropbox.lnk -> C:\Users\fred elise\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{c4898fe2-0be3-4611-83b2-dab74443a722}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{e366da8a-ec55-4cac-9a1b-0c76a4645162}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
HKU\S-1-5-21-1131658597-4005637612-88016806-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKLM -> DefaultScope {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN
SearchScopes: HKU\S-1-5-21-1131658597-4005637612-88016806-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1131658597-4005637612-88016806-1000 -> EC896B4C8C4E445EA9C3447ED35723DF URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SMSN_fr___FR363
SearchScopes: HKU\S-1-5-21-1131658597-4005637612-88016806-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=103013&q={searchTerms}&src=IE-SearchBox
BHO: Pas de nom -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> Pas de fichier
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-11-02] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-02] (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
BHO: Pas de nom -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Pas de fichier
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-02] (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
Toolbar: HKU\S-1-5-21-1131658597-4005637612-88016806-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll Pas de fichier
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll Pas de fichier
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\fred elise\AppData\Roaming\Mozilla\Firefox\Profiles\zw7df31l.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-09-05] (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-02] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\ProgramData\Visan\plugins\npRLSecurePluginLayer.dll [2011-06-07] (RocketLife, LLP)
FF Plugin: @t-immersion.com/DFusionHomeWebPlugIn -> C:\Program Files\Total Immersion\DFusionHomeWebPlugIn\NPDFusionWebFirefox.dll [2011-01-08] (Total Immersion)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\fred elise\AppData\Roaming\Mozilla\Firefox\Profiles\zw7df31l.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-12-15]
FF Extension: Pas de nom - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] [non signé]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-02]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-12-02]

Chrome:
=======
CHR Profile: C:\Users\fred elise\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-12-02]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-02]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2015-12-02] (AVAST Software)
S2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
S2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
S2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] ()
R2 LavasoftTcpService; C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-11-27] (Lavasoft Limited)
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S2 OberonGameConsoleService; C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe [44312 2009-08-13] ()
S2 SearchProtectionService; C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2015-11-27] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24016 2015-12-02] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [81168 2015-12-19] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81728 2015-12-02] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49776 2015-12-02] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [794952 2015-12-02] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [436360 2015-12-19] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [117712 2015-12-02] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [209432 2015-12-02] (AVAST Software)
R3 athr; C:\WINDOWS\System32\drivers\athwn.sys [3205632 2015-10-30] (Qualcomm Atheros Communications, Inc.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [51928 2015-10-05] (Malwarebytes Corporation)
S3 PCAMp50; C:\WINDOWS\System32\Drivers\PCAMp50.sys [28224 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
S3 PCASp50; C:\WINDOWS\System32\Drivers\PCASp50.sys [27072 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [494080 2015-10-30] (Realtek )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
U3 idsvc; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-01-01 18:09 - 2016-01-01 18:09 - 00003659 _____ C:\Users\fred elise\Desktop\fixlist.text
2015-12-30 18:47 - 2016-01-01 18:11 - 00017409 _____ C:\Users\fred elise\Desktop\FRST.txt
2015-12-30 18:46 - 2015-12-30 18:46 - 00003659 _____ C:\Users\fred elise\Downloads\fixlist.txt
2015-12-30 18:40 - 2015-12-30 18:40 - 00005295 _____ C:\Users\fred elise\Downloads\ZHPCleaner.txt
2015-12-30 18:25 - 2015-12-30 18:40 - 00000000 ____D C:\Users\fred elise\AppData\Roaming\ZHP
2015-12-30 18:25 - 2015-12-30 18:25 - 00000922 _____ C:\Users\fred elise\Desktop\ZHPCleaner.lnk
2015-12-30 18:24 - 2015-12-30 18:25 - 01978368 _____ C:\Users\fred elise\Downloads\ZHPCleaner.exe
2015-12-30 18:16 - 2015-12-30 18:16 - 00005357 _____ C:\Users\fred elise\Downloads\AdwCleaner[C1].txt
2015-12-29 18:33 - 2015-12-30 18:06 - 00000000 ___DC C:\AdwCleaner
2015-12-29 18:32 - 2015-12-29 18:32 - 01743360 _____ C:\Users\fred elise\Desktop\adwcleaner_5.026.exe
2015-12-28 18:45 - 2015-12-28 18:49 - 00050720 _____ C:\Users\fred elise\Downloads\Addition.txt
2015-12-28 18:43 - 2016-01-01 18:10 - 00000000 ___DC C:\FRST
2015-12-28 18:43 - 2015-12-28 18:49 - 00054346 _____ C:\Users\fred elise\Downloads\FRST.txt
2015-12-22 11:24 - 2015-12-28 19:06 - 01721856 ____C (Farbar) C:\Users\fred elise\Desktop\FRST.exe
2015-12-22 04:37 - 2015-12-31 19:06 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-12-22 04:36 - 2015-12-22 05:05 - 00001129 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-12-22 04:36 - 2015-12-22 04:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-22 04:36 - 2015-12-22 04:36 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-12-22 04:36 - 2015-12-22 04:36 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-12-22 04:36 - 2015-10-05 09:50 - 00094936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-12-22 04:36 - 2015-10-05 09:50 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-12-22 04:36 - 2015-10-05 09:50 - 00023256 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2015-12-22 04:35 - 2015-12-22 04:36 - 22908888 _____ (Malwarebytes ) C:\Users\fred elise\Downloads\mbam-setup-2.2.0.1024.exe
2015-12-22 04:14 - 2015-12-22 04:14 - 00076613 _____ C:\Users\fred elise\PCHA-Log-22-12-15-04-13-22.zip
2015-12-22 03:43 - 2015-12-22 03:43 - 06805328 _____ (Piriform Ltd) C:\Users\fred elise\Downloads\ccsetup513.exe
2015-12-22 03:40 - 2015-12-22 05:05 - 00002628 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-22 03:40 - 2015-12-22 03:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-22 03:40 - 2015-12-22 03:40 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-12-21 08:27 - 2015-12-21 08:27 - 00000254 _____ C:\Users\fred elise\Documents\recover_file_qtkbmwucm.txt
2015-12-21 08:26 - 2015-12-21 08:26 - 00000254 _____ C:\Users\fred elise\Documents\recover_file_dbprndeah.txt
2015-12-21 08:25 - 2015-12-21 08:25 - 00000254 _____ C:\Users\fred elise\Documents\recover_file_kflavjikk.txt
2015-12-19 10:13 - 2015-12-20 12:28 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-12-18 22:30 - 2015-12-07 05:57 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-12-18 22:30 - 2015-12-07 05:49 - 00309088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2015-12-18 22:30 - 2015-12-07 05:48 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00983464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00884256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00450904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-12-18 22:30 - 2015-12-07 05:48 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2015-12-18 22:30 - 2015-12-07 05:47 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-12-18 22:30 - 2015-12-07 05:47 - 00898184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-12-18 22:30 - 2015-12-07 05:47 - 00716928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-12-18 22:30 - 2015-12-07 05:47 - 00116720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-12-18 22:30 - 2015-12-07 05:46 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-12-18 22:30 - 2015-12-07 05:45 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-12-18 22:30 - 2015-12-07 05:12 - 00820224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2015-12-18 22:30 - 2015-12-07 05:11 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2015-12-18 22:30 - 2015-12-07 05:06 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2015-12-18 22:30 - 2015-12-07 05:05 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2015-12-18 22:30 - 2015-12-07 05:05 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2015-12-18 22:30 - 2015-12-07 05:05 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2015-12-18 22:30 - 2015-12-07 05:03 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-18 22:30 - 2015-12-07 05:03 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2015-12-18 22:30 - 2015-12-07 05:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2015-12-18 22:30 - 2015-12-07 05:03 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-18 22:30 - 2015-12-07 05:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-12-18 22:30 - 2015-12-07 05:01 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-12-18 22:30 - 2015-12-07 05:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2015-12-18 22:30 - 2015-12-07 05:00 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2015-12-18 22:30 - 2015-12-07 05:00 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2015-12-18 22:30 - 2015-12-07 04:58 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-12-18 22:30 - 2015-12-07 04:57 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2015-12-18 22:30 - 2015-12-07 04:56 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-12-18 22:30 - 2015-12-07 04:56 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-12-18 22:30 - 2015-12-07 04:56 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-12-18 22:30 - 2015-12-07 04:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-12-18 22:30 - 2015-12-07 04:55 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2015-12-18 22:30 - 2015-12-07 04:54 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2015-12-18 22:30 - 2015-12-07 04:53 - 19339264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-12-18 22:30 - 2015-12-07 04:53 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-12-18 22:30 - 2015-12-07 04:53 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-18 22:30 - 2015-12-07 04:52 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-12-18 22:30 - 2015-12-07 04:49 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2015-12-18 22:30 - 2015-12-07 04:48 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-12-18 22:30 - 2015-12-07 04:48 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-12-18 22:30 - 2015-12-07 04:48 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2015-12-18 22:30 - 2015-12-07 04:45 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-18 22:30 - 2015-12-07 04:45 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-12-18 22:30 - 2015-12-07 04:44 - 02977280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-12-18 22:30 - 2015-12-07 04:44 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-12-18 22:30 - 2015-12-07 04:41 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-18 22:30 - 2015-12-07 04:40 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-18 22:30 - 2015-12-07 04:38 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-12-18 22:30 - 2015-12-07 04:37 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-12-18 22:30 - 2015-12-07 04:34 - 00301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2015-12-08 21:57 - 2015-12-28 18:57 - 09479872 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2015-12-08 21:51 - 2015-11-24 08:11 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-12-08 21:51 - 2015-11-24 08:08 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-12-08 21:50 - 2015-12-01 07:51 - 01821024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-12-08 21:50 - 2015-11-24 12:04 - 01539744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-12-08 21:50 - 2015-11-24 10:26 - 01273728 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-12-08 21:50 - 2015-11-24 09:54 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-12-08 21:50 - 2015-11-24 09:48 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2015-12-08 21:50 - 2015-11-24 09:47 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-12-08 21:50 - 2015-11-24 09:39 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2015-12-08 21:50 - 2015-11-24 09:33 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-12-08 21:50 - 2015-11-24 09:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-12-08 21:50 - 2015-11-24 09:14 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-12-08 21:50 - 2015-11-24 09:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-12-08 21:50 - 2015-11-24 09:02 - 01154560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-12-08 21:50 - 2015-11-24 08:59 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-12-08 21:50 - 2015-11-24 08:57 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-12-08 21:50 - 2015-11-24 08:04 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-12-03 21:25 - 2015-11-22 11:41 - 05797728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-12-03 21:24 - 2015-11-22 11:41 - 01859448 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-03 21:24 - 2015-11-22 11:34 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-12-03 21:24 - 2015-11-22 11:26 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-12-03 21:24 - 2015-11-22 11:25 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-12-03 21:24 - 2015-11-22 11:24 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-03 21:24 - 2015-11-22 11:24 - 00043376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-03 21:24 - 2015-11-22 11:23 - 00076128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2015-12-03 21:24 - 2015-11-22 11:20 - 00504624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-12-03 21:24 - 2015-11-22 11:20 - 00139616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-12-03 21:24 - 2015-11-22 11:14 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-12-03 21:24 - 2015-11-22 11:09 - 00641728 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-12-03 21:24 - 2015-11-22 11:08 - 00364176 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-12-03 21:24 - 2015-11-22 10:48 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2015-12-03 21:24 - 2015-11-22 10:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2015-12-03 21:24 - 2015-11-22 10:45 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-03 21:24 - 2015-11-22 10:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-03 21:24 - 2015-11-22 10:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-03 21:24 - 2015-11-22 10:44 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-03 21:24 - 2015-11-22 10:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2015-12-03 21:24 - 2015-11-22 10:44 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-03 21:24 - 2015-11-22 10:44 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2015-12-03 21:24 - 2015-11-22 10:43 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-03 21:24 - 2015-11-22 10:43 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2015-12-03 21:24 - 2015-11-22 10:42 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2015-12-03 21:24 - 2015-11-22 10:42 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-12-03 21:24 - 2015-11-22 10:40 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2015-12-03 21:24 - 2015-11-22 10:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-03 21:24 - 2015-11-22 10:40 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-03 21:24 - 2015-11-22 10:39 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2015-12-03 21:24 - 2015-11-22 10:39 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-03 21:24 - 2015-11-22 10:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2015-12-03 21:24 - 2015-11-22 10:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-12-03 21:24 - 2015-11-22 10:39 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-12-03 21:24 - 2015-11-22 10:38 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-12-03 21:24 - 2015-11-22 10:38 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2015-12-03 21:24 - 2015-11-22 10:37 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2015-12-03 21:24 - 2015-11-22 10:37 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-12-03 21:24 - 2015-11-22 10:37 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2015-12-03 21:24 - 2015-11-22 10:34 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-03 21:24 - 2015-11-22 10:33 - 06529024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-12-03 21:24 - 2015-11-22 10:33 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-12-03 21:24 - 2015-11-22 10:33 - 00205824 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2015-12-03 21:24 - 2015-11-22 10:33 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-12-03 21:24 - 2015-11-22 10:33 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-12-03 21:24 - 2015-11-22 10:32 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2015-12-03 21:24 - 2015-11-22 10:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-12-03 21:24 - 2015-11-22 10:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-12-03 21:24 - 2015-11-22 10:32 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-12-03 21:24 - 2015-11-22 10:31 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-12-03 21:24 - 2015-11-22 10:31 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2015-12-03 21:24 - 2015-11-22 10:30 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-12-03 21:24 - 2015-11-22 10:30 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2015-12-03 21:24 - 2015-11-22 10:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2015-12-03 21:24 - 2015-11-22 10:29 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-12-03 21:24 - 2015-11-22 10:28 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2015-12-03 21:24 - 2015-11-22 10:27 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-12-03 21:24 - 2015-11-22 10:27 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2015-12-03 21:24 - 2015-11-22 10:27 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-12-03 21:24 - 2015-11-22 10:27 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-12-03 21:24 - 2015-11-22 10:27 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-12-03 21:24 - 2015-11-22 10:27 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2015-12-03 21:24 - 2015-11-22 10:26 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-03 21:24 - 2015-11-22 10:26 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-12-03 21:24 - 2015-11-22 10:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-03 21:24 - 2015-11-22 10:26 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-12-03 21:24 - 2015-11-22 10:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-03 21:24 - 2015-11-22 10:24 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2015-12-03 21:24 - 2015-11-22 10:24 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-03 21:24 - 2015-11-22 10:24 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-03 21:24 - 2015-11-22 10:23 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-12-03 21:24 - 2015-11-22 10:23 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-03 21:24 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2015-12-03 21:24 - 2015-11-22 10:20 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2015-12-03 21:24 - 2015-11-22 10:19 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2015-12-03 21:24 - 2015-11-22 10:18 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-12-03 21:24 - 2015-11-22 10:18 - 00748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-12-03 21:24 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-12-03 21:24 - 2015-11-22 10:17 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-12-03 21:24 - 2015-11-22 10:17 - 01925120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-12-03 21:24 - 2015-11-22 10:17 - 01086464 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-12-03 21:24 - 2015-11-22 10:11 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-12-03 21:23 - 2015-11-22 10:45 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-03 21:23 - 2015-11-22 10:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-03 21:22 - 2015-12-03 21:22 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2015-12-02 22:08 - 2015-12-22 05:07 - 00002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2015-12-02 22:08 - 2015-12-02 22:08 - 00322760 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-12-02 22:08 - 2015-12-02 22:08 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-01-01 17:57 - 2012-08-23 20:41 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-01 17:46 - 2010-04-28 22:33 - 00001090 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-01 17:31 - 2010-04-28 22:33 - 00001086 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-31 19:33 - 2015-11-27 10:30 - 00000000 ___DC C:\Windows.old
2015-12-31 18:40 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-31 18:38 - 2015-10-30 06:48 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-30 18:38 - 2015-10-30 06:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-12-30 18:07 - 2015-11-27 10:58 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-30 18:06 - 2015-11-27 10:40 - 00000000 ____D C:\Users\fred elise
2015-12-30 18:06 - 2015-10-30 06:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-12-30 18:06 - 2015-10-30 06:13 - 00000000 ____D C:\Windows
2015-12-28 19:34 - 2015-10-30 06:47 - 00000000 ____D C:\WINDOWS\INF
2015-12-27 22:10 - 2015-10-30 06:49 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-12-27 22:10 - 2015-10-30 06:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-12-22 05:07 - 2015-11-27 10:47 - 00001463 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-22 05:07 - 2015-06-25 21:51 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-12-22 05:07 - 2013-10-31 21:10 - 00001117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002775 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Outlook.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Word.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002715 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Excel.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002691 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Access.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002687 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft FrontPage.lnk
2015-12-22 05:07 - 2010-10-23 09:53 - 00002647 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint.lnk
2015-12-22 05:07 - 2010-10-21 07:40 - 00001251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
2015-12-22 05:07 - 2010-10-21 07:39 - 00001424 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2015-12-22 05:07 - 2010-10-21 07:39 - 00001320 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
2015-12-22 05:07 - 2010-01-21 03:59 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Installation du Contrôle Parental.lnk
2015-12-22 05:06 - 2015-10-17 08:00 - 00002464 _____ C:\Users\fred elise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-22 05:06 - 2015-10-17 07:57 - 00001047 _____ C:\Users\fred elise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk
2015-12-22 05:05 - 2015-11-27 11:45 - 00001034 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-12-22 05:05 - 2015-10-24 03:18 - 00002148 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-12-22 05:05 - 2015-06-25 21:51 - 00002017 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-12-22 05:05 - 2015-04-21 21:24 - 00001967 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk
2015-12-22 05:05 - 2015-04-21 21:19 - 00002142 _____ C:\Users\Public\Desktop\Canon MG3500 series Manuel à l'écran.lnk
2015-12-22 05:05 - 2014-06-01 21:31 - 00001104 _____ C:\Users\fred elise\Desktop\MP Manager.lnk
2015-12-22 05:05 - 2013-11-13 21:59 - 00002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-22 05:05 - 2013-11-11 21:45 - 00002170 _____ C:\Users\Public\Desktop\Google Earth.lnk
2015-12-22 05:05 - 2013-10-31 21:10 - 00001105 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-12-22 05:05 - 2012-09-13 21:46 - 00001064 _____ C:\Users\Public\Desktop\Picasa 3.lnk
2015-12-22 05:05 - 2012-02-24 11:11 - 00002076 _____ C:\Users\Public\Desktop\Architecte 3D Gold.lnk
2015-12-22 05:05 - 2011-12-22 13:47 - 00000614 _____ C:\Users\fred elise\Desktop\Autorun - Raccourci.lnk
2015-12-22 05:05 - 2011-12-22 13:08 - 00001132 _____ C:\Users\Public\Desktop\Totally Party.lnk
2015-12-22 05:05 - 2011-12-22 12:38 - 00002472 _____ C:\Users\Public\Desktop\THE SETTLERS - L'Héritage des Rois.lnk
2015-12-22 05:05 - 2011-04-21 10:28 - 00002309 _____ C:\Users\fred elise\Desktop\Le Club des TrouveTout, Les plantes carnivores.lnk
2015-12-22 05:05 - 2010-12-26 19:51 - 00001950 _____ C:\Users\Public\Desktop\Real Stories vétérinaire.lnk
2015-12-22 05:05 - 2010-04-28 22:29 - 00002139 _____ C:\Users\Public\Desktop\Les Rebelles de la Forêt.lnk
2015-12-22 05:05 - 2010-01-19 02:01 - 00000939 _____ C:\Users\fred elise\Desktop\Downloads.lnk
2015-12-22 05:05 - 2010-01-19 01:47 - 00002121 _____ C:\Users\Public\Desktop\Game Pack.lnk
2015-12-22 05:05 - 2009-09-17 07:51 - 00002072 _____ C:\Users\Public\Desktop\Samsung Support Center.lnk
2015-12-22 05:05 - 2009-09-17 07:51 - 00000884 _____ C:\Users\Public\Desktop\Samsung Recovery Solution 4.lnk
2015-12-22 05:05 - 2009-09-17 07:50 - 00002034 _____ C:\Users\Public\Desktop\Easy Network Manager.lnk
2015-12-22 05:05 - 2009-09-17 07:48 - 00001866 _____ C:\Users\Public\Desktop\Samsung Update Plus.lnk
2015-12-22 05:05 - 2009-09-17 07:48 - 00000896 _____ C:\Users\Public\Desktop\User Guide.lnk
2015-12-22 05:04 - 2015-11-27 10:33 - 00000000 ___DC C:\WINDOWS\Panther
2015-12-22 04:40 - 2011-09-01 18:27 - 00000000 ____D C:\Users\fred elise\AppData\Roaming\Skype
2015-12-22 03:40 - 2015-01-12 23:31 - 00000000 __RDC C:\Program Files\Skype
2015-12-22 03:40 - 2014-08-13 21:58 - 00000000 ____D C:\Users\fred elise\AppData\Local\Skype
2015-12-22 03:40 - 2011-09-01 18:27 - 00000000 ____D C:\ProgramData\Skype
2015-12-21 23:37 - 2015-11-27 10:40 - 00000000 ____D C:\Users\DefaultAppPool
2015-12-21 20:59 - 2015-04-21 20:33 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-12-20 12:28 - 2013-10-31 21:10 - 00000000 ___DC C:\Program Files\Mozilla Maintenance Service
2015-12-19 23:26 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-12-19 23:26 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\Provisioning
2015-12-19 23:26 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2015-12-19 22:27 - 2015-12-01 19:05 - 00174507 _____ C:\WINDOWS\system32\ScanResults.xml
2015-12-19 22:23 - 2015-10-22 22:00 - 00000464 _____ C:\WINDOWS\system32\ScannerSettings
2015-12-19 10:09 - 2015-10-24 03:17 - 00436360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2015-12-19 10:09 - 2015-10-24 03:17 - 00081168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2015-12-14 14:49 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\rescache
2015-12-13 15:42 - 2015-11-27 10:39 - 02085388 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-13 15:42 - 2015-10-30 16:07 - 00916474 _____ C:\WINDOWS\system32\perfh00C.dat
2015-12-13 15:42 - 2015-10-30 16:07 - 00190876 _____ C:\WINDOWS\system32\perfc00C.dat
2015-12-12 18:48 - 2015-11-27 10:34 - 00340392 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-12 18:48 - 2010-01-19 01:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-12 18:47 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-12 10:07 - 2015-10-17 07:54 - 00000000 ____D C:\Users\fred elise\AppData\Local\Packages
2015-12-12 09:58 - 2015-10-17 08:00 - 00000000 ___RD C:\Users\fred elise\OneDrive
2015-12-10 23:02 - 2010-06-03 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-12-10 23:00 - 2013-08-16 08:34 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-10 22:52 - 2010-01-20 02:44 - 137798368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-07 22:31 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-12-02 22:08 - 2015-10-24 03:17 - 00794952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-12-02 22:08 - 2015-10-24 03:17 - 00209432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-12-02 22:08 - 2015-10-24 03:17 - 00117712 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-12-02 22:08 - 2015-10-24 03:17 - 00081728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-12-02 22:08 - 2015-10-24 03:17 - 00049776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-12-02 22:08 - 2015-10-24 03:17 - 00024016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys

==================== Fichiers à la racine de certains dossiers =======

2011-08-02 21:43 - 2011-08-02 21:44 - 0000000 _____ () C:\Users\fred elise\AppData\Local\{543B1C1D-5FF0-427D-8FC2-859D7E7E6FF0}
2011-08-02 21:46 - 2011-08-02 21:47 - 0000000 _____ () C:\Users\fred elise\AppData\Local\{7EA6B4BC-F580-4E81-AA5B-8C0B2D708D62}
2012-02-04 19:27 - 2012-02-04 19:27 - 0000057 _____ () C:\ProgramData\Ament.ini
2010-01-19 01:45 - 2009-08-17 06:55 - 0131368 _____ () C:\ProgramData\FullRemove.exe
2010-04-18 18:56 - 2010-04-18 18:56 - 0000166 _____ () C:\ProgramData\hpzinstall.log

Certains fichiers dans TEMP:
====================
C:\Users\fred elise\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2015-12-31 19:31

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité