cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:18-04-2016
Exécuté par ZAKI (administrateur) sur ZAKI-PC (21-04-2016 11:11:25)
Exécuté depuis C:\Users\ZAKI\Desktop
Profils chargés: ZAKI (Profils disponibles: ZAKI)
Platform: Windows 7 Professional (X64) Langue: Français (France)
Internet Explorer Version 8 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Dassault Systemes) C:\Program Files (x86)\Dassault Systemes\B12\intel_a\code\bin\CATSysDemon.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(MKS Software Inc.) C:\Windows\System32\nutsrv4.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
() C:\Program Files (x86)\QSocial\QSocial_Updater.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\ThinkSky\iTools 3\iToolsDaemon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\QSocial\QSocial.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(AbeGunnerZ Lab) C:\Program Files (x86)\USB Disk Security\USBGuard.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16472832 2016-03-15] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2723624 2011-03-28] (Synaptics Incorporated)
HKLM-x32\...\Run: [USB Security] => C:\Program Files (x86)\USB Disk Security\USBGuard.exe [2347008 2012-04-07] (AbeGunnerZ Lab)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2016-03-18] (Apple Inc.)
HKLM-x32\...\Run: [NuTCSetupEnviron] => C:\Program Files\PTC\MKS Toolkit\bin\ncoeenv.exe [37248 2012-10-12] (MKS Software Inc.)
HKLM-x32\...\Run: [Qsocial] => "C:\Program Files (x86)\QSocial\" /auto
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1097808 2011-04-19] (Dritek System Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Run: [Google Update] => C:\Users\ZAKI\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-13] (Google Inc.)
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Run: [Qsocial] => C:\Program Files (x86)\QSocial\QSocial.exe [9722368 2015-06-02] ()
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3898960 2015-04-20] (Tonec Inc.)
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Run: [MetroSidebar] => [X]
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\MountPoints2: F - F:\DriverPack.exe
HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\MountPoints2: {616843ac-e1fd-11e4-9d04-806e6f6e6963} - E:\DistinguishOS.exe
ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2014-04-21] (Tonec Inc.)
Startup: C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PalTalk.lnk [2016-04-20]
ShortcutTarget: PalTalk.lnk -> C:\Program Files (x86)\Paltalk Messenger\paltalk.exe (AVM Software Inc.)
Startup: C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PureVPN.lnk [2016-04-20]
ShortcutTarget: PureVPN.lnk -> C:\Program Files (x86)\PureVPN\purevpn.exe (Pas de fichier)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{A4EED23B-068E-4EB4-B352-6FF733B1C77A}: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{FF710D1E-2E62-4B9E-AD6C-3B92352F5149}: [DhcpNameServer] 212.27.40.240 212.27.40.241

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.fr
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.fr
HKU\S-1-5-21-585395206-1736895814-13521522-1000\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.fr
HKU\S-1-5-21-585395206-1736895814-13521522-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = www.google.fr
SearchScopes: HKU\S-1-5-21-585395206-1736895814-13521522-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-02-21] (Internet Download Manager, Tonec Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-16] (Oracle Corporation)
BHO: Pas de nom -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Pas de fichier
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-16] (Oracle Corporation)
BHO: BHOImpl Class -> {E1499FE7-129D-4B6E-B681-DDF21E14172C} -> C:\Program Files (x86)\ThinkSky\iTools 3\Extensions\iToolsBHO64.dll [2016-03-27] (iTools.hk)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-02-21] (Internet Download Manager, Tonec Inc.)
BHO-x32: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2013-11-29] (BitComet)
BHO-x32: WebCGMHlprObj Class -> {56B38F40-4E70-11d4-A076-0080AD86BA2F} -> C:\Windows\SysWOW64\cgmopenbho.dll [2005-06-09] (CGM Open Consortium, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-16] (Oracle Corporation)
BHO-x32: Pas de nom -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Pas de fichier
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-16] (Oracle Corporation)
BHO-x32: BHOImpl Class -> {E1499FE7-129D-4B6E-B681-DDF21E14172C} -> C:\Program Files (x86)\ThinkSky\iTools 3\Extensions\iToolsBHO.dll [2016-03-27] (iTools.hk)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\ZAKI\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-04-03] ()
FF Plugin: @itools.hk/npiTools, version=1.0.0 -> C:\Program Files (x86)\ThinkSky\iTools 3\Extensions\npiTools.dll [2016-03-27] ()
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-16] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-16] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-04-03] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @itools.hk/npiTools, version=1.0.0 -> C:\Program Files (x86)\ThinkSky\iTools 3\Extensions\npiTools.dll [2016-03-27] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @ptc.com/ProductViewLite -> C:\Program Files (x86)\Common Files\PTC\np6_pvapplite9.dll [2013-04-04] (PTC)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\ZAKI\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-03-10] (Raidcall)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin-x32: @wolfram.com/Mathematica -> C:\Program Files (x86)\Common Files\Wolfram Research\Browser\9.0.1.4055459\npmathplugin.dll [2013-01-24] (Wolfram Research, Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-12-21] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF Plugin HKU\S-1-5-21-585395206-1736895814-13521522-1000: @tools.google.com/Google Update;version=3 -> C:\Users\ZAKI\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-585395206-1736895814-13521522-1000: @tools.google.com/Google Update;version=9 -> C:\Users\ZAKI\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Extension: Cookies Manager+ - C:\Users\ZAKI\AppData\Roaming\Mozilla\Firefox\Profiles\4d3lfr69.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2016-02-07]
FF Extension: Adblock Plus - C:\Users\ZAKI\AppData\Roaming\Mozilla\Firefox\Profiles\4d3lfr69.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-26]
FF Extension: Cookies Manager+ - C:\Users\ZAKI\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2016-04-20]
FF Extension: Adblock Plus - C:\Users\ZAKI\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-26]
FF HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\ZAKI\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\ZAKI\AppData\Roaming\IDM\idmmzcc5 [2016-04-21] [non signé]
FF HKU\S-1-5-21-585395206-1736895814-13521522-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\ZAKI\AppData\Roaming\IDM\idmmzcc5

Chrome:
=======
CHR HomePage: Default -> yandex.ru/?__PARAM__from=chromehp
CHR StartupUrls: Default -> "hxxp://www.google.fr/"
CHR DefaultSearchURL: Default -> hxxp://yandex.ru/search/?__PARAM__from=chromesearch&text={searchTerms}
CHR DefaultSearchKeyword: Default -> yandex.ru
CHR DefaultSuggestURL: Default -> hxxp://suggest.yandex.net/suggest-ff.cgi?uil=ru&part={searchTerms}
CHR Profile: C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (BetterTTV) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-02-17]
CHR Extension: (Facebook Secret Emoticons) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe [2016-02-19]
CHR Extension: (AdBlock) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-16]
CHR Extension: (Facebook Emoticons) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdlcejbjnnmjgajjjfenejacioiimpp [2015-12-12]
CHR Extension: (IDM Integration Module) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-04-19]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (PDF Viewer) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\oemmndcbldboiebfnladdacbdfmadadm [2016-02-11]
CHR Extension: (Appel Skype) - C:\Users\ZAKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\poghlonenmjdkfghdpfomojhhfggildk [2016-02-07]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-04-20]
CHR HKLM-x32\...\Chrome\Extension: [mdeldjolamfbcgnndjmjjiinnhbnbnla] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-04-20]
StartMenuInternet: Google Chrome.VAIJT4GRUNJD3AAW66CPLQEMQQ - C:\Users\ZAKI\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 BBDemon; C:\Program Files (x86)\Dassault Systemes\B12\intel_a\code\bin\CATSysDemon.exe [49214 2003-07-05] (Dassault Systemes) [Fichier non signé]
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (www.BitComet.com)
S3 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-12-23] (Connectify) [Fichier non signé]
S3 mi-raysat_3dsmax2016_64; C:\Program Files\Autodesk\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64server.exe [86016 2011-09-15] () [Fichier non signé]
R2 NuTCRACKERService; C:\Windows\system32\nutsrv4.exe [574776 2012-10-12] (MKS Software Inc.)
R2 QsocialUpdater; C:\Program Files (x86)\QSocial\QSocial_Updater.exe [7548928 2015-06-02] () [Fichier non signé]
S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1042304 2016-04-20] (Enigma Software Group USA, LLC.)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [240296 2015-05-29] (Synaptics Incorporated)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S2 Lnspmekiingcachesrv; "C:\Program Files (x86)\Lnspmekiing\Lnspmekiingcachesrv.exe" {79740E79-A383-47A7-B513-3DF6563D007F} {A16B1AF7-982D-40C3-B5C1-633E1A6A6678} [X]

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2015-04-14] (Connectify)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-04-20] ()
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [30960 2015-05-29] (Intel Corporation)
R3 int0800; C:\Windows\System32\DRIVERS\flashud.sys [51712 2009-09-09] (Intel Corporation)
S3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [413912 2015-12-22] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [33960 2015-05-29] (Synaptics Incorporated)
R3 XSplit_Dummy; C:\Windows\System32\drivers\xspltspk.sys [26200 2015-05-26] (SplitmediaLabs Limited)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-04-21 11:11 - 2016-04-21 11:11 - 00019875 _____ C:\Users\ZAKI\Desktop\FRST.txt
2016-04-21 11:11 - 2016-04-21 11:11 - 00000000 ____D C:\FRST
2016-04-21 11:10 - 2016-04-21 11:10 - 02375680 _____ (Farbar) C:\Users\ZAKI\Desktop\FRST64.exe
2016-04-21 11:05 - 2016-04-21 11:05 - 00000000 ____H C:\ProgramData\cm-lock
2016-04-20 18:33 - 2016-04-20 18:41 - 00000000 ____D C:\AdwCleaner
2016-04-20 14:14 - 2016-04-20 14:14 - 00000000 ____D C:\Users\ZAKI\AppData\Local\ESET
2016-04-20 12:23 - 2016-04-20 12:23 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys
2016-04-20 12:23 - 2016-04-20 12:23 - 00000000 ____D C:\Program Files\Enigma Software Group
2016-04-20 12:12 - 2016-04-20 12:13 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-04-20 09:55 - 2016-04-20 12:25 - 00003320 _____ C:\Windows\System32\Tasks\SpyHunter4Startup
2016-04-20 07:29 - 2016-04-20 07:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-19 20:26 - 2016-04-19 20:26 - 01410048 _____ C:\Windows\system32\bi.exe
2016-04-19 08:03 - 2016-04-19 08:03 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-04-19 08:02 - 2011-05-09 04:56 - 04378392 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00510232 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00416024 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00392472 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00239384 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00179992 _____ C:\Windows\system32\difx64.exe
2016-04-19 08:02 - 2011-05-09 04:56 - 00168216 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2016-04-19 08:02 - 2011-04-15 05:38 - 00017220 _____ C:\Windows\system32\iglhxs64.vp
2016-04-19 08:02 - 2011-04-15 05:08 - 12228128 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2016-04-19 08:02 - 2011-04-15 05:07 - 08244224 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2016-04-19 08:02 - 2011-04-15 05:01 - 06278656 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2016-04-19 08:02 - 2011-04-15 04:58 - 00577024 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll
2016-04-19 08:02 - 2011-04-15 04:54 - 14520832 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2016-04-19 08:02 - 2011-04-15 04:48 - 12297216 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2016-04-19 08:02 - 2011-04-15 04:40 - 17901568 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll
2016-04-19 08:02 - 2011-04-15 04:33 - 13359616 _____ C:\Windows\SysWOW64\ig4icd32.dll
2016-04-19 08:02 - 2011-04-15 04:29 - 00287232 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00287232 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00287232 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286720 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00285696 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00285696 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00285184 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00285184 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00283648 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00283136 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2016-04-19 08:02 - 2011-04-15 04:29 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2016-04-19 08:02 - 2011-04-15 04:28 - 00378368 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2016-04-19 08:02 - 2011-04-15 04:28 - 00335872 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2016-04-19 08:02 - 2011-04-15 04:28 - 00062464 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2016-04-19 08:02 - 2011-04-15 04:28 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 09014784 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 00385024 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 00285696 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2016-04-19 08:02 - 2011-04-15 04:27 - 00146432 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 00109056 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2016-04-19 08:02 - 2011-04-15 04:27 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2016-04-19 08:02 - 2011-04-15 04:23 - 00024576 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2016-04-19 08:02 - 2011-04-15 04:22 - 00288768 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2016-04-19 08:02 - 2011-04-15 04:16 - 00158208 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2016-04-19 08:02 - 2011-04-15 04:16 - 00136704 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2016-04-19 07:58 - 2016-04-19 07:58 - 00158536 _____ C:\Users\ZAKI\AppData\Local\GDIPFONTCACHEV1.DAT
2016-04-19 07:26 - 2016-04-20 09:55 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Enigma Software Group
2016-04-19 07:26 - 2016-04-19 07:26 - 00000000 _____ C:\autoexec.bat
2016-04-19 06:31 - 2016-04-20 20:06 - 00001295 _____ C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Immersive Explorer.lnk
2016-04-19 06:31 - 2016-04-19 06:31 - 00000000 ____D C:\Users\ZAKI\AppData\Local\immersive-explorer.com
2016-04-19 06:24 - 2016-04-19 06:25 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\MetroSidebar
2016-04-19 06:23 - 2016-04-19 07:12 - 00003094 _____ C:\Windows\System32\Tasks\ReviverSoft Start Menu Reviver Run once task
2016-04-19 06:22 - 2016-04-19 07:47 - 00000000 ___HD C:\W7P_Backups
2016-04-19 05:56 - 2016-04-19 05:56 - 00000000 ____D C:\Users\ZAKI\Desktop\3d Acem
2016-04-19 05:54 - 2016-04-19 05:54 - 00015362 _____ C:\Windows\system32\results.xml
2016-04-19 05:50 - 2011-06-10 11:21 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2418.dll
2016-04-19 05:16 - 2016-04-19 05:16 - 00003254 _____ C:\Windows\System32\Tasks\{0EC195A2-670F-4675-8553-01012EAEE7AA}
2016-04-19 05:13 - 2016-04-19 05:13 - 00006656 _____ C:\Windows\system32\bcmwlrc.dll
2016-04-19 05:13 - 2016-04-19 05:13 - 00000000 ____D C:\Program Files\Broadcom
2016-04-18 11:45 - 2016-04-19 05:28 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\TeamViewer
2016-04-15 10:20 - 2016-04-15 11:33 - 00000609 _____ C:\ProgramData\ContentToHashDecode.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000140 _____ C:\ProgramData\PublicKeyDecode.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000128 _____ C:\ProgramData\SignatureDecode.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000128 _____ C:\ProgramData\ModulusInBlob.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000128 _____ C:\ProgramData\ModulusBeforeReversal.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000004 _____ C:\ProgramData\KeyInBlob.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 00000003 _____ C:\ProgramData\ExponentBeforeReversal.bin
2016-04-15 10:20 - 2016-04-15 10:20 - 00000000 ____D C:\ProgramData\Telestream
2016-04-15 10:18 - 2016-04-15 11:46 - 00006025 _____ C:\Users\ZAKI\AppData\Roaming\net.telestream.gameshow.xml
2016-04-15 10:18 - 2016-04-15 11:33 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\WirecastCache
2016-04-15 10:18 - 2016-04-15 11:33 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Gameshow
2016-04-15 10:18 - 2016-04-15 10:18 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Vara Software
2016-04-15 10:18 - 2016-04-15 10:18 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Telestream
2016-04-15 10:18 - 2016-04-15 10:18 - 00000000 ____D C:\ProgramData\boost_interprocess
2016-04-15 10:18 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2016-04-15 10:18 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2016-04-15 10:18 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2016-04-15 10:18 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2016-04-15 10:18 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2016-04-15 10:18 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2016-04-15 10:17 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-04-15 10:04 - 2016-04-15 10:04 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\KoshyJohn.com
2016-04-15 10:04 - 2016-04-15 10:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KoshyJohn.com
2016-04-13 02:32 - 2016-04-13 02:32 - 00000184 _____ C:\Windows\LMv4.UNI
2016-04-13 02:32 - 2016-04-13 02:32 - 00000000 ____D C:\Program Files (x86)\Launch Manager
2016-04-13 02:27 - 2016-04-13 02:27 - 00000000 ____D C:\Program Files (x86)\Acer
2016-04-10 05:42 - 2016-04-10 16:18 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\DriverPack Notifier
2016-04-10 05:41 - 2016-04-10 16:39 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\DriverPack Easy Search
2016-04-10 05:41 - 2016-04-10 16:39 - 00000000 ____D C:\Program Files (x86)\DriverPack Notifier
2016-04-10 05:41 - 2016-04-10 16:38 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Yandex
2016-04-10 05:41 - 2016-04-10 16:37 - 00000000 ____D C:\Users\ZAKI\AppData\LocalLow\Yandex
2016-04-10 05:40 - 2016-04-10 16:38 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Yandex
2016-04-10 05:40 - 2016-04-10 05:40 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Chromium
2016-04-10 05:39 - 2016-04-10 16:38 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Opera Software
2016-04-10 05:39 - 2016-04-10 16:38 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Opera Software
2016-04-10 05:38 - 2016-04-10 16:38 - 00000000 ____D C:\Program Files (x86)\Opera
2016-04-10 05:36 - 2016-04-10 05:36 - 00000000 ____D C:\Windows\system32\DAX2
2016-04-10 05:35 - 2016-04-10 05:35 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2016-04-10 05:35 - 2015-05-29 15:45 - 00033960 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2016-04-10 05:33 - 2016-03-15 10:25 - 72520720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-04-10 05:33 - 2016-03-15 10:25 - 15128176 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE3.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 14057256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 13122584 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 12988352 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 10524304 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 06342568 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV3apo.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 06264640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 05834181 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-04-10 05:33 - 2016-03-15 10:25 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2016-04-10 05:33 - 2016-03-15 10:25 - 05776968 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 05339560 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 05289944 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 04854016 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-04-10 05:33 - 2016-03-15 10:25 - 03299832 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 03199232 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 03181282 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2016-04-10 05:33 - 2016-03-15 10:25 - 03085424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02895104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-04-10 05:33 - 2016-03-15 10:25 - 02825112 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02717632 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02477520 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02437760 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02190992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02110600 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02050304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01959608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01847888 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01601952 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01422936 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01382240 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01355616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01334376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01213664 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01186832 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01166168 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01061120 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01023232 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 01003864 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00999864 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00931624 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00927424 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00923744 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00888480 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00873464 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00716104 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00618192 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00596120 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00589080 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2016-04-10 05:33 - 2016-03-15 10:25 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00514528 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00500560 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00471336 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00467168 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00450120 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00428232 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00416512 _____ (Harman) C:\Windows\system32\HMUI.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00381416 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00371456 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00366128 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00362064 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00360352 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00341152 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00341152 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00310432 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00258872 _____ (TODO: ) C:\Windows\system32\slprp64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00224264 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00221968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00203848 _____ (Harman) C:\Windows\system32\HMHVS.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00190944 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00190944 _____ (Harman) C:\Windows\system32\HMEQ.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00179608 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00172584 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00158704 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00154368 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00118600 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00105312 _____ C:\Windows\system32\audioLibVc.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00084624 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00075544 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-04-10 05:33 - 2016-03-15 10:25 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-04-10 05:33 - 2015-05-29 16:05 - 00646408 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2016-04-10 05:33 - 2015-05-29 16:05 - 00030960 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
2016-04-10 05:33 - 2013-10-29 23:15 - 00458960 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\k57nd60a.sys
2016-04-10 05:32 - 2013-02-19 11:44 - 02780160 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2016-04-10 05:32 - 2013-02-19 11:44 - 02191872 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2016-04-10 05:32 - 2013-02-19 11:44 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2993.dll
2016-04-10 05:31 - 2016-01-21 23:00 - 04171512 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys
2016-04-10 05:31 - 2015-05-29 15:46 - 00246440 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo29.dll
2016-04-10 05:31 - 2015-05-29 15:45 - 00033960 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel_Aux.sys
2016-04-10 05:31 - 2015-05-29 15:45 - 00033448 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2016-04-10 05:31 - 2014-01-30 17:17 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2016-04-10 05:30 - 2009-09-09 11:23 - 00051712 _____ (Intel Corporation) C:\Windows\system32\Drivers\flashud.sys
2016-04-10 05:27 - 2016-04-10 05:27 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-04-10 05:27 - 2015-12-22 18:39 - 00413912 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsUer.sys
2016-04-10 05:27 - 2015-12-18 19:06 - 04330200 _____ (TODO: ) C:\Windows\RtCRU64.exe
2016-04-10 05:27 - 2014-10-21 01:50 - 00083160 _____ (Realtek Semiconductor.) C:\Windows\system32\RtCRX64.dll
2016-04-10 05:27 - 2014-01-27 22:39 - 09890008 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-04-10 05:21 - 2016-04-10 05:21 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\DRPSu
2016-04-08 23:43 - 2016-04-08 23:52 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-04-08 23:42 - 2016-04-20 20:07 - 00001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2016-04-08 23:36 - 2016-04-08 23:42 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-04-08 23:36 - 2016-04-08 23:36 - 00000000 ____D C:\Program Files\Adobe
2016-04-08 23:33 - 2016-04-20 20:07 - 00001514 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2016-04-08 04:34 - 2016-04-08 04:34 - 00228207 _____ C:\Users\ZAKI\Downloads\DriverPack-Offline.torrent
2016-04-07 15:30 - 2016-04-07 15:30 - 00000000 ____D C:\Users\ZAKI\Autodesk
2016-04-07 15:17 - 2016-04-07 15:18 - 00000000 ____D C:\ProgramData\FLEXnet
2016-04-07 06:04 - 2016-04-09 01:26 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Autodesk
2016-04-07 06:04 - 2016-04-07 14:56 - 00000000 ____D C:\Users\ZAKI\Documents\Autodesk Application Manager
2016-04-07 05:45 - 2016-04-07 05:45 - 00000000 ____D C:\Program Files (x86)\Autodesk
2016-04-07 05:35 - 2016-04-07 05:35 - 00000000 ____D C:\Program Files\Common Files\Macrovision Shared
2016-04-07 05:25 - 2016-04-08 19:15 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
2016-04-07 05:25 - 2016-04-07 05:25 - 00000000 ____D C:\Program Files\Autodesk
2016-04-07 04:31 - 2016-04-08 19:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2016-04-06 15:25 - 2016-04-08 19:15 - 00000000 ____D C:\ProgramData\Autodesk
2016-04-06 15:25 - 2016-04-07 19:18 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Autodesk
2016-04-04 17:06 - 2016-04-04 17:06 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Geckofx
2016-04-03 17:37 - 2016-04-03 17:06 - 00000030 _____ C:\AVScanner.ini
2016-04-03 17:17 - 2016-04-03 17:39 - 00000000 ____D C:\Program Files\Common Files\McAfee
2016-04-03 17:17 - 2016-04-03 17:39 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-04-03 17:06 - 2016-04-03 17:38 - 00000000 ____D C:\ProgramData\McAfee
2016-04-01 16:17 - 2016-04-01 16:17 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Viber Media S.à r.l
2016-03-31 13:59 - 2016-04-01 16:17 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Viber
2016-03-27 15:49 - 2016-03-27 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTools 3
2016-03-27 13:27 - 2016-04-21 11:05 - 00003286 _____ C:\Windows\System32\Tasks\iToolsDaemon
2016-03-27 13:27 - 2016-04-21 11:05 - 00000316 _____ C:\Windows\Tasks\iToolsDaemon.job
2016-03-27 13:27 - 2016-03-27 15:49 - 00000000 ____D C:\Program Files (x86)\ThinkSky
2016-03-27 13:23 - 2016-04-20 07:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-03-27 13:22 - 2016-03-27 13:23 - 00000000 ____D C:\Program Files\iTunes
2016-03-27 13:22 - 2016-03-27 13:22 - 00000000 ____D C:\Program Files\iPod
2016-03-27 13:22 - 2016-03-27 13:22 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-03-27 13:22 - 2016-03-27 13:22 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-27 13:21 - 2016-03-27 13:21 - 00000000 ____D C:\Program Files\Bonjour
2016-03-27 13:21 - 2016-03-27 13:21 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-03-27 02:14 - 2016-03-27 02:16 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-04-21 11:10 - 2015-05-02 22:05 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\IDM
2016-04-21 11:05 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-21 10:25 - 2015-04-13 19:40 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\DMCache
2016-04-21 10:14 - 2015-04-13 20:35 - 00001074 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-585395206-1736895814-13521522-1000UA.job
2016-04-21 10:03 - 2015-06-16 18:07 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Mumble
2016-04-21 09:21 - 2009-07-14 06:45 - 00020512 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-04-21 09:21 - 2009-07-14 06:45 - 00020512 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-04-20 22:21 - 2015-04-15 10:50 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\QSocial
2016-04-20 22:14 - 2015-04-13 20:35 - 00001022 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-585395206-1736895814-13521522-1000Core.job
2016-04-20 21:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-04-20 20:07 - 2016-01-11 03:54 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-04-20 20:07 - 2015-04-13 21:11 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-04-20 20:07 - 2015-04-13 21:09 - 00001857 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-04-20 20:07 - 2015-04-13 18:21 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-04-20 20:07 - 2015-04-13 18:21 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-04-20 20:07 - 2009-07-14 06:57 - 00001535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-04-20 20:07 - 2009-07-14 06:57 - 00001340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2016-04-20 20:07 - 2009-07-14 06:57 - 00001318 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2016-04-20 20:07 - 2009-07-14 06:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2016-04-20 20:07 - 2009-07-14 06:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2016-04-20 20:06 - 2015-05-19 23:00 - 00001148 _____ C:\Users\ZAKI\Desktop\ENSMM.lnk
2016-04-20 20:06 - 2015-04-14 14:47 - 00000879 _____ C:\Users\ZAKI\Desktop\Téléchargements.lnk
2016-04-20 20:06 - 2015-04-14 00:54 - 00000953 _____ C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber.lnk
2016-04-20 20:06 - 2015-04-13 19:53 - 00001027 _____ C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\RaidCall.lnk
2016-04-20 20:06 - 2015-04-13 18:44 - 00000635 _____ C:\Users\ZAKI\Desktop\Zaki.lnk
2016-04-20 20:06 - 2015-04-13 18:25 - 00001421 _____ C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2016-04-20 20:06 - 2015-04-13 18:24 - 00001455 _____ C:\Users\ZAKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-04-20 20:06 - 2009-07-14 07:01 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2016-04-20 20:06 - 2009-07-14 06:49 - 00001266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-04-20 20:03 - 2015-04-14 01:46 - 00000000 ____D C:\Windows\Onhax-temp
2016-04-20 13:15 - 2009-07-14 17:24 - 00750552 _____ C:\Windows\system32\perfh00C.dat
2016-04-20 13:15 - 2009-07-14 17:24 - 00151166 _____ C:\Windows\system32\perfc00C.dat
2016-04-20 13:15 - 2009-07-14 07:13 - 01676882 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-20 12:15 - 2015-04-13 19:37 - 00000000 ____D C:\Program Files\CCleaner
2016-04-20 07:59 - 2015-09-11 01:19 - 00000000 ____D C:\Windows\Downloaded Installations
2016-04-20 06:50 - 2015-08-27 22:23 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\TS3Client
2016-04-19 17:14 - 2015-04-13 20:26 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Skype
2016-04-19 17:13 - 2015-04-13 19:53 - 00000000 ____D C:\Program Files (x86)\RaidCall
2016-04-19 08:03 - 2015-04-13 18:35 - 00000000 ____D C:\Program Files (x86)\Intel
2016-04-19 08:01 - 2015-04-13 18:35 - 00000000 ____D C:\Intel
2016-04-19 07:54 - 2009-07-14 06:45 - 00565504 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-19 07:48 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors
2016-04-19 07:26 - 2015-04-13 18:24 - 00000000 ____D C:\Users\ZAKI
2016-04-19 06:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2016-04-19 05:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\lv-LV
2016-04-19 05:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\lt-LT
2016-04-19 05:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\et-EE
2016-04-15 12:19 - 2015-04-14 02:17 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\vlc
2016-04-15 09:40 - 2016-02-17 03:05 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\OBS
2016-04-13 02:54 - 2015-04-13 22:46 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-04-13 01:10 - 2015-10-02 00:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-12 17:12 - 2016-02-09 13:03 - 00000000 ____D C:\Users\ZAKI\Desktop\CV
2016-04-10 16:40 - 2016-02-05 13:39 - 00000000 ____D C:\ProgramData\Origin
2016-04-10 16:40 - 2016-02-05 13:39 - 00000000 ____D C:\ProgramData\Electronic Arts
2016-04-10 16:30 - 2015-07-04 02:44 - 00000000 ____D C:\Users\ZAKI\AppData\Local\CrashDumps
2016-04-10 05:36 - 2015-04-13 18:33 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-04-09 00:03 - 2015-05-26 16:57 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Adobe
2016-04-08 23:53 - 2015-04-21 21:52 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\Adobe
2016-04-08 23:43 - 2016-01-11 03:53 - 00000000 ____D C:\ProgramData\Adobe
2016-04-08 18:15 - 2015-04-14 00:54 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\ViberPC
2016-04-08 14:44 - 2015-04-13 19:49 - 00000000 ____D C:\Users\ZAKI\AppData\Roaming\BitComet
2016-04-07 15:22 - 2014-08-27 22:49 - 00000000 ____D C:\Users\ZAKI\Documents\3dsMax
2016-04-07 15:12 - 2009-07-14 04:34 - 00017770 _____ C:\Windows\system32\Drivers\etc\services
2016-04-06 23:13 - 2016-02-07 20:08 - 00000000 ____D C:\Program Files (x86)\PureVPN
2016-04-06 17:52 - 2015-04-13 19:52 - 01651802 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-04-04 18:50 - 2016-03-20 04:59 - 00000000 ____D C:\Users\ZAKI\AppData\Local\Mirillis
2016-04-03 17:39 - 2015-10-02 17:06 - 00000000 ____D C:\Program Files\Intel
2016-04-03 17:06 - 2016-02-17 05:51 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-04-03 17:06 - 2016-02-17 05:51 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-01 22:52 - 2015-08-31 21:20 - 00000000 ____D C:\Windows\Minidump
2016-03-30 00:56 - 2015-04-14 01:25 - 00065588 _____ C:\Users\ZAKI\AppData\Roaming\Camdata.ini
2016-03-30 00:56 - 2015-04-14 01:25 - 00004538 _____ C:\Users\ZAKI\AppData\Roaming\CamStudio.cfg
2016-03-30 00:56 - 2015-04-14 01:25 - 00000408 _____ C:\Users\ZAKI\AppData\Roaming\CamShapes.ini
2016-03-30 00:56 - 2015-04-14 01:25 - 00000408 _____ C:\Users\ZAKI\AppData\Roaming\CamLayout.ini
2016-03-30 00:56 - 2015-04-14 01:24 - 00000096 _____ C:\Users\ZAKI\AppData\Roaming\version2.xml
2016-03-27 13:22 - 2015-04-13 21:12 - 00000000 ____D C:\ProgramData\Apple Computer
2016-03-27 13:22 - 2015-04-13 21:11 - 00000000 ____D C:\Program Files\Common Files\Apple

==================== Fichiers à la racine de certains dossiers =======

2015-04-14 01:25 - 2016-03-30 00:56 - 0065588 _____ () C:\Users\ZAKI\AppData\Roaming\Camdata.ini
2015-04-14 01:25 - 2016-03-30 00:56 - 0000408 _____ () C:\Users\ZAKI\AppData\Roaming\CamLayout.ini
2015-04-14 01:25 - 2016-03-30 00:56 - 0000408 _____ () C:\Users\ZAKI\AppData\Roaming\CamShapes.ini
2015-04-14 01:25 - 2016-03-30 00:56 - 0004538 _____ () C:\Users\ZAKI\AppData\Roaming\CamStudio.cfg
2016-04-15 10:18 - 2016-04-15 11:46 - 0006025 _____ () C:\Users\ZAKI\AppData\Roaming\net.telestream.gameshow.xml
2015-04-14 01:24 - 2016-03-30 00:56 - 0000096 _____ () C:\Users\ZAKI\AppData\Roaming\version2.xml
2016-04-21 11:05 - 2016-04-21 11:05 - 0000000 ____H () C:\ProgramData\cm-lock
2016-04-15 10:20 - 2016-04-15 11:33 - 0000609 _____ () C:\ProgramData\ContentToHashDecode.bin
2015-04-13 18:49 - 2015-04-13 18:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-04-15 10:20 - 2016-04-15 11:33 - 0000003 _____ () C:\ProgramData\ExponentBeforeReversal.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 0000004 _____ () C:\ProgramData\KeyInBlob.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 0000128 _____ () C:\ProgramData\ModulusBeforeReversal.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 0000128 _____ () C:\ProgramData\ModulusInBlob.bin
2016-04-15 10:20 - 2016-04-15 11:33 - 0000140 _____ () C:\ProgramData\PublicKeyDecode.bin
2015-09-20 03:18 - 2015-09-20 03:18 - 0010295 _____ () C:\ProgramData\regid.2011-06.com.youtubebyclick_3C521B99-9ACE-47EA-AC9F-26075467D03B.swidtag
2016-04-15 10:20 - 2016-04-15 11:33 - 0000128 _____ () C:\ProgramData\SignatureDecode.bin

Certains fichiers dans TEMP:
====================
C:\Users\ZAKI\AppData\Local\Temp\libeay32.dll
C:\Users\ZAKI\AppData\Local\Temp\msvcr120.dll
C:\Users\ZAKI\AppData\Local\Temp\sqlite3.dll
C:\Users\ZAKI\AppData\Local\Temp\temp~.DLL
C:\Users\ZAKI\AppData\Local\Temp\temp~.EXE


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-04-20 21:34

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité