Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2016 Exécuté par Jtruc (administrateur) sur JTRUC-PC (21-06-2016 18:31:16) Exécuté depuis C:\Users\Jtruc\Téléchargement Profils chargés: Jtruc (Profils disponibles: Jtruc) Platform: Windows 7 Ultimate (X64) Langue: Français (France) Internet Explorer Version 9 (Navigateur par défaut: "C:\Program Files (x86)\Nobean\Application\chrome.exe" "%1") Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Qksee Pvt Ltd.) C:\Program Files (x86)\qksee\qkseeSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Motorola Inc.) C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Akamai Technologies, Inc.) C:\Users\Jtruc\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Jtruc\AppData\Local\Akamai\netsession_win.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Druide informatique inc.) C:\Program Files (x86)\Druide\Antidote 7\Programmes32\agentantidote.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe () C:\ProgramData\Nobean\Nobean.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Nobean\Application\chrome.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [SMSERIAL] => C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1702400 2009-10-26] (Motorola Inc.) HKLM\...\Run: [Nvtmru] => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7405752 2016-06-10] (AVAST Software) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [agentantidote.exe] => C:\Program Files (x86)\Druide\Antidote 7\Programmes32\agentantidote.exe [600256 2009-10-18] (Druide informatique inc.) HKLM-x32\...\Run: [UCam_Menu] => c:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2007-09-13] (CyberLink Corp.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe [40048 2007-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-06-08] (LogMeIn Inc.) HKLM\...\Winlogon: [Userinit] wscript C:\Windows\run.vbs, HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [Facebook Update] => C:\Users\Jtruc\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-09-08] (Facebook Inc.) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Jtruc\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8698584 2016-04-15] (Piriform Ltd) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1399208 2016-04-08] (Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [26424448 2016-06-15] (Skype Technologies S.A.) HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\...\MountPoints2: {856c0297-093a-11e6-9715-001e68617e74} - E:\Setup.exe -auto HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1399208 2016-04-08] (Garmin Ltd. or its subsidiaries) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\scrnsave.scr [10240 2009-07-14] (Microsoft Corporation) ShellExecuteHooks: - {7AD1C0F5-07A2-40E5-8608-C6EAA0FF362F} - Pas de fichier [ ] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-04] (AVAST Software) Startup: C:\Users\Jtruc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Alertes de surveillance de l'encre - HP Deskjet 3070 B611 series.lnk [2016-06-21] ShortcutTarget: Alertes de surveillance de l'encre - HP Deskjet 3070 B611 series.lnk -> C:\Program Files\HP\HP Deskjet 3070 B611 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\..\Interfaces\{9BD498A2-EF08-4763-ACC8-740F1C38AF47}: [DhcpNameServer] 212.27.40.240 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131094871669859903&GUID=00000000-0000-0000-0000-000000000000 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131094871669959903&GUID=00000000-0000-0000-0000-000000000000 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131094871669959903&GUID=00000000-0000-0000-0000-000000000000 HKU\S-1-5-21-3362054436-2360961712-1624339907-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = SearchScopes: HKU\S-1-5-21-3362054436-2360961712-1624339907-1000 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3362054436-2360961712-1624339907-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3362054436-2360961712-1624339907-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3362054436-2360961712-1624339907-1000 -> {7A45AF95-0534-8144-18C3-0150A2BC28C0} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-05-27] (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-04-16] (AVAST Software) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO-x32: Aide pour le lien d'Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-05-27] (Microsoft Corporation) BHO-x32: PDFXChange 4.0 -> {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} -> C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-16] (Tracker Softaware) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-24] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-04-16] (AVAST Software) BHO-x32: Programme d’aide de l’Assistant de connexion au compte Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-24] (Oracle Corporation) Toolbar: HKLM - Pas de nom - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Pas de fichier Toolbar: HKLM - Pas de nom - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Pas de fichier Toolbar: HKLM-x32 - PDFXChange 4.0 - {42DFA04F-0F16-418e-B80C-AB97A5AFAD39} - C:\Program Files\Tracker Software\PDF-XChange 4\PXCIEAddin4.dll [2011-09-16] (Tracker Softaware) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2000-01-01] (Tracker Software Products Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2000-01-01] (Tracker Software Products Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2000-01-01] (Tracker Software Products Ltd.) FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-24] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-02-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2000-01-01] (Tracker Software Products Ltd.) FF Plugin HKU\S-1-5-21-3362054436-2360961712-1624339907-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2000-01-01] (Tracker Software Products Ltd.) FF Plugin HKU\S-1-5-21-3362054436-2360961712-1624339907-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Jtruc\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-02-09] (Microsoft Corporation) FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-04] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-05-04] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF Chrome: ======= CHR HomePage: ChromeDefaultData -> hxxp://www.google.fr/ CHR StartupUrls: ChromeDefaultData -> "search.mpc.am" CHR Profile: C:\Users\Jtruc\AppData\Local\Google\Chrome\User Data\ChromeDefaultData CHR Extension: (Theme Creator) - C:\Users\Jtruc\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\akpelnjfckgfiplcikojhomllgombffc [2015-03-17] CHR Extension: (Adblock Plus) - C:\Users\Jtruc\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-06-04] CHR Extension: (Avast Online Security) - C:\Users\Jtruc\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-04] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Jtruc\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-04] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-04-16] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25] ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-05-04] (AVAST Software) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation) S2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [792592 2016-04-08] (Garmin Ltd. or its subsidiaries) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552 2016-04-26] (Hewlett-Packard Company) S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] () [Fichier non signé] R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [419248 2016-06-07] (LogMeIn, Inc.) R2 NobeanP; C:\ProgramData\Nobean\Nobean.exe [428416 2016-06-21] () S2 NobeanU; C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe [588672 2016-06-21] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation) R2 qkseeService; C:\Program Files (x86)\qksee\qkseeSvc.exe [757016 2016-06-16] (Qksee Pvt Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [X] ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-05-04] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-05-04] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-05-04] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-05-04] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-05-04] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-05-04] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-05-04] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-05-04] (AVAST Software) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-07-11] (DT Soft Ltd) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R3 HpqRemHid; C:\Windows\System32\DRIVERS\HpqRemHid.sys [9088 2007-07-11] (Hewlett-Packard Development Company, L.P.) R3 MODEMCSA; C:\Windows\System32\drivers\MODEMCSA.sys [24064 2009-07-14] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited) R3 smserial; C:\Windows\System32\DRIVERS\smserial.sys [1202688 2009-10-26] (Motorola Inc.) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X] U4 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-06-21 18:30 - 2016-06-21 18:31 - 00000000 ____D C:\FRST 2016-06-21 14:15 - 2016-06-21 16:18 - 00003460 _____ C:\Windows\System32\Tasks\NobeanUpdateTaskMachineCore 2016-06-21 14:15 - 2016-06-21 16:17 - 00003462 _____ C:\Windows\System32\Tasks\NobeanUpdateTaskMachineUA 2016-06-21 14:15 - 2016-06-21 14:15 - 00000000 ____D C:\Users\Jtruc\AppData\Local\Nobean 2016-06-21 14:15 - 2016-06-21 14:15 - 00000000 ____D C:\ProgramData\Nobean 2016-06-21 14:14 - 2016-06-21 14:15 - 00000000 ____D C:\Program Files (x86)\Nobean 2016-06-21 14:14 - 2016-06-21 14:14 - 00000000 ____D C:\ProgramData\Uncheckit 2016-06-21 14:13 - 2016-06-21 14:14 - 00000000 ____D C:\ProgramData\uckt 2016-06-21 14:13 - 2016-06-21 14:13 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\Uncheckit 2016-06-16 19:02 - 2016-06-17 18:21 - 00000000 ____D C:\Program Files (x86)\PDFCreator 2016-06-16 19:02 - 2016-06-16 19:02 - 00000995 _____ C:\Users\Public\Desktop\PDFCreator.lnk 2016-06-16 19:02 - 2016-06-16 19:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2016-06-16 19:02 - 2004-03-09 00:00 - 00662288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX 2016-06-16 19:02 - 1998-07-13 01:08 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2FR.DLL 2016-06-16 19:02 - 1998-07-06 00:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPIDE.DLL 2016-06-16 19:02 - 1998-06-24 00:00 - 00137000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMAPI32.OCX 2016-06-16 18:29 - 2016-06-16 18:29 - 00000000 ____D C:\ProgramData\Microsoft Toolkit 2016-06-16 18:10 - 2016-06-16 18:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange 4 Pro 2016-06-16 18:10 - 2011-09-16 23:21 - 00056912 _____ (Tracker Software Products Ltd.) C:\Windows\system32\pxc40pm.dll 2016-06-16 18:04 - 2016-06-16 18:04 - 00001257 _____ C:\Users\Jtruc\Desktop\AVS4YOU Software Navigator.lnk 2016-06-16 18:04 - 2016-06-16 18:04 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-06-16 18:03 - 2016-06-16 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-06-16 15:06 - 2016-06-21 17:49 - 00000000 ____D C:\Program Files (x86)\WinZipper 2016-06-16 15:06 - 2016-06-19 20:43 - 00000000 ____D C:\Program Files (x86)\qksee 2016-06-16 15:06 - 2016-06-16 15:06 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\eCyber 2016-06-16 15:06 - 2016-06-16 15:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee 2016-06-16 15:05 - 2016-06-17 16:37 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\qksee 2016-06-16 15:02 - 2016-06-16 15:02 - 00000000 ____D C:\Program Files (x86)\513amad2 2016-06-15 10:12 - 2016-06-03 18:18 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-06-15 10:12 - 2016-06-03 18:10 - 01204224 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-06-15 10:12 - 2016-06-03 15:06 - 01413120 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-06-15 10:12 - 2016-05-26 15:07 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-06-15 10:12 - 2016-05-26 15:07 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-06-15 10:12 - 2016-05-26 15:07 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-06-15 10:12 - 2016-05-26 15:07 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2016-06-15 10:12 - 2016-05-22 15:07 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-06-13 05:41 - 2016-06-19 20:36 - 00000000 ____D C:\ProgramData\Hisarah 2016-06-13 05:41 - 2016-06-13 05:41 - 00000000 ____D C:\Program Files (x86)\Hisarah 2016-06-12 15:15 - 2016-06-12 15:15 - 00000000 ____D C:\Users\Public\Documents\chrome 2016-06-12 14:16 - 2016-06-12 14:16 - 00000007 _____ C:\Windows\SysWOW64\wsxF04D.tmp 2016-06-12 14:16 - 2016-06-12 14:16 - 00000000 ____D C:\Users\Jtruc\AppData\Local\Hisarah 2016-06-12 14:14 - 2016-06-12 14:14 - 00000000 ____D C:\Windows\system32\log 2016-06-12 14:12 - 2016-06-21 18:17 - 00000000 _____ C:\Users\Public\Documents\report.dat 2016-06-11 09:49 - 2016-06-11 09:49 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\ZHP 2016-06-09 08:43 - 2016-06-09 08:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2016-06-09 08:43 - 2016-06-09 08:43 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2016-06-01 15:28 - 2016-06-21 08:42 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\TSv 2016-06-01 15:28 - 2016-06-16 15:03 - 00009430 _____ C:\Windows\System32\Tasks\Browser Updater Task(Core) 2016-06-01 15:28 - 2016-06-12 14:12 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\WinZiper 2016-06-01 15:28 - 2016-06-04 06:24 - 00000000 ____D C:\ProgramData\UwinpU 2016-06-01 15:28 - 2016-06-01 15:28 - 00000000 ____D C:\Program Files (x86)\TXQQBrowser 2016-05-31 09:03 - 2016-05-31 09:03 - 00105310 _____ C:\Users\Jtruc\Documents\Ordonnance .pdf 2016-05-31 01:08 - 2016-05-31 01:08 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\PDF Producer 2016-05-31 00:09 - 2016-05-31 01:12 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\PDF Architect 4 2016-05-31 00:09 - 2016-05-31 00:09 - 00000000 ____D C:\ProgramData\pdfforge 2016-05-31 00:06 - 2016-05-31 01:08 - 00000000 ____D C:\Users\Jtruc\Documents\PDF Architect 2016-05-31 00:02 - 2016-06-16 17:57 - 00000000 ____D C:\ProgramData\PDF Architect 4 2016-05-30 19:02 - 2016-05-30 19:02 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 8.lnk 2016-05-30 19:02 - 2016-05-30 19:02 - 00001974 _____ C:\Users\Public\Desktop\Adobe Reader 8.lnk 2016-05-29 22:38 - 2016-05-29 22:38 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\MCorp 2016-05-29 22:20 - 2016-05-29 22:27 - 00000000 ____D C:\Users\Jtruc\AppData\Local\app 2016-05-29 22:15 - 2016-05-30 05:51 - 00000000 ____D C:\Program Files (x86)\MPC Cleaner 2016-05-29 22:04 - 2016-06-19 20:43 - 00000000 ____D C:\Program Files (x86)\Thdush 2016-05-29 22:04 - 2016-05-29 22:04 - 00000000 ____D C:\extensions 2016-05-29 22:04 - 2016-05-29 22:02 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak 2016-05-29 22:01 - 2016-06-01 05:52 - 00000000 ____D C:\Program Files (x86)\FastWeb ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-06-21 18:31 - 2014-06-04 19:30 - 00000000 ___RD C:\Users\Jtruc\Téléchargement 2016-06-21 18:12 - 2013-07-12 19:42 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-06-21 17:57 - 2013-07-13 09:29 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\Skype 2016-06-21 17:55 - 2014-08-10 13:31 - 00000000 ____D C:\Users\Jtruc\AppData\Local\LogMeIn Hamachi 2016-06-21 17:54 - 2009-07-14 06:45 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-06-21 17:54 - 2009-07-14 06:45 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-06-21 17:53 - 2016-02-23 16:46 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-21 17:49 - 2013-07-11 22:26 - 00108208 _____ C:\Users\Jtruc\AppData\Local\GDIPFONTCACHEV1.DAT 2016-06-21 17:46 - 2016-02-23 16:46 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-21 17:45 - 2013-10-05 11:52 - 00000095 _____ C:\Users\Jtruc\.accessibility.properties 2016-06-21 17:45 - 2013-07-10 21:35 - 00000000 ____D C:\Users\Jtruc 2016-06-21 17:45 - 2013-07-10 21:06 - 00428920 _____ C:\Windows\system32\FNTCACHE.DAT 2016-06-21 17:45 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-06-21 17:20 - 2013-08-26 01:49 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3362054436-2360961712-1624339907-1000UA.job 2016-06-21 14:15 - 2016-02-23 16:51 - 00002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-21 14:15 - 2016-02-23 16:51 - 00002137 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-06-21 11:20 - 2013-08-26 01:49 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3362054436-2360961712-1624339907-1000Core.job 2016-06-21 08:14 - 2013-07-10 21:59 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-06-20 10:19 - 2009-07-14 17:24 - 00751136 _____ C:\Windows\system32\perfh00C.dat 2016-06-20 10:19 - 2009-07-14 17:24 - 00151066 _____ C:\Windows\system32\perfc00C.dat 2016-06-20 10:19 - 2009-07-14 07:13 - 01673112 _____ C:\Windows\system32\PerfStringBackup.INI 2016-06-20 10:19 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf 2016-06-18 07:14 - 2013-07-13 09:29 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-06-18 07:14 - 2013-07-13 09:29 - 00000000 ____D C:\ProgramData\Skype 2016-06-17 18:12 - 2013-07-12 19:42 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-06-17 18:12 - 2013-07-12 19:42 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-06-17 18:12 - 2013-07-12 19:42 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-06-16 18:49 - 2013-12-09 11:19 - 00000000 ____D C:\Users\Jtruc\Documents\Emploi 2016-06-16 18:37 - 2016-04-04 19:13 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2016-06-16 18:35 - 2009-07-14 17:35 - 00000000 ____D C:\Windows\ShellNew 2016-06-16 18:10 - 2013-10-31 15:01 - 00000000 ____D C:\Program Files\Tracker Software 2016-06-16 18:04 - 2013-09-02 22:03 - 00000000 ____D C:\Program Files (x86)\AVS4YOU 2016-06-16 17:39 - 2013-07-11 20:22 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2016-06-16 17:38 - 2013-07-11 20:18 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-06-16 17:38 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-06-16 17:34 - 2013-07-11 20:19 - 00000000 ____D C:\Program Files\Microsoft Office 2016-06-16 17:31 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-06-15 22:44 - 2013-07-11 19:20 - 00000000 ____D C:\Windows\system32\MRT 2016-06-15 22:32 - 2013-07-11 19:07 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-06-15 22:25 - 2014-12-10 16:20 - 00000000 ____D C:\Windows\system32\appraiser 2016-06-15 22:25 - 2014-07-10 09:54 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-06-14 23:28 - 2009-07-14 04:34 - 00000580 _____ C:\Windows\win.ini 2016-06-13 19:31 - 2013-07-12 18:31 - 00484008 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-06-12 21:40 - 2014-10-10 19:09 - 00000000 ____D C:\Users\Jtruc\Perso 2016-06-12 14:32 - 2013-07-11 19:17 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-06-08 10:56 - 2014-09-05 08:44 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys 2016-06-02 21:54 - 2015-08-01 09:08 - 00000000 ____D C:\Users\Jtruc\Documents\YouCam 2016-06-01 23:07 - 2013-10-31 08:35 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\BitTorrent 2016-05-30 20:52 - 2013-10-02 19:48 - 00000000 ____D C:\Users\Jtruc\AppData\Local\ElevatedDiagnostics 2016-05-30 20:41 - 2015-06-01 11:30 - 00665088 ___SH C:\Users\Jtruc\Documents\Thumbs.db 2016-05-30 20:39 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2016-05-30 19:06 - 2013-07-12 19:40 - 00000000 ____D C:\Users\Jtruc\AppData\Local\Adobe 2016-05-30 19:02 - 2015-06-01 10:13 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-05-30 19:02 - 2013-07-30 21:58 - 00000000 ____D C:\ProgramData\Adobe 2016-05-29 22:43 - 2013-07-11 20:15 - 00000000 ____D C:\Users\Jtruc\AppData\Roaming\DAEMON Tools Lite 2016-05-29 22:35 - 2016-04-25 06:06 - 00000000 ____D C:\Users\Jtruc\AppData\LocalLow\BitTorrent 2016-05-29 22:27 - 2014-01-07 09:31 - 00000000 ____D C:\AdwCleaner 2016-05-25 07:02 - 2016-04-23 18:08 - 00000000 ____D C:\ProgramData\FLEXnet ==================== Fichiers à la racine de certains dossiers ======= 2013-11-21 09:25 - 2013-11-21 09:27 - 0000000 _____ () C:\Users\Jtruc\AppData\Local\{F4CD72C3-F414-4952-9CC2-F50B244BF0BF} 2013-10-16 13:41 - 2013-10-16 13:41 - 0000057 _____ () C:\ProgramData\Ament.ini ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-06-17 18:53 ==================== Fin de FRST.txt ============================