cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:18-04-2016
Ran by windows (administrator) on WINDOWS-PC (23-04-2016 09:06:33)
Running from C:\Users\windows\Desktop
Loaded Profiles: windows (Available Profiles: windows)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Language: العربية (السعودية)‏
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Zbshareware Lab) C:\Program Files\USB Disk Security\USBGuard.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IDMan.exe
(Flux Software LLC) C:\Users\windows\AppData\Local\FluxSoftware\Flux\flux.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.309\SSScheduler.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Tonec Inc.) C:\Program Files\Internet Download Manager\IEMonitor.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [USB Security] => C:\Program Files\USB Disk Security\USBGuard.exe [623520 2011-01-31] (Zbshareware Lab)
HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Run: [Google Update] => C:\Users\windows\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2016-02-14] (Google Inc.)
HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Run: [IDMan] => C:\Program Files\Internet Download Manager\IDMan.exe [3933392 2016-02-11] (Tonec Inc.)
HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Run: [f.lux] => C:\Users\windows\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC)
HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6667992 2016-03-11] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files\Internet Download Manager\IDMShellExt.dll [2015-08-14] (Tonec Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-04-20]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.309\SSScheduler.exe (McAfee, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 0.0.0.1 mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{07FC3D91-9359-4CB0-8788-95F211F6361E}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{07FC3D91-9359-4CB0-8788-95F211F6361E}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\windows\AppData\Roaming\Mozilla\Firefox\Profiles\5y1unaxf.default-1460036844396
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-20] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2012-07-31] (Foxit Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-2744508499-2295875598-203414080-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\windows\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-2744508499-2295875598-203414080-1000: @talk.google.com/O1DPlugin -> C:\Users\windows\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-2744508499-2295875598-203414080-1000: @tools.google.com/Google Update;version=3 -> C:\Users\windows\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-14] (Google Inc.)
FF Plugin HKU\S-1-5-21-2744508499-2295875598-203414080-1000: @tools.google.com/Google Update;version=9 -> C:\Users\windows\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-14] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\windows\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\windows\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi
FF Extension: IDM integration - C:\Program Files\Internet Download Manager\idmmzcc2.xpi [2016-03-10]
FF HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\windows\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\windows\AppData\Roaming\IDM\idmmzcc5 [2016-04-23] [not signed]
FF HKU\S-1-5-21-2744508499-2295875598-203414080-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files\Internet Download Manager\idmmzcc2.xpi

Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\pdf.dll => No File
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
CHR Plugin: (Google Update) - C:\Users\windows\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_286.dll => No File
CHR Profile: C:\Users\windows\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (آدبلوك بلس) - C:\Users\windows\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-20]
CHR Extension: (IDM Integration Module) - C:\Users\windows\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-04-20]
CHR Extension: (Chrome Web Store Payments) - C:\Users\windows\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2016-02-11]
StartMenuInternet: Google Chrome.FEK3O4GKYLSY2NC5BFRL7UYLK4 - C:\Users\windows\AppData\Local\Google\Chrome\Application\chrome.exe

Opera:
=======
StartMenuInternet: (HKLM) Operadeveloper - C:\Program Files\Opera developer\Launcher.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1982752 2016-02-23] (ESET)
S2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.309\McCHSvc.exe [239880 2016-03-11] (McAfee, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 E617A003; C:\Windows\System32\drivers\E617A003.sys [153784 2016-04-08] (Kaspersky Lab ZAO)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [206312 2016-02-23] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [146024 2016-02-23] (ESET)
R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [111040 2016-02-23] (ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [152728 2016-02-23] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [44608 2016-02-23] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [71488 2016-02-23] (ESET)
R1 ISODrive; C:\Program Files\UltraISO\drivers\ISODrive.sys [82168 2013-11-21] (EZB Systems, Inc.)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation)
R3 solo; C:\Windows\System32\drivers\solo.sys [73873 2000-07-10] (ESS Technology, Inc.)
S3 catchme; \??\C:\Users\windows\AppData\Local\Temp\catchme.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-23 09:06 - 2016-04-23 09:07 - 00011425 _____ C:\Users\windows\Desktop\FRST.txt
2016-04-23 09:06 - 2016-04-23 09:06 - 00000000 ____D C:\FRST
2016-04-23 09:06 - 2016-04-23 09:00 - 01726464 _____ (Farbar) C:\Users\windows\Desktop\FRST.exe
2016-04-23 08:54 - 2016-04-23 08:54 - 00000000 ____D C:\Users\windows\AppData\Local\Mozilla
2016-04-23 08:53 - 2016-04-23 08:53 - 00001117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-04-23 08:53 - 2016-04-23 08:53 - 00001105 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-04-23 08:53 - 2016-04-23 08:53 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-04-23 08:53 - 2016-04-23 08:53 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-04-23 08:49 - 2016-04-23 08:49 - 01622528 _____ C:\Users\windows\Downloads\ResetBrowser.exe
2016-04-22 21:43 - 2016-04-22 21:43 - 00001795 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-04-22 21:43 - 2016-04-22 21:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-04-22 21:42 - 2016-04-22 21:44 - 00000000 ____D C:\Program Files\ZHPFix
2016-04-22 21:40 - 2016-04-22 21:41 - 03521617 _____ (Nicolas Coolman ) C:\Users\windows\Downloads\ZHPFix.exe
2016-04-22 19:34 - 2016-04-22 21:44 - 00000000 ____D C:\Users\windows\AppData\Roaming\ZHP
2016-04-22 19:34 - 2016-04-22 20:23 - 00000824 _____ C:\Users\windows\Desktop\ZHPDiag.lnk
2016-04-22 19:33 - 2016-04-22 19:33 - 02192896 _____ C:\Users\windows\Downloads\ZHPDiag3.exe
2016-04-22 19:08 - 2016-04-22 19:08 - 00000000 ____D C:\Users\windows\AppData\Local\ElevatedDiagnostics
2016-04-22 17:37 - 2016-04-22 17:38 - 00302011 _____ C:\Users\windows\Downloads\WindowsUpdateDiagnostic (1).diagcab
2016-04-22 17:21 - 2016-04-22 17:21 - 00442216 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-21 17:35 - 2016-04-21 17:35 - 00242416 _____ C:\Users\windows\Downloads\Firefox Setup Stub 45.0.2.exe
2016-04-20 22:21 - 2016-04-20 22:21 - 132539272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-04-20 22:17 - 2016-04-20 22:19 - 46346456 _____ (Microsoft Corporation) C:\Users\windows\Downloads\Windows-KB890830-V5.35.exe
2016-04-20 22:08 - 2016-04-20 22:08 - 00302011 _____ C:\Users\windows\Downloads\WindowsUpdateDiagnostic.diagcab
2016-04-20 18:03 - 2016-04-20 18:04 - 05776144 _____ (Adobe Systems Inc.) C:\Users\windows\Downloads\Shockwave_Installer_Slim (1).exe
2016-04-20 08:05 - 2016-04-20 08:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-04-12 06:22 - 2016-04-12 06:22 - 00000000 ____D C:\Users\windows\Desktop\تحميل برنامج qq player
2016-04-09 06:17 - 2016-04-09 06:17 - 00000000 ___RD C:\Users\windows\Documents\Scanned Documents
2016-04-09 06:17 - 2016-04-09 06:17 - 00000000 ____D C:\Users\windows\Documents\Fax
2016-04-08 15:14 - 2016-04-08 15:14 - 00153784 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\E617A003.sys
2016-04-08 15:13 - 2016-04-08 15:14 - 00000000 ____D C:\KVRT_Data
2016-04-05 22:40 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-04-05 22:40 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-04-05 22:40 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-04-05 22:40 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-04-05 22:40 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-04-05 22:40 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-04-05 22:40 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-04-05 22:40 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-04-05 22:40 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-04-02 15:50 - 2016-04-02 15:50 - 00000000 ____D C:\Users\windows\Desktop\public_dns
2016-04-02 14:53 - 2016-04-07 15:47 - 00000000 ____D C:\Users\windows\Desktop\بيانات Firefox القديمة
2016-03-26 12:06 - 2016-03-26 12:06 - 00000000 ____D C:\Users\windows\AppData\Roaming\Foxit Software
2016-03-25 20:32 - 2016-03-27 22:53 - 00000965 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-03-25 20:32 - 2016-03-27 22:53 - 00000000 ____D C:\Program Files\CCleaner
2016-03-25 20:32 - 2016-03-25 20:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-03-25 20:17 - 2016-03-25 20:17 - 00000000 ____D C:\Users\windows\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
2016-03-25 20:17 - 2016-03-25 20:17 - 00000000 ____D C:\Users\windows\AppData\Local\FluxSoftware
2016-03-25 16:17 - 2016-03-25 16:17 - 00000000 ____D C:\Users\windows\AppData\Roaming\FastStone
2016-03-25 16:17 - 2016-03-25 16:17 - 00000000 ____D C:\Users\windows\AppData\Local\FastStone
2016-03-25 16:17 - 2016-03-25 16:17 - 00000000 ____D C:\ProgramData\FastStone
2016-03-25 16:16 - 2016-03-26 12:05 - 00001033 _____ C:\Users\Public\Desktop\FastStone Capture.lnk
2016-03-25 16:16 - 2016-03-25 16:16 - 00000000 ____D C:\Users\windows\Desktop\FastStone Capture 8.3 + Serial Keys_2
2016-03-25 16:16 - 2016-03-25 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture
2016-03-25 16:16 - 2016-03-25 16:16 - 00000000 ____D C:\Program Files\FastStone Capture
2016-03-25 15:43 - 2016-03-25 16:01 - 00000000 ____D C:\Users\windows\Desktop\FSCaptureSetup76 BIRD NET
2016-03-24 16:40 - 2016-03-24 16:40 - 00000025 _____ C:\Users\windows\Documents\252.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-23 09:02 - 2016-02-14 14:49 - 00000860 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2744508499-2295875598-203414080-1000UA.job
2016-04-23 08:59 - 2016-03-07 14:53 - 00000832 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-23 08:54 - 2016-02-14 20:04 - 00000000 ____D C:\Users\windows\AppData\Roaming\Mozilla
2016-04-23 08:48 - 2009-07-14 06:34 - 00022944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-04-23 08:48 - 2009-07-14 06:34 - 00022944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-04-23 08:47 - 2016-03-06 21:56 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-04-23 08:44 - 2016-03-16 22:47 - 00000000 ____D C:\Program Files\Opera developer
2016-04-23 08:40 - 2016-03-07 14:53 - 00000828 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-23 08:39 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-22 23:20 - 2016-02-14 14:48 - 00000000 ____D C:\Users\windows\AppData\Roaming\DMCache
2016-04-22 22:38 - 2016-02-14 16:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-22 17:49 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf
2016-04-22 17:35 - 2012-04-30 13:10 - 00687660 _____ C:\Windows\system32\perfh00C.dat
2016-04-22 17:35 - 2012-04-30 13:10 - 00437538 _____ C:\Windows\system32\perfh001.dat
2016-04-22 17:35 - 2012-04-30 13:10 - 00127716 _____ C:\Windows\system32\perfc00C.dat
2016-04-22 17:35 - 2012-04-30 13:10 - 00076998 _____ C:\Windows\system32\perfc001.dat
2016-04-22 17:35 - 2010-11-20 23:01 - 02057460 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-22 17:29 - 2016-02-14 14:48 - 00000000 ____D C:\Users\windows\AppData\Roaming\IDM
2016-04-22 16:02 - 2016-02-14 14:49 - 00000808 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2744508499-2295875598-203414080-1000Core.job
2016-04-21 22:14 - 2016-02-14 14:55 - 00000000 ____D C:\Users\windows\AppData\Roaming\Skype
2016-04-21 18:08 - 2016-02-14 14:48 - 00000000 ____D C:\Users\windows\Downloads\Compressed
2016-04-20 18:00 - 2016-03-18 11:54 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2016-04-20 18:00 - 2016-02-14 14:54 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-04-20 18:00 - 2016-02-14 14:48 - 00000000 ____D C:\Program Files\Internet Download Manager
2016-04-20 18:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\registration
2016-04-20 17:59 - 2016-02-14 14:52 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2016-04-20 17:59 - 2016-02-14 14:52 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2016-04-20 17:58 - 2016-02-14 16:40 - 00000000 ____D C:\Users\windows\AppData\Local\Adobe
2016-04-20 08:05 - 2016-03-18 11:54 - 00002045 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2016-04-20 08:05 - 2016-03-18 11:54 - 00000000 ____D C:\Program Files\McAfee Security Scan
2016-04-20 08:01 - 2016-02-14 13:27 - 00000000 ____D C:\Users\windows
2016-04-15 23:24 - 2016-02-14 13:36 - 00000000 ____D C:\Users\windows\Documents\My ISO Files
2016-04-12 20:20 - 2016-02-14 14:48 - 00000000 ____D C:\Users\windows\Downloads\Video
2016-04-09 13:23 - 2016-03-17 15:15 - 00000892 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-04-09 06:21 - 2016-03-07 15:04 - 00002141 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-09 06:21 - 2016-03-07 15:04 - 00002129 _____ C:\Users\Public\Desktop\Google Chrome.lnk

==================== Files in the root of some directories =======

2016-02-14 14:54 - 2009-04-18 02:38 - 0349815 _____ () C:\Program Files\Common Files\Win7 Chrome 1920x1200.jpg

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-03-10 21:20

==================== End of FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité