cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:10-04-2016 01
Exécuté par Jérôme (administrateur) sur JÉRÔME-PC (13-04-2016 10:37:11)
Exécuté depuis C:\Users\Jérôme\Desktop
Profils chargés: Jérôme (Profils disponibles: Jérôme & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(MSI) C:\Program Files (x86)\SCM\SCM.exe
() C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Users\Jérôme\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-04-13] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349208 2016-04-13] (ELAN Microelectronics Corp.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-12] (NVIDIA Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [396968 2014-03-03] (MSI)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-12-20] (Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [14952 2016-02-26] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-17] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation)
HKU\S-1-5-21-4176806123-1963834048-3194963057-1000\...\Run: [Advanced SystemCare 9] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2019616 2016-01-11] (IObit)
HKU\S-1-5-21-4176806123-1963834048-3194963057-1000\...\RunOnce: [Uninstall C:\Users\J�r�me\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Jérôme\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
HKU\S-1-5-21-4176806123-1963834048-3194963057-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Pas de fichier
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-04-17]
ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{4E08CC97-912D-458B-8705-9A14C325532F}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 109.88.203.3 62.197.111.140
Tcpip\..\Interfaces\{174a17e4-0c9f-42e5-982f-6e58dbaf3f5c}: [DhcpNameServer] 109.88.203.3 62.197.111.140
Tcpip\..\Interfaces\{c8d6bb1e-b062-4fe9-8df0-71eecfcafcb4}: [DhcpNameServer] 109.88.203.3 62.197.111.140

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2015-11-12] (IObit)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-04-06] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-04-06] (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\cDnLEGuy.default
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-06-09] (Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-04-06] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-04-06] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-06-09] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
FF Extension: Avira Browser Safety - C:\Users\Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\cDnLEGuy.default\Extensions\abs@avira.com.xpi [2016-03-07]

Chrome:
=======
CHR Profile: C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-21]
CHR Extension: (Google Docs) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-21]
CHR Extension: (Google Drive) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Adblock Plus) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-08]
CHR Extension: (Recherche Google) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Google Sheets) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-21]
CHR Extension: (Google Docs hors connexion) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-21]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [680112 2015-06-09] (Adobe Systems Incorporated)
R2 AdvancedSystemCareService9; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240 2016-01-05] (IObit)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-17] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-17] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1290784 2016-01-08] ()
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [145624 2016-04-13] (ELAN Microelectronics Corp.)
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200 2016-01-12] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
R2 Micro Star SCM; c:\Program Files (x86)\SCM\MSIService.exe [160768 2014-03-03] (Micro-Star International Co., Ltd.) [Fichier non signé]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-01-04] ()
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-12] (NVIDIA Corporation)
S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288 2016-01-12] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736 2016-01-12] (NVIDIA Corporation)
S2 PRTGCoreService; C:\Program Files (x86)\PRTG Network Monitor\64 bit\PRTG Server.exe [9855064 2016-04-08] (Paessler AG)
S2 PRTGProbeService; C:\Program Files (x86)\PRTG Network Monitor\PRTG Probe.exe [15717464 2016-04-08] (Paessler AG)
R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-08] (Qualcomm Atheros) [Fichier non signé]
S4 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [58368 2016-02-03] (Razer Inc.) [Fichier non signé]
S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3832224 2016-01-04] (Intel® Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-02-18] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-17] (Avira Operations GmbH & Co. KG)
S1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [67888 2013-02-13] (Qualcomm Atheros, Inc.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-04-13] (REALiX(tm))
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation)
S3 Ke2200; C:\Windows\System32\drivers\e22w7x64.sys [154320 2013-03-20] (Qualcomm Atheros, Inc.)
R3 KillerEth; C:\Windows\System32\drivers\e2xw10x64.sys [162456 2016-02-01] (Qualcomm Atheros, Inc.)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185600 2016-04-13] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3515664 2016-04-13] (Intel Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-01-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [777944 2016-04-13] (Realsil Semiconductor Corporation)
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-23] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-15] (Razer, Inc.)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42600 2016-04-13] (Synaptics Incorporated)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-04-13 10:37 - 2016-04-13 10:37 - 00022245 _____ C:\Users\Jérôme\Desktop\FRST.txt
2016-04-13 10:37 - 2016-04-13 10:37 - 00000000 ____D C:\FRST
2016-04-13 10:34 - 2016-04-13 10:34 - 00000000 ____D C:\WINDOWS\LastGood
2016-04-13 10:31 - 2016-04-13 10:36 - 02375168 _____ (Farbar) C:\Users\Jérôme\Desktop\FRST64.exe
2016-04-13 10:30 - 2016-04-13 10:30 - 05576400 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-04-13 10:30 - 2016-04-13 10:30 - 03283248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 03282032 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 03198720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 02894976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-04-13 10:30 - 2016-04-13 10:30 - 02050184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 02049664 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 01743632 _____ (Creative Technology Ltd.) C:\WINDOWS\SysWOW64\MBAPO232.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 01356512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00689888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00574760 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00330568 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00221976 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00214840 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00192992 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00110984 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-04-13 10:30 - 2016-04-13 10:30 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-04-13 10:29 - 2016-04-13 10:29 - 09890008 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2016-04-13 10:29 - 2016-04-13 10:29 - 04330200 _____ (TODO: ) C:\WINDOWS\RtCRU64.exe
2016-04-13 10:29 - 2016-04-13 10:29 - 00481032 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2016-04-13 10:29 - 2016-04-13 10:29 - 00143600 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe
2016-04-13 10:29 - 2016-04-13 10:29 - 00083160 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll
2016-04-13 10:29 - 2015-07-14 20:27 - 00263952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys
2016-04-13 10:28 - 2016-04-13 10:28 - 00058584 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller01000.dll
2016-04-13 10:28 - 2016-04-13 10:28 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01009.Wdf
2016-04-13 10:27 - 2016-04-13 10:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2016-04-13 10:27 - 2016-04-13 10:27 - 00000000 ____D C:\Program Files\Synaptics
2016-04-13 10:26 - 2016-04-13 10:26 - 00042600 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2016-04-13 10:13 - 2016-04-13 10:13 - 00185600 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
2016-04-13 10:11 - 2016-04-13 10:11 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-04-13 10:09 - 2016-04-13 10:31 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-04-13 10:08 - 2016-04-13 10:08 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
2016-04-13 10:08 - 2016-04-13 10:08 - 00003428 _____ C:\WINDOWS\System32\Tasks\Driver Booster Scheduler
2016-04-13 10:08 - 2016-04-13 10:08 - 00003078 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Jérôme)
2016-04-13 10:08 - 2016-04-13 10:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2016-04-13 10:07 - 2016-04-13 10:23 - 00002490 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Jérôme
2016-04-13 10:07 - 2016-04-13 10:23 - 00000300 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_Jérôme.job
2016-04-13 10:07 - 2016-04-13 10:23 - 00000000 ____D C:\ProgramData\ProductData
2016-04-13 10:07 - 2016-04-13 10:15 - 00000000 ____D C:\Users\Jérôme\AppData\LocalLow\IObit
2016-04-13 10:07 - 2016-04-13 10:15 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-04-13 10:07 - 2016-04-13 10:07 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2016-04-13 10:07 - 2016-04-13 10:07 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\ProductData
2016-04-13 10:07 - 2016-04-13 10:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2016-04-13 10:06 - 2016-04-13 10:22 - 00000000 ____D C:\ProgramData\IObit
2016-04-13 10:06 - 2016-04-13 10:08 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\IObit
2016-04-13 10:06 - 2016-04-13 10:08 - 00000000 ____D C:\Program Files (x86)\IObit
2016-04-13 10:06 - 2016-04-13 10:07 - 00003308 _____ C:\WINDOWS\System32\Tasks\ASC9_PerformanceMonitor
2016-04-13 10:06 - 2016-04-13 10:06 - 00002436 _____ C:\WINDOWS\System32\Tasks\ASC9_SkipUac_Jérôme
2016-04-13 10:06 - 2016-04-13 10:06 - 00000260 _____ C:\WINDOWS\Tasks\ASC9_SkipUac_Jérôme.job
2016-04-13 10:06 - 2016-04-13 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2016-04-13 10:04 - 2016-04-13 10:06 - 42683680 _____ (IObit ) C:\Users\Jérôme\Downloads\advanced-systemcare-free_9-2-0-1110_fr_403234.exe
2016-04-12 22:37 - 2016-04-12 22:38 - 03465280 _____ C:\Users\Jérôme\Downloads\adwcleaner_5.110.exe
2016-04-12 22:31 - 2016-04-12 22:31 - 00001922 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-04-12 22:31 - 2016-04-12 22:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-04-12 22:31 - 2016-04-12 22:31 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-04-12 22:29 - 2016-04-12 22:31 - 03521617 _____ (Nicolas Coolman ) C:\Users\Jérôme\Downloads\ZHPFix.exe
2016-04-12 22:11 - 2016-04-12 22:32 - 00000876 _____ C:\Users\Jérôme\Desktop\ZHPCleaner.lnk
2016-04-12 22:10 - 2016-04-12 22:11 - 02238464 _____ C:\Users\Jérôme\Downloads\ZHPCleaner.exe
2016-04-12 22:05 - 2016-04-13 09:41 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\ZHP
2016-04-12 22:05 - 2016-04-13 09:36 - 00000866 _____ C:\Users\Jérôme\Desktop\ZHPDiag.lnk
2016-04-12 22:03 - 2016-04-12 22:04 - 02185728 _____ C:\Users\Jérôme\Downloads\ZHPDiag3.exe
2016-04-12 21:58 - 2016-04-12 21:58 - 00002135 _____ C:\Users\Jérôme\Desktop\Profil Scan rapide Free Antivirus.LNK
2016-04-12 20:04 - 2016-04-12 20:04 - 00000000 ____D C:\ProgramData\Paessler
2016-04-12 20:03 - 2016-04-13 10:32 - 00000000 ____D C:\ProgramData\TEMP
2016-04-12 20:03 - 2016-04-12 20:03 - 00001024 _____ C:\.rnd
2016-04-12 20:03 - 2016-04-12 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRTG Network Monitor
2016-04-12 20:03 - 2016-04-12 20:03 - 00000000 ____D C:\Program Files\WinPcap
2016-04-12 20:02 - 2016-04-13 09:30 - 00000000 ____D C:\Program Files (x86)\PRTG Network Monitor
2016-04-12 17:00 - 2016-04-12 17:00 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\vibranceGUI
2016-04-11 18:58 - 2016-04-11 19:19 - 465034426 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.pw ] Mr.Robot.S01E03.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON.avi
2016-04-11 18:58 - 2016-04-11 19:19 - 458958410 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.pw ] Mr.Robot.S01E02.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON.avi
2016-04-03 17:45 - 2016-04-03 17:51 - 00000000 ____D C:\Users\Jérôme\Downloads\[www.Cpasbien.pe] Black.Mirror.S03E01.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON
2016-03-28 20:18 - 2016-03-29 00:11 - 00000000 ____D C:\Users\Jérôme\Downloads\[ www.CpasBien.cm ] Marvels.Daredevil.S02.VOSTFR.720p.WEBRiP.x264.AAC-GOBO2S
2016-03-28 20:17 - 2016-03-28 20:17 - 00384869 _____ C:\Users\Jérôme\Downloads\daredevil-saison-2-vostfr-bluray-720p-hdtv.torrent
2016-03-28 19:01 - 2016-03-28 19:01 - 156808810 _____ C:\Users\Jérôme\Desktop\Maroc2016.mp4
2016-03-26 12:54 - 2016-03-28 19:09 - 00000000 ____D C:\Users\Jérôme\Desktop\Maroc
2016-03-14 23:24 - 2016-03-14 23:36 - 781460824 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.cm ] Vinyl.S01E05.SUBFRENCH.WEBRip.XviD-Yn1D.avi

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-04-13 10:40 - 2015-12-13 03:51 - 02135520 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-13 10:40 - 2015-10-30 21:00 - 00934786 _____ C:\WINDOWS\system32\perfh00C.dat
2016-04-13 10:40 - 2015-10-30 21:00 - 00199200 _____ C:\WINDOWS\system32\perfc00C.dat
2016-04-13 10:39 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-13 10:36 - 2016-01-13 15:24 - 00000000 ____D C:\Users\Jérôme\AppData\Local\CrashDumps
2016-04-13 10:34 - 2015-12-13 03:45 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-04-13 10:34 - 2015-07-21 11:09 - 00001092 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-13 10:34 - 2015-04-17 15:26 - 00000000 __SHD C:\Users\Jérôme\IntelGraphicsProfiles
2016-04-13 10:33 - 2015-12-13 04:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-13 10:32 - 2015-12-13 03:45 - 00000000 ____D C:\Program Files\Elantech
2016-04-13 10:32 - 2015-10-30 08:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-13 10:31 - 2015-12-13 03:45 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-04-13 10:30 - 2015-06-24 22:59 - 03081808 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-04-13 10:30 - 2015-06-24 22:59 - 01977072 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBAPO264.dll
2016-04-13 10:30 - 2015-06-24 22:59 - 00410040 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBWrp64.dll
2016-04-13 10:30 - 2015-06-24 22:57 - 04803840 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-04-13 10:30 - 2015-06-24 22:57 - 00041096 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\Drivers\MBfilt64.sys
2016-04-13 10:30 - 2015-06-24 22:57 - 00023704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-04-13 10:29 - 2016-01-26 22:51 - 03515664 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwbw02.sys
2016-04-13 10:29 - 2015-04-17 14:27 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-04-13 10:29 - 2015-04-17 14:26 - 00777944 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys
2016-04-13 10:28 - 2015-08-05 21:58 - 00454744 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2016-04-13 10:28 - 2013-08-30 21:18 - 01462720 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys
2016-04-13 10:20 - 2015-12-13 03:36 - 00000000 ___DC C:\WINDOWS\Panther
2016-04-13 10:14 - 2015-12-13 03:52 - 00000000 ____D C:\Users\Jérôme
2016-04-13 10:14 - 2015-04-17 15:08 - 00000000 ____D C:\ProgramData\Intel
2016-04-13 10:14 - 2015-04-17 14:27 - 00000000 ____D C:\Intel
2016-04-13 10:13 - 2015-07-10 11:05 - 00000000 ____D C:\Users\Default.migrated
2016-04-13 10:11 - 2015-04-17 15:08 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-04-13 10:10 - 2015-12-13 03:44 - 00000000 ____D C:\Program Files\Intel
2016-04-13 10:10 - 2015-04-17 15:07 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-13 09:49 - 2015-07-21 11:09 - 00001096 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-13 09:42 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-13 09:42 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-13 09:42 - 2015-08-04 21:19 - 00000000 ____D C:\Users\Jérôme\AppData\Local\Packages
2016-04-13 09:31 - 2015-04-19 12:34 - 00000000 ____D C:\Users\Jérôme\AppData\Local\Adobe
2016-04-13 09:30 - 2015-10-03 15:09 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E125F421-FAE6-4815-AA9E-6ABD54CB9459}
2016-04-13 00:25 - 2015-04-21 11:57 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\vlc
2016-04-12 23:30 - 2015-04-17 20:23 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\transmission
2016-04-12 22:52 - 2016-03-06 18:15 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-04-12 22:49 - 2016-03-06 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-04-12 22:49 - 2016-03-06 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-04-12 22:39 - 2015-06-01 13:21 - 00000000 ____D C:\AdwCleaner
2016-04-12 21:15 - 2015-04-17 18:18 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-12 18:47 - 2015-04-18 12:43 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\TS3Client
2016-04-12 14:52 - 2015-10-27 14:36 - 00005314 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for Jérôme-pc-Jérôme Jérôme-pc
2016-04-12 13:50 - 2015-07-21 11:10 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-06 16:34 - 2015-10-03 15:07 - 00000000 ____D C:\ProgramData\Oracle
2016-04-06 15:45 - 2015-10-03 15:08 - 00000000 ____D C:\Users\Jérôme\.oracle_jre_usage
2016-04-06 15:45 - 2015-10-03 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-04-06 15:45 - 2015-10-03 15:07 - 00000000 ____D C:\Program Files (x86)\Java
2016-04-06 15:44 - 2015-10-03 15:08 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-04-06 15:37 - 2015-12-13 03:45 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-04-05 17:03 - 2015-04-18 12:42 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2016-03-29 17:52 - 2015-04-17 19:08 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-03-28 14:40 - 2016-03-07 17:21 - 00000000 ____D C:\Users\Public\Speedup Sessions
2016-03-23 22:43 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-17 13:08 - 2016-03-07 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-17 13:05 - 2016-03-07 17:25 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-03-17 13:05 - 2016-03-07 17:25 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-03-17 13:05 - 2016-03-07 17:25 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-03-14 00:45 - 2016-03-13 23:53 - 1503635297 _____ C:\Users\Jérôme\Downloads\Straight Outta Compton.2015.720p.HDRip.x264.AAC-ETRG (VOSTFR).mp4

==================== Fichiers à la racine de certains dossiers =======

2015-05-26 13:05 - 2008-08-10 13:09 - 1083904 _____ (Squared 5) C:\Program Files (x86)\MPEG_Streamclip.exe
2015-07-04 19:38 - 2015-07-19 11:08 - 0000024 _____ () C:\Users\Jérôme\AppData\Roaming\appdataFr25.bin
2016-02-18 18:09 - 2016-02-18 18:09 - 0007605 _____ () C:\Users\Jérôme\AppData\Local\Resmon.ResmonCfg

Certains fichiers dans TEMP:
====================
C:\Users\Jérôme\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-04-08 12:43

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité