Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 02-11-2017 Exécuté par jerome (administrateur) sur ASUS (04-11-2017 22:26:00) Exécuté depuis C:\Users\jerome\Desktop Profils chargés: jerome (Profils disponibles: UpdatusUser & jerome & Invité) Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\WINDOWS\System32\nvvsvc.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\Start8\Start8_64.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Intel Corporation) C:\WINDOWS\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\WINDOWS\System32\DptfPolicyConfigTDPService.exe (Intel Corporation) C:\WINDOWS\System32\DptfPolicyLpmService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe () C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer INC.) C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe (ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Intel Corporation) C:\WINDOWS\System32\DptfPolicyLpmServiceHelper.exe (Intel Corporation) C:\WINDOWS\System32\igfxtray.exe (Intel Corporation) C:\WINDOWS\System32\hkcmd.exe (Intel Corporation) C:\WINDOWS\System32\igfxsrvc.exe (Intel Corporation) C:\WINDOWS\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe () C:\Program Files (x86)\PrtScr\PrtScr.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe (TomTom) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\WINDOWS\System32\StikyNot.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusSmartGestureDetector64.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4500 series\Bin\HP ENVY 4500 series.exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [27024 2013-01-18] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13267016 2013-01-23] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1276488 2013-01-18] (Realtek Semiconductor) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-10-16] (Apple Inc.) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-04-26] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [PrtScr by FireStarter] => C:\Program Files (x86)\PrtScr\PrtScr.exe [2766336 2013-07-14] () HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688 2015-10-21] (Apple Inc.) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [61200 2015-10-21] (Apple Inc.) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [254840 2017-01-20] (TomTom) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [1906088 2017-01-17] (TomTom) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.) HKU\S-1-5-21-3042553715-1535261532-1053064283-1002\...\Run: [RESTART_STICKY_NOTES] => C:\WINDOWS\System32\StikyNot.exe [479744 2014-11-21] (Microsoft Corporation) HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe [372408 2014-11-08] (Microsoft Corporation) HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [60688 2015-10-21] (Apple Inc.) AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-12-10] (NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-12-10] (NVIDIA Corporation) CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{294F069E-1DAD-41EB-90B5-72F539A0BED6}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{F1C8ABD0-E4B1-4878-80D5-FD2AF80A13E9}: [DhcpNameServer] 10.20.255.2 Internet Explorer: ================== SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-3042553715-1535261532-1053064283-1002 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-02-25] (Eyeo GmbH) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc.) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-02-25] (Eyeo GmbH) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc.) Toolbar: HKU\S-1-5-21-3042553715-1535261532-1053064283-1002 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\jerome\AppData\Roaming\TomTom\HOME\Profiles\d7vuxtx6.default [2017-02-25] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [Pas de fichier] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Pas de fichier] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR NewTab: Default -> Not-active:"chrome-extension://nlamhjlfnmmjjjdlabicmlnokklhncck/newtab/newtab.html", Not-active:"chrome-extension://ddfgmkcedkmbgppkneoedidgnhfmbloc/index.html" CHR Profile: C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default [2017-11-02] CHR Extension: (Adblock Plus) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-09-28] CHR Extension: (mixMusic Start) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddfgmkcedkmbgppkneoedidgnhfmbloc [2016-08-04] CHR Extension: (Adobe Acrobat) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-06] CHR Extension: (Sports Hero) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlamhjlfnmmjjjdlabicmlnokklhncck [2016-11-19] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-23] CHR Extension: (Chrome Media Router) - C:\Users\jerome\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-28] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.) R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () [Fichier non signé] R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [31632 2013-01-18] (Intel Corporation) R2 DptfPolicyConfigTDPService; C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe [33168 2013-01-18] (Intel Corporation) R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [39824 2013-01-18] (Intel Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) R2 Start8; C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe [143288 2014-04-04] (Stardock Software, Inc) R2 WakeupService; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [45488 2012-12-20] (ASUSTek Computer Inc.) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [65784 2013-01-16] (ASUS Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R3 DptfDevDram; C:\WINDOWS\system32\DRIVERS\DptfDevDram.sys [107920 2013-01-18] (Intel Corporation) R3 DptfDevFan; C:\WINDOWS\system32\DRIVERS\DptfDevFan.sys [43408 2013-01-18] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\system32\DRIVERS\DptfDevGen.sys [65424 2013-01-18] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\system32\DRIVERS\DptfDevProc.sys [229776 2013-01-18] (Intel Corporation) R3 DptfManager; C:\WINDOWS\system32\DRIVERS\DptfManager.sys [363920 2013-01-18] (Intel Corporation) R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( ) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2017-06-19] (Malwarebytes Corporation) R1 MpKslbe40fe33; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2B382EB3-62E3-4706-8FCC-C1B4BC9308DA}\MpKslbe40fe33.sys [58120 2017-11-04] (Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-04 22:26 - 2017-11-04 22:27 - 000021451 _____ C:\Users\jerome\Desktop\FRST.txt 2017-11-04 22:25 - 2017-11-04 22:25 - 000000000 ____D C:\Users\jerome\Desktop\FRST-OlderVersion 2017-11-01 18:50 - 2017-11-01 18:59 - 000041123 _____ C:\Users\jerome\Desktop\Addition.txt 2017-11-01 18:35 - 2017-11-04 22:25 - 002403328 _____ (Farbar) C:\Users\jerome\Desktop\FRST64.exe 2017-11-01 18:27 - 2017-11-04 22:26 - 000000000 ____D C:\FRST 2017-11-01 18:26 - 2017-11-01 18:27 - 002403328 _____ (Farbar) C:\Users\jerome\Downloads\FRST64.exe 2017-11-01 18:25 - 2017-11-01 18:26 - 002403328 _____ (Farbar) C:\Users\jerome\Downloads\FRST64 (1).exe 2017-11-01 17:46 - 2017-11-01 17:46 - 000011183 _____ C:\Users\jerome\Desktop\detail des frais mensuel.xlsx 2017-11-01 17:46 - 2017-11-01 17:46 - 000000165 ____H C:\Users\jerome\Desktop\~$detail des frais mensuel.xlsx 2017-11-01 13:02 - 2017-11-01 13:02 - 000132487 _____ C:\Users\jerome\Desktop\ZHPDiag.txt 2017-11-01 09:46 - 2017-11-01 09:47 - 000030916 _____ C:\Users\jerome\Desktop\TH-Avis-PrimMEN-2017-17620483901160.pdf 2017-10-27 19:48 - 2017-10-27 19:48 - 000018251 _____ C:\Users\jerome\Downloads\releveMensuel.pdf 2017-10-27 19:46 - 2017-10-27 19:46 - 000012362 _____ C:\Users\jerome\Downloads\DetailIJ (1).pdf 2017-10-27 19:45 - 2017-10-27 19:45 - 000012362 _____ C:\Users\jerome\Downloads\DetailIJ.pdf 2017-10-27 19:14 - 2017-10-27 19:14 - 001068389 _____ C:\Users\jerome\Downloads\Vos Conditions Générales.pdf 2017-10-27 19:14 - 2017-10-27 19:14 - 000148157 _____ C:\Users\jerome\Downloads\Votre devis Assurance Auto BNP Paribas.pdf 2017-10-27 15:06 - 2017-10-27 15:06 - 000116081 _____ C:\Users\jerome\Downloads\RIB OUSTRIC SAS.pdf 2017-10-27 12:27 - 2017-10-27 12:27 - 000035390 _____ C:\Users\jerome\Downloads\X1.pdf 2017-10-26 19:34 - 2017-10-26 19:34 - 000001096 _____ C:\Users\Public\Desktop\Iron Config and Backup.lnk 2017-10-26 19:34 - 2017-10-26 19:34 - 000001034 _____ C:\Users\Public\Desktop\SRWare Iron.lnk 2017-10-26 19:34 - 2017-10-26 19:34 - 000000000 ____D C:\Users\jerome\AppData\Local\Chromium 2017-10-26 19:34 - 2017-10-26 19:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRWare Iron 2017-10-26 19:34 - 2017-10-26 19:34 - 000000000 ____D C:\Program Files (x86)\SRWare Iron 2017-10-26 19:30 - 2017-10-26 19:31 - 052777944 _____ (SRWare ) C:\Users\jerome\Desktop\srware_iron.exe 2017-10-26 18:46 - 2017-10-26 18:46 - 000387092 _____ C:\Users\jerome\Desktop\cmp tom.pdf 2017-10-26 18:24 - 2017-10-31 12:51 - 000000000 ____D C:\Users\jerome\Desktop\le bon coin 2017-10-22 22:36 - 2017-10-22 22:36 - 002917248 _____ C:\Users\jerome\ZHPDiag3.exe 2017-10-21 21:07 - 2017-11-04 19:11 - 000000000 ____D C:\Users\jerome\Desktop\mon X1 2017-10-20 20:09 - 2017-10-20 20:09 - 000266910 _____ C:\Users\jerome\Documents\pdc.pdf 2017-10-19 17:23 - 2017-10-22 22:40 - 000132387 _____ C:\Users\jerome\Desktop\ZHPDiag1.txt 2017-10-19 17:13 - 2017-11-01 12:49 - 000000867 _____ C:\Users\jerome\Desktop\ZHPDiag.lnk 2017-10-19 17:13 - 2017-10-19 17:20 - 000000000 ____D C:\Users\jerome\AppData\Local\ZHP 2017-10-19 17:12 - 2017-10-19 17:12 - 002900480 _____ C:\Users\jerome\Downloads\zhpdiag_v2017.10.9.179 (1).exe 2017-10-19 17:11 - 2017-10-19 17:11 - 002900480 _____ C:\Users\jerome\Downloads\zhpdiag_v2017.10.9.179.exe 2017-10-18 14:17 - 2017-10-18 14:18 - 000000000 ____D C:\Users\jerome\Desktop\xsara picasso 2017-10-17 14:50 - 2017-10-17 14:50 - 000347570 _____ C:\Users\jerome\Desktop\roy nansion, 4 pdf.pdf 2017-10-16 17:29 - 2017-10-16 17:29 - 000000000 ____D C:\Users\jerome\Desktop\Nouveau dossier 2017-10-16 13:28 - 2017-10-16 13:28 - 000108417 _____ C:\Users\jerome\Downloads\20171005100422.pdf 2017-10-16 13:28 - 2017-10-16 13:28 - 000108417 _____ C:\Users\jerome\Downloads\20171005100422 (1).pdf 2017-10-12 17:01 - 2017-10-12 17:01 - 000009655 _____ C:\Users\jerome\Desktop\Classeur1.xlsx 2017-10-12 15:15 - 2017-10-12 15:15 - 013560884 _____ C:\Users\jerome\Downloads\VID-20170930-WA0000.mp4 2017-10-11 14:02 - 2017-10-11 14:02 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2017-10-11 06:09 - 2017-09-07 22:08 - 025729536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-10-11 06:08 - 2017-09-14 20:30 - 007439704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-10-11 06:08 - 2017-09-14 20:30 - 001737600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2017-10-11 06:08 - 2017-09-14 20:29 - 001502000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2017-10-11 06:08 - 2017-09-14 02:18 - 001384216 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-10-11 06:08 - 2017-09-14 02:14 - 001124384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-10-11 06:08 - 2017-09-13 14:32 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2017-10-11 06:08 - 2017-09-13 14:31 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2017-10-11 06:08 - 2017-09-13 14:27 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll 2017-10-11 06:08 - 2017-09-09 19:53 - 022361864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-10-11 06:08 - 2017-09-09 18:55 - 019790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-10-11 06:08 - 2017-09-09 18:38 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2017-10-11 06:08 - 2017-09-09 17:10 - 003631616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-10-11 06:08 - 2017-09-09 16:49 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-10-11 06:08 - 2017-09-09 16:47 - 014466560 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-10-11 06:08 - 2017-09-09 16:21 - 012879360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-10-11 06:08 - 2017-09-09 14:13 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll 2017-10-11 06:08 - 2017-09-09 14:13 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2017-10-11 06:08 - 2017-09-09 14:13 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll 2017-10-11 06:08 - 2017-09-09 04:50 - 002013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-10-11 06:08 - 2017-09-09 04:50 - 001364552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2017-10-11 06:08 - 2017-09-08 19:21 - 004168192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2017-10-11 06:08 - 2017-09-08 19:15 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2017-10-11 06:08 - 2017-09-08 18:39 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2017-10-11 06:08 - 2017-09-08 17:57 - 001084928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-10-11 06:08 - 2017-09-07 22:33 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2017-10-11 06:08 - 2017-09-07 22:33 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2017-10-11 06:08 - 2017-09-07 22:32 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-10-11 06:08 - 2017-09-07 22:32 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2017-10-11 06:08 - 2017-09-07 22:17 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-10-11 06:08 - 2017-09-07 22:17 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2017-10-11 06:08 - 2017-09-07 22:15 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-10-11 06:08 - 2017-09-07 22:00 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-10-11 06:08 - 2017-09-07 21:40 - 005982208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-10-11 06:08 - 2017-09-07 21:32 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-10-11 06:08 - 2017-09-07 21:31 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2017-10-11 06:08 - 2017-09-07 21:29 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-10-11 06:08 - 2017-09-07 21:21 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2017-10-11 06:08 - 2017-09-07 21:13 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2017-10-11 06:08 - 2017-09-07 21:11 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-10-11 06:08 - 2017-09-07 21:10 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-10-11 06:08 - 2017-09-07 21:10 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-10-11 06:08 - 2017-09-07 21:08 - 002134528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-10-11 06:08 - 2017-09-07 21:08 - 000656896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2017-10-11 06:08 - 2017-09-07 20:54 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2017-10-11 06:08 - 2017-09-07 20:44 - 015262720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-10-11 06:08 - 2017-09-07 20:40 - 003240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-10-11 06:08 - 2017-09-07 20:27 - 001548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-10-11 06:08 - 2017-09-07 20:17 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-10-11 06:08 - 2017-09-07 20:10 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-10-11 06:08 - 2017-09-07 20:09 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2017-10-11 06:08 - 2017-09-07 20:04 - 020267008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-10-11 06:08 - 2017-09-07 20:03 - 002292736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-10-11 06:08 - 2017-09-07 19:58 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-10-11 06:08 - 2017-09-07 19:39 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-10-11 06:08 - 2017-09-07 19:38 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2017-10-11 06:08 - 2017-09-07 19:37 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-10-11 06:08 - 2017-09-07 19:33 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2017-10-11 06:08 - 2017-09-07 19:29 - 004547072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-10-11 06:08 - 2017-09-07 19:29 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2017-10-11 06:08 - 2017-09-07 19:27 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-10-11 06:08 - 2017-09-07 19:26 - 000694784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-10-11 06:08 - 2017-09-07 19:25 - 002058752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-10-11 06:08 - 2017-09-07 19:24 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2017-10-11 06:08 - 2017-09-07 19:17 - 013677568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-10-11 06:08 - 2017-09-07 19:01 - 002767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-10-11 06:08 - 2017-09-07 18:57 - 001316864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-10-11 06:08 - 2017-09-07 18:57 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-10-11 06:08 - 2017-08-13 20:48 - 000202592 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll 2017-10-11 06:08 - 2017-08-13 18:52 - 000174944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll 2017-10-11 06:08 - 2017-08-13 18:10 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll 2017-10-11 06:08 - 2017-08-13 17:33 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll 2017-10-11 06:08 - 2017-08-11 03:54 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-10-11 06:08 - 2017-08-11 03:22 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-10-11 06:08 - 2017-08-11 03:20 - 001436672 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-10-11 06:08 - 2017-08-11 03:16 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2017-10-11 06:08 - 2017-08-11 02:57 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2017-10-11 06:08 - 2017-08-06 22:50 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2017-10-11 06:08 - 2017-08-06 22:20 - 000542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2017-10-11 06:08 - 2017-08-06 22:13 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2017-10-11 06:08 - 2017-08-06 08:08 - 000561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2017-10-11 06:08 - 2017-08-02 03:19 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-10-11 06:08 - 2017-08-01 09:25 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-10-09 13:25 - 2017-10-09 13:25 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2017-10-09 13:25 - 2017-10-09 13:25 - 000000000 ____D C:\Users\jerome\.android 2017-10-09 13:24 - 2017-10-09 13:24 - 000000000 ____D C:\Users\jerome\AppData\Local\FonePaw 2017-10-09 13:22 - 2017-10-09 13:23 - 040800176 _____ (FonePaw ) C:\Users\jerome\Desktop\android-data-recovery.exe 2017-10-06 20:40 - 2017-10-07 13:07 - 000000000 ____D C:\Users\jerome\Desktop\film 2017-10-06 20:39 - 2017-10-07 15:51 - 000000000 ____D C:\Users\jerome\Desktop\DANSER 2017-10-06 20:38 - 2017-10-06 20:38 - 000000000 ____D C:\Users\jerome\Desktop\NRJ Party Hits 16 ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-04 22:15 - 2015-03-22 16:15 - 000000000 ____D C:\Users\jerome\AppData\Roaming\Skype 2017-11-04 22:15 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-11-04 19:11 - 2015-05-17 20:57 - 000003474 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1 2017-11-04 19:11 - 2015-05-17 20:57 - 000003464 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2 2017-11-04 19:10 - 2015-03-29 05:15 - 000003780 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5C4167BF-C2C2-4AF1-8581-76133F316CB2} 2017-11-01 21:16 - 2015-03-18 18:53 - 000003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3042553715-1535261532-1053064283-1002 2017-11-01 19:10 - 2016-06-16 21:50 - 000001543 _____ C:\Users\jerome\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AsusSmartGestureDetector.lnk 2017-11-01 18:45 - 2015-09-14 18:33 - 000000062 _____ C:\Users\jerome\AppData\Roaming\sp_data.sys 2017-11-01 18:36 - 2014-11-20 23:46 - 001826754 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-11-01 18:36 - 2014-11-20 23:03 - 000798388 _____ C:\WINDOWS\system32\perfh00C.dat 2017-11-01 18:36 - 2014-11-20 23:03 - 000155242 _____ C:\WINDOWS\system32\perfc00C.dat 2017-11-01 18:36 - 2013-08-22 14:36 - 000000000 ____D C:\WINDOWS\Inf 2017-11-01 18:34 - 2016-06-16 21:49 - 000000000 ____D C:\ProgramData\ASUS Smart Gesture 2017-11-01 18:30 - 2015-03-28 17:42 - 000000000 ____D C:\Users\jerome 2017-11-01 18:30 - 2013-08-22 15:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-11-01 17:19 - 2015-12-07 18:08 - 001251840 ___SH C:\Users\jerome\Desktop\Thumbs.db 2017-11-01 12:56 - 2015-09-06 09:40 - 000000000 ____D C:\Users\jerome\AppData\Roaming\ZHP 2017-11-01 09:32 - 2017-09-11 16:13 - 000000000 ____D C:\Users\jerome\Documents\Mylene 2017-10-30 15:42 - 2015-06-08 21:32 - 000190976 ___SH C:\Users\jerome\Documents\Thumbs.db 2017-10-26 19:35 - 2017-02-09 18:54 - 000004592 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2017-10-26 19:35 - 2017-02-09 18:54 - 000004460 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2017-10-26 19:35 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-10-26 19:35 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\Macromed 2017-10-26 19:34 - 2015-03-19 21:22 - 000000000 ____D C:\Users\jerome\AppData\Local\Adobe 2017-10-22 22:30 - 2013-08-22 14:25 - 000262144 ___SH C:\WINDOWS\system32\config\BBI 2017-10-22 15:41 - 2016-11-03 12:29 - 000270336 ___SH C:\Users\jerome\Downloads\Thumbs.db 2017-10-18 14:34 - 2012-07-26 08:59 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-10-14 13:57 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\rescache 2017-10-14 13:01 - 2013-08-22 15:44 - 000482072 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-10-14 12:55 - 2013-08-22 16:36 - 000000000 ___RD C:\WINDOWS\ToastData 2017-10-12 23:25 - 2017-05-11 13:51 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-10-12 23:25 - 2017-05-11 13:51 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-10-11 14:08 - 2015-03-23 18:22 - 000000000 ____D C:\WINDOWS\system32\MRT 2017-10-11 14:02 - 2015-03-23 18:22 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Fichiers à la racine de certains dossiers ======= 2015-09-14 18:33 - 2017-11-01 18:45 - 000000062 _____ () C:\Users\jerome\AppData\Roaming\sp_data.sys 2017-08-09 12:52 - 2017-08-09 12:52 - 000000017 _____ () C:\Users\jerome\AppData\Local\resmon.resmoncfg Fichiers à déplacer ou supprimer: ==================== C:\Users\jerome\ZHPCleaner.exe C:\Users\jerome\ZHPDiag3.exe Certains fichiers dans TEMP: ==================== 2016-08-15 20:29 - 2016-08-15 20:29 - 000467968 _____ (Realtek Semiconductor Corp.) C:\Users\jerome\AppData\Local\Temp\COMAP.EXE 2016-05-18 19:01 - 2017-03-25 11:03 - 057547224 _____ (Skype Technologies S.A.) C:\Users\jerome\AppData\Local\Temp\SkypeSetup.exe 2015-08-14 13:29 - 2015-07-29 21:08 - 000681097 _____ (SQLite Development Team) C:\Users\jerome\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-11-01 21:17 ==================== Fin de FRST.txt ============================