Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:23-08-2015 Exécuté par Youndes (administrateur) sur PC-DE-YOUNDES (23-08-2015 17:54:55) Exécuté depuis C:\Users\Youndes\Desktop Profils chargés: Youndes (Profils disponibles: Youndes) Platform: Windows 7 Ultimate Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe () C:\Windows\SysWOW64\PnkBstrA.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Oracle Corporation) C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Users\Youndes\Desktop\FRST64.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [gpuminer] => C:\Users\Youndes\AppData\Roaming\cpuminer\sgminer\sgminer.cmd HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2015-08-08] (Intel Corporation) HKLM-x32\...\Run: [Aeria Ignite] => C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation) HKLM-x32\...\Run: [Corsair Gaming Headset Software] => C:\Program Files (x86)\Corsair\Corsair Gaming Headset Software\HeadsetControlPanel.exe [2918152 2014-08-18] (Corsair Components, Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624 2015-08-03] (LogMeIn Inc.) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [163328 2011-01-19] (Microsoft Corporation) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [Connexion SFR 9props.exe] => C:\Program Files (x86)\SFR\Kit\9props.exe [955712 2009-06-20] (SFR) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Youndes\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3632112 2015-08-15] (Electronic Arts) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [uTorrent] => C:\Users\Youndes\AppData\Roaming\uTorrent\uTorrent.exe [1693024 2015-08-01] (BitTorrent Inc.) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [Clownfish] => C:\Program Files (x86)\Clownfish\Clownfish.exe [1315072 2014-06-09] (Bogdan Sharkov) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [MK LOL] => C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe [1076424 2014-08-18] () HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53661824 2015-07-28] (Skype Technologies S.A.) HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [MyComGames] => C:\Users\Youndes\AppData\Local\MyComGames\MyComGames.exe [4071368 2015-07-27] () HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LOLRecorder.lnk [2014-08-13] ShortcutTarget: LOLRecorder.lnk -> C:\Program Files (x86)\LOLReplay\LOLRecorder.exe (LOL Replay) Startup: C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-05-21] ShortcutTarget: Curse.lnk -> C:\Users\Youndes\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc) Startup: C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Nexon Launcher.lnk [2015-01-04] ShortcutTarget: Nexon Launcher.lnk -> C:\Program Files (x86)\Nexon\Nexon Launcher\nexon_launcher.exe () GroupPolicy: Stratégie de groupe sur Chrome détecté(e) <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Stratégie de restriction <======= ATTENTION HKU\S-1-5-21-191571300-714251185-475189240-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Stratégie de restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-191571300-714251185-475189240-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_cmi_15_34¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0B0C0E0EyB0Bzz0B0EyEyCtAyDyDzz0AtN0D0Tzu0StCtAtBzytN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1BtAtN1L1G1B1V1N2Y1L1Qzu2StDtD0E0F0CzzyEtAtGyByEyD0AtG0FtCtAyEtGtB0DtAzytGtDyE0E0AyEtA0F0AtDtBzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByDtAyBtByCtDzytGtC0F0F0DtGyEyC0BtAtG0B0C0E0AtGzztBtB0F0F0E0A0EyDzz0F0F2QtN0A0LzutB%26cr%3D63536579%26a%3Dwncy_cmi_15_34%26os%3DWindows%2B7%2BUltimate&p={searchTerms} SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = hxxp://start.iminent.com/?appId=0d3e5486-c2f3-4988-892d-d91256bdcae0&ref=toolbox&q={searchTerms} SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-191571300-714251185-475189240-1000 -> DefaultScope {EFFE211F-705E-415D-ACAB-477CC0B5B6DE} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_cmi_15_34¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0B0C0E0EyB0Bzz0B0EyEyCtAyDyDzz0AtN0D0Tzu0StCtAtBzytN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1BtAtN1L1G1B1V1N2Y1L1Qzu2SyC0C0E0D0A0DzyyBtGtDtCyD0AtGzzyE0AyDtGtByCyC0BtGyCzz0EyCtBtCyCzztBzzzztA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByDtAyBtByCtDzytGtC0F0F0DtGyEyC0BtAtG0B0C0E0AtGzztBtB0F0F0E0A0EyDzz0F0F2QtN0A0LzutB%26cr%3D317627712%26a%3Dwncy_cmi_15_34%26os%3DWindows%2B7%2BUltimate&p={searchTerms} SearchScopes: HKU\S-1-5-21-191571300-714251185-475189240-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.iminent.com/?appId=0d3e5486-c2f3-4988-892d-d91256bdcae0&ref=toolbox&q={searchTerms} SearchScopes: HKU\S-1-5-21-191571300-714251185-475189240-1000 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = SearchScopes: HKU\S-1-5-21-191571300-714251185-475189240-1000 -> {EFFE211F-705E-415D-ACAB-477CC0B5B6DE} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_cmi_15_34¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0B0C0E0EyB0Bzz0B0EyEyCtAyDyDzz0AtN0D0Tzu0StCtAtBzytN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1BtAtN1L1G1B1V1N2Y1L1Qzu2SyC0C0E0D0A0DzyyBtGtDtCyD0AtGzzyE0AyDtGtByCyC0BtGyCzz0EyCtBtCyCzztBzzzztA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0ByDtAyBtByCtDzytGtC0F0F0DtGyEyC0BtAtG0B0C0E0AtGzztBtB0F0F0E0A0EyDzz0F0F2QtN0A0LzutB%26cr%3D317627712%26a%3Dwncy_cmi_15_34%26os%3DWindows%2B7%2BUltimate&p={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-21] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-21] (Oracle Corporation) BHO-x32: Fortunitas -> {0df469bd-3f78-4f4e-bb44-08194c50fcea} -> C:\Program Files (x86)\Fortunitas\Fortunitasbho.dll Pas de fichier BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll [2014-10-21] (Perfect World Entertainment Inc) BHO-x32: trolatunt -> {db39fa04-97db-4500-8306-6bfeeff1929b} -> C:\Program Files (x86)\trolatunt\trolatuntbho.dll Pas de fichier Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{8B5FAF19-12BD-46AC-A20D-9194395ED640}: [NameServer] 208.67.222.222,208.67.220.220 Tcpip\..\Interfaces\{8B5FAF19-12BD-46AC-A20D-9194395ED640}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{D68F7FAC-A46C-4105-B930-200AEA524F21}: [DhcpNameServer] 7.254.254.254 Tcpip\..\Interfaces\{D6F45D65-3845-4E29-A4F0-8F8FA9254355}: [NameServer] 8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default FF SelectedSearchEngine: StartWeb FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-25] () FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [Pas de fichier] FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [2015-04-23] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-21] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-25] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [Pas de fichier] FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [Pas de fichier] FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Pas de fichier] FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [2015-04-23] (EA Digital Illusions CE AB) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2015-01-05] (Nexon) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [Pas de fichier] FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll [2014-10-21] (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin HKU\S-1-5-21-191571300-714251185-475189240-1000: @my.com/Games -> C:\Users\Youndes\AppData\Local\MyComGames\NPMyComDetector.dll [2015-07-27] (My.com, Inc) FF Plugin HKU\S-1-5-21-191571300-714251185-475189240-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Youndes\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-191571300-714251185-475189240-1000: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-05-26] (The Happy Cloud) FF Plugin ProgramFiles/Appdata: C:\Users\Youndes\AppData\Roaming\mozilla\plugins\np-mswmp.dll [2009-09-25] (Microsoft Corporation) FF SearchPlugin: C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\searchplugins\Search Provided by Yahoo.xml [2015-08-23] FF Extension: winservice86 - C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\Extensions\taylorralston@hotmail.com [2015-02-24] FF Extension: SafeFinder Smartbar - C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\Extensions\{ffc43d9e-4d13-0b05-e431-b9e6e6a58f2a} [2014-11-22] FF Extension: Firefox Old Version Update Hotfix - C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\Extensions\firefox-hotfix@mozilla.org.xpi [2014-11-22] FF Extension: trolatunt - C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\Extensions\firefox@trolatunt.co.xpi [2014-07-12] FF Extension: Deal Keeper - C:\Users\Youndes\AppData\Roaming\Mozilla\Firefox\Profiles\uw6k9jxq.default\Extensions\{55dce8ba-9dec-4013-937e-adbf9317d990}.xpi [2014-07-16] FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com [2014-01-31] FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com [2014-01-31] FF HKLM-x32\...\Firefox\Extensions: [irobinhood@irobinhood.org] - C:\Program Files (x86)\iRobinHood\iRobinHood Addon\irobinhood@irobinhood.org.xpi FF HKU\S-1-5-21-191571300-714251185-475189240-1000\...\Firefox\Extensions: [{E80ADC41-AFC8-63D1-CE9E-FFDFAC79BFD9}] - C:\Program Files (x86)\version71CheckMeUp\193.xpi Chrome: ======= CHR Profile: C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14] CHR Extension: (Google Wallet) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-16] CHR Extension: (CheckMeUp) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilijopanljbpmcbbjcbcangafhmmldg [2015-08-23] CHR Profile: C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (AdBlock) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-08-23] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-08] CHR Extension: (Chrome Web Store Payments) - C:\Users\Youndes\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-21] CHR HKLM-x32\...\Chrome\Extension: [gfkbfjcbkhnmiignagpkiijohkcdkffb] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [jlceijfdfeghdhmmbhbcffanmcggoojf] - https://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ATTENTION: => Impossible d'effectuer la vérification de la signature. Le service de cryptographie est inactif. S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-10-21] (Perfect World Entertainment Inc) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1125888 2015-08-11] () S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [238376 2015-06-06] (EasyAntiCheat Ltd) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-01-28] (Ellora Assets Corp.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-08-03] (LogMeIn, Inc.) R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2818896 2014-01-20] (CybelSoft) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4797064 2013-11-06] (INCA Internet Co., Ltd.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-15] (Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-10-17] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-02-07] () S3 Survarium Update Service; C:\Program Files (x86)\Survarium\game\binaries\x86\survarium_service.exe [97912 2015-06-13] () S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 Avira.ServiceHost; "C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe" [X] S2 bufykiwi; C:\Program Files (x86)\1A5C4EE0-1440284686-11DD-8AD3-BCEE7B8BE463\knssB1D3.tmpfs [X] S2 fimevebo; C:\Program Files (x86)\1A5C4EE0-1440284686-11DD-8AD3-BCEE7B8BE463\hnscEA77.tmp [X] S2 GAQvLjwjF; "C:\ProgramData\EUpPto\GAQvLjwjF.exe" [X] S2 jimocoso; C:\Program Files (x86)\1A5C4EE0-1440284686-11DD-8AD3-BCEE7B8BE463\jnsxD022.tmp [X] S2 Util Deal Keeper; "C:\Program Files (x86)\Deal Keeper\bin\utilDealKeeper.exe" [X] ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 CV2K1; C:\Windows\System32\DRIVERS\cv2k1.sys [21608 2012-10-06] (TamoSoft) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-07-12] (Disc Soft Ltd) S3 hxsyol; C:\Windows\system32\hxsy64.sys [86352 2015-03-26] () S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2013-10-23] (CybelSoft) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-23] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation) S3 tap0901cn; C:\Windows\System32\DRIVERS\tap0901cn.sys [39616 2014-12-29] (Connectify) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 TsVlb; C:\Windows\System32\DRIVERS\tsvlb.sys [22120 2012-10-06] (TamoSoft) R1 TsVp; C:\Windows\System32\DRIVERS\tsvp.sys [26256 2012-10-06] (TamoSoft) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 cpuz134; \??\C:\Users\Youndes\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S2 hjlkfdajklfed3dfa; \??\C:\Program Files (x86)\SupTab\cfgdrv64.cfg [X] S3 TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X] S3 X6va017; \??\C:\Windows\SysWOW64\Drivers\X6va017 [X] S3 X6va029; \??\C:\Windows\SysWOW64\Drivers\X6va029 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-08-23 17:54 - 2015-08-23 17:54 - 02173440 _____ C:\Users\Youndes\Downloads\FRST64.exe 2015-08-23 17:54 - 2015-08-23 17:54 - 02173440 _____ C:\Users\Youndes\Desktop\FRST64.exe 2015-08-23 17:54 - 2015-08-23 17:54 - 00023917 _____ C:\Users\Youndes\Desktop\FRST.txt 2015-08-23 17:54 - 2015-08-23 17:54 - 00000000 ____D C:\FRST 2015-08-23 17:34 - 2015-08-23 17:34 - 00042158 _____ C:\ComboFix.txt 2015-08-23 17:08 - 2015-08-23 17:08 - 00602112 _____ (OldTimer Tools) C:\Users\Youndes\Downloads\OTL.exe 2015-08-23 17:08 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2015-08-23 17:08 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2015-08-23 17:08 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2015-08-23 17:08 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2015-08-23 17:08 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2015-08-23 17:08 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2015-08-23 17:08 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2015-08-23 17:08 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2015-08-23 17:07 - 2015-08-23 17:34 - 00000000 ____D C:\Qoobox 2015-08-23 17:07 - 2015-08-23 17:33 - 00000000 ____D C:\Windows\erdnt 2015-08-23 17:06 - 2015-08-23 17:06 - 05635234 ____R (Swearware) C:\Users\Youndes\Downloads\ComboFix.exe 2015-08-23 17:02 - 2015-08-23 17:02 - 01107968 _____ C:\Users\Youndes\Downloads\RSIT.exe 2015-08-23 17:02 - 2015-08-23 17:02 - 00000000 ____D C:\rsit 2015-08-23 17:02 - 2015-08-23 17:02 - 00000000 ____D C:\Program Files (x86)\trend micro 2015-08-23 16:54 - 2015-08-23 16:54 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Youndes\Downloads\revosetup.exe 2015-08-23 16:54 - 2015-08-23 16:54 - 00001260 _____ C:\Users\Youndes\Desktop\Revo Uninstaller.lnk 2015-08-23 16:54 - 2015-08-23 16:54 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-08-23 15:53 - 2015-08-23 15:53 - 00449894 _____ C:\Users\Youndes\Downloads\PPv0.99r.rar 2015-08-23 11:44 - 2015-08-23 15:44 - 00000000 ____D C:\ProgramData\Browser 2015-08-23 07:12 - 2015-08-23 07:12 - 00000222 _____ C:\Users\Youndes\Desktop\PAYDAY 2.url 2015-08-23 03:44 - 2015-08-23 15:44 - 00003438 _____ C:\Windows\System32\Tasks\Vihrinoba 2015-08-23 03:44 - 2015-08-23 03:44 - 00000000 ____D C:\ProgramData\Vihrinoba 2015-08-23 03:26 - 2015-08-23 03:26 - 01605632 _____ C:\Users\Youndes\Downloads\AdwCleaner-5.003.exe 2015-08-23 03:16 - 2015-08-23 17:26 - 00088167 _____ C:\Windows\setupact.log 2015-08-23 03:16 - 2015-08-23 03:16 - 00000000 _____ C:\Windows\setuperr.log 2015-08-23 03:15 - 2015-08-23 17:26 - 00019696 _____ C:\Windows\PFRO.log 2015-08-23 03:01 - 2015-08-23 03:01 - 00002249 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-08-23 02:55 - 2015-08-23 03:30 - 00002130 _____ C:\Users\Youndes\Desktop\Chromium.lnk 2015-08-23 02:53 - 2015-08-23 17:51 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-23 02:53 - 2015-08-23 03:28 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HeroesOftheNorth 2015-08-23 02:53 - 2015-08-23 02:53 - 00001098 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-08-23 02:53 - 2015-08-23 02:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-08-23 02:53 - 2015-08-23 02:53 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-08-23 02:53 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-08-23 02:53 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-08-23 02:53 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-08-23 02:51 - 2015-08-23 02:52 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Youndes\Downloads\mbam-setup-2.1.8.1057.exe 2015-08-23 02:45 - 2015-08-23 02:45 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-08-23 02:44 - 2015-08-23 02:45 - 06609608 _____ (Piriform Ltd) C:\Users\Youndes\Downloads\ccsetup508.exe 2015-08-23 02:27 - 2015-08-23 04:20 - 00000000 ____D C:\Program Files (x86)\MiniLite 2015-08-23 02:27 - 2015-08-23 03:46 - 00000000 ____D C:\ProgramData\QWinManProQ 2015-08-23 02:27 - 2015-08-23 02:27 - 00000000 ____D C:\ProgramData\update 2015-08-23 02:27 - 2015-08-23 02:27 - 00000000 _____ C:\Windows\prleth.sys 2015-08-23 02:27 - 2015-08-23 02:27 - 00000000 _____ C:\Windows\hgfs.sys 2015-08-23 02:26 - 2015-08-23 02:26 - 00000000 _____ C:\dummy.htm 2015-08-23 02:03 - 2015-08-23 04:20 - 00000000 ____D C:\Program Files (x86)\BrowsrApVs4.2 2015-08-23 02:03 - 2015-08-23 02:03 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf 2015-08-23 02:02 - 2015-08-23 17:08 - 00000000 ____D C:\ProgramData\EUpPto 2015-08-23 02:01 - 2015-08-23 02:01 - 00561424 _____ C:\Users\Youndes\Downloads\google chrome.exe 2015-08-23 01:20 - 2015-08-23 01:20 - 00002970 _____ C:\Windows\System32\Tasks\PenWes 2015-08-23 01:15 - 2015-08-23 01:15 - 00003092 _____ C:\Windows\System32\Tasks\cfr3011 2015-08-23 01:13 - 2015-08-23 01:15 - 00000509 _____ C:\task.vbs 2015-08-23 01:10 - 2015-08-23 01:35 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 2015-08-23 01:10 - 2015-08-23 01:10 - 00004222 _____ C:\Windows\System32\Tasks\cinemaplus-3.3c_notification_service 2015-08-23 01:10 - 2015-08-23 01:10 - 00003812 _____ C:\Windows\System32\Tasks\cinemaplus-3.3c_updating_service 2015-08-23 01:10 - 2015-08-23 01:10 - 00003506 _____ C:\Windows\System32\Tasks\cinemaplus-3.3c_helper_service 2015-08-23 01:09 - 2015-08-23 02:53 - 00003730 _____ C:\Windows\System32\Tasks\HeroesOftheNorth W2 2015-08-23 01:08 - 2015-08-23 04:00 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\HeroesOftheNorth 2015-08-23 01:08 - 2015-08-23 02:53 - 00003730 _____ C:\Windows\System32\Tasks\HeroesOftheNorth W1 2015-08-23 01:08 - 2015-08-23 02:53 - 00003730 _____ C:\Windows\System32\Tasks\HeroesOftheNorth TM 2015-08-23 01:08 - 2015-08-23 02:53 - 00000000 ____D C:\Users\Youndes\AppData\Local\HeroesOftheNorth 2015-08-23 01:08 - 2015-08-23 01:08 - 00000000 ____D C:\Users\Default\AppData\Local\Boxore 2015-08-23 01:08 - 2015-08-23 01:08 - 00000000 ____D C:\Users\Default User\AppData\Local\Boxore 2015-08-23 01:05 - 2015-08-23 01:51 - 00000000 ____D C:\Program Files (x86)\1A5C4EE0-1440284741-11DD-8AD3-BCEE7B8BE463 2015-08-23 01:05 - 2014-04-03 16:27 - 00000045 _____ C:\Windows\system32\Drivers\etc\hp.bak 2015-08-23 01:04 - 2015-08-23 17:10 - 00000000 ____D C:\Program Files (x86)\1A5C4EE0-1440284686-11DD-8AD3-BCEE7B8BE463 2015-08-23 01:01 - 2015-08-23 01:01 - 00000000 ____D C:\Users\Youndes\AppData\Local\Software 2015-08-23 01:01 - 2015-08-23 01:01 - 00000000 ____D C:\Program Files (x86)\Software 2015-08-23 01:00 - 2015-08-23 04:20 - 00000000 ____D C:\Program Files (x86)\Windows Loader 2015-08-23 00:56 - 2015-08-23 00:56 - 00006611 _____ C:\Users\Youndes\Downloads\crack-windows-7-edition-integrale.torrent 2015-08-23 00:56 - 2015-08-23 00:56 - 00000000 ____D C:\Users\Youndes\Downloads\Crack Windows 7 Edition Intégrale 2015-08-22 17:28 - 2015-08-22 17:28 - 00000000 ____D C:\Users\Youndes\AppData\Local\Daybreak Game Company 2015-08-22 17:06 - 2015-08-22 17:06 - 00000000 ____D C:\$SysReset 2015-08-22 14:37 - 2015-08-22 14:44 - 100271992 _____ (Microsoft Corporation) C:\Users\Youndes\Downloads\directx_Jun2010_redist.exe 2015-08-22 14:37 - 2015-08-22 14:43 - 06503984 _____ (Microsoft Corporation) C:\Users\Youndes\Downloads\vcredist_x86.exe 2015-08-22 05:14 - 2015-08-22 05:14 - 00000222 _____ C:\Users\Youndes\Desktop\Arma 3.url 2015-08-22 01:24 - 2015-08-22 01:24 - 07139680 _____ (ParetoLogic, Inc.) C:\Users\Youndes\Downloads\RegCureProSetup_DE7F5520-45CF-45B6-A87C-53DA9AAFA9EC_.exe 2015-08-22 01:10 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-08-22 01:10 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-08-22 01:10 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-08-21 23:36 - 2015-08-21 23:36 - 05911327 _____ C:\Users\Youndes\Downloads\Windows6.1-KB2670838-x86.msu 2015-08-21 23:35 - 2015-08-21 23:36 - 11840839 _____ C:\Users\Youndes\Downloads\Windows6.1-KB2670838-x64.msu 2015-08-21 23:03 - 2015-08-21 23:06 - 40168845 _____ C:\Users\Youndes\Downloads\Pack de Dlls Correção erro (0xc000007b).rar 2015-08-21 23:01 - 2015-08-22 18:18 - 00000000 ___RD C:\Users\Youndes\Documents\MEGAsync 2015-08-21 22:57 - 2015-08-21 22:58 - 09980608 _____ (MEGA Limited) C:\Users\Youndes\Downloads\MEGAsyncSetup.exe 2015-08-21 22:50 - 2015-08-21 22:50 - 00292184 _____ (Microsoft Corporation) C:\Users\Youndes\Downloads\dxwebsetup.exe 2015-08-21 22:20 - 2015-08-23 01:38 - 00001114 _____ C:\Users\Public\Desktop\A3Launcher.lnk 2015-08-21 22:15 - 2015-08-21 22:20 - 14837407 _____ (Maca134 ) C:\Users\Youndes\Downloads\setup_a3launcher.exe 2015-08-10 23:53 - 2015-08-10 23:53 - 02869264 _____ (Microsoft Corporation) C:\Users\Youndes\Downloads\dotNetFx35setup.exe 2015-08-10 23:45 - 2015-08-23 01:38 - 00000970 _____ C:\Users\Youndes\Desktop\Star Citizen Launcher.lnk 2015-08-10 23:39 - 2015-08-10 23:39 - 00104048 _____ (Cloud Imperium Games) C:\Users\Youndes\Downloads\Star_Citizen_Launcher_Setup_2.3.4.exe 2015-08-10 05:57 - 2015-08-10 05:57 - 00000222 _____ C:\Users\Youndes\Desktop\Codename CURE.url 2015-08-10 02:24 - 2015-08-10 02:24 - 00077025 _____ C:\Users\Youndes\Downloads\windowsmigration_ENUS (2).diagcab 2015-08-10 02:21 - 2015-08-10 02:21 - 00077025 _____ C:\Users\Youndes\Downloads\windowsmigration_ENUS.diagcab 2015-08-10 02:21 - 2015-08-10 02:21 - 00077025 _____ C:\Users\Youndes\Downloads\windowsmigration_ENUS (1).diagcab 2015-08-08 10:41 - 2015-08-08 10:41 - 00000735 _____ C:\Users\Youndes\Downloads\profiles.vd 2015-08-08 10:41 - 2015-08-08 10:41 - 00000228 _____ C:\Users\Youndes\Downloads\profiles_xml.vc 2015-08-08 10:18 - 2015-08-08 10:18 - 00285696 _____ (Al_th) C:\Users\Youndes\Downloads\Vocals.exe 2015-08-08 10:18 - 2015-08-08 10:18 - 00000318 _____ C:\Users\Youndes\Downloads\options_xml.vc 2015-08-08 08:17 - 2015-08-23 01:38 - 00000885 _____ C:\Users\Youndes\Desktop\League of Legends.lnk 2015-08-08 08:16 - 2015-08-08 08:16 - 00000000 ____D C:\Users\Youndes\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C} 2015-08-08 07:58 - 2015-08-22 18:18 - 00000000 ____D C:\Recovery 2015-08-08 06:43 - 2015-07-10 12:30 - 00000001 ___SH C:\BOOTNXT 2015-08-08 05:33 - 2015-08-22 17:20 - 00000000 ____D C:\$Windows.~BT 2015-08-08 03:26 - 2015-08-08 03:26 - 00000000 ____D C:\$Windows.~WS 2015-08-08 03:25 - 2015-08-08 03:26 - 19648448 _____ (Microsoft Corporation) C:\Users\Youndes\Downloads\MediaCreationToolx64.exe 2015-08-07 15:56 - 2015-08-22 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2015-08-07 15:56 - 2015-08-07 15:56 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2015-08-06 22:14 - 2015-08-21 02:33 - 00000000 ____D C:\Users\Youndes\Desktop\Rito pls 2015-08-06 03:27 - 2015-08-06 03:27 - 00000222 _____ C:\Users\Youndes\Desktop\H1Z1.url 2015-08-06 02:44 - 2015-08-06 02:44 - 00000222 _____ C:\Users\Youndes\Desktop\Warframe.url 2015-08-04 05:26 - 2015-08-08 08:46 - 00000000 ____D C:\Users\Youndes\Desktop\Boa Noite 2015-08-04 05:20 - 2015-08-04 05:26 - 52389241 _____ C:\Users\Youndes\Downloads\Boa Noite EP.zip 2015-08-03 00:50 - 2015-08-03 00:50 - 00000000 ____D C:\Users\Youndes\Tracing 2015-08-03 00:23 - 2015-08-03 00:23 - 00004721 _____ C:\Users\Youndes\AppData\Local\recently-used.xbel 2015-07-31 19:15 - 2015-08-06 11:59 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\[HaMaDa'S] 2015-07-31 19:14 - 2015-07-31 19:14 - 00688390 _____ C:\Users\Youndes\Downloads\[ S4L ] All In One Trainer (Bypass Included) 0.2 (1).rar 2015-07-31 19:05 - 2015-08-10 03:09 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\HaMaDa'S 2015-07-31 19:05 - 2015-07-31 19:05 - 00546022 _____ C:\Users\Youndes\Downloads\[S4L] Next In-Game Trainer 0.9 (Bypass-Included).rar 2015-07-31 19:01 - 2015-07-31 19:01 - 00208600 _____ C:\Users\Youndes\Downloads\[AL]- Helyea Ingame v3 fix.rar 2015-07-31 17:58 - 2015-07-31 17:58 - 00429620 _____ C:\Users\Youndes\Downloads\Xigncode Bypass.rar 2015-07-31 17:56 - 2015-07-31 17:56 - 00659684 _____ C:\Users\Youndes\Downloads\IDM.rar 2015-07-31 17:56 - 2015-07-31 17:56 - 00017178 _____ C:\Users\Youndes\Downloads\Bypass (psch0).rar 2015-07-31 03:08 - 2015-07-31 03:08 - 00000000 ____D C:\Users\Youndes\AppData\Local\CEF 2015-07-28 22:18 - 2015-07-25 20:07 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-28 22:18 - 2015-07-25 20:04 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-28 22:18 - 2015-07-25 20:04 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-28 22:18 - 2015-07-25 20:03 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-28 22:18 - 2015-07-25 20:03 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-28 22:18 - 2015-07-25 20:03 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-28 22:18 - 2015-07-25 20:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-28 22:18 - 2015-07-25 19:55 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-27 10:09 - 2015-07-27 10:09 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com 2015-07-27 02:57 - 2015-08-22 18:09 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games 2015-07-27 02:57 - 2015-07-27 10:02 - 00000000 ____D C:\MyGames 2015-07-27 02:56 - 2015-08-23 03:38 - 00000000 ____D C:\Users\Youndes\AppData\Local\MyComGames 2015-07-27 02:55 - 2015-07-27 02:56 - 04542960 _____ C:\Users\Youndes\Downloads\SkyforgeLoader_en.exe 2015-07-25 03:00 - 2015-07-25 03:00 - 00000000 ____D C:\ProgramData\McAfee 2015-07-25 02:58 - 2015-07-25 03:00 - 00000000 ____D C:\Users\Youndes\AppData\Local\Adobe ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-08-23 17:52 - 2014-11-11 03:20 - 00327680 _____ C:\Windows\system32\Ikeext.etl 2015-08-23 17:51 - 2014-07-01 21:17 - 01705727 _____ C:\Windows\WindowsUpdate.log 2015-08-23 17:50 - 2014-01-13 22:58 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Skype 2015-08-23 17:34 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default 2015-08-23 17:28 - 2014-02-10 18:38 - 00000000 ____D C:\Users\Youndes\AppData\Local\LogMeIn Hamachi 2015-08-23 17:28 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2015-08-23 17:28 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2015-08-23 17:27 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-23 17:25 - 2014-01-13 20:08 - 00021728 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-23 17:25 - 2014-01-13 20:08 - 00021728 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-23 17:25 - 2009-07-14 04:34 - 78643200 _____ C:\Windows\system32\config\SOFTWARE.bak 2015-08-23 17:25 - 2009-07-14 04:34 - 40108032 _____ C:\Windows\system32\config\COMPONENTS.bak 2015-08-23 17:25 - 2009-07-14 04:34 - 22020096 _____ C:\Windows\system32\config\SYSTEM.bak 2015-08-23 17:25 - 2009-07-14 04:34 - 00524288 _____ C:\Windows\system32\config\DEFAULT.bak 2015-08-23 17:25 - 2009-07-14 04:34 - 00262144 _____ C:\Windows\system32\config\SECURITY.bak 2015-08-23 17:25 - 2009-07-14 04:34 - 00262144 _____ C:\Windows\system32\config\SAM.bak 2015-08-23 17:24 - 2014-01-13 22:40 - 00000000 ____D C:\ProgramData\ma-config.com 2015-08-23 17:24 - 2014-01-13 20:09 - 00000000 ____D C:\Users\Youndes 2015-08-23 16:28 - 2014-01-13 23:19 - 00000000 ____D C:\Program Files (x86)\Steam 2015-08-23 12:35 - 2014-01-17 22:28 - 00000000 ____D C:\Users\Youndes\AppData\Local\Akamai 2015-08-23 05:32 - 2014-01-14 18:51 - 00000000 ____D C:\Users\Youndes\AppData\Local\Arma 3 2015-08-23 04:24 - 2014-01-23 16:03 - 00000000 ____D C:\Users\Youndes\AppData\Local\Warframe 2015-08-23 03:53 - 2014-01-13 22:34 - 00000295 _____ C:\Users\Youndes\AppData\Roaming\WB.CFG 2015-08-23 03:44 - 2014-05-06 21:53 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\uTorrent 2015-08-23 03:44 - 2014-01-14 01:10 - 00000000 ____D C:\ProgramData\Origin 2015-08-23 03:34 - 2014-07-16 14:14 - 00001350 _____ C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2015-08-23 03:28 - 2015-02-19 16:41 - 00000856 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-23 03:28 - 2014-10-28 03:04 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quake Live.lnk 2015-08-23 03:28 - 2014-08-22 01:15 - 00001254 _____ C:\Users\Youndes\Desktop\Warframe.lnk 2015-08-23 03:28 - 2014-04-14 03:01 - 00000000 ____D C:\AdwCleaner 2015-08-23 03:28 - 2014-01-13 20:20 - 00000887 _____ C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-23 03:28 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System 2015-08-23 03:16 - 2014-05-15 16:09 - 00017863 _____ C:\Windows\system32\lvcoinst.log 2015-08-23 02:58 - 2014-08-03 03:02 - 00000000 ____D C:\Users\Youndes\Desktop\GAM 2015-08-23 02:53 - 2014-01-24 23:41 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-23 02:49 - 2015-02-22 20:49 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\FileZilla 2015-08-23 02:49 - 2014-07-12 13:08 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\DAEMON Tools Lite 2015-08-23 02:49 - 2014-01-13 23:35 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\TS3Client 2015-08-23 02:48 - 2014-02-12 21:42 - 00000000 ____D C:\Users\Youndes\AppData\Local\CrashDumps 2015-08-23 02:45 - 2014-03-22 00:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-08-23 02:45 - 2014-03-22 00:34 - 00000000 ____D C:\Program Files\CCleaner 2015-08-23 01:38 - 2015-07-20 22:34 - 00001199 _____ C:\Users\Youndes\Desktop\Terraria - Raccourci.lnk 2015-08-23 01:38 - 2015-05-21 16:12 - 00001155 _____ C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse.lnk 2015-08-23 01:38 - 2015-03-14 03:13 - 00001053 _____ C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk 2015-08-23 01:26 - 2014-01-20 20:24 - 00000000 ____D C:\Program Files (x86)\Origin 2015-08-23 01:25 - 2014-08-18 00:49 - 00000058 _____ C:\Windows\JQHApp.dat 2015-08-23 01:24 - 2009-07-14 06:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-08-23 01:09 - 2015-05-21 16:12 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Curse Client 2015-08-23 01:07 - 2015-06-21 01:58 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-23 01:07 - 2015-06-21 01:58 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-23 01:07 - 2014-02-11 22:34 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-08-23 01:07 - 2014-01-13 21:37 - 00000310 _____ C:\Windows\Tasks\RtlDashSrvStart.job 2015-08-22 18:10 - 2014-07-16 23:37 - 00000000 ____D C:\Windows\system32\appmgmt 2015-08-22 18:10 - 2014-05-01 03:01 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin 2015-08-22 18:10 - 2009-07-14 17:35 - 00000000 ____D C:\Windows\ShellNew 2015-08-22 18:10 - 2009-07-14 17:24 - 00000000 ____D C:\Windows\SysWOW64\sysprep 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 __RSD C:\Windows\Media 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2015-08-22 18:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2015-08-22 18:10 - 2006-11-02 17:16 - 00000000 ____D C:\Windows\SysWOW64\Branding 2015-08-22 18:10 - 2006-11-02 17:15 - 00000000 ____D C:\Windows\system32\Branding 2015-08-22 18:09 - 2015-06-21 02:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-08-22 18:09 - 2015-05-11 16:08 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Binding of Isaac Rebirth 1.0 2015-08-22 18:09 - 2015-04-23 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active@ Partition Manager 2015-08-22 18:09 - 2015-04-04 06:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corsair 2015-08-22 18:09 - 2015-03-24 22:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriadWars 2015-08-22 18:09 - 2015-02-22 20:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-08-22 18:09 - 2015-01-16 15:31 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FlyVPN 2015-08-22 18:09 - 2015-01-15 21:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble 2015-08-22 18:09 - 2015-01-04 04:35 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon 2015-08-22 18:09 - 2014-12-09 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CommView 2015-08-22 18:09 - 2014-10-31 15:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2015-08-22 18:09 - 2014-10-26 16:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoiceAttack 2015-08-22 18:09 - 2014-10-23 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Survarium 2015-08-22 18:09 - 2014-10-22 17:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle 2015-08-22 18:09 - 2014-10-11 14:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-22 18:09 - 2014-10-07 21:22 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2015-08-22 18:09 - 2014-09-26 20:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SaltTrial 2015-08-22 18:09 - 2014-08-13 02:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey 2015-08-22 18:09 - 2014-08-02 01:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clownfish 2015-08-22 18:09 - 2014-08-01 16:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2015-08-22 18:09 - 2014-08-01 16:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-08-22 18:09 - 2014-07-30 01:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps 2015-08-22 18:09 - 2014-07-28 03:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2015-08-22 18:09 - 2014-07-23 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph 2015-08-22 18:09 - 2014-07-12 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-08-22 18:09 - 2014-07-08 21:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFP Launcher 2015-08-22 18:09 - 2014-06-24 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elsword_FR 2015-08-22 18:09 - 2014-06-19 13:22 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2015-08-22 18:09 - 2014-06-12 22:04 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2 2015-08-22 18:09 - 2014-05-04 00:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Mouse Auto Clicker 2015-08-22 18:09 - 2014-05-01 22:28 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RIFT 2015-08-22 18:09 - 2014-04-14 18:19 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlagueInc 1.0 2015-08-22 18:09 - 2014-04-09 00:06 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud 2015-08-22 18:09 - 2014-03-25 20:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenshotCaptor 2015-08-22 18:09 - 2014-03-24 12:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YomaTools 2015-08-22 18:09 - 2014-02-25 21:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2015-08-22 18:09 - 2014-02-23 19:38 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WakfuBeta 2015-08-22 18:09 - 2014-02-22 15:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cube World 2015-08-22 18:09 - 2014-02-18 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-08-22 18:09 - 2014-02-12 19:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\crocpopup+ 2015-08-22 18:09 - 2014-02-12 14:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\S4League 2015-08-22 18:09 - 2014-01-31 23:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2015-08-22 18:09 - 2014-01-31 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2015-08-22 18:09 - 2014-01-28 22:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2015-08-22 18:09 - 2014-01-24 14:25 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wakfu 2015-08-22 18:09 - 2014-01-20 20:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-08-22 18:09 - 2014-01-20 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com 2015-08-22 18:09 - 2014-01-20 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dotjosh Studios 2015-08-22 18:09 - 2014-01-18 13:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AeriaGames 2015-08-22 18:09 - 2014-01-15 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Play For Fun 2015-08-22 18:09 - 2014-01-14 18:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.3 2015-08-22 18:09 - 2014-01-13 23:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-08-22 18:09 - 2014-01-13 23:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-22 18:09 - 2014-01-13 22:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR 2015-08-22 18:09 - 2014-01-13 22:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-22 18:09 - 2014-01-12 15:13 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-08-22 18:09 - 2014-01-12 15:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-08-22 18:09 - 2014-01-11 14:49 - 00000000 ____D C:\Program Files\ATI Technologies 2015-08-22 18:09 - 2009-07-14 17:35 - 00000000 __RHD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC 2015-08-22 18:09 - 2009-07-14 17:35 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-08-22 18:09 - 2009-07-14 07:37 - 00000000 ____D C:\Windows\DigitalLocker 2015-08-22 18:09 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-08-22 18:09 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games 2015-08-22 18:09 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-22 18:09 - 2009-07-14 05:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-08-22 18:09 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Recovery 2015-08-22 18:09 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2015-08-22 15:11 - 2015-06-17 16:33 - 00000000 ____D C:\Program Files (x86)\softutiful 2015-08-21 23:15 - 2014-02-12 14:17 - 00000000 ____D C:\Program Files (x86)\S4League 2015-08-21 23:12 - 2015-07-15 23:37 - 00000000 ____D C:\ProgramData\Avira 2015-08-21 23:12 - 2015-07-15 23:37 - 00000000 ____D C:\Program Files (x86)\Avira 2015-08-21 22:50 - 2014-03-16 11:46 - 00000000 ____D C:\Temp 2015-08-21 19:14 - 2014-01-13 22:14 - 00000000 ____D C:\AMD 2015-08-19 21:03 - 2015-03-24 22:02 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\o8GNIbk 2015-08-19 17:39 - 2015-07-23 05:58 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\7F8rl5t 2015-08-19 17:21 - 2015-01-17 19:05 - 00000000 ____D C:\Users\Youndes\Desktop\All 2015-08-19 17:21 - 2014-11-05 19:23 - 04730416 _____ () C:\Users\Youndes\Desktop\TechnicLauncher.exe 2015-08-19 17:21 - 2014-01-31 23:12 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\.technic 2015-08-15 02:09 - 2014-07-23 21:51 - 00000000 ____D C:\Users\Youndes\AppData\Local\Glyph 2015-08-14 18:57 - 2015-03-11 01:00 - 00000000 ____D C:\Users\Youndes\Desktop\Song 2015-08-14 17:44 - 2014-07-23 21:51 - 00000000 ____D C:\Program Files (x86)\Glyph 2015-08-14 15:39 - 2014-01-13 22:58 - 00000000 ____D C:\ProgramData\Skype 2015-08-10 03:12 - 2014-08-01 16:33 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-08-10 03:12 - 2014-07-30 01:09 - 00000000 ____D C:\Fraps 2015-08-10 03:12 - 2014-04-14 18:19 - 00000000 ____D C:\Games 2015-08-10 03:12 - 2014-02-22 15:10 - 00000000 ____D C:\Program Files (x86)\Cube World 2015-08-08 09:33 - 2015-04-26 14:49 - 00000000 ____D C:\Blade and Soul Game 2015-08-08 09:16 - 2014-01-14 01:21 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-08-08 09:14 - 2014-01-11 18:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-08 09:13 - 2015-07-12 02:05 - 00000000 ____D C:\Program Files (x86)\Thief 2015-08-08 07:35 - 2015-07-23 05:58 - 00003436 _____ C:\Windows\System32\Tasks\H95yLB9Qd3WwJfP 2015-08-08 07:35 - 2015-07-23 05:58 - 00003396 _____ C:\Windows\System32\Tasks\gVqay3UeOmlaypu 2015-08-08 07:35 - 2015-06-21 01:58 - 00004176 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-08-08 07:35 - 2015-06-21 01:58 - 00003924 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-08-08 07:35 - 2015-03-24 22:02 - 00003394 _____ C:\Windows\System32\Tasks\bDQeOyr1idOV5Oj 2015-08-08 07:35 - 2014-12-09 23:42 - 00003892 _____ C:\Windows\System32\Tasks\CommView Update 2015-08-08 07:35 - 2014-10-22 16:56 - 00003540 _____ C:\Windows\System32\Tasks\SidebarExecute 2015-08-08 07:35 - 2014-07-30 01:09 - 00003340 _____ C:\Windows\System32\Tasks\WIN-fIGbfFfEGCfFGEGbfCfE 2015-08-08 07:35 - 2014-07-04 11:21 - 00003340 _____ C:\Windows\System32\Tasks\WIN-fdfEfEfAfC 2015-08-08 07:35 - 2014-07-01 01:29 - 00003462 _____ C:\Windows\System32\Tasks\WIN-statsAdmin 2015-08-08 07:35 - 2014-07-01 01:29 - 00003392 _____ C:\Windows\System32\Tasks\WIN-statsSystem 2015-08-08 07:35 - 2014-03-22 00:34 - 00002886 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-08-08 07:35 - 2014-02-18 15:46 - 00003612 _____ C:\Windows\System32\Tasks\AllmyappsUpdateTask 2015-08-08 07:35 - 2014-02-11 22:34 - 00004050 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-08-08 07:35 - 2014-02-01 03:30 - 00002922 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2015-08-08 07:35 - 2014-01-20 21:47 - 00003296 _____ C:\Windows\System32\Tasks\{0DD0811D-AAF5-4C60-96D3-D4C80593EADA} 2015-08-08 07:35 - 2014-01-13 21:37 - 00002698 _____ C:\Windows\System32\Tasks\RtlDashSrvStart 2015-08-08 07:35 - 2014-01-13 20:15 - 00023820 _____ C:\Windows\system32\emptyregdb.dat 2015-08-08 07:35 - 2014-01-12 15:29 - 00010449 _____ C:\Windows\diagerr.xml 2015-08-08 07:35 - 2014-01-12 15:29 - 00009528 _____ C:\Windows\diagwrn.xml 2015-08-08 07:35 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Registration 2015-08-08 07:16 - 2015-07-15 23:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-08 07:16 - 2015-04-26 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade and Soul 2015-08-08 07:16 - 2015-02-07 12:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta 2015-08-08 06:43 - 2014-01-13 21:34 - 00008192 __RSH C:\BOOTSECT.BAK 2015-08-08 05:33 - 2014-01-13 20:04 - 00000000 ____D C:\Windows\Panther 2015-08-07 17:25 - 2015-07-17 21:48 - 02248704 _____ C:\Users\Youndes\Downloads\adwcleaner_4.208.exe 2015-08-07 17:25 - 2015-05-25 21:35 - 01069568 _____ C:\Users\Youndes\Downloads\Skinchanger.exe 2015-08-06 11:58 - 2015-02-22 20:49 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2015-08-06 11:58 - 2015-02-08 05:25 - 00000000 ____D C:\Program Files (x86)\Evaer 2015-08-06 11:58 - 2015-01-04 16:17 - 00000000 ____D C:\Program Files (x86)\BandiMPEG1 2015-08-06 11:58 - 2014-12-09 23:42 - 00000000 ____D C:\Program Files (x86)\CommView 2015-08-06 11:58 - 2014-08-13 02:54 - 00000000 ____D C:\Program Files (x86)\AutoHotkey 2015-08-06 11:58 - 2014-02-12 19:28 - 00000000 ____D C:\Program Files (x86)\crocpopup+ 2015-08-06 11:57 - 2014-10-07 21:21 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4 2015-08-06 11:57 - 2014-08-13 16:36 - 00000000 ____D C:\Program Files (x86)\LOLReplay 2015-08-06 11:57 - 2014-02-25 22:54 - 00000000 ____D C:\Program Files (x86)\GameforgeLive 2015-08-06 11:55 - 2014-03-25 20:46 - 00000000 ____D C:\Program Files (x86)\ScreenshotCaptor 2015-08-06 11:53 - 2014-01-13 22:40 - 00000000 ____D C:\Program Files\ma-config.com 2015-08-06 11:53 - 2014-01-12 15:13 - 00000000 ____D C:\Program Files\WinRAR 2015-08-06 02:29 - 2014-06-24 21:03 - 00004096 ___SH C:\Users\Youndes\Thumbs.db 2015-08-04 15:39 - 2015-06-22 17:26 - 00000024 _____ C:\Users\Youndes\AppData\Roaming\appdataFr25.bin 2015-08-03 15:40 - 2009-07-14 07:08 - 00032496 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-08-03 12:12 - 2014-02-10 18:39 - 00033856 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys 2015-08-03 00:50 - 2014-10-11 14:35 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-08-03 00:23 - 2015-07-19 01:57 - 00000000 ____D C:\Users\Youndes\AppData\Local\gtk-2.0 2015-08-03 00:23 - 2015-07-19 01:56 - 00000000 ____D C:\Users\Youndes\.gimp-2.8 2015-07-30 05:00 - 2014-08-01 16:27 - 00000000 ____D C:\Users\Youndes\AppData\Local\Battle.net 2015-07-29 16:13 - 2014-01-13 21:34 - 00000000 ____D C:\Users\Youndes\AppData\Local\Google 2015-07-29 03:00 - 2014-05-07 00:21 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-25 04:16 - 2015-07-22 17:24 - 00000000 ____D C:\Users\Youndes\AppData\Roaming\C8E3432D-5A04-456F-8783-548A895BF23C 2015-07-25 03:00 - 2014-02-11 22:34 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-25 03:00 - 2014-01-29 21:30 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl ==================== Fichiers à la racine de certains dossiers ======= 2014-02-12 02:13 - 2014-02-12 03:18 - 1213405855 _____ (InstallShield Software Corporation) C:\Program Files (x86)\S4_League.exe 2015-06-22 17:26 - 2015-08-04 15:39 - 0000024 _____ () C:\Users\Youndes\AppData\Roaming\appdataFr25.bin 2014-03-04 19:35 - 2014-12-19 02:24 - 0000294 _____ () C:\Users\Youndes\AppData\Roaming\BreakingPoint_Login.ini 2014-09-13 02:25 - 2014-12-19 16:25 - 0001407 _____ () C:\Users\Youndes\AppData\Roaming\BreakingPoint_Options.ini 2014-03-16 11:47 - 2014-03-16 11:47 - 0059978 _____ () C:\Users\Youndes\AppData\Roaming\icarus-dxdiag.xml 2014-06-03 12:48 - 2014-06-04 19:15 - 0000099 _____ () C:\Users\Youndes\AppData\Roaming\LauncherSettings_live.cfg 2014-06-03 12:38 - 2014-06-03 12:38 - 0008149 _____ () C:\Users\Youndes\AppData\Roaming\TheHunterSettings_live.bin 2014-06-03 12:36 - 2014-06-03 12:36 - 0000040 _____ () C:\Users\Youndes\AppData\Roaming\TheHunterSettings_steam_live.cfg 2014-01-13 22:34 - 2015-08-23 03:53 - 0000295 _____ () C:\Users\Youndes\AppData\Roaming\WB.CFG 2014-10-01 17:00 - 2014-10-01 17:00 - 0001520 _____ () C:\Users\Youndes\AppData\Roaming\~jvqnfxh.xml 2014-03-25 20:46 - 2014-03-25 20:46 - 0000058 _____ () C:\Users\Youndes\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat 2014-12-02 14:09 - 2014-12-17 01:09 - 0000001 _____ () C:\Users\Youndes\AppData\Local\DSI.DAT 2014-04-09 00:15 - 2014-04-09 00:15 - 0000095 _____ () C:\Users\Youndes\AppData\Local\fusioncache.dat 2014-11-22 17:53 - 2014-12-21 17:53 - 0000041 _____ () C:\Users\Youndes\AppData\Local\recently-fix.db 2015-08-03 00:23 - 2015-08-03 00:23 - 0004721 _____ () C:\Users\Youndes\AppData\Local\recently-used.xbel 2014-06-29 21:40 - 2014-06-29 21:40 - 0000017 _____ () C:\Users\Youndes\AppData\Local\resmon.resmoncfg 2014-03-10 18:37 - 2014-03-10 18:37 - 0000000 _____ () C:\Users\Youndes\AppData\Local\{9A0E9DD2-1AC9-4699-AF66-53CA6C927B0E} ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le MD5 est légitime C:\Windows\system32\wininit.exe => Le MD5 est légitime C:\Windows\SysWOW64\wininit.exe => Le MD5 est légitime C:\Windows\explorer.exe => Le MD5 est légitime C:\Windows\SysWOW64\explorer.exe => Le MD5 est légitime C:\Windows\system32\svchost.exe => Le MD5 est légitime C:\Windows\SysWOW64\svchost.exe => Le MD5 est légitime C:\Windows\system32\services.exe => Le MD5 est légitime C:\Windows\system32\User32.dll => Le MD5 est légitime C:\Windows\SysWOW64\User32.dll => Le MD5 est légitime C:\Windows\system32\userinit.exe => Le MD5 est légitime C:\Windows\SysWOW64\userinit.exe => Le MD5 est légitime C:\Windows\system32\rpcss.dll => Le MD5 est légitime C:\Windows\system32\dnsapi.dll => Le MD5 est légitime C:\Windows\SysWOW64\dnsapi.dll => Le MD5 est légitime C:\Windows\system32\Drivers\volsnap.sys => Le MD5 est légitime LastRegBack: 2015-08-23 12:54 ==================== Fin de journal ============================