Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:27-02-2016 Exécuté par Feten Lakhal (administrateur) sur HP (27-02-2016 19:35:47) Exécuté depuis C:\Users\Feten Lakhal\Desktop Profils chargés: Feten Lakhal (Profils disponibles: Feten Lakhal) Platform: Windows 8.1 Single Language (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe () C:\ProgramData\MobileBrServ\mbbService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe () C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ui\updateui.exe (oDesk Corporation) C:\Program Files (x86)\oDesk\oDeskTeam.exe (oDesk Corporation) C:\Program Files (x86)\oDesk\oDeskHelper.exe (Screencast-O-Matic) C:\Program Files (x86)\Screencast-O-Matic\v2\Screencast-O-Matic.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7642328 2014-10-07] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2473800 2014-09-09] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2818800 2014-06-17] (Synaptics Incorporated) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7139768 2016-02-18] (AVAST Software) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [25122080 2016-02-16] (Dropbox, Inc.) HKU\S-1-5-21-4038875778-605309327-2986017949-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50599552 2016-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-4038875778-605309327-2986017949-1002\...\Run: [oDesk Team] => C:\Program Files (x86)\oDesk\oDeskTeam.exe [366808 2016-02-16] (oDesk Corporation) HKU\S-1-5-21-4038875778-605309327-2986017949-1002\...\MountPoints2: {a2d2dd8c-d1c3-11e5-827c-38b1dbf3f210} - "G:\AutoRun.exe" HKU\S-1-5-21-4038875778-605309327-2986017949-1002\...\MountPoints2: {a2d2dd90-d1c3-11e5-827c-38b1dbf3f210} - "F:\AutoRun.exe" ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-02-12] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.33.dll [2016-02-16] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass IE RunOnce.lnk [2016-02-15] ShortcutTarget: Install LastPass IE RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe () ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 193.95.57.20 193.95.59.20 Tcpip\..\Interfaces\{0D437F2E-1B47-4EFD-91E7-3EDC6F27AC6E}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{1F9F3E42-5917-4634-8DA3-847C4639861B}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{58D6142C-8EBE-4719-BE79-A29C60400C3C}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{5E6B6DB3-FB56-427E-A754-624C1954AC9D}: [DhcpNameServer] 193.95.57.20 193.95.59.20 Tcpip\..\Interfaces\{786110EB-24FF-43E3-9C70-F7DCF6F36A60}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{C3916BBC-C68E-4C7A-8BE6-7F689F326627}: [DhcpNameServer] 40.20.1.201 40.20.1.202 Tcpip\..\Interfaces\{D675269C-D599-4D01-8174-95F4220AEF53}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{DB20B6E9-C2FD-441A-9059-6C3515F40EAC}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{E3678E2C-41EF-4F5A-A742-098B36841A32}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{F827ED93-74F4-4206-87C2-47AD39918514}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp13.msn.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp13.msn.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp13.msn.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp13.msn.com HKU\S-1-5-21-4038875778-605309327-2986017949-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp13.msn.com HKU\S-1-5-21-4038875778-605309327-2986017949-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp13.msn.com SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {6E85BBED-41D5-43CA-A652-327234A0C53F} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-4038875778-605309327-2986017949-1002 -> {6E85BBED-41D5-43CA-A652-327234A0C53F} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-12] (AVAST Software) BHO: Pas de nom -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> Pas de fichier BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-12] (AVAST Software) BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-02-15] (LastPass) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company) Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-02-15] (LastPass) FireFox: ======== FF ProfilePath: C:\Users\Feten Lakhal\AppData\Roaming\Mozilla\Firefox\Profiles\x4loh773.default FF Session Restore: -> est activé. FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-27] () FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass.dll [2016-02-15] (LastPass) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-27] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll [2013-09-05] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass.dll [2016-02-15] (LastPass) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Extension: LastPass - C:\Users\Feten Lakhal\AppData\Roaming\Mozilla\Firefox\Profiles\x4loh773.default\extensions\support@lastpass.com [2016-02-27] FF Extension: Adblock Plus - C:\Users\Feten Lakhal\AppData\Roaming\Mozilla\Firefox\Profiles\x4loh773.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-27] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-02-12] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-02-12] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF Chrome: ======= CHR HomePage: Default -> hxxp://www.key-find.com/?type=hp&ts=1424294987&from=cor&uid=WDCXWD3200BEKT-60V5T1_WD-WX80AA9N0174N0174 CHR StartupUrls: Default -> "hxxp://www.key-find.com/?type=hp&ts=1424294987&from=cor&uid=WDCXWD3200BEKT-60V5T1_WD-WX80AA9N0174N0174","hxxp://www.key-find.com/?type=hppp&ts=1424295044&from=cor&uid=WDCXWD3200BEKT-60V5T1_WD-WX80AA9N0174N0174","hxxp://www.omniboxes.com/?type=hp&ts=1424420899&from=obw&uid=WDCXWD3200BEKT-60V5T1_WD-WX80AA9N0174N0174" CHR Session Restore: Default -> est activé. CHR Profile: C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-26] CHR Extension: (Google Docs) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-26] CHR Extension: (Google Drive) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-26] CHR Extension: (WOT: Web of Trust, Website Reputation Ratings) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2016-02-26] CHR Extension: (YouTube) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-26] CHR Extension: (Recherche Google) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-26] CHR Extension: (Google Sheets) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-26] CHR Extension: (Google Docs hors connexion) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-26] CHR Extension: (AdBlock) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-02-26] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2016-02-26] CHR Extension: (Page Ruler) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpkojjdgbllmedoapgfodplfhcbnbpn [2016-02-26] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-26] CHR Extension: (Gmail) - C:\Users\Feten Lakhal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-26] CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-02-12] CHR HKLM-x32\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [237096 2016-02-12] (AVAST Software) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-13] (Broadcom Corporation.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-02-16] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-02-16] (Dropbox, Inc.) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-06-25] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328296 2014-10-07] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-09-03] (Intel Corporation) R3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-04-09] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit) R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [239184 2013-01-28] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-09-09] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19438920 2014-09-09] (NVIDIA Corporation) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [Fichier non signé] R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [292568 2014-09-04] (Realtek Semiconductor) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [191728 2014-06-17] (Synaptics Incorporated) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-11-03] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-11-03] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-02-12] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-02-12] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-02-12] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-02-12] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1065720 2016-02-12] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [463744 2016-02-24] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [165344 2016-02-12] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287016 2016-02-12] (AVAST Software) R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-13] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7532760 2014-11-02] (Broadcom Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-02-24] (Disc Soft Ltd) S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-02-24] (Disc Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-02-27] (REALiX(tm)) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-09-09] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation) S3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [506072 2014-06-20] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2014-06-17] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-06-17] (Synaptics Incorporated) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2014-11-03] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [257880 2014-11-03] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-11-03] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-02-27 19:35 - 2016-02-27 19:36 - 00025040 _____ C:\Users\Feten Lakhal\Desktop\FRST.txt 2016-02-27 19:35 - 2016-02-27 19:35 - 02371072 _____ (Farbar) C:\Users\Feten Lakhal\Desktop\FRST64.exe 2016-02-27 19:35 - 2016-02-27 19:35 - 00000000 ____D C:\FRST 2016-02-27 17:09 - 2016-02-27 17:09 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Macromedia 2016-02-27 17:09 - 2016-02-27 17:09 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Macromedia 2016-02-27 17:08 - 2016-02-27 17:08 - 00000030 _____ C:\AVScanner.ini 2016-02-27 17:06 - 2016-02-27 17:08 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Adobe 2016-02-27 12:28 - 2016-02-27 12:32 - 21405208 _____ (LastPass) C:\Users\Feten Lakhal\Downloads\lastpass_x64.exe 2016-02-27 12:21 - 2016-02-27 12:21 - 00001178 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-02-27 12:21 - 2016-02-27 12:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-02-27 12:21 - 2016-02-27 12:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-02-27 12:14 - 2016-02-27 12:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-02-27 00:29 - 2016-02-27 00:29 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS 2016-02-27 00:29 - 2016-02-27 00:29 - 00002876 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Feten Lakhal) 2016-02-27 00:28 - 2016-02-27 12:30 - 00000000 ____D C:\ProgramData\ProductData 2016-02-27 00:28 - 2016-02-27 11:22 - 00002412 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_Feten_Lakhal 2016-02-27 00:28 - 2016-02-27 11:22 - 00000298 _____ C:\Windows\Tasks\Uninstaller_SkipUac_Feten_Lakhal.job 2016-02-27 00:28 - 2016-02-27 00:29 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\ProductData 2016-02-27 00:28 - 2016-02-27 00:29 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\IObit 2016-02-27 00:28 - 2016-02-27 00:28 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2016-02-27 00:28 - 2016-02-27 00:28 - 00000000 ____D C:\Users\Feten Lakhal\AppData\LocalLow\IObit 2016-02-27 00:28 - 2016-02-27 00:28 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} 2016-02-27 00:27 - 2016-02-27 11:23 - 00000000 ____D C:\Program Files (x86)\IObit 2016-02-27 00:27 - 2016-02-27 11:22 - 00000000 ____D C:\ProgramData\IObit 2016-02-27 00:25 - 2016-02-27 00:27 - 41171496 _____ (IObit ) C:\Users\Feten Lakhal\Downloads\advanced-systemcare-setup.exe 2016-02-26 20:45 - 2016-02-26 21:34 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Mozilla 2016-02-26 20:45 - 2016-02-26 21:30 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Mozilla 2016-02-26 19:11 - 2016-02-26 19:13 - 43155464 _____ C:\Users\Feten Lakhal\Downloads\Firefox Setup 44.0.2.exe 2016-02-26 14:58 - 2016-02-26 14:58 - 00023450 _____ C:\Users\Feten Lakhal\Documents\favoris_26_02_2016.html 2016-02-26 12:11 - 2016-02-26 12:11 - 01576549 _____ C:\Users\Feten Lakhal\Downloads\BELLILA 1 (4).zip 2016-02-26 12:08 - 2016-02-26 12:08 - 07328844 _____ C:\Users\Feten Lakhal\Downloads\BELLILA 1 (3).zip 2016-02-26 11:56 - 2016-02-26 16:22 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2016-02-26 11:55 - 2016-02-26 11:55 - 03521467 _____ (Nicolas Coolman ) C:\Users\Feten Lakhal\Downloads\ZHPFix.exe 2016-02-26 11:32 - 2016-02-26 11:32 - 03128311 _____ C:\Users\Feten Lakhal\Downloads\documents-export-2016-02-26.zip 2016-02-26 11:09 - 2016-02-27 00:17 - 00000210 _____ C:\Users\Feten 2016-02-26 11:06 - 2016-02-26 11:07 - 02105344 _____ C:\Users\Feten Lakhal\Downloads\ZHPDiag3 (1).exe 2016-02-26 10:45 - 2016-02-27 00:17 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\ZHP 2016-02-26 10:45 - 2016-02-26 11:07 - 00001816 _____ C:\Users\Feten Lakhal\ZHPDiag3.exe 2016-02-26 10:44 - 2016-02-26 10:44 - 02105344 _____ C:\Users\Feten Lakhal\Downloads\ZHPDiag3.exe 2016-02-25 22:40 - 2016-02-25 22:46 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\PlutoTV 2016-02-25 22:40 - 2016-02-25 22:46 - 00000000 ____D C:\Program Files (x86)\Pluto TV 2016-02-25 22:29 - 2016-02-26 23:27 - 00000000 ____D C:\ProgramData\Freemake 2016-02-25 22:29 - 2016-02-25 22:30 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Freemake 2016-02-25 22:24 - 2016-02-25 22:34 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Audacity 2016-02-25 22:20 - 2016-02-25 22:28 - 30954528 _____ (Ellora Assets Corporation ) C:\Users\Feten Lakhal\Downloads\FreemakeVideoConverterFull.exe 2016-02-25 13:07 - 2016-02-25 13:07 - 01399951 _____ C:\Users\Feten Lakhal\Downloads\BELLILA 1 (2).zip 2016-02-25 12:36 - 2016-02-25 12:36 - 01176017 _____ C:\Users\Feten Lakhal\Downloads\BELLILA 1 (1).zip 2016-02-24 21:24 - 2014-10-19 15:54 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2016-02-24 21:17 - 2016-02-27 00:15 - 00000000 ____D C:\Program Files (x86)\The Sims 4 2016-02-24 21:17 - 2016-02-24 21:17 - 00047672 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtliteusbbus.sys 2016-02-24 21:10 - 2016-02-24 21:10 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images 2016-02-24 21:08 - 2016-02-24 21:17 - 00030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys 2016-02-24 21:08 - 2016-02-24 21:17 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\DAEMON Tools Lite 2016-02-24 21:08 - 2016-02-24 21:08 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2016-02-24 21:05 - 2016-02-24 21:05 - 01709792 _____ (Disc Soft Ltd.) C:\Users\Feten Lakhal\Downloads\daemon-tools-lite_10-2-0-0112_fr_10729.exe 2016-02-24 15:21 - 2016-02-24 15:21 - 01170370 _____ C:\Users\Feten Lakhal\Downloads\BELLILA 1.zip 2016-02-24 11:37 - 2016-02-24 11:38 - 00447807 _____ C:\Users\Feten Lakhal\Downloads\Journal alimentaire.zip 2016-02-24 04:48 - 2016-02-24 04:52 - 947912707 _____ C:\Users\Feten Lakhal\Downloads\TSms04rl.part1.rar 2016-02-24 03:51 - 2016-02-24 03:54 - 4204008235 _____ C:\Users\Feten Lakhal\Downloads\TSms04rl.part2.rar 2016-02-23 22:29 - 2016-02-27 17:13 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\CrashDumps 2016-02-23 21:26 - 2016-02-23 21:33 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Origin 2016-02-23 21:19 - 2016-02-23 21:20 - 31335272 _____ (Electronic Arts, Inc.) C:\Users\Feten Lakhal\Downloads\OriginThinSetup.exe 2016-02-23 21:18 - 2016-02-27 00:33 - 00000000 ____D C:\ProgramData\Origin 2016-02-23 15:13 - 2016-02-23 15:13 - 01371839 _____ C:\Users\Feten Lakhal\Downloads\ALPACHURA (1).zip 2016-02-23 15:07 - 2016-02-23 15:07 - 01668984 _____ C:\Users\Feten Lakhal\Downloads\documents-export-2016-02-23.zip 2016-02-22 18:21 - 2016-02-22 18:21 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Avatar 2016-02-22 16:40 - 2016-02-22 16:40 - 00000000 ____D C:\Program Files (x86)\Foxit Software 2016-02-22 16:33 - 2016-02-22 16:33 - 00001213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Doxillion - Convertisseur de documents.lnk 2016-02-22 16:31 - 2016-02-22 16:31 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\NCH Software 2016-02-22 12:17 - 2016-02-22 12:17 - 00948155 _____ C:\Users\Feten Lakhal\Downloads\ALPACHURA.zip 2016-02-22 11:30 - 2016-02-22 11:30 - 00488745 _____ C:\Users\Feten Lakhal\Downloads\EVELYNE MARY.zip 2016-02-22 09:07 - 2016-02-22 09:08 - 35075259 _____ C:\Users\Feten Lakhal\Downloads\documents-export-2016-02-22.zip 2016-02-20 11:18 - 2016-02-20 11:18 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Screencast-O-Matic 2016-02-20 11:17 - 2016-02-27 17:06 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Screencast-O-Matic-v2 2016-02-20 11:15 - 2016-02-20 11:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screencast-O-Matic v2.0 2016-02-20 11:15 - 2016-02-20 11:15 - 00000000 ____D C:\Program Files (x86)\Screencast-O-Matic 2016-02-20 11:12 - 2016-02-20 11:13 - 17956136 _____ C:\Users\Feten Lakhal\Downloads\InstallScreencastOMatic-2.0.exe 2016-02-19 10:09 - 2016-02-19 10:09 - 00629128 _____ C:\Users\Feten Lakhal\Downloads\Untitled design (1).zip 2016-02-19 09:50 - 2016-02-19 09:50 - 00395270 _____ C:\Users\Feten Lakhal\Downloads\Untitled design.zip 2016-02-18 11:40 - 2016-02-18 11:40 - 00129120 _____ C:\Users\Feten Lakhal\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-17 17:12 - 2016-02-17 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-02-17 15:11 - 2016-02-17 15:12 - 01330639 _____ C:\Users\Feten Lakhal\Downloads\iconic-navigation.1.1.6.zip 2016-02-17 15:03 - 2016-02-17 15:04 - 00525907 _____ C:\Users\Feten Lakhal\Downloads\font-awesome-4-menus.zip 2016-02-16 12:15 - 2016-02-16 12:16 - 03354370 _____ C:\Users\Feten Lakhal\Downloads\PS_couverture vidéo.zip 2016-02-16 12:02 - 2016-02-16 12:02 - 00025383 _____ C:\Users\Feten Lakhal\Downloads\Ok mise en ligne.zip 2016-02-16 11:52 - 2016-02-16 11:52 - 00451266 _____ C:\Users\Feten Lakhal\Downloads\7clés_conclusion_résumé long.pdf 2016-02-16 10:58 - 2016-02-16 10:58 - 00026280 _____ C:\Users\Feten Lakhal\Downloads\architects_daughter.zip 2016-02-16 10:48 - 2016-02-16 10:48 - 00029390 _____ C:\Users\Feten Lakhal\Downloads\architects-daughter.zip 2016-02-16 10:15 - 2016-02-26 08:43 - 00000000 ___RD C:\Users\Feten Lakhal\Dropbox 2016-02-16 09:53 - 2016-02-27 18:58 - 00001204 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2016-02-16 09:53 - 2016-02-27 12:07 - 00001200 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2016-02-16 09:53 - 2016-02-16 09:53 - 00004176 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA 2016-02-16 09:53 - 2016-02-16 09:53 - 00003940 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore 2016-02-16 09:52 - 2016-02-16 09:52 - 00690072 _____ (Dropbox, Inc.) C:\Users\Feten Lakhal\Downloads\DropboxInstaller.exe 2016-02-16 09:52 - 2016-02-16 09:52 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Dropbox 2016-02-16 09:52 - 2016-02-16 09:52 - 00000000 ____D C:\ProgramData\Dropbox 2016-02-16 09:43 - 2016-02-16 09:46 - 00000000 ____D C:\Users\Feten Lakhal\Documents\CyberLink 2016-02-16 09:41 - 2016-02-16 09:42 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\CyberLink 2016-02-16 09:34 - 2016-02-26 08:43 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Dropbox 2016-02-16 09:32 - 2016-02-16 10:23 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\DropboxOEM 2016-02-16 09:18 - 2016-02-16 09:33 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\oDesk 2016-02-16 09:18 - 2016-02-16 09:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\oDesk 2016-02-16 09:18 - 2016-02-16 09:18 - 00000000 ____D C:\Program Files (x86)\oDesk 2016-02-16 08:24 - 2016-02-16 08:24 - 00000000 ____D C:\Users\Feten Lakhal\Tracing 2016-02-16 08:18 - 2016-02-27 19:25 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Skype 2016-02-16 08:18 - 2016-02-16 08:18 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-02-16 08:18 - 2016-02-16 08:18 - 00000000 ____D C:\ProgramData\Skype 2016-02-16 08:18 - 2016-02-16 08:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-02-16 08:13 - 2016-02-16 08:13 - 01503872 _____ (Skype Technologies S.A.) C:\Users\Feten Lakhal\Downloads\SkypeSetup.exe 2016-02-16 08:11 - 2016-02-16 08:11 - 00003262 _____ C:\Windows\System32\Tasks\{0D2D1A58-227C-4BF6-8FB2-9F9C7EFC113C} 2016-02-16 08:09 - 2016-02-27 12:08 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Youcam 2016-02-15 15:16 - 2016-02-15 15:17 - 00000000 ____D C:\ProgramData\MobileBrServ 2016-02-15 14:36 - 2016-02-15 14:36 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\DropboxOEM 2016-02-15 12:50 - 2016-02-27 17:14 - 00000000 ____D C:\Users\Feten Lakhal\AppData\LocalLow\LastPass 2016-02-15 12:50 - 2016-02-27 16:56 - 00000000 ____D C:\Program Files (x86)\LastPass 2016-02-15 12:50 - 2016-02-22 17:03 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Foxit Software 2016-02-15 12:50 - 2016-02-15 12:50 - 00002236 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink WaveEditor 2.lnk 2016-02-15 12:50 - 2016-02-15 12:50 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass 2016-02-15 12:50 - 2016-02-15 12:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass 2016-02-15 12:49 - 2016-02-15 12:49 - 00000000 ____D C:\ProgramData\SmartSound Software Inc 2016-02-15 12:49 - 2016-02-15 12:49 - 00000000 ____D C:\ProgramData\eSellerate 2016-02-15 12:49 - 2016-02-15 12:49 - 00000000 ____D C:\Program Files (x86)\SmartSound Software 2016-02-15 12:48 - 2016-02-22 16:33 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software 2016-02-15 12:48 - 2016-02-22 16:33 - 00000000 ____D C:\ProgramData\NCH Software 2016-02-15 12:48 - 2016-02-22 16:33 - 00000000 ____D C:\Program Files (x86)\NCH Software 2016-02-15 12:48 - 2016-02-15 12:48 - 00001223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pixillion - Convertisseur de fichiers image.lnk 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\WinRAR 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\proDAD 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Users\Feten Lakhal\AppData\LocalLow\Apple Computer 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\ProgramData\proDAD 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Program Files\proDAD 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Program Files\NewBlue 2016-02-15 12:48 - 2016-02-15 12:48 - 00000000 ____D C:\Program Files\Common Files\NewBlue 2016-02-15 12:48 - 2015-11-11 12:30 - 00607256 _____ (proDAD GmbH) C:\Windows\system32\prodad-codec.dll 2016-02-15 12:48 - 2015-11-11 12:30 - 00376344 _____ (proDAD GmbH) C:\Windows\system32\proDAD-PA-Support.dll 2016-02-15 12:47 - 2016-02-15 12:50 - 00000000 ____D C:\Program Files (x86)\NSIS Uninstall Information 2016-02-15 12:47 - 2016-02-15 12:47 - 00002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Screen Recorder.lnk 2016-02-15 12:47 - 2016-02-15 12:47 - 00002043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 14 (64-bit).lnk 2016-02-15 12:47 - 2016-02-15 12:47 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Upwork 2016-02-15 12:47 - 2016-02-15 12:47 - 00000000 ____D C:\Program Files (x86)\NewBlue 2016-02-15 12:46 - 2016-02-15 12:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Upwork 2016-02-15 12:46 - 2016-02-15 12:46 - 00000000 ____D C:\Program Files (x86)\Upwork 2016-02-15 12:45 - 2016-02-15 12:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 2016-02-15 12:45 - 2016-02-15 12:45 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2016-02-15 12:45 - 2016-02-15 12:45 - 00000000 ____D C:\Program Files (x86)\PhotoFiltre 2016-02-15 12:44 - 2016-02-15 12:44 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-02-15 12:44 - 2016-02-15 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-02-15 12:44 - 2016-02-15 12:44 - 00000000 ____D C:\Program Files (x86)\WinRAR 2016-02-15 12:40 - 2016-02-26 23:27 - 00000000 ____D C:\Program Files (x86)\Freemake 2016-02-15 12:40 - 2016-02-20 11:12 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Screencast-O-Matic 2016-02-15 12:40 - 2016-02-15 12:50 - 00000000 ____D C:\ProgramData\SUPPORTDIR 2016-02-15 12:40 - 2016-02-15 12:40 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Screencast-O-Matic 2016-02-15 12:40 - 2016-02-15 12:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2016-02-15 12:40 - 2016-02-15 12:40 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2016-02-15 12:38 - 2016-02-15 12:38 - 00001038 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2016-02-15 12:38 - 2016-02-15 12:38 - 00000000 ____D C:\Program Files (x86)\Audacity 2016-02-15 11:23 - 2016-02-15 12:52 - 00000000 ____D C:\Users\Feten Lakhal\Documents\JOB 2016-02-15 11:17 - 2016-02-15 13:06 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Safouene 2016-02-15 11:17 - 2016-02-15 13:04 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Logiciel 2016-02-15 11:16 - 2016-02-26 16:15 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Histoire 2016-02-15 11:16 - 2016-02-15 13:06 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Malek 2016-02-15 11:16 - 2016-02-15 13:02 - 00000000 ____D C:\Users\Feten Lakhal\Documents\Livre 2016-02-15 11:16 - 2016-02-15 12:51 - 00000000 ____D C:\Users\Feten Lakhal\Documents\emploi 2016-02-14 20:29 - 2016-02-27 10:07 - 00003194 _____ C:\Windows\System32\Tasks\HPCeeScheduleForFeten Lakhal 2016-02-14 20:29 - 2016-02-27 10:07 - 00000366 _____ C:\Windows\Tasks\HPCeeScheduleForFeten Lakhal.job 2016-02-14 20:21 - 2016-02-14 20:21 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Hewlett-Packard 2016-02-12 22:43 - 2016-02-12 22:43 - 00000000 ____D C:\Program Files\Google 2016-02-12 22:42 - 2016-02-12 22:37 - 00398152 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-02-12 22:40 - 2016-02-12 22:41 - 05271264 _____ (Husdawg, LLC) C:\Users\Feten Lakhal\Downloads\Detection.exe 2016-02-12 22:38 - 2016-02-12 22:38 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\AVAST Software 2016-02-12 22:38 - 2016-02-12 22:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2016-02-12 22:37 - 2016-02-24 22:44 - 00463744 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2016-02-12 22:37 - 2016-02-12 22:44 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-02-12 22:37 - 2016-02-12 22:38 - 00287016 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00463744 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1456350248406 2016-02-12 22:37 - 2016-02-12 22:37 - 00165344 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00107792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-02-12 22:37 - 2016-02-12 22:37 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-02-12 22:37 - 2016-02-12 22:37 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2016-02-12 22:37 - 2016-02-12 22:36 - 01065720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2016-02-12 22:33 - 2016-02-12 22:33 - 00000000 __SHD C:\Users\Feten Lakhal\AppData\LocalLow\EmieUserList 2016-02-12 22:33 - 2016-02-12 22:33 - 00000000 __SHD C:\Users\Feten Lakhal\AppData\Local\EmieUserList 2016-02-12 22:33 - 2016-02-12 22:33 - 00000000 __SHD C:\Users\Feten Lakhal\AppData\Local\EmieSiteList 2016-02-12 22:32 - 2016-02-12 22:33 - 00000000 __SHD C:\Users\Feten Lakhal\AppData\LocalLow\EmieSiteList 2016-02-12 22:31 - 2016-02-12 22:31 - 00000000 ____D C:\ProgramData\AVAST Software 2016-02-12 22:30 - 2016-02-27 12:39 - 00000000 ____D C:\Program Files (x86)\Google 2016-02-12 22:29 - 2016-02-27 11:24 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Google 2016-02-12 22:29 - 2016-02-12 22:29 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Deployment 2016-02-12 22:29 - 2016-02-12 22:29 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Apps\2.0 2016-02-12 22:28 - 2016-02-27 16:41 - 00003940 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{C821895C-9A6E-4FFD-B344-24C314A3E7F4} 2016-02-12 22:01 - 2016-02-27 17:18 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4038875778-605309327-2986017949-1002 2016-02-12 21:54 - 2016-02-22 18:19 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\CyberLink 2016-02-12 21:53 - 2016-02-26 11:07 - 00000000 ____D C:\Users\Feten Lakhal 2016-02-12 21:53 - 2016-02-14 21:00 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Hewlett-Packard 2016-02-12 21:53 - 2016-02-14 20:21 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\NVIDIA 2016-02-12 21:53 - 2016-02-14 20:20 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\NVIDIA Corporation 2016-02-12 21:53 - 2016-02-14 20:19 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\VirtualStore 2016-02-12 21:53 - 2016-02-12 22:22 - 00000000 __SHD C:\Users\Feten Lakhal\IntelGraphicsProfiles 2016-02-12 21:53 - 2016-02-12 22:04 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Local\Packages 2016-02-12 21:53 - 2016-02-12 21:53 - 00001465 _____ C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-02-12 21:53 - 2016-02-12 21:53 - 00000020 ___SH C:\Users\Feten Lakhal\ntuser.ini 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Voisinage réseau 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Voisinage d'impression 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Modèles 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Mes documents 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Menu Démarrer 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Documents\Mes vidéos 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Documents\Mes images 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\Documents\Ma musique 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 _SHDL C:\Users\Feten Lakhal\AppData\Local\Historique 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Synaptics 2016-02-12 21:53 - 2016-02-12 21:53 - 00000000 ____D C:\Users\Feten Lakhal\AppData\Roaming\Adobe 2016-02-12 21:53 - 2014-11-02 19:17 - 00000000 ___HD C:\Users\Feten Lakhal\Documents\hp.system.package.metadata 2016-02-12 21:53 - 2014-11-02 19:17 - 00000000 ___HD C:\Users\Feten Lakhal\Documents\hp.applications.package.appdata 2016-02-12 21:53 - 2014-03-18 10:54 - 00000369 _____ C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-02-12 21:53 - 2014-03-18 10:54 - 00000369 _____ C:\Users\Feten Lakhal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-02-02 10:30 - 2016-02-12 21:12 - 00000000 ____D C:\Users\MYTEK\AppData\LocalLow\Mozilla ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-02-27 17:08 - 2014-11-02 21:01 - 00000000 ____D C:\ProgramData\McAfee 2016-02-27 00:32 - 2014-04-03 00:51 - 00000000 ____D C:\Windows\Panther 2016-02-27 00:32 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf 2016-02-27 00:22 - 2014-11-02 19:26 - 00000000 ____D C:\ProgramData\Package Cache 2016-02-26 15:53 - 2014-11-02 20:56 - 00000000 ____D C:\ProgramData\CyberLink 2016-02-26 15:01 - 2015-10-09 09:54 - 00000000 ____D C:\Users\MYTEK 2016-02-25 14:34 - 2014-11-03 02:24 - 00847512 _____ C:\Windows\system32\perfh00C.dat 2016-02-25 14:34 - 2014-11-03 02:24 - 00175100 _____ C:\Windows\system32\perfc00C.dat 2016-02-25 14:34 - 2014-03-18 10:53 - 01970480 _____ C:\Windows\system32\PerfStringBackup.INI 2016-02-25 10:58 - 2014-11-02 20:59 - 00000000 ____D C:\Users\Public\CyberLink 2016-02-24 21:43 - 2015-11-12 09:12 - 00000000 ____D C:\Program Files\Common Files\AV 2016-02-24 21:43 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-02-24 21:43 - 2013-08-22 15:44 - 00498232 _____ C:\Windows\system32\FNTCACHE.DAT 2016-02-22 16:39 - 2014-11-02 19:26 - 00000000 ____D C:\Program Files (x86)\Foxit PhantomPDF 2016-02-22 16:38 - 2014-11-02 19:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2016-02-17 17:12 - 2014-11-02 19:26 - 00000000 ____D C:\Program Files (x86)\Dropbox 2016-02-16 21:22 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness 2016-02-15 16:40 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-02-15 12:50 - 2014-11-02 20:56 - 00000000 ____D C:\Program Files (x86)\CyberLink 2016-02-15 12:50 - 2014-11-02 19:20 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-02-15 12:49 - 2014-11-02 20:55 - 00000000 ____D C:\ProgramData\install_clap 2016-02-15 12:42 - 2014-11-02 21:05 - 00000000 ____D C:\Program Files\CyberLink 2016-02-12 22:32 - 2014-11-02 20:56 - 00000000 ____D C:\Program Files\AVAST Software 2016-02-12 22:19 - 2014-11-02 19:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2016-02-12 22:19 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2016-02-12 21:56 - 2015-10-09 09:55 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2016-02-12 21:14 - 2015-10-09 10:00 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4038875778-605309327-2986017949-1001 2016-02-12 21:12 - 2015-11-11 11:39 - 00003912 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{07D4C0E4-5F49-4733-B0E6-B3D013A7C849} 2016-02-12 21:06 - 2015-10-09 09:57 - 00000000 ____D C:\Users\MYTEK\Documents\Youcam 2016-02-09 08:58 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\ELAM ==================== Fichiers à la racine de certains dossiers ======= 2016-02-15 12:51 - 2016-02-15 12:51 - 10393600 _____ () C:\Program Files (x86)\Common Files\lpuninstall.exe Fichiers à déplacer ou supprimer: ==================== C:\Users\Feten Lakhal\ZHPDiag3.exe Certains fichiers dans TEMP: ==================== C:\Users\Feten Lakhal\AppData\Local\Temp\uninstall.exe C:\Users\MYTEK\AppData\Local\Temp\0276981455311879mcinst.exe C:\Users\MYTEK\AppData\Local\Temp\Extract.exe C:\Users\MYTEK\AppData\Local\Temp\HPSFUpdater.exe C:\Users\MYTEK\AppData\Local\Temp\SP71716.exe C:\Users\MYTEK\AppData\Local\Temp\UninstallHPSA.exe ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-02-23 05:55 ==================== Fin de FRST.txt ============================