Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:10-04-2016 01 Exécuté par Jérôme (administrateur) sur JÉRÔME-PC (13-04-2016 11:55:15) Exécuté depuis C:\Users\Jérôme\Desktop Profils chargés: Jérôme (Profils disponibles: Jérôme & DefaultAppPool) Platform: Windows 10 Home Version 1511 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-04-13] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349208 2016-04-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-12] (NVIDIA Corporation) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [396968 2014-03-03] (MSI) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-12-20] (Intel Corporation) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [807392 2016-03-17] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation) HKU\S-1-5-21-4176806123-1963834048-3194963057-1000\...\RunOnce: [Uninstall C:\Users\J�r�me\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Jérôme\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64" HKU\S-1-5-21-4176806123-1963834048-3194963057-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-06-03] () ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Pas de fichier Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2015-04-17] ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{4E08CC97-912D-458B-8705-9A14C325532F}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{174a17e4-0c9f-42e5-982f-6e58dbaf3f5c}: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{c8d6bb1e-b062-4fe9-8df0-71eecfcafcb4}: [DhcpNameServer] 109.88.203.3 62.197.111.140 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-04-06] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-04-06] (Oracle Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\cDnLEGuy.default FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-06-09] (Adobe Systems) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-04-06] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-04-06] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-06-09] (Adobe Systems) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation) FF Extension: Avira Browser Safety - C:\Users\Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\cDnLEGuy.default\Extensions\abs@avira.com.xpi [2016-03-07] Chrome: ======= CHR Profile: C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-21] CHR Extension: (Google Docs) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-21] CHR Extension: (Google Drive) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (Adblock Plus) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-08] CHR Extension: (Recherche Google) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27] CHR Extension: (Google Sheets) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-21] CHR Extension: (Google Docs hors connexion) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02] CHR Extension: (Gmail) - C:\Users\Jérôme\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-21] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [680112 2015-06-09] (Adobe Systems Incorporated) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [955736 2016-03-17] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [466504 2016-03-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [466504 2016-03-17] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1424880 2016-03-17] (Avira Operations GmbH & Co. KG) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1290784 2016-01-08] () R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [145624 2016-04-13] (ELAN Microelectronics Corp.) S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200 2016-01-12] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit) R2 Micro Star SCM; c:\Program Files (x86)\SCM\MSIService.exe [160768 2014-03-03] (Micro-Star International Co., Ltd.) [Fichier non signé] S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-01-04] () S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-12] (NVIDIA Corporation) S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288 2016-01-12] (NVIDIA Corporation) S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736 2016-01-12] (NVIDIA Corporation) R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-08] (Qualcomm Atheros) [Fichier non signé] S4 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [58368 2016-02-03] (Razer Inc.) [Fichier non signé] S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3832224 2016-01-04] (Intel® Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-02-18] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-17] (Avira Operations GmbH & Co. KG) S1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [67888 2013-02-13] (Qualcomm Atheros, Inc.) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-04-13] (REALiX(tm)) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation) S3 Ke2200; C:\Windows\System32\drivers\e22w7x64.sys [154320 2013-03-20] (Qualcomm Atheros, Inc.) R3 KillerEth; C:\Windows\System32\drivers\e2xw10x64.sys [162456 2016-02-01] (Qualcomm Atheros, Inc.) R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185600 2016-04-13] (Intel Corporation) R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3515664 2016-04-13] (Intel Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-01-12] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [777944 2016-04-13] (Realsil Semiconductor Corporation) R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-23] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-15] (Razer, Inc.) S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42600 2016-04-13] (Synaptics Incorporated) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-04-13 11:33 - 2016-04-13 11:33 - 536664776 _____ C:\Users\Jérôme\Desktop\assassins-creed-1-memory-block-4-damascus-walkthrough-episode-15.mp4.crdownload 2016-04-13 10:37 - 2016-04-13 11:55 - 00022202 _____ C:\Users\Jérôme\Desktop\FRST.txt 2016-04-13 10:37 - 2016-04-13 11:55 - 00000000 ____D C:\FRST 2016-04-13 10:34 - 2016-04-13 10:34 - 00000000 ____D C:\WINDOWS\LastGood 2016-04-13 10:31 - 2016-04-13 10:36 - 02375168 _____ (Farbar) C:\Users\Jérôme\Desktop\FRST64.exe 2016-04-13 10:30 - 2016-04-13 10:30 - 05576400 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2016-04-13 10:30 - 2016-04-13 10:30 - 03283248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 03282032 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 03198720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 02894976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2016-04-13 10:30 - 2016-04-13 10:30 - 02050184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 02049664 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 01743632 _____ (Creative Technology Ltd.) C:\WINDOWS\SysWOW64\MBAPO232.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 01356512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00689888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00574760 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00330568 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00221976 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00214840 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00192992 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00110984 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll 2016-04-13 10:30 - 2016-04-13 10:30 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll 2016-04-13 10:29 - 2016-04-13 10:29 - 09890008 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2016-04-13 10:29 - 2016-04-13 10:29 - 04330200 _____ (TODO: ) C:\WINDOWS\RtCRU64.exe 2016-04-13 10:29 - 2016-04-13 10:29 - 00481032 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys 2016-04-13 10:29 - 2016-04-13 10:29 - 00143600 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe 2016-04-13 10:29 - 2016-04-13 10:29 - 00083160 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll 2016-04-13 10:29 - 2015-07-14 20:27 - 00263952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys 2016-04-13 10:28 - 2016-04-13 10:28 - 00058584 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller01000.dll 2016-04-13 10:28 - 2016-04-13 10:28 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01009.Wdf 2016-04-13 10:27 - 2016-04-13 10:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2016-04-13 10:27 - 2016-04-13 10:27 - 00000000 ____D C:\Program Files\Synaptics 2016-04-13 10:26 - 2016-04-13 10:26 - 00042600 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys 2016-04-13 10:13 - 2016-04-13 10:13 - 00185600 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys 2016-04-13 10:11 - 2016-04-13 10:11 - 00000000 ____D C:\Program Files (x86)\Cisco 2016-04-13 10:09 - 2016-04-13 10:31 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2016-04-13 10:08 - 2016-04-13 10:08 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS 2016-04-13 10:08 - 2016-04-13 10:08 - 00003078 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Jérôme) 2016-04-13 10:07 - 2016-04-13 11:27 - 00000000 ____D C:\ProgramData\ProductData 2016-04-13 10:07 - 2016-04-13 10:15 - 00000000 ____D C:\Users\Jérôme\AppData\LocalLow\IObit 2016-04-13 10:07 - 2016-04-13 10:15 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} 2016-04-13 10:07 - 2016-04-13 10:07 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled 2016-04-13 10:07 - 2016-04-13 10:07 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\ProductData 2016-04-13 10:06 - 2016-04-13 11:27 - 00000000 ____D C:\Program Files (x86)\IObit 2016-04-13 10:06 - 2016-04-13 10:22 - 00000000 ____D C:\ProgramData\IObit 2016-04-13 10:06 - 2016-04-13 10:08 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\IObit 2016-04-13 10:04 - 2016-04-13 10:06 - 42683680 _____ (IObit ) C:\Users\Jérôme\Downloads\advanced-systemcare-free_9-2-0-1110_fr_403234.exe 2016-04-12 22:37 - 2016-04-12 22:38 - 03465280 _____ C:\Users\Jérôme\Downloads\adwcleaner_5.110.exe 2016-04-12 22:31 - 2016-04-12 22:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2016-04-12 22:31 - 2016-04-12 22:31 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2016-04-12 22:29 - 2016-04-12 22:31 - 03521617 _____ (Nicolas Coolman ) C:\Users\Jérôme\Downloads\ZHPFix.exe 2016-04-12 22:10 - 2016-04-12 22:11 - 02238464 _____ C:\Users\Jérôme\Downloads\ZHPCleaner.exe 2016-04-12 22:05 - 2016-04-13 09:41 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\ZHP 2016-04-12 22:03 - 2016-04-12 22:04 - 02185728 _____ C:\Users\Jérôme\Downloads\ZHPDiag3.exe 2016-04-12 20:04 - 2016-04-12 20:04 - 00000000 ____D C:\ProgramData\Paessler 2016-04-12 20:03 - 2016-04-13 10:46 - 00000000 ____D C:\ProgramData\TEMP 2016-04-12 20:03 - 2016-04-12 20:03 - 00001024 _____ C:\.rnd 2016-04-12 20:03 - 2016-04-12 20:03 - 00000000 ____D C:\Program Files\WinPcap 2016-04-12 20:02 - 2016-04-13 10:46 - 00000000 ____D C:\Program Files (x86)\PRTG Network Monitor 2016-04-12 17:00 - 2016-04-12 17:00 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\vibranceGUI 2016-04-11 18:58 - 2016-04-11 19:19 - 465034426 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.pw ] Mr.Robot.S01E03.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON.avi 2016-04-11 18:58 - 2016-04-11 19:19 - 458958410 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.pw ] Mr.Robot.S01E02.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON.avi 2016-04-03 17:45 - 2016-04-03 17:51 - 00000000 ____D C:\Users\Jérôme\Downloads\[www.Cpasbien.pe] Black.Mirror.S03E01.FASTSUB.VOSTFR.HDTV.XviD-ADDiCTiON 2016-03-28 20:18 - 2016-03-29 00:11 - 00000000 ____D C:\Users\Jérôme\Downloads\[ www.CpasBien.cm ] Marvels.Daredevil.S02.VOSTFR.720p.WEBRiP.x264.AAC-GOBO2S 2016-03-28 20:17 - 2016-03-28 20:17 - 00384869 _____ C:\Users\Jérôme\Downloads\daredevil-saison-2-vostfr-bluray-720p-hdtv.torrent 2016-03-28 19:01 - 2016-03-28 19:01 - 156808810 _____ C:\Users\Jérôme\Desktop\Maroc2016.mp4 2016-03-26 12:54 - 2016-03-28 19:09 - 00000000 ____D C:\Users\Jérôme\Desktop\Maroc 2016-03-14 23:24 - 2016-03-14 23:36 - 781460824 _____ C:\Users\Jérôme\Downloads\[ www.CpasBien.cm ] Vinyl.S01E05.SUBFRENCH.WEBRip.XviD-Yn1D.avi ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-04-13 11:53 - 2016-01-13 15:24 - 00000000 ____D C:\Users\Jérôme\AppData\Local\CrashDumps 2016-04-13 11:49 - 2015-07-21 11:09 - 00001096 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-04-13 10:48 - 2015-12-13 03:45 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-04-13 10:48 - 2015-07-21 11:09 - 00001092 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-04-13 10:48 - 2015-04-17 15:26 - 00000000 __SHD C:\Users\Jérôme\IntelGraphicsProfiles 2016-04-13 10:47 - 2015-12-13 04:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-04-13 10:47 - 2015-10-30 08:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-04-13 10:45 - 2016-03-07 17:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-04-13 10:45 - 2016-03-07 17:16 - 00000000 ____D C:\ProgramData\Avira 2016-04-13 10:40 - 2015-12-13 03:51 - 02135520 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-04-13 10:40 - 2015-10-30 21:00 - 00934786 _____ C:\WINDOWS\system32\perfh00C.dat 2016-04-13 10:40 - 2015-10-30 21:00 - 00199200 _____ C:\WINDOWS\system32\perfc00C.dat 2016-04-13 10:40 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-04-13 10:32 - 2015-12-13 03:45 - 00000000 ____D C:\Program Files\Elantech 2016-04-13 10:31 - 2015-12-13 03:45 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2016-04-13 10:30 - 2015-06-24 22:59 - 03081808 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll 2016-04-13 10:30 - 2015-06-24 22:59 - 01977072 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBAPO264.dll 2016-04-13 10:30 - 2015-06-24 22:59 - 00410040 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBWrp64.dll 2016-04-13 10:30 - 2015-06-24 22:57 - 04803840 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2016-04-13 10:30 - 2015-06-24 22:57 - 00041096 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\Drivers\MBfilt64.sys 2016-04-13 10:30 - 2015-06-24 22:57 - 00023704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll 2016-04-13 10:29 - 2016-01-26 22:51 - 03515664 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwbw02.sys 2016-04-13 10:29 - 2015-04-17 14:27 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2016-04-13 10:29 - 2015-04-17 14:26 - 00777944 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys 2016-04-13 10:28 - 2015-08-05 21:58 - 00454744 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys 2016-04-13 10:28 - 2013-08-30 21:18 - 01462720 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys 2016-04-13 10:20 - 2015-12-13 03:36 - 00000000 ___DC C:\WINDOWS\Panther 2016-04-13 10:14 - 2015-12-13 03:52 - 00000000 ____D C:\Users\Jérôme 2016-04-13 10:14 - 2015-04-17 15:08 - 00000000 ____D C:\ProgramData\Intel 2016-04-13 10:14 - 2015-04-17 14:27 - 00000000 ____D C:\Intel 2016-04-13 10:13 - 2015-07-10 11:05 - 00000000 ____D C:\Users\Default.migrated 2016-04-13 10:11 - 2015-04-17 15:08 - 00000000 ____D C:\Program Files\Common Files\Intel 2016-04-13 10:10 - 2015-12-13 03:44 - 00000000 ____D C:\Program Files\Intel 2016-04-13 10:10 - 2015-04-17 15:07 - 00000000 ____D C:\ProgramData\Package Cache 2016-04-13 09:42 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-04-13 09:42 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-04-13 09:42 - 2015-08-04 21:19 - 00000000 ____D C:\Users\Jérôme\AppData\Local\Packages 2016-04-13 09:31 - 2015-04-19 12:34 - 00000000 ____D C:\Users\Jérôme\AppData\Local\Adobe 2016-04-13 09:30 - 2015-10-03 15:09 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E125F421-FAE6-4815-AA9E-6ABD54CB9459} 2016-04-13 00:25 - 2015-04-21 11:57 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\vlc 2016-04-12 23:30 - 2015-04-17 20:23 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\transmission 2016-04-12 22:52 - 2016-03-06 18:15 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-04-12 22:49 - 2016-03-06 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-04-12 22:49 - 2016-03-06 18:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-04-12 22:39 - 2015-06-01 13:21 - 00000000 ____D C:\AdwCleaner 2016-04-12 21:15 - 2015-04-17 18:18 - 00000000 ____D C:\Program Files (x86)\Steam 2016-04-12 18:47 - 2015-04-18 12:43 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\TS3Client 2016-04-12 14:52 - 2015-10-27 14:36 - 00005314 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for Jérôme-pc-Jérôme Jérôme-pc 2016-04-12 13:50 - 2015-07-21 11:10 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-04-06 16:34 - 2015-10-03 15:07 - 00000000 ____D C:\ProgramData\Oracle 2016-04-06 15:45 - 2015-10-03 15:08 - 00000000 ____D C:\Users\Jérôme\.oracle_jre_usage 2016-04-06 15:45 - 2015-10-03 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-04-06 15:45 - 2015-10-03 15:07 - 00000000 ____D C:\Program Files (x86)\Java 2016-04-06 15:44 - 2015-10-03 15:08 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2016-04-06 15:37 - 2015-12-13 03:45 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-04-05 17:03 - 2015-04-18 12:42 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client 2016-03-29 17:52 - 2015-04-17 19:08 - 00000000 ____D C:\Users\Jérôme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2016-03-23 22:43 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-03-17 13:05 - 2016-03-07 17:25 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-03-17 13:05 - 2016-03-07 17:25 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-03-17 13:05 - 2016-03-07 17:25 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-03-14 00:45 - 2016-03-13 23:53 - 1503635297 _____ C:\Users\Jérôme\Downloads\Straight Outta Compton.2015.720p.HDRip.x264.AAC-ETRG (VOSTFR).mp4 ==================== Fichiers à la racine de certains dossiers ======= 2015-05-26 13:05 - 2008-08-10 13:09 - 1083904 _____ (Squared 5) C:\Program Files (x86)\MPEG_Streamclip.exe 2015-07-04 19:38 - 2015-07-19 11:08 - 0000024 _____ () C:\Users\Jérôme\AppData\Roaming\appdataFr25.bin 2016-02-18 18:09 - 2016-02-18 18:09 - 0007605 _____ () C:\Users\Jérôme\AppData\Local\Resmon.ResmonCfg Certains fichiers dans TEMP: ==================== C:\Users\Jérôme\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-04-08 12:43 ==================== Fin de FRST.txt ============================