Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017 Exécuté par gtronscorff (administrateur) sur LS-92578 (07-04-2017 21:43:12) Exécuté depuis C:\Users\GTronscorff\Desktop Profils chargés: gtronscorff (Profils disponibles: LS-Machine840 & gtronscorff) Platform: Windows 7 Professional Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 10 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\HP HSPA+ Mobile Broadband\CommService\CommServiceEx.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe () C:\Program Files\Common Files\VMware\DeviceRedirectionCommon\ftnlsv.exe () C:\Program Files (x86)\VMware\ScannerRedirection\ftscanmgr.exe (strawberryperl.com) C:\cla\perl\bin\perl.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Bin\ccSvcHst.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (VMware) C:\Program Files (x86)\Common Files\VMware\SerialPortRedirection\Client\vmwsprrdpwks.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (VMware, Inc.) C:\Program Files (x86)\VMware\VMware Horizon View Client\wsnm\wsnm.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (VMware, Inc.) C:\Program Files (x86)\VMware\VMware Horizon View Client\bin\vmware-view-usbd.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Bin\ccSvcHst.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIFBE.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Dropbox, Inc.) C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\Dropbox.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-06] (IDT, Inc.) HKLM\...\Run: [RtsCM] => C:\windows\RTSCM64.EXE [147160 2013-08-02] (Realtek Semiconductor Corp.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-09-04] (Synaptics Incorporated) HKLM\...\Run: [VMware Netlink 3 HV Install Utility] => C:\Program Files\Common Files\VMware\DeviceRedirectionCommon\ftnliu.exe [70080 2015-05-08] () HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-09-09] (Apple Inc.) HKLM\...\Run: [Anywhere] => rundll32.exe "C:\Program Files (x86)\Conferencing Appshare Plugin\Internet Explorer\64\ANWShare25.dll",InitAppshare HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes) HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [337184 2013-08-01] (Hewlett-Packard Company) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-07-26] (Intel Corporation) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-25] (Hewlett-Packard Company) HKLM-x32\...\Run: [YouCam Mirage] => c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2013-06-24] (CyberLink) HKLM-x32\...\Run: [YouCam Tray] => c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [167488 2013-06-24] (CyberLink Corp.) HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PDF4 Registry Controller] => C:\Program Files (x86)\ScanSoft\PDF Converter 4\RegistryController.exe [46632 2006-12-19] (Nuance Communications, Inc.) HKLM-x32\...\Run: [ScanSoft PDF Converter 4-reminder] => "C:\Program Files (x86)\ScanSoft\PDF Converter 4\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Converter\4\Ereg\Ereg.ini HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation) HKLM-x32\...\Run: [Anywhere] => rundll32.exe "C:\Program Files (x86)\Conferencing Appshare Plugin\Internet Explorer\32\ANWShare25.dll",InitAppshare HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [1193728 2017-02-15] (PDF Complete Inc) Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2015-02-01] (Google Inc.) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [Dropbox Update] => C:\Users\GTronscorff\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-07] (Dropbox, Inc.) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50385536 2015-12-17] (Skype Technologies S.A.) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2016-09-09] (Apple Inc.) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [Office Timeline Performance Helper] => C:\Program Files (x86)\Office Timeline\Current\OfficeTimelineStartup.exe [15432 2016-02-15] (OfficeTimeline LLC) HKU\S-1-5-21-7174978-3753775089-2012757992-2447\...\Run: [EPSON SX110 Series (Copie 1)] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIFBE.EXE [223232 2008-09-26] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-03-21] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2014-09-10] ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ISCTSystray.lnk [2014-07-17] ShortcutTarget: ISCTSystray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Lancement rapide d'Adobe Reader.lnk [2014-09-10] ShortcutTarget: Lancement rapide d'Adobe Reader.lnk -> C:\Program Files (x86)\Adobe\Reader 8.0\Reader\reader_sl.exe (Adobe Systems Incorporated) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk [2014-09-11] ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{467D5E81-8349-4892-9E81-C3674ED8E451}\Icon09DB8A851.exe () Startup: C:\Users\GTronscorff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2017-03-25] ShortcutTarget: Dropbox.lnk -> C:\Users\GTronscorff\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\GTronscorff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2016-05-18] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\GTronscorff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FR0B4-4FRZK-HHTEX-XETFE-TXKTX-FEFHT-XEXAY.html [2017-04-06] () GroupPolicy: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) ProxyServer: [S-1-5-21-7174978-3753775089-2012757992-2447] => proxy.lasersymag.net:8080 Tcpip\Parameters: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{9F67FC97-1AC2-40B0-879E-5D6D6A186E1F}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{A7D69056-D936-4450-B92A-D24443F60425}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{AFCBC0D4-11CB-4E1F-82AD-5B447FE33E97}: [DhcpNameServer] 10.110.20.1 10.110.14.1 Tcpip\..\Interfaces\{F5E456A0-F5F0-41E5-964C-6539E660B634}: [DhcpNameServer] 10.110.14.1 10.110.30.1 Internet Explorer: ================== HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp HKU\S-1-5-21-7174978-3753775089-2012757992-2447\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKU\S-1-5-21-7174978-3753775089-2012757992-2447\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/9 SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-21] (Microsoft Corporation) BHO-x32: Aide pour le lien d'Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-24] (Oracle Corporation) BHO-x32: Programme d’aide de l’Assistant de connexion au compte Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-24] (Google Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-24] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll => Pas de fichier Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-24] (Google Inc.) Toolbar: HKU\S-1-5-21-7174978-3753775089-2012757992-2447 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-24] (Google Inc.) IE Session Restore: HKU\S-1-5-21-7174978-3753775089-2012757992-2447 -> est activé. Filter-x32: application/x-ms-application - {025AF0AD-7BA2-4d52-BEAD-979BB54C6DAF} - C:\windows\system32\mscoree.dll [2010-11-21] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: khgu2q3j.default FF ProfilePath: C:\Users\GTronscorff\AppData\Roaming\Mozilla\Firefox\Profiles\khgu2q3j.default [2017-02-22] FF HKLM\...\Firefox\Extensions: [@conferencingplugin] - C:\Program Files (x86)\Conferencing Appshare Plugin\Firefox\appshare_addon.xpi FF Extension: (Conferencing plugin) - C:\Program Files (x86)\Conferencing Appshare Plugin\Firefox\appshare_addon.xpi [2017-01-26] FF HKLM-x32\...\Firefox\Extensions: [@conferencingplugin] - C:\Program Files (x86)\Conferencing Appshare Plugin\Firefox\appshare_addon.xpi FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-24] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) FF Plugin-x32: Conferencing App -> C:\Program Files (x86)\Conferencing Appshare Plugin\NPAPI\npANWShare25.dll [2017-01-31] (Anywhere Conference) FF Plugin HKU\S-1-5-21-7174978-3753775089-2012757992-2447: jpl.nasa.gov/NASAEyes -> C:\Users\GTronscorff\AppData\Roaming\JPL-NASA-Caltech\NASA's Eyes\npNASAEyes.dll [2015-07-09] (Jet Propulsion Laboratory) FF Plugin HKU\S-1-5-21-7174978-3753775089-2012757992-2447: LWAPlugin15.8 -> C:\Users\GTronscorff\AppData\Roaming\Mozilla\Plugins\npLWAPlugin15.8.dll [2013-03-13] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\browser\plugins\npatgpc.dll [2016-09-23] (Cisco WebEx LLC) FF Plugin ProgramFiles/Appdata: C:\Users\GTronscorff\AppData\Roaming\mozilla\plugins\npatgpc.dll [2016-09-23] (Cisco WebEx LLC) FF Plugin ProgramFiles/Appdata: C:\Users\GTronscorff\AppData\Roaming\mozilla\plugins\npLWAPlugin15.8.dll [2013-03-13] (Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default [2017-04-07] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-05] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-05] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-02] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-05] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2017-03-27] CHR Extension: (Chrome Web Store Payments) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Conferencing Plugin) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfngopommdknnpihdofckgpeddipoeai [2017-02-22] CHR Extension: (Pas de nom) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28] CHR Extension: (Chrome Media Router) - C:\Users\GTronscorff\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-04] CHR HKLM\...\Chrome\Extension: [pfngopommdknnpihdofckgpeddipoeai] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [pfngopommdknnpihdofckgpeddipoeai] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-08-05] (Apple Inc.) R2 CommService; C:\Program Files (x86)\HP HSPA+ Mobile Broadband\CommService\CommServiceEx.exe [73296 2014-09-09] () R2 ftnlsv3hv; C:\Program Files\Common Files\VMware\DeviceRedirectionCommon\ftnlsv.exe [226240 2015-05-08] () R2 ftscanmgr; C:\Program Files (x86)\VMware\ScannerRedirection\ftscanmgr.exe [4333712 2015-05-12] () R2 FusionInventory-Agent; c:\cla\\perl\bin\perl.exe [40448 2013-10-25] (strawberryperl.com) [Fichier non signé] R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [681760 2013-08-01] (Hewlett-Packard Company) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-07-26] (Intel Corporation) R2 ISCTAgent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [198120 2013-09-07] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-29] () R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1719552 2017-02-15] (PDF Complete Inc) R2 SepMasterService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Bin\ccSvcHst.exe [152072 2016-09-26] (Symantec Corporation) S3 SNAC; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Bin64\snac64.exe [402216 2016-09-26] (Symantec Corporation) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-11-06] (IDT, Inc.) [Fichier non signé] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) R2 vmware-view-usbd; C:\Program Files (x86)\VMware\VMware Horizon View Client\bin\vmware-view-usbd.exe [2032344 2015-05-14] (VMware, Inc.) R2 vmwsprrdpwks; C:\Program Files (x86)\Common Files\VMware\SerialPortRedirection\Client\vmwsprrdpwks.exe [261776 2015-05-08] (VMware) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-12-04] (Microsoft Corporation) R2 wsnm; C:\Program Files (x86)\VMware\VMware Horizon View Client\wsnm\wsnm.exe [530648 2015-05-26] (VMware, Inc.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-29] (Intel® Corporation) S2 HPFSService; "C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe" [X] S3 Smcinst; "C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.6608.6300.105\SmcLU\Setup\smcinst.exe" [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Data\Definitions\BASHDefs\20170314.001\BHDrvx64.sys [1831064 2017-03-14] (Symantec Corporation) R1 ccSettings_{E74F5E37-40CB-4B8B-8730-FC0039E0D73F}; C:\windows\System32\Drivers\SEP\0C011B95\19C8.105\x64\ccSetx64.sys [171128 2016-09-26] (Symantec Corporation) R3 CVPNDRVA; C:\windows\system32\Drivers\CVPNDRVA.sys [304784 2010-03-23] () R1 DNE; C:\windows\System32\DRIVERS\dnelwf64.sys [131160 2011-02-03] (Citrix Systems, Inc.) R3 e1dexpress; C:\windows\System32\DRIVERS\e1d62x64.sys [488216 2014-02-04] (Intel Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [497312 2017-01-26] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [156824 2017-01-26] (Symantec Corporation) S3 huawei_cdcacm; C:\windows\System32\DRIVERS\ew_jucdcacm.sys [110592 2014-09-09] (MBB Technologies Co., Ltd.) R3 huawei_enumerator; C:\windows\System32\DRIVERS\ew_jubusenum.sys [91648 2014-09-09] (MBB Technologies Co., Ltd.) S3 huawei_ext_ctrl; C:\windows\System32\DRIVERS\ew_juextctrl.sys [30720 2014-09-09] (MBB Technologies Co., Ltd.) S3 huawei_wwanecm; C:\windows\System32\DRIVERS\ew_juwwanecm.sys [244736 2014-09-09] (MBB Technologies Co., Ltd.) R0 iaStorF; C:\windows\System32\drivers\iaStorF.sys [28008 2013-08-08] (Intel Corporation) R3 ikbevent; C:\windows\System32\DRIVERS\ikbevent.sys [21408 2013-08-09] () R3 imsevent; C:\windows\System32\DRIVERS\imsevent.sys [21920 2013-08-09] () R3 INETMON; C:\windows\System32\Drivers\INETMON.sys [29088 2013-08-08] () R3 ISCT; C:\windows\system32\drivers\ISCTD64.sys [46568 2013-08-08] () R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [251832 2017-04-07] (Malwarebytes) R3 MEIx64; C:\windows\system32\drivers\TeeDriverx64.sys [99288 2013-07-26] (Intel Corporation) R3 NAVENG; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Data\Definitions\VirusDefs\20170321.009\ENG64.SYS [138912 2017-02-08] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.7061.6600.105\Data\Definitions\VirusDefs\20170321.009\EX64.SYS [2151072 2017-02-08] (Symantec Corporation) R3 NETwNs64; C:\windows\System32\DRIVERS\NETwsw02.sys [3586016 2013-08-30] (Intel Corporation) R0 PxHlpa64; C:\windows\System32\drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation) R3 RTSPER; C:\windows\System32\DRIVERS\RtsPer.sys [427736 2013-08-09] (Realsil Semiconductor Corporation) R3 rtsuvc; C:\windows\System32\DRIVERS\rtsuvc.sys [8873688 2013-08-02] (Realtek Semiconductor Corp.) S3 SmbDrv; C:\windows\system32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-04] (Synaptics Incorporated) R3 SmbDrvI; C:\windows\system32\drivers\Smb_driver_Intel.sys [34544 2013-09-04] (Synaptics Incorporated) R1 SRTSP; C:\windows\System32\Drivers\SEP\0C011B95\19C8.105\x64\SRTSP64.SYS [899832 2016-09-26] (Symantec Corporation) R1 SRTSPX; C:\windows\System32\Drivers\SEP\0C011B95\19C8.105\x64\SRTSPX64.SYS [46320 2016-09-26] (Symantec Corporation) R0 SymEFASI; C:\windows\System32\drivers\symefasi\0502010.007\symefasi.sys [1626360 2016-09-26] (Symantec Corporation) R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [178392 2016-09-26] (Symantec Corporation) R1 SymIRON; C:\windows\System32\Drivers\SEP\0C011B95\19C8.105\x64\Ironx64.SYS [270040 2016-09-26] (Symantec Corporation) R3 usb3Hub; C:\windows\System32\DRIVERS\usb3Hub.sys [206744 2013-06-21] (Windows (R) Win 7 DDK provider) U3 SPBBCDrv; [X] U3 SymNetS; [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-04-07 21:43 - 2017-04-07 21:44 - 00035240 _____ C:\Users\GTronscorff\Desktop\FRST.txt 2017-04-07 21:42 - 2017-04-07 21:43 - 00000000 ____D C:\FRST 2017-04-07 21:41 - 2017-04-07 21:41 - 02424832 _____ (Farbar) C:\Users\GTronscorff\Desktop\FRST64.exe 2017-04-07 14:32 - 2017-04-07 14:32 - 00171350 _____ C:\Users\GTronscorff\Desktop\ZHPDiag.txt 2017-04-07 14:25 - 2017-04-07 14:25 - 02716160 _____ C:\Users\GTronscorff\ZHPDiag3.exe 2017-04-07 14:25 - 2017-04-07 14:25 - 00000634 _____ C:\Users\GTronscorff\Desktop\ZHPDiag.lnk 2017-04-07 14:12 - 2017-04-07 14:12 - 00003332 _____ C:\Users\GTronscorff\Desktop\ZHPFixReport.txt 2017-04-07 14:07 - 2017-04-07 14:09 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2017-04-07 14:07 - 2017-04-07 14:07 - 00001852 _____ C:\Users\Public\Desktop\ZHPFix.lnk 2017-04-07 14:07 - 2017-04-07 14:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2017-04-07 14:04 - 2017-04-07 14:04 - 00001418 _____ C:\Users\GTronscorff\Desktop\Script ZHPFix.txt 2017-04-07 14:04 - 2017-04-07 14:04 - 00001274 _____ C:\Users\GTronscorff\Desktop\Réponse 2 forum.txt 2017-04-07 14:01 - 2017-04-07 14:01 - 03521617 _____ (Nicolas Coolman ) C:\Users\GTronscorff\Desktop\zhpfix_2015.10.19.9.exe 2017-04-06 09:56 - 2017-04-06 09:57 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\ZHP 2017-04-06 09:41 - 2017-04-06 11:13 - 00000000 ____D C:\AdwCleaner 2017-04-06 09:17 - 2017-04-07 14:29 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\ZHP 2017-04-06 09:01 - 2017-04-06 15:54 - 00000000 ____D C:\Users\GTronscorff\Desktop\RANCON 2017-04-06 08:58 - 2017-04-06 08:58 - 00186304 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMChameleon.sys 2017-04-06 08:58 - 2017-04-06 08:58 - 00111544 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys 2017-04-06 08:58 - 2017-04-06 08:58 - 00082720 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys 2017-04-06 08:58 - 2017-04-06 08:58 - 00043968 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys 2017-04-06 08:57 - 2017-04-07 14:50 - 00251832 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2017-04-06 08:57 - 2017-04-06 08:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-04-06 08:57 - 2017-04-06 08:57 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-04-06 08:57 - 2017-04-06 08:57 - 00000000 ____D C:\Program Files\Malwarebytes 2017-04-06 08:57 - 2017-03-24 04:10 - 00077440 _____ C:\windows\system32\Drivers\mbae64.sys 2017-04-06 07:43 - 2017-04-06 07:43 - 00016670 _____ C:\Users\GTronscorff\FR0B4-4FRZK-HHTEX-XETFE-TXKTX-FEFHT-XEXAY.html 2017-04-06 07:43 - 2017-04-06 07:43 - 00016670 _____ C:\Users\GTronscorff\AppData\Roaming\FR0B4-4FRZK-HHTEX-XETFE-TXKTX-FEFHT-XEXAY.html 2017-04-06 07:43 - 2017-04-06 07:43 - 00016670 _____ C:\FR0B4-4FRZK-HHTEX-XETFE-TXKTX-FEFHT-XEXAY.html 2017-04-06 07:40 - 2017-04-06 07:43 - 09217464 _____ C:\Users\GTronscorff\AppData\Roaming\716414921 2017-04-05 17:49 - 2017-04-06 07:43 - 00017260 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-03-31-09-41-23 (1).xlsx 2017-04-05 17:48 - 2017-04-06 07:43 - 00017267 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-02-24-01-11-17.xlsx 2017-04-05 17:47 - 2017-04-06 07:43 - 00017260 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-03-31-09-41-23.xlsx 2017-04-05 17:20 - 2017-04-06 07:43 - 00018282 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-02-17-01-19-01.xlsx 2017-04-05 17:19 - 2017-04-06 07:43 - 00018248 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-04-01-11-05.xlsx 2017-04-05 17:18 - 2017-04-06 07:43 - 00018393 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-14-01-13-43.xlsx 2017-04-05 17:17 - 2017-04-06 07:43 - 00018440 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-25-01-10-36.xlsx 2017-04-05 17:11 - 2017-04-06 07:43 - 00018423 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-04-05-01-15-57.xlsx 2017-04-05 15:36 - 2017-04-06 07:43 - 00029356 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-03-31-09-42-01.xlsx 2017-04-05 10:29 - 2017-04-06 07:43 - 00016714 _____ C:\Users\GTronscorff\Downloads\AL12-DETAIL-JOUR-2017-04-05-08-00-26.xlsx 2017-04-03 15:11 - 2017-04-03 15:11 - 00113373 _____ C:\Users\GTronscorff\Desktop\VotreDecompteDeRemboursement.pdf 2017-03-31 11:45 - 2017-03-31 11:45 - 00058090 _____ C:\Users\GTronscorff\Desktop\RI-18309-RELAY-NORD ACCES GL NIV 1 SNCF 325258-1701090048.pdf 2017-03-31 11:45 - 2017-03-31 11:44 - 00062185 _____ C:\Users\GTronscorff\Downloads\RM-18309-RELAY-325258 NORD ACCES GL NIV-1 SNCF-SV1703070001@2.pdf 2017-03-31 10:33 - 2017-04-06 07:43 - 00009135 _____ C:\Users\GTronscorff\Desktop\Suivi Absences Said - SYMAG.xlsx 2017-03-30 09:44 - 2017-03-30 09:44 - 01363870 _____ C:\Users\GTronscorff\Desktop\projet-eurofrelon.doc.pdf 2017-03-25 10:35 - 2017-03-25 10:36 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-03-24 16:28 - 2017-03-24 14:51 - 00000522 _____ C:\Users\GTronscorff\Downloads\ETAT des RUPTURES.url 2017-03-24 15:34 - 2017-04-06 07:43 - 00051332 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-03-24-09-38-20.xls 2017-03-24 14:51 - 2017-04-06 07:43 - 00016400 _____ C:\Users\GTronscorff\Downloads\AL12-DETAIL-JOUR-2017-03-17-08-00-49.xlsx 2017-03-24 14:50 - 2017-03-24 14:51 - 00000522 _____ C:\Users\GTronscorff\Desktop\ETAT des RUPTURES.url 2017-03-24 14:49 - 2017-04-06 07:43 - 00016516 _____ C:\Users\GTronscorff\Downloads\AL12-DETAIL-JOUR-2017-03-24-08-00-27.xlsx 2017-03-24 10:53 - 2017-04-06 07:43 - 00017254 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-03-24-09-31-02.xlsx 2017-03-22 11:06 - 2017-04-06 07:43 - 00023719 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-03-22-01-12-16.xlsx 2017-03-22 11:06 - 2017-04-06 07:43 - 00018395 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-22-01-11-25.xlsx 2017-03-22 10:48 - 2017-03-22 10:48 - 00160913 _____ C:\Users\GTronscorff\Desktop\Entretien_d'appréciation_et_d___ILLES_TRONSCORFF_20160222.pdf 2017-03-21 17:53 - 2017-04-06 07:43 - 00021970 _____ C:\Users\GTronscorff\Desktop\Extract MonopMag.xlsx 2017-03-20 10:21 - 2017-03-20 10:21 - 00350964 _____ C:\Users\GTronscorff\Downloads\rp_60_i_ds.pdf 2017-03-19 21:52 - 2017-03-19 21:52 - 00101923 _____ C:\Users\GTronscorff\Desktop\Document conseil de classe 1L.pdf 2017-03-19 21:18 - 2017-03-19 21:18 - 00001046 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk 2017-03-19 21:16 - 2017-03-19 21:17 - 12972920 _____ (TeamViewer GmbH) C:\Users\GTronscorff\Downloads\TeamViewer_Setup_fr.exe 2017-03-17 15:57 - 2017-04-06 07:43 - 00022664 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-03-17-01-10-46.xlsx 2017-03-17 15:51 - 2017-04-06 07:43 - 00018627 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-17-01-10-22.xlsx 2017-03-17 12:00 - 2017-04-06 07:43 - 00029361 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-03-17-01-12-11.xlsx 2017-03-15 12:41 - 2017-04-06 07:43 - 00016020 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-03-15-01-19-25.xlsx 2017-03-14 12:00 - 2017-04-06 07:43 - 00016381 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA IWS JOUR-2017-03-14-02-10-17.xlsx 2017-03-14 11:59 - 2017-04-06 07:43 - 00016010 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-03-14-01-11-41.xlsx 2017-03-14 10:10 - 2017-03-14 10:15 - 00000000 ____D C:\cla 2017-03-08 13:43 - 2017-04-06 07:43 - 00029236 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-03-03-01-10-28 (1).xlsx 2017-03-08 11:19 - 2017-04-06 07:43 - 00018467 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-03-03-01-10-05.xlsx 2017-03-08 10:47 - 2017-04-06 07:43 - 00018402 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-03-08-01-15-48.xlsx ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-04-07 21:40 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-04-07 21:40 - 2009-07-14 06:45 - 00031536 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-04-07 21:38 - 2014-12-23 11:06 - 00000000 ___RD C:\Users\GTronscorff\Dropbox 2017-04-07 21:38 - 2014-12-11 17:49 - 00003948 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{408EE29B-9902-4747-B2FB-9AB213914612} 2017-04-07 21:35 - 2015-06-19 22:31 - 00001220 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-7174978-3753775089-2012757992-2447UA.job 2017-04-07 21:35 - 2014-10-28 17:49 - 00003718 _____ C:\windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2017-04-07 21:35 - 2014-06-25 09:48 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2017-04-07 14:53 - 2014-12-13 13:33 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\Skype 2017-04-07 14:50 - 2014-06-25 09:48 - 00000000 ____D C:\ProgramData\PDFC 2017-04-07 14:49 - 2009-07-14 07:08 - 00032482 _____ C:\windows\Tasks\SCHEDLGU.TXT 2017-04-07 14:49 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2017-04-07 14:25 - 2014-12-11 17:48 - 00000000 ____D C:\Users\GTronscorff 2017-04-07 14:08 - 2015-06-19 22:31 - 00001168 _____ C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-7174978-3753775089-2012757992-2447Core.job 2017-04-06 09:35 - 2014-07-17 20:33 - 00751356 _____ C:\windows\system32\perfh00C.dat 2017-04-06 09:35 - 2014-07-17 20:33 - 00151580 _____ C:\windows\system32\perfc00C.dat 2017-04-06 09:35 - 2009-07-14 07:13 - 01679552 _____ C:\windows\system32\PerfStringBackup.INI 2017-04-06 09:35 - 2009-07-14 05:20 - 00000000 ____D C:\windows\inf 2017-04-06 07:55 - 2016-09-17 22:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete 2017-04-06 07:55 - 2014-06-25 09:48 - 00000000 ____D C:\Program Files (x86)\PDF Complete 2017-04-06 07:43 - 2017-03-03 15:26 - 00050820 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-03-03-01-18-31.xls 2017-04-06 07:43 - 2017-03-03 15:26 - 00032159 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-03-03-01-10-28.xlsx 2017-04-06 07:43 - 2017-02-23 16:06 - 00018063 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-02-17-01-10-19.xlsx 2017-04-06 07:43 - 2017-02-21 12:45 - 00017340 _____ C:\Users\GTronscorff\Desktop\Pb TPE sur 341875.xlsx 2017-04-06 07:43 - 2017-02-14 19:32 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-21-01-19-00.xls 2017-04-06 07:43 - 2017-02-14 19:32 - 00028804 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL ALERTE -2017-02-14-01-18-47.xls 2017-04-06 07:43 - 2017-02-14 19:30 - 00018334 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-02-14-01-10-50.xlsx 2017-04-06 07:43 - 2017-02-14 17:48 - 00018357 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-02-10-01-10-17.xlsx 2017-04-06 07:43 - 2017-02-13 13:57 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-02-10-01-19-06.xls 2017-04-06 07:43 - 2017-02-08 19:15 - 00016417 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-02-03-01-10-59.xlsx 2017-04-06 07:43 - 2017-02-08 19:14 - 00016114 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-02-08-01-14-13.xlsx 2017-04-06 07:43 - 2017-02-07 11:17 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-02-03-01-16-19 (1).xls 2017-04-06 07:43 - 2017-02-07 11:16 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-02-03-01-16-19.xls 2017-04-06 07:43 - 2017-02-07 11:16 - 00029123 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-02-03-01-17-23 (1).xlsx 2017-04-06 07:43 - 2017-02-03 10:49 - 00029123 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-02-03-01-17-23.xlsx 2017-04-06 07:43 - 2017-02-03 10:46 - 00017276 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-02-03-01-15-08.xlsx 2017-04-06 07:43 - 2017-02-02 16:45 - 00017275 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-01-27-01-10-14.xlsx 2017-04-06 07:43 - 2017-02-02 16:44 - 00017218 _____ C:\Users\GTronscorff\Downloads\AL56-PROMOD-2017-01-25-11-19-15.xlsx 2017-04-06 07:43 - 2017-01-26 16:29 - 00020959 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-01-22-01-10-24.xlsx 2017-04-06 07:43 - 2017-01-26 16:28 - 00017516 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-01-24-01-13-03.xlsx 2017-04-06 07:43 - 2017-01-26 15:36 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-01-20-01-21-29.xls 2017-04-06 07:43 - 2017-01-25 12:04 - 00029215 _____ C:\Users\GTronscorff\Downloads\SG74-GR ETAM-2017-01-25-01-10-54.xlsx 2017-04-06 07:43 - 2017-01-25 12:04 - 00028608 _____ C:\Users\GTronscorff\Downloads\SG68-GR ETAM-2017-01-25-01-19-34.xlsx 2017-04-06 07:43 - 2017-01-25 12:04 - 00017366 _____ C:\Users\GTronscorff\Downloads\AL56-GR ETAM-2017-01-20-01-10-11 (1).xlsx 2017-04-06 07:43 - 2017-01-25 12:03 - 00029228 _____ C:\Users\GTronscorff\Downloads\SG74-GR ETAM-2017-01-20-01-18-09.xlsx 2017-04-06 07:43 - 2017-01-25 12:03 - 00017366 _____ C:\Users\GTronscorff\Downloads\AL56-GR ETAM-2017-01-20-01-10-11.xlsx 2017-04-06 07:43 - 2017-01-25 12:00 - 00028751 _____ C:\Users\GTronscorff\Downloads\SG68-GR ETAM-2016-01-01-01-18-32.xlsx 2017-04-06 07:43 - 2017-01-25 12:00 - 00016843 _____ C:\Users\GTronscorff\Downloads\AL56-GR ETAM-2016-01-01-01-13-00.xlsx 2017-04-06 07:43 - 2017-01-25 11:56 - 00019817 _____ C:\Users\GTronscorff\Downloads\SG74-GR JARDILAND-2017-01-25-01-21-20.xlsx 2017-04-06 07:43 - 2017-01-25 11:56 - 00019091 _____ C:\Users\GTronscorff\Downloads\SG68-GR JARDILAND-2017-01-25-01-16-20.xlsx 2017-04-06 07:43 - 2017-01-25 11:55 - 00019770 _____ C:\Users\GTronscorff\Downloads\SG74-GR JARDILAND-2017-01-20-01-11-03.xlsx 2017-04-06 07:43 - 2017-01-19 18:05 - 00016301 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-19-01-12-52.xlsx 2017-04-06 07:43 - 2017-01-18 16:40 - 00027980 _____ C:\Users\GTronscorff\Downloads\L17-YTD-2017-01-01-11-11-04.xlsx 2017-04-06 07:43 - 2017-01-17 10:25 - 00016534 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-17-01-10-30.xlsx 2017-04-06 07:43 - 2017-01-16 13:42 - 00016415 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-14-01-10-30 (1).xlsx 2017-04-06 07:43 - 2017-01-16 13:36 - 00016229 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-15-01-10-37.xlsx 2017-04-06 07:43 - 2017-01-16 13:36 - 00016211 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-16-01-10-31.xlsx 2017-04-06 07:43 - 2017-01-16 13:34 - 00016415 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-14-01-10-30.xlsx 2017-04-06 07:43 - 2017-01-16 13:33 - 00016511 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-13-12-10-02 (1).xlsx 2017-04-06 07:43 - 2017-01-13 15:29 - 00017186 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA IWS JOUR-2017-01-13-12-10-34.xlsx 2017-04-06 07:43 - 2017-01-13 15:29 - 00016511 _____ C:\Users\GTronscorff\Downloads\CS15-GR CALZEDONIA ALLIANCE JOUR-2017-01-13-12-10-02.xlsx 2017-04-06 07:43 - 2017-01-12 16:40 - 00029037 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-01-06-01-14-16 (2).xlsx 2017-04-06 07:43 - 2017-01-12 16:17 - 00017512 _____ C:\Users\GTronscorff\Downloads\CS15-RELAY ALLIANCE JOUR-2017-01-12-01-19-36 (1).xlsx 2017-04-06 07:43 - 2017-01-12 16:16 - 00041856 _____ C:\Users\GTronscorff\Downloads\CS15-RELAY IWS JOUR-2017-01-12-01-16-17 (2).xlsx 2017-04-06 07:43 - 2017-01-12 15:57 - 00017830 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-01-12-01-11-22.xlsx 2017-04-06 07:43 - 2017-01-12 15:54 - 00020960 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-01-12-01-15-30.xlsx 2017-04-06 07:43 - 2017-01-12 14:04 - 00041856 _____ C:\Users\GTronscorff\Downloads\CS15-RELAY IWS JOUR-2017-01-12-01-16-17 (1).xlsx 2017-04-06 07:43 - 2017-01-12 13:59 - 00041856 _____ C:\Users\GTronscorff\Downloads\CS15-RELAY IWS JOUR-2017-01-12-01-16-17.xlsx 2017-04-06 07:43 - 2017-01-12 13:54 - 00017512 _____ C:\Users\GTronscorff\Downloads\CS15-RELAY ALLIANCE JOUR-2017-01-12-01-19-36.xlsx 2017-04-06 07:43 - 2017-01-12 13:51 - 00024945 _____ C:\Users\GTronscorff\Downloads\C45-GR CARREFOUR MAINTENEURS-2016-06-30-17-08-28.xlsx 2017-04-06 07:43 - 2017-01-12 13:50 - 00023903 _____ C:\Users\GTronscorff\Downloads\SG38-LIDL HEBDO-2016-10-10-01-18-14.xlsx 2017-04-06 07:43 - 2017-01-12 13:31 - 00994815 _____ C:\Users\GTronscorff\Downloads\ALC08-LASER-2017-01-12-01-11-22.xlsx 2017-04-06 07:43 - 2017-01-10 11:48 - 01029584 _____ C:\Users\GTronscorff\Downloads\ALC08-LASER-2017-01-10-01-10-23.xlsx 2017-04-06 07:43 - 2017-01-10 11:47 - 00020375 _____ C:\Users\GTronscorff\Downloads\ALC08-LASER SUIVI JOUR-2017-01-09-19-30-40.xlsx 2017-04-06 07:43 - 2017-01-09 12:11 - 00043579 _____ C:\Users\GTronscorff\Downloads\AL61-GR RELAY-2017-01-09-02-00-07.xlsx 2017-04-06 07:43 - 2017-01-06 16:01 - 00029037 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-01-06-01-14-16 (1).xlsx 2017-04-06 07:43 - 2017-01-06 15:54 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2017-01-06-01-14-01.xls 2017-04-06 07:43 - 2017-01-06 15:53 - 00029037 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2017-01-06-01-14-16.xlsx 2017-04-06 07:43 - 2017-01-06 15:51 - 00020828 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-01-06-01-19-41.xlsx 2017-04-06 07:43 - 2017-01-06 15:49 - 00018308 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2017-01-06-01-14-23.xlsx 2017-04-06 07:43 - 2017-01-05 12:12 - 00019961 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2017-01-05-01-15-13.xlsx 2017-04-06 07:43 - 2017-01-05 12:11 - 00029128 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-12-30-01-14-47.xlsx 2017-04-06 07:43 - 2016-12-20 20:08 - 00048772 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-12-16-01-19-36.xls 2017-04-06 07:43 - 2016-12-16 12:25 - 00016648 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT ALERTE-JOUR-2016-12-16-01-20-58.xlsx 2017-04-06 07:43 - 2016-12-16 12:24 - 00029828 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL ALERTE -2016-12-16-01-19-42.xls 2017-04-06 07:43 - 2016-12-16 12:20 - 00029035 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-25-01-12-18.xlsx 2017-04-06 07:43 - 2016-12-16 12:20 - 00028938 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-18-01-10-26 (1).xlsx 2017-04-06 07:43 - 2016-12-16 12:19 - 00028989 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-12-02-01-18-59.xlsx 2017-04-06 07:43 - 2016-12-16 12:19 - 00028870 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-12-09-01-18-19.xlsx 2017-04-06 07:43 - 2016-12-16 12:18 - 00019641 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2016-12-16-01-13-53.xlsx 2017-04-06 07:43 - 2016-12-16 12:17 - 00028938 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-18-01-10-26.xlsx 2017-04-06 07:43 - 2016-12-16 12:16 - 00028954 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-12-16-01-10-19.xlsx 2017-04-06 07:43 - 2016-12-08 10:26 - 00018167 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2016-12-08-01-17-09.xlsx 2017-04-06 07:43 - 2016-11-25 13:41 - 00017982 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2016-11-25-01-13-17.xlsx 2017-04-06 07:43 - 2016-11-25 13:39 - 00019916 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2016-11-25-01-23-07.xlsx 2017-04-06 07:43 - 2016-11-22 19:01 - 00048260 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-11-18-01-13-39.xls 2017-04-06 07:43 - 2016-11-17 15:39 - 00019619 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2016-11-17-01-18-53.xlsx 2017-04-06 07:43 - 2016-11-17 15:39 - 00017391 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2016-11-17-01-13-15.xlsx 2017-04-06 07:43 - 2016-11-14 16:01 - 00028935 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-11-01-17-48 (1).xlsx 2017-04-06 07:43 - 2016-11-14 15:47 - 00028935 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-11-01-17-48.xlsx 2017-04-06 07:43 - 2016-11-04 10:47 - 00064132 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-11-04-01-20-41.xls 2017-04-06 07:43 - 2016-11-04 10:47 - 00033160 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-11-04-01-16-42.xlsx 2017-04-06 07:43 - 2016-11-03 18:06 - 00030852 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL ALERTE -2016-11-03-01-15-04.xls 2017-04-06 07:43 - 2016-11-03 18:05 - 00048260 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-28-01-20-03.xls 2017-04-06 07:43 - 2016-11-03 18:04 - 00028841 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-28-01-10-19.xlsx 2017-04-06 07:43 - 2016-11-03 18:03 - 00016654 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT ALERTE-JOUR-2016-11-03-01-11-10.xlsx 2017-04-06 07:43 - 2016-10-26 15:14 - 00047748 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-21-01-19-00 (1).xls 2017-04-06 07:43 - 2016-10-26 15:13 - 00031441 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-21-01-13-19 (1).xlsx 2017-04-06 07:43 - 2016-10-25 14:37 - 00021617 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-07-01-13-11 (1).xlsx 2017-04-06 07:43 - 2016-10-25 14:37 - 00021594 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-14-01-13-50 (1).xlsx 2017-04-06 07:43 - 2016-10-24 09:49 - 00028819 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-21-01-13-19.xlsx 2017-04-06 07:43 - 2016-10-17 09:36 - 00028836 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-14-01-10-38.xlsx 2017-04-06 07:43 - 2016-10-17 09:36 - 00021594 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-14-01-13-50.xlsx 2017-04-06 07:43 - 2016-10-13 09:37 - 00018206 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2016-10-13-02-10-25.xlsx 2017-04-06 07:43 - 2016-10-12 15:26 - 00028917 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-07-01-10-21 (2).xlsx 2017-04-06 07:43 - 2016-10-12 11:15 - 00028917 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-07-01-10-21 (1).xlsx 2017-04-06 07:43 - 2016-10-07 09:36 - 00028917 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-10-07-01-10-21.xlsx 2017-04-06 07:43 - 2016-10-07 09:36 - 00021617 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-10-07-01-13-11.xlsx 2017-04-06 07:43 - 2016-10-04 14:46 - 00017111 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2016-10-04-02-10-00.xlsx 2017-04-06 07:43 - 2016-10-04 14:40 - 00018209 _____ C:\Users\GTronscorff\Downloads\AL52-GR RELAY 60J-2016-10-04-02-10-23.xlsx 2017-04-06 07:43 - 2016-10-03 12:14 - 00028918 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-30-01-11-10.xlsx 2017-04-06 07:43 - 2016-10-03 12:14 - 00021618 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-30-01-13-38.xlsx 2017-04-06 07:43 - 2016-09-21 15:58 - 00028735 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-16-01-10-16 (1).xlsx 2017-04-06 07:43 - 2016-09-21 15:58 - 00021611 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-16-01-13-30.xlsx 2017-04-06 07:43 - 2016-09-16 11:54 - 00028735 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-16-01-10-16.xlsx 2017-04-06 07:43 - 2016-09-12 16:03 - 00021576 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-08-26-01-13-54 (1).xlsx 2017-04-06 07:43 - 2016-09-12 16:02 - 00021670 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-07-15-01-14-14.xlsx 2017-04-06 07:43 - 2016-09-12 16:02 - 00021531 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-08-05-01-12-51.xlsx 2017-04-06 07:43 - 2016-09-12 16:02 - 00020936 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-07-01-01-50-53 (1).xlsx 2017-04-06 07:43 - 2016-09-12 16:01 - 00020921 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-06-10-01-13-14.xlsx 2017-04-06 07:43 - 2016-09-12 15:47 - 00019682 _____ C:\Users\GTronscorff\Downloads\AL26 DEPOT_RELAY LIB-6MOIS-2016-09-01-01-11-17.xlsx 2017-04-06 07:43 - 2016-09-12 15:45 - 00018593 _____ C:\Users\GTronscorff\Downloads\AL26 DEPOT_RELAY-6MOIS-2016-09-01-01-29-36.xlsx 2017-04-06 07:43 - 2016-09-12 15:42 - 00021575 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-02-01-10-39 (2).xlsx 2017-04-06 07:43 - 2016-09-12 15:40 - 00021573 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-08-12-01-13-31.xlsx 2017-04-06 07:43 - 2016-09-12 15:39 - 00020936 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-07-01-01-50-53.xlsx 2017-04-06 07:43 - 2016-09-12 15:39 - 00020934 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-06-03-01-11-16.xlsx 2017-04-06 07:43 - 2016-09-12 15:37 - 00019288 _____ C:\Users\GTronscorff\Downloads\SG76-GR RELAY 60J-2016-06-30-02-10-37.xlsx 2017-04-06 07:43 - 2016-09-09 17:25 - 00028745 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-09-01-10-33 (1).xlsx 2017-04-06 07:43 - 2016-09-09 17:25 - 00021609 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-09-01-12-41.xlsx 2017-04-06 07:43 - 2016-09-09 09:38 - 00028745 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-09-01-10-33.xlsx 2017-04-06 07:43 - 2016-09-08 09:51 - 00016545 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT ALERTE-JOUR-2016-09-08-02-10-01.xlsx 2017-04-06 07:43 - 2016-09-07 18:18 - 00016697 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT ALERTE-JOUR-2016-09-07-02-10-01.xlsx 2017-04-06 07:43 - 2016-09-06 16:32 - 00028730 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-02-01-11-41.xlsx 2017-04-06 07:43 - 2016-09-05 10:21 - 00028730 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-09-02-01-11-41 (1).xlsx 2017-04-06 07:43 - 2016-09-05 10:21 - 00021575 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-02-01-10-39 (1).xlsx 2017-04-06 07:43 - 2016-09-02 18:05 - 00021575 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-09-02-01-10-39.xlsx 2017-04-06 07:43 - 2016-08-26 15:44 - 00028732 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-08-26-01-13-08.xlsx 2017-04-06 07:43 - 2016-08-26 15:44 - 00021576 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-08-26-01-13-54.xlsx 2017-04-06 07:43 - 2016-08-23 15:55 - 00021568 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-08-19-01-13-42.xlsx 2017-04-06 07:43 - 2016-08-23 15:54 - 00028613 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-08-19-01-10-21.xlsx 2017-04-06 07:43 - 2016-07-29 12:14 - 00028547 _____ C:\Users\GTronscorff\Downloads\ALC11-GR RELAY CLIENT MAINT-HEBDO-2016-07-29-01-15-11.xlsx 2017-04-06 07:43 - 2016-07-29 12:14 - 00021671 _____ C:\Users\GTronscorff\Downloads\SG14-GR RELAY INSTALL -2016-07-29-01-13-22.xlsx 2017-04-06 07:07 - 2014-12-12 21:18 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\Deployment 2017-04-05 17:21 - 2014-10-28 17:45 - 00000232 _____ C:\windows\system32\config\netlogon.ftl 2017-04-04 09:11 - 2014-12-12 21:21 - 00002200 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-04-03 17:42 - 2014-12-15 20:27 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\CrashDumps 2017-03-31 16:03 - 2014-12-23 16:38 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\FileZilla 2017-03-25 10:36 - 2014-12-23 10:45 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\Dropbox 2017-03-22 10:48 - 2014-12-11 17:50 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\PDFC 2017-03-21 21:00 - 2009-07-14 06:45 - 05059304 _____ C:\windows\system32\FNTCACHE.DAT 2017-03-21 20:59 - 2015-07-16 16:35 - 00000000 ____D C:\windows\Minidump 2017-03-21 20:37 - 2016-05-19 10:04 - 00325773 ____N C:\windows\Minidump\032117-1467548-01.dmp 2017-03-20 10:06 - 2015-10-13 14:59 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\TeamViewer 2017-03-19 21:51 - 2014-12-11 17:51 - 00111536 _____ C:\Users\GTronscorff\AppData\Local\GDIPFONTCACHEV1.DAT 2017-03-19 21:19 - 2014-09-09 18:04 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2017-03-16 12:24 - 2017-02-22 17:28 - 00888086 ____H C:\Users\GTronscorff\AppData\Local\IconCache.db.backup 2017-03-16 12:23 - 2015-01-12 11:11 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\ElevatedDiagnostics 2017-03-10 09:56 - 2015-01-05 13:08 - 00000000 ____D C:\Users\GTronscorff\AppData\Roaming\Apple Computer 2017-03-09 13:04 - 2015-11-18 22:15 - 00000000 ____D C:\Users\GTronscorff\AppData\Local\Apple Inc ==================== Fichiers à la racine de certains dossiers ======= 2014-07-10 08:16 - 2014-07-10 08:16 - 2174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2017-04-06 07:40 - 2017-04-06 07:43 - 9217464 _____ () C:\Users\GTronscorff\AppData\Roaming\716414921 2017-04-06 07:43 - 2017-04-06 07:43 - 0016670 _____ () C:\Users\GTronscorff\AppData\Roaming\FR0B4-4FRZK-HHTEX-XETFE-TXKTX-FEFHT-XEXAY.html 2015-05-28 16:31 - 2015-05-28 22:42 - 0000132 _____ () C:\Users\GTronscorff\AppData\Roaming\Préférences Adobe BMP Format CC 2015-01-10 00:12 - 2015-01-10 00:12 - 0000000 ____H () C:\Users\GTronscorff\AppData\Local\BITC8BC.tmp 2016-03-11 11:23 - 2016-03-11 11:24 - 0000600 _____ () C:\Users\GTronscorff\AppData\Local\PUTTY.RND 2015-04-02 20:55 - 2015-04-02 20:55 - 0002769 _____ () C:\Users\GTronscorff\AppData\Local\recently-used.xbel 2014-12-11 18:12 - 2014-12-11 18:12 - 0000017 _____ () C:\Users\GTronscorff\AppData\Local\resmon.resmoncfg 2015-01-10 00:09 - 2015-01-10 00:11 - 0000000 _____ () C:\Users\GTronscorff\AppData\Local\{A7ACF4CE-2E5A-4E89-8D74-533BDB4956CD} Fichiers à déplacer ou supprimer: ==================== C:\Users\GTronscorff\ZHPDiag3.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\windows\system32\winlogon.exe => Le fichier est signé numériquement C:\windows\system32\wininit.exe => Le fichier est signé numériquement C:\windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\windows\explorer.exe => Le fichier est signé numériquement C:\windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\windows\system32\svchost.exe => Le fichier est signé numériquement C:\windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\windows\system32\services.exe => Le fichier est signé numériquement C:\windows\system32\User32.dll => Le fichier est signé numériquement C:\windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\windows\system32\userinit.exe => Le fichier est signé numériquement C:\windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\windows\system32\rpcss.dll => Le fichier est signé numériquement C:\windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-04-04 14:17 ==================== Fin de FRST.txt ============================