cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:21-02-2016 01
Exécuté par Antoine (administrateur) sur ANTOINE-PC (24-02-2016 17:33:17)
Exécuté depuis C:\Users\Antoine\Desktop
Profils chargés: Antoine (Profils disponibles: Antoine)
Platform: Windows 10 Pro Version 1511 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Realtek Semiconductor) C:\Program Files (x86)\Realtek\LanOptimizer\LanOptimizer.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdupd.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6628.23511.0_x64__8wekyb3d8bbwe\HubTaskHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6568.46051.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1427648 2015-08-09] (COMODO)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [AgentMonitor] => C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe [391040 2013-06-20] ()
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM-x32\...\Run: [LogitechVideoRepair] => C:\Program Files (x86)\Logitech\Video\ISStart.exe [458752 2005-06-08] (Logitech Inc.)
HKLM-x32\...\Run: [LogitechVideoTray] => C:\Program Files (x86)\Logitech\Video\LogiTray.exe [217088 2005-06-08] (Logitech Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-12-19] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\Run: [LogitechSoftwareUpdate] => C:\Program Files (x86)\Logitech\Video\ManifestEngine.exe [196608 2005-06-08] (Logitech Inc.)
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\Run: [BingSvc] => C:\Users\Antoine\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\Run: [uTorrent] => C:\Program Files (x86)\uTorrent\uTorrent.exe [399224 2013-06-05] (BitTorrent, Inc.)
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2005-02-17] (InstallShield Software Corporation)
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\RunOnce: [Uninstall C:\Users\Antoine\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Antoine\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\MountPoints2: E - "E:\Setup.exe"
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\MountPoints2: {0867f16f-9cff-11e5-bd23-801f0200a04a} - "L:\setup.exe"
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\MountPoints2: {3a7b9c17-9375-11e5-bd1d-801f0200a04a} - "E:\setup.exe"
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\...\MountPoints2: {4e607c45-cdfa-11e2-b702-94de802468d4} - "E:\Setup.exe"

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{26777878-d941-473e-a79e-1cc5177d5631}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ba8195f5-87a1-4879-aae9-6a618270795c}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-3629284985-2692806682-500472203-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
SearchScopes: HKU\S-1-5-21-3629284985-2692806682-500472203-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SL5MDF&PC=SL5M&q={searchTerms}&src=IE-SearchBox
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2014-01-24] (CANON INC.)
BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\Windows\system32\mscoree.dll [2015-10-30] (Microsoft Corporation)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24] (CANON INC.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKLM - Smart Recovery 2 - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\Windows\system32\mscoree.dll [2015-10-30] (Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24] (CANON INC.)

FireFox:
========
FF ProfilePath: C:\Users\Antoine\AppData\Roaming\Mozilla\Firefox\Profiles\c84oigu6.default-1455724121880
FF Homepage: hxxp://www.google.fr/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-17] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2016-01-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-10] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\Antoine\AppData\Roaming\Mozilla\Firefox\Profiles\c84oigu6.default-1455724121880\Extensions\elemhidehelper@adblockplus.org.xpi [2016-02-18]
FF Extension: AdBlock for YouTube™ - C:\Users\Antoine\AppData\Roaming\Mozilla\Firefox\Profiles\c84oigu6.default-1455724121880\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2016-02-17]
FF Extension: Adblock Plus - C:\Users\Antoine\AppData\Roaming\Mozilla\Firefox\Profiles\c84oigu6.default-1455724121880\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=fr-fr
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR Profile: C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-17]
CHR Extension: (Google Drive) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-05]
CHR Extension: (Gmail hors connexion) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2015-04-17]
CHR Extension: (Google Agenda) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-11-05]
CHR Extension: (Google Docs hors connexion) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-20]
CHR Extension: (IE Tab) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2016-02-22]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Antoine\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-17]
CHR HKU\S-1-5-21-3629284985-2692806682-500472203-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [Fichier non signé]
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5542472 2015-09-08] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265792 2015-08-09] (COMODO)
S3 Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1369432 2015-11-26] (Disc Soft Ltd)
S2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2057072 2016-02-05] (Comodo)
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [Fichier non signé]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Fichier non signé]
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2016-02-17] (Malwarebytes)
S2 VodafoneConnectorService; C:\Program Files (x86)\Vodafone\Via The Phone\VodafoneConnectorService.exe [233472 2010-05-14] (Vodafone Group) [Fichier non signé]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21720 2015-11-18] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [828144 2015-11-18] (COMODO)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-26] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47160 2015-11-26] (Disc Soft Ltd)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-05-18] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2016-02-17] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2016-02-17] (Malwarebytes Corporation)
S3 RasPppoe; C:\Windows\SysWOW64\DRIVERS\raspppoe.sys [81920 2012-07-26] (Microsoft Corporation) [Fichier non signé]
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2015-12-25] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 tsusbhub; C:\Windows\System32\drivers\tsusbhub.sys [117248 2010-11-21] (Microsoft Corporation) [Fichier non signé]
S3 VLAN; C:\Windows\System32\DRIVERS\RtVLAN60.sys [24064 2010-12-14] (Windows (R) Codename Longhorn DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; pas de ImagePath
U3 wpcsvc; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-02-24 17:33 - 2016-02-24 17:33 - 00016343 _____ C:\Users\Antoine\Desktop\FRST.txt
2016-02-24 17:30 - 2016-02-24 17:33 - 00000000 ____D C:\FRST
2016-02-24 17:11 - 2016-02-24 17:11 - 00195480 _____ C:\Users\Antoine\Desktop\AdditionCopie.txt
2016-02-24 17:08 - 2016-02-24 17:08 - 00093149 _____ C:\Users\Antoine\Desktop\FRSTcopie.txt
2016-02-24 14:38 - 2016-02-24 14:38 - 02371072 _____ (Farbar) C:\Users\Antoine\Desktop\FRST64.exe
2016-02-24 14:38 - 2016-02-24 14:38 - 00448512 _____ (OldTimer Tools) C:\Users\Antoine\Desktop\TFC.exe
2016-02-23 11:18 - 2016-02-23 11:18 - 02870984 _____ (ESET) C:\Users\Antoine\Downloads\esetsmartinstaller_enu.exe
2016-02-23 02:25 - 2016-02-24 17:37 - 00000000 ____D C:\Users\Antoine\AppData\Local\CrashDumps
2016-02-23 02:21 - 2016-02-23 02:21 - 00000000 ____D C:\Users\Antoine\AppData\Local\ActiveSync
2016-02-22 21:22 - 2016-02-22 21:22 - 00004117 _____ C:\Users\Antoine\Desktop\ZHPFixReport.txt
2016-02-22 09:49 - 2016-02-22 12:26 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-02-22 09:45 - 2016-02-22 12:26 - 00000000 ____D C:\Users\Antoine\Desktop\mbar
2016-02-22 09:42 - 2016-02-22 09:43 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Antoine\Downloads\mbar-1.09.3.1001.exe
2016-02-21 22:41 - 2016-02-21 22:41 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-02-21 22:38 - 2016-02-22 09:29 - 00000000 ____D C:\ProgramData\RogueKiller
2016-02-21 22:38 - 2016-02-21 22:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2016-02-21 22:38 - 2016-02-21 22:38 - 00000000 ____D C:\Program Files\RogueKiller
2016-02-21 22:34 - 2016-02-21 22:34 - 31264808 _____ (Adlice Software ) C:\Users\Antoine\Downloads\setup.exe
2016-02-21 21:43 - 2016-02-21 21:43 - 01511424 _____ C:\Users\Antoine\Downloads\adwcleaner_5.035.exe
2016-02-21 21:37 - 2016-02-21 21:38 - 05657688 _____ (Swearware) C:\Users\Antoine\Downloads\ComboFix.exe
2016-02-20 11:42 - 2016-02-20 11:43 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-02-20 11:42 - 2016-02-20 11:42 - 00001918 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-02-20 11:42 - 2016-02-20 11:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-02-20 11:40 - 2016-02-20 11:41 - 03521617 _____ (Nicolas Coolman ) C:\Users\Antoine\Downloads\ZHPFix.exe
2016-02-20 11:16 - 2016-02-22 21:27 - 00111583 _____ C:\Users\Antoine\Desktop\ZHPDiag.txt
2016-02-20 09:33 - 2016-02-22 21:24 - 00000000 ____D C:\Users\Antoine\AppData\Roaming\ZHP
2016-02-20 09:33 - 2016-02-22 21:23 - 00000766 _____ C:\Users\Antoine\Desktop\ZHPDiag.lnk
2016-02-20 09:33 - 2016-02-20 09:34 - 02126336 _____ C:\Users\Antoine\ZHPDiag3.exe
2016-02-20 09:30 - 2016-02-20 09:31 - 02126336 _____ C:\Users\Antoine\Downloads\ZHPDiag3.exe
2016-02-20 03:17 - 2016-02-20 03:19 - 00157988 _____ C:\WINDOWS\Minidump\022016-137984-01.dmp
2016-02-20 03:17 - 2016-02-20 03:17 - 00000000 ____D C:\WINDOWS\Minidump
2016-02-20 03:03 - 2016-02-20 03:03 - 00000000 _____ C:\Recovery.txt
2016-02-20 00:04 - 2016-02-20 00:05 - 00000000 ___HD C:\$Windows.~BT
2016-02-19 23:53 - 2016-02-20 03:04 - 00000000 ___HD C:\$SysReset
2016-02-19 17:23 - 2016-02-19 17:24 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2016-02-19 17:20 - 2016-02-19 17:21 - 04190144 _____ (Crystal Dew World ) C:\Users\Antoine\Downloads\crystaldiskinfo_6-7-5_en_306038.exe
2016-02-19 13:43 - 2016-02-19 13:43 - 00042168 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2016-02-17 17:59 - 2016-02-24 17:37 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-02-17 17:59 - 2016-02-17 17:59 - 00003978 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-02-17 16:48 - 2016-02-17 16:48 - 00000000 ____D C:\Users\Antoine\Desktop\Anciennes données de Firefox
2016-02-17 16:39 - 2016-02-22 09:48 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-02-17 16:39 - 2016-02-22 09:46 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-02-17 16:39 - 2016-02-17 16:39 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-02-17 16:39 - 2016-02-17 16:39 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-02-17 16:39 - 2016-02-17 16:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-02-17 16:39 - 2016-02-17 16:39 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-02-17 16:39 - 2016-02-17 16:39 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-02-17 16:38 - 2016-02-17 16:38 - 22908888 _____ (Malwarebytes ) C:\Users\Antoine\Downloads\mbam-setup-org-2.2.0.1024.exe
2016-02-17 15:33 - 2016-02-17 15:33 - 00000000 ____D C:\Users\Antoine\Downloads\backups
2016-02-17 15:29 - 2016-02-17 15:29 - 00388608 _____ (Trend Micro Inc.) C:\Users\Antoine\Downloads\HijackThis.exe
2016-02-17 11:21 - 2016-02-17 11:22 - 00000000 ____D C:\Users\Antoine\Downloads\1972 Gilles Servat
2016-02-17 10:37 - 2016-02-17 10:37 - 01270466 _____ C:\Users\Antoine\Downloads\ProcessExplorer.zip
2016-02-17 10:37 - 2016-02-17 10:37 - 00000000 ____D C:\Users\Antoine\Downloads\ProcessExplorer
2016-02-12 07:15 - 2016-02-15 13:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-02-09 22:55 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-09 22:55 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-09 22:55 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-09 22:55 - 2016-01-27 07:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-02-09 22:55 - 2016-01-27 07:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-02-09 22:55 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-09 22:55 - 2016-01-27 07:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-02-09 22:55 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-09 22:55 - 2016-01-27 06:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-02-09 22:55 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-09 22:55 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-09 22:55 - 2016-01-27 06:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-02-09 22:55 - 2016-01-27 06:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-02-09 22:55 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-09 22:55 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-09 22:55 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-09 22:55 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-09 22:55 - 2016-01-27 06:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-02-09 22:55 - 2016-01-27 06:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-02-09 22:55 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-09 22:55 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-09 22:55 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-09 22:55 - 2016-01-27 06:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-02-09 22:55 - 2016-01-27 06:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-02-09 22:55 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-09 22:55 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-09 22:55 - 2016-01-27 06:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-02-09 22:55 - 2016-01-27 06:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-02-09 22:55 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-09 22:55 - 2016-01-27 06:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-02-09 22:55 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-09 22:55 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-09 22:55 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-09 22:55 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-09 22:55 - 2016-01-27 06:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-02-09 22:55 - 2016-01-27 06:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-02-09 22:55 - 2016-01-27 06:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-02-09 22:55 - 2016-01-27 06:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-02-09 22:55 - 2016-01-27 06:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-02-09 22:55 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-09 22:55 - 2016-01-27 06:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-02-09 22:55 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-09 22:55 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-09 22:55 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-09 22:55 - 2016-01-27 05:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-02-09 22:55 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-09 22:55 - 2016-01-27 05:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-02-09 22:55 - 2016-01-27 05:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-02-09 22:55 - 2016-01-27 05:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-02-09 22:55 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-09 22:55 - 2016-01-27 05:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-02-09 22:55 - 2016-01-27 05:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-02-09 22:55 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-09 22:55 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-09 22:55 - 2016-01-27 05:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-02-09 22:55 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-09 22:55 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-09 22:55 - 2016-01-27 05:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-02-09 22:55 - 2016-01-27 05:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-02-09 22:55 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-09 22:55 - 2016-01-27 05:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-02-09 22:55 - 2016-01-27 05:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-02-09 22:55 - 2016-01-27 05:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-02-09 22:55 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-09 22:55 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-09 21:34 - 2016-02-09 21:54 - 1240850892 _____ C:\Users\Antoine\Downloads\Rugby 2016 6 Nations Féminin J01 France - Italie 06 Février 2016 (France 4).avi
2016-02-05 00:59 - 2016-02-05 00:59 - 00000000 ____D C:\Program Files (x86)\Comodo
2016-01-27 23:18 - 2016-01-27 23:18 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-01-27 23:18 - 2016-01-27 23:18 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-01-27 23:17 - 2016-01-27 23:17 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-01-27 23:17 - 2016-01-27 23:17 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-01-27 23:17 - 2016-01-27 23:17 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-01-27 23:17 - 2016-01-27 23:17 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-01-27 23:17 - 2016-01-27 23:17 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-01-27 23:17 - 2016-01-27 23:17 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-02-24 17:36 - 2013-12-11 12:37 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2016-02-24 17:34 - 2013-05-25 15:14 - 00000288 _____ C:\WINDOWS\Tasks\RtlLanOptimizerVistaStart.job
2016-02-24 17:23 - 2014-04-06 03:06 - 00001004 ____H C:\WINDOWS\Tasks\{2F5D7BAD-EAE3-49C9-8757-6BD879D03566}.job
2016-02-24 17:23 - 2014-02-18 17:26 - 00000976 ____H C:\WINDOWS\Tasks\{BAC9AAED-FDD8-4ED1-832B-C120F491F06A}.job
2016-02-24 17:23 - 2013-11-16 09:34 - 00001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-24 17:17 - 2015-11-25 13:44 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-02-24 17:14 - 2015-10-30 07:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-02-24 17:14 - 2013-12-11 13:13 - 01372652 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2016-02-24 17:13 - 2015-11-25 13:29 - 00000000 ____D C:\Users\Antoine
2016-02-24 17:03 - 2013-11-16 09:34 - 00001098 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-24 02:43 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-02-24 02:42 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-02-22 17:10 - 2015-07-22 23:41 - 00000000 ____D C:\Users\Antoine\AppData\Roaming\vlc
2016-02-22 14:30 - 2015-11-25 13:29 - 02139772 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-22 14:30 - 2015-10-30 20:00 - 00933920 _____ C:\WINDOWS\system32\perfh00C.dat
2016-02-22 14:30 - 2015-10-30 20:00 - 00200270 _____ C:\WINDOWS\system32\perfc00C.dat
2016-02-22 14:30 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-02-20 03:17 - 2015-06-01 09:47 - 463216905 _____ C:\WINDOWS\MEMORY.DMP
2016-02-19 21:42 - 2013-06-05 14:23 - 00000000 ____D C:\Users\Antoine\AppData\Roaming\uTorrent
2016-02-19 13:42 - 2013-08-06 08:02 - 00000000 ____D C:\Program Files (x86)\1-click run
2016-02-19 12:20 - 2014-05-11 10:49 - 00000000 ____D C:\Users\Antoine\AppData\Local\Battle.net
2016-02-19 11:19 - 2014-05-11 10:49 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-02-18 21:58 - 2015-11-04 01:42 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-02-18 10:02 - 2014-05-11 10:49 - 00000000 ____D C:\Users\Antoine\AppData\Roaming\Battle.net
2016-02-18 10:02 - 2013-06-06 13:14 - 00000000 ____D C:\ProgramData\Battle.net
2016-02-17 17:59 - 2013-06-05 14:18 - 00000000 ____D C:\Users\Antoine\AppData\Local\Adobe
2016-02-17 17:36 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-02-17 15:30 - 2013-05-25 15:07 - 00000000 ____D C:\Users\Antoine\AppData\Local\VirtualStore
2016-02-16 13:01 - 2013-07-10 16:33 - 00007607 _____ C:\Users\Antoine\AppData\Local\Resmon.ResmonCfg
2016-02-15 23:15 - 2015-11-25 13:50 - 00000000 ____D C:\Users\Antoine\AppData\Local\Packages
2016-02-15 13:17 - 2013-06-06 10:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-15 13:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-02-14 09:59 - 2013-06-06 13:15 - 00000000 ____D C:\Program Files (x86)\Diablo III
2016-02-13 15:26 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-02-10 23:08 - 2013-11-16 09:35 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-10 21:52 - 2015-11-25 13:50 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-02-10 21:46 - 2015-10-30 20:03 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-10 06:57 - 2013-11-16 09:34 - 00004156 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-02-10 06:57 - 2013-11-16 09:34 - 00003924 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-02-10 02:45 - 2009-07-14 03:34 - 00000478 _____ C:\WINDOWS\win.ini
2016-02-10 02:43 - 2013-08-14 09:13 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-02-10 02:35 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-02-10 02:35 - 2013-06-05 14:39 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-02-10 02:34 - 2015-10-30 08:26 - 00828920 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-02-10 02:34 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-02-07 20:08 - 2014-11-13 08:58 - 00000000 ____D C:\Users\Antoine\Documents\gw
2016-02-04 17:06 - 2015-11-04 17:03 - 00000000 ____D C:\Users\Antoine\Documents\Planetbase
2016-02-02 16:40 - 2013-08-09 15:48 - 00000000 ____D C:\Users\Antoine\AppData\Local\ElevatedDiagnostics
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-01-29 23:01 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr

==================== Fichiers à la racine de certains dossiers =======

2015-03-08 17:34 - 2015-03-08 17:34 - 2603176 _____ () C:\Program Files\AdobeDownloadAssistant.exe
2014-08-19 21:10 - 2014-08-19 21:10 - 0004416 _____ () C:\Users\Antoine\AppData\Roaming\CamStudio.cfg
2015-03-07 13:15 - 2015-07-10 00:23 - 0000738 _____ () C:\Users\Antoine\AppData\Roaming\Network Meter_Settings.ini
2015-03-26 03:16 - 2015-11-25 12:53 - 0000028 _____ () C:\Users\Antoine\AppData\Roaming\Network Meter_Usage.ini
2013-12-31 11:33 - 2014-02-07 09:33 - 0000787 _____ () C:\Users\Antoine\AppData\Local\cookies.ini
2012-05-03 12:12 - 2012-05-03 12:12 - 0000532 _____ () C:\Users\Antoine\AppData\Local\datos.txt
2013-07-10 16:33 - 2016-02-16 13:01 - 0007607 _____ () C:\Users\Antoine\AppData\Local\Resmon.ResmonCfg
2015-01-14 12:30 - 2015-01-14 12:30 - 0000104 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2013-10-05 20:23 - 2016-02-19 23:59 - 0001039 _____ () C:\ProgramData\VodafoneConnectorService.log

Fichiers à déplacer ou supprimer:
====================
C:\Users\Antoine\IP_Log_Data.js
C:\Users\Antoine\Network_Meter_Data.js
C:\Users\Antoine\ZHPDiag3.exe
C:\Windows\Tasks\{2F5D7BAD-EAE3-49C9-8757-6BD879D03566}.job
C:\Windows\Tasks\{BAC9AAED-FDD8-4ED1-832B-C120F491F06A}.job


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-02-15 08:46

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité