Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 18-07-2016
Exécuté par Faïssal (administrateur) sur FAISSAL (19-07-2016 12:34:53)
Exécuté depuis C:\Users\choc-_000\Desktop
Profils chargés: Faïssal & Samira (Profils disponibles: Faïssal & Samira)
Platform: Windows 10 Home Version 1511 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
() C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\LogonUI.exe
(Microsoft Corporation) C:\Windows\System32\LockAppHost.exe
() C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\bcastdvr.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registre (Avec liste blanche) ===========================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-09-02] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-06-01] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-07-13] (AVAST Software)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [90880 2015-03-04] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [DAEMON Tools Lite] => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [Remote Mouse] => C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe [2050048 2015-03-09] (RemoteMouse.net)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8358680 2015-06-01] (Piriform Ltd)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2016-04-22] (Apple Inc.)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [AceStream] => C:\Users\choc-_000\AppData\Roaming\ACEStream\engine\ace_engine.exe [27000 2016-05-10] ()
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\root\office15\lync.exe [24093392 2016-05-17] (Microsoft Corporation)
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\RunOnce: [Uninstall C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\amd64"
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\RunOnce: [Uninstall C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64"
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\RunOnce: [Uninstall C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\choc-_000\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
HKU\S-1-5-21-2633681032-2721063908-2555091252-1005\...\RunOnce: [Uninstall C:\Users\faiss_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\faiss_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-13] (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\choc-_000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-11] (Dropbox, Inc.)
Startup: C:\Users\choc-_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Alertes de surveillance de l'encre - .lnk [2015-12-05]
ShortcutTarget: Alertes de surveillance de l'encre - .lnk -> C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPStatusBL.dll (Hewlett-Packard Development Company, LP)
Startup: C:\Users\choc-_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk [2016-05-27]
ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\choc-_000\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (Pas de fichier)
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
ProxyServer: [S-1-5-21-2633681032-2721063908-2555091252-1001] => 116.197.135.58:8080
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 192.168.1.254
Tcpip\..\Interfaces\{74acc447-4c5b-4ab1-a732-91e61931cbd4}: [DhcpNameServer] 192.168.1.254 192.168.1.254
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-be/?pc=UE01&ocid=UE01DHP
HKU\S-1-5-21-2633681032-2721063908-2555091252-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.be/?gws_rd=ssl
HKU\S-1-5-21-2633681032-2721063908-2555091252-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2633681032-2721063908-2555091252-1001 -> {531B1DF2-962B-4A08-BF0A-9F922FDCF4F7} URL =
SearchScopes: HKU\S-1-5-21-2633681032-2721063908-2555091252-1005 -> DefaultScope {531B1DF2-962B-4A08-BF0A-9F922FDCF4F7} URL =
SearchScopes: HKU\S-1-5-21-2633681032-2721063908-2555091252-1005 -> {531B1DF2-962B-4A08-BF0A-9F922FDCF4F7} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-05-17] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-05-17] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-05-21] (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-05-21] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\choc-_000\AppData\Roaming\Mozilla\Firefox\Profiles\s2bdrnlw.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-13] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-05-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-05-21] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-03] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-10-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-10] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2633681032-2721063908-2555091252-1001: @acestream.net/acestreamplugin,version=3.1.6 -> C:\Users\choc-_000\AppData\Roaming\ACEStream\player\npace_plugin.dll [2015-08-06] (Innovative Digital Technologies)
FF Plugin HKU\S-1-5-21-2633681032-2721063908-2555091252-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\choc-_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2633681032-2721063908-2555091252-1001: electronicarts.com/GameFacePlugin -> C:\Users\choc-_000\AppData\Roaming\Electronic Arts\Game Face\npGameFacePlugin.dll [2012-12-20] (Electronic Arts)
FF Plugin HKU\S-1-5-21-2633681032-2721063908-2555091252-1005: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\faiss_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF Extension: Cookies Manager+ - C:\Users\choc-_000\AppData\Roaming\Mozilla\Firefox\Profiles\s2bdrnlw.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2016-06-04]
FF Extension: YouTube™ Flash® Player - C:\Users\choc-_000\AppData\Roaming\Mozilla\Firefox\Profiles\s2bdrnlw.default\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2016-03-08]
FF Extension: Belgium eID - C:\Program Files (x86)\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be [2016-05-31] [non signé]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-13]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-13]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\choc-_000\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Extension: Ace Stream Web Extension - C:\Users\choc-_000\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2015-12-18]
Chrome:
=======
CHR Profile: C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-11]
CHR Extension: (Google Docs) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-11]
CHR Extension: (Google Drive) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Recherche Google) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Who Deleted Me) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiepnnbjenknnjgabbodaihlnkkpkgll [2016-06-25]
CHR Extension: (Google Sheets) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-11]
CHR Extension: (Google Docs hors connexion) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-07-07]
CHR Extension: (Avast Online Security) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-05]
CHR Extension: (Ace Stream Web Extension) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2016-05-21]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\choc-_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-11]
CHR HKU\S-1-5-21-2633681032-2721063908-2555091252-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-18]
==================== Services (Avec liste blanche) ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-13] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3009776 2016-05-27] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [255040 2014-08-25] (WildTangent)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [370064 2015-10-14] (Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [480512 2015-07-07] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-03-17] (Acer Incorporate)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-03-22] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-03-22] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ==========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 ACSSCR; C:\Windows\system32\DRIVERS\a38usb.sys [82480 2015-09-12] (Advanced Card Systems Ltd.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-13] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-13] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108304 2016-07-13] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-13] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-07-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [473592 2016-07-13] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162904 2016-07-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [290088 2016-07-13] (AVAST Software)
R3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [165376 2015-10-30] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [36864 2015-10-30] (Microsoft Corporation)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-11-04] (Disc Soft Ltd)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
S3 ManyCam; C:\Windows\system32\DRIVERS\mcvidrv.sys [49272 2014-12-29] (Visicom Media Inc.)
S3 mcaudrv_simple; C:\Windows\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (Visicom Media Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [100312 2013-12-10] (Intel Corporation)
R1 ndisrd; C:\Windows\system32\DRIVERS\ndisrfl.sys [41688 2015-04-30] (Intel Corporation)
S3 NetTap630; C:\Windows\system32\DRIVERS\nettap630.sys [67832 2015-05-19] (Intel Corporation)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-07-22] (Realtek )
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [761600 2015-06-24] (Realsil Semiconductor Corporation)
S3 SRS_SSCFilter; C:\Windows\system32\drivers\srs_sscfilter_amd64.sys [346992 2009-12-15] ()
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-24] (Samsung Electronics Co., Ltd.)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42224 2014-02-19] (Synaptics Incorporated)
U5 VClone; C:\Windows\System32\Drivers\VClone.sys [34816 2013-07-24] (Elaborate Bytes AG)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 catchme; \??\C:\Users\CHOC-_~1\AppData\Local\Temp\catchme.sys [X]
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois - Créés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-07-19 12:34 - 2016-07-19 12:36 - 00029390 _____ C:\Users\choc-_000\Desktop\FRST.txt
2016-07-19 12:34 - 2016-07-19 12:34 - 02391552 _____ (Farbar) C:\Users\choc-_000\Desktop\FRST64.exe
2016-07-19 12:34 - 2016-07-19 12:34 - 00000000 ____D C:\FRST
2016-07-19 10:28 - 2016-07-19 10:31 - 567708939 _____ C:\Users\choc-_000\Desktop\DRAGON BALL.1- Baddack contre Freezer (Spécial).www.zone-telechargement.com.mkv
2016-07-18 22:41 - 2016-07-18 22:41 - 00000000 ____D C:\Users\faiss_000\AppData\Local\CEF
2016-07-18 22:34 - 2016-07-18 22:44 - 1777967815 _____ C:\Users\faiss_000\Downloads\Orphan Black.S03E01.VOSTFR-ENG.1080p.WEB-DL.DD5.1.H.264-IMPERIUM.mkv
2016-07-18 19:57 - 2016-07-18 19:57 - 00001298 _____ C:\Users\choc-_000\Desktop\Malwarebytes Anti-.txt
2016-07-18 12:29 - 2016-07-18 12:31 - 00133979 _____ C:\Users\choc-_000\Desktop\ZHPDiag.txt
2016-07-18 12:23 - 2016-07-18 12:23 - 02229760 _____ C:\Users\choc-_000\Desktop\ZHPDiag3.exe
2016-07-17 13:22 - 2016-07-17 14:22 - 3586578956 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S02.VOSTFR.1080p.WEB-DL.AAC2.0.H.264-SEEHD-www.zone-telechargement.com.rar
2016-07-17 13:06 - 2016-07-17 13:19 - 1633942863 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E08.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-17 13:05 - 2016-07-17 13:14 - 1688042261 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E07.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-17 13:04 - 2016-07-17 13:22 - 1742867251 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E06.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-17 11:36 - 2016-07-17 12:05 - 1739523432 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E04.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-17 11:36 - 2016-07-17 12:03 - 1745246434 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E05.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-17 11:35 - 2016-07-17 11:48 - 1717827349 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E03.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-16 13:22 - 2016-07-16 13:23 - 304527257 _____ C:\Users\choc-_000\Desktop\Dragon Ball Super Episode 51 [VOSTFR][720p][AAC].MaChO@zone-telechargement.com.mp4
2016-07-16 13:19 - 2016-07-16 13:21 - 284335060 _____ C:\Users\choc-_000\Desktop\Dragon Ball Super Episode 48 [VOSTFR][720p][AAC].MaChO@zone-telechargement.com.mp4
2016-07-16 13:11 - 2016-07-16 13:12 - 305291331 _____ C:\Users\choc-_000\Desktop\Dragon Ball Super Episode 50 [VOSTFR][720p][AAC].MaChO@zone-telechargement.com.mp4
2016-07-16 13:10 - 2016-07-16 13:12 - 311749409 _____ C:\Users\choc-_000\Desktop\Dragon Ball Super Episode 49 [VOSTFR][720p][AAC].MaChO@zone-telechargement.com.mp4
2016-07-13 20:31 - 2016-07-13 20:31 - 00004030 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1468438253
2016-07-13 20:30 - 2016-07-13 20:30 - 00001086 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-07-13 19:57 - 2016-07-13 19:57 - 00004004 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-07-13 19:57 - 2016-07-13 19:57 - 00001983 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Antivirus Gratuit.lnk
2016-07-13 19:57 - 2016-07-13 19:57 - 00001971 _____ C:\Users\Public\Desktop\Avast Antivirus Gratuit.lnk
2016-07-13 19:57 - 2016-07-13 19:56 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-07-13 19:56 - 2016-07-13 19:56 - 00390984 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-07-13 19:56 - 2016-07-13 19:56 - 00053208 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-07-13 15:38 - 2016-07-13 15:47 - 1771804493 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E02.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-13 14:56 - 2016-07-13 15:11 - 1636597377 _____ C:\Users\choc-_000\Desktop\Orphan.Black.S01E01.VOSTFR.1080p.WEB-DL.AAC.2.0.H.264-SEEHD.mkv
2016-07-10 00:03 - 2016-07-10 00:04 - 334388031 _____ C:\Users\choc-_000\Desktop\GTO.-.Leçon.11.DVDRip.(x264-Ac3)(Fr-5.1+2.0-Jap-2.0)(Sub.Fr).www.zone-telechargement.com.mkv
2016-07-07 17:14 - 2016-07-17 16:07 - 00000000 ____D C:\Users\choc-_000\Desktop\Orange Is The New Black Saison 1 VOSTFR 1080p.www.zone-telechargement.com
2016-06-30 23:26 - 2016-06-30 23:26 - 212233071 _____ C:\Users\choc-_000\Desktop\[Kaerizaki-Fansub]_One_Piece_747_[VOSTFR][HD_1280x720][10Bits]_V2.MaChO@zone-telechargement.com.mkv
2016-06-30 23:16 - 2016-06-30 23:23 - 618941519 _____ C:\Users\choc-_000\Desktop\Boku no Hero Academia 12 VOSTFR [FHD1080p].MaChO@zone-telechargement.com.mp4
2016-06-30 23:16 - 2016-06-30 23:20 - 319729528 _____ C:\Users\choc-_000\Desktop\[Kaerizaki-Fansub]_One_Piece_746_[VOSTFR][HD_1280x720][10Bits].MaChO@zone-telechargement.com.mkv
2016-06-30 23:14 - 2016-06-30 23:16 - 603423869 _____ C:\Users\choc-_000\Desktop\Boku no Hero Academia 13 VOSTFR [FHD1080p].MaChO@zone-telechargement.com.mp4
2016-06-28 15:53 - 2016-06-28 15:54 - 00007602 _____ C:\Users\choc-_000\AppData\Local\Resmon.ResmonCfg
2016-06-27 00:34 - 2015-02-22 23:52 - 989439700 _____ C:\Users\choc-_000\Desktop\Friday.mkv
2016-06-25 20:29 - 2016-06-25 20:52 - 1498744998 _____ C:\Users\choc-_000\Desktop\Fack.ju.Goethe.2.2015.FANSUB.VOSTFR.BDRiP.XviD-D3T3R10R1TY-Zone-Telechargement.com.avi
2016-06-24 23:39 - 2016-06-25 01:14 - 1567892004 _____ C:\Users\choc-_000\Desktop\think.like.a.man.2012.french.720p.bluray.x264-rough.mkv
2016-06-24 19:58 - 2016-06-24 19:58 - 00000000 __SHD C:\found.000
2016-06-24 18:28 - 2016-06-27 14:32 - 00000000 ____D C:\Users\choc-_000\Desktop\Greys Anatomy S01E01 VOSTFR DVDRip XviD-GKS
2016-06-23 19:28 - 2016-06-23 19:27 - 00488921 ____R C:\QuickDiag_23_06_2016_20_28_32.txt
2016-06-23 19:15 - 2016-06-23 19:27 - 00000000 ____D C:\QuickDiag
2016-06-23 18:25 - 2016-06-23 18:25 - 00155173 _____ C:\Users\choc-_000\Desktop\favoris_23_06_2016.html
2016-06-23 17:59 - 2016-06-23 18:04 - 1498762350 _____ C:\Users\choc-_000\Desktop\Fack.ju.Goehte.2013.VOSTFR.BDRiP.x264-D3T3R10R1TY-Zone-Telechargement.com.avi
2016-06-21 18:11 - 2016-06-21 18:11 - 00000000 ____D C:\Users\choc-_000\Desktop\Question ouverte physio
2016-06-21 18:08 - 2016-06-21 18:08 - 00000000 ____D C:\Users\choc-_000\Desktop\Masso
2016-06-19 21:11 - 2016-06-19 21:11 - 00001826 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-06-19 21:11 - 2016-06-19 21:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-06-19 21:10 - 2016-06-19 21:11 - 00000000 ____D C:\Program Files\iTunes
2016-06-19 21:10 - 2016-06-19 21:10 - 00000000 ____D C:\Program Files\iPod
2016-06-19 21:10 - 2016-06-19 21:10 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-06-19 21:06 - 2016-06-19 21:06 - 00000000 ____D C:\Program Files\Bonjour
2016-06-19 21:06 - 2016-06-19 21:06 - 00000000 ____D C:\Program Files (x86)\Bonjour
==================== Un mois - Modifiés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-07-19 12:05 - 2014-12-07 20:38 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-07-19 11:38 - 2015-12-12 13:48 - 00001092 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-19 10:36 - 2014-10-09 14:10 - 00000000 ____D C:\Users\choc-_000\AppData\Roaming\vlc
2016-07-19 09:45 - 2015-04-05 18:27 - 00004170 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{50BABF92-D419-409C-8DF9-85A584E01DC6}
2016-07-18 23:22 - 2015-04-12 19:31 - 00000000 ____D C:\Users\faiss_000\AppData\Roaming\vlc
2016-07-18 22:38 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-18 22:33 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-07-18 22:31 - 2015-12-10 16:01 - 00000000 ____D C:\Users\faiss_000
2016-07-18 22:31 - 2015-10-30 20:00 - 01786840 _____ C:\WINDOWS\system32\perfh00C.dat
2016-07-18 22:31 - 2015-10-30 20:00 - 00439076 _____ C:\WINDOWS\system32\perfc00C.dat
2016-07-18 22:31 - 2015-08-02 13:51 - 00005430 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-18 22:29 - 2015-12-12 13:48 - 00001088 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-18 22:29 - 2015-12-10 15:57 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-07-18 22:29 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-18 22:29 - 2015-03-25 12:57 - 00000000 ____D C:\Users\faiss_000\AppData\Local\Packages
2016-07-18 22:29 - 2014-09-28 10:30 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-07-18 19:04 - 2015-12-09 13:06 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-07-18 12:25 - 2015-05-05 02:41 - 00000000 ____D C:\Users\choc-_000\AppData\Roaming\ZHP
2016-07-17 15:41 - 2015-12-10 16:30 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-17 01:41 - 2015-08-25 09:33 - 00001064 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-07-16 13:22 - 2014-09-28 10:36 - 00000000 ____D C:\Users\choc-_000\AppData\Local\Packages
2016-07-16 12:36 - 2015-06-28 13:21 - 00000000 ____D C:\Users\choc-_000\Downloads\Musique
2016-07-15 18:35 - 2015-01-29 21:10 - 00000000 ____D C:\Users\choc-_000\Downloads\Films
2016-07-15 18:32 - 2015-10-07 14:06 - 00000000 ____D C:\Users\choc-_000\Desktop\image
2016-07-15 18:31 - 2014-11-22 02:21 - 00000000 ____D C:\Users\choc-_000\Desktop\APPLICATON
2016-07-14 02:22 - 2015-12-10 16:01 - 00000000 ____D C:\Users\choc-_000
2016-07-13 19:57 - 2014-10-07 12:47 - 00473592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys.146843626223405
2016-07-13 19:57 - 2014-10-07 12:47 - 00473592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00473592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys.146843624560902
2016-07-13 19:56 - 2014-10-07 12:47 - 00290088 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00162904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00108304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-07-13 19:56 - 2014-10-07 12:47 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-07-13 19:56 - 2014-10-07 12:46 - 00000000 ____D C:\ProgramData\AVAST Software
2016-07-13 19:56 - 2014-10-07 12:46 - 00000000 ____D C:\Program Files\AVAST Software
2016-07-13 18:06 - 2015-08-25 09:33 - 00004142 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-07-13 17:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-07-13 17:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-07-06 18:00 - 2014-10-22 13:11 - 00000000 ____D C:\Users\choc-_000\AppData\Roaming\Skype
2016-07-05 17:43 - 2014-10-22 13:11 - 00000000 ____D C:\ProgramData\Skype
2016-07-03 00:21 - 2015-10-30 07:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-06-28 16:12 - 2016-06-06 03:44 - 00000000 ____D C:\Users\choc-_000\Desktop\Photo exam chimie2
2016-06-27 12:43 - 2015-09-20 18:26 - 00000000 ____D C:\Users\choc-_000\Desktop\Kiné 2016
2016-06-27 03:19 - 2016-05-21 20:28 - 00000000 ____D C:\Users\choc-_000\AppData\Roaming\.ACEStream
2016-06-27 03:17 - 2016-05-21 20:29 - 00000000 ___HD C:\_acestream_cache_
2016-06-25 19:40 - 2015-09-26 03:00 - 00000000 ___RD C:\Users\choc-_000\Documents\Scanned Documents
2016-06-23 20:19 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-06-21 19:28 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-06-21 19:27 - 2014-10-24 12:50 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-06-21 18:36 - 2015-12-10 15:50 - 00359088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-06-21 18:34 - 2015-05-05 20:35 - 00001234 _____ C:\DelFix.txt
2016-06-21 18:12 - 2015-04-27 13:16 - 00000000 ____D C:\Users\choc-_000\Desktop\Exam juin
2016-06-21 18:11 - 2016-06-16 19:04 - 00000000 ____D C:\Users\choc-_000\Desktop\Mobilisation DELECAUT
2016-06-21 18:11 - 2016-06-04 20:10 - 00000000 ____D C:\Users\choc-_000\Desktop\Photo exam PGK1
2016-06-21 18:08 - 2016-06-13 15:26 - 00000000 ____D C:\Users\choc-_000\Desktop\Otr
2016-06-21 18:06 - 2014-11-16 13:54 - 00000000 ____D C:\Users\choc-_000\Desktop\Bac 1 kiné
2016-06-21 17:59 - 2014-11-20 19:50 - 00000000 ____D C:\Users\choc-_000\Documents\My Games
2016-06-21 17:58 - 2015-02-15 00:35 - 00000000 ____D C:\Game
2016-06-21 17:44 - 2015-12-09 13:52 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-06-21 16:08 - 2015-12-09 12:35 - 02219008 _____ C:\Users\choc-_000\ZHPDiag3.exe
2016-06-21 14:53 - 2015-03-06 19:40 - 00000000 ____D C:\Users\choc-_000\Desktop\DROPBOX Kinésithérapie
2016-06-19 23:32 - 2014-11-22 02:19 - 00000000 ____D C:\ProgramData\WindSolutions
2016-06-19 21:10 - 2014-11-21 21:57 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2016-06-19 21:10 - 2014-10-22 13:03 - 00000000 ____D C:\Program Files\Common Files\Apple
==================== Fichiers à la racine de certains dossiers =======
2015-04-18 11:19 - 2015-04-24 15:59 - 0000020 _____ () C:\Users\choc-_000\AppData\Roaming\appdataFr3.bin
2015-08-04 19:32 - 2015-08-06 20:21 - 0000107 _____ () C:\Users\choc-_000\AppData\Roaming\Camdata.ini
2015-08-04 19:32 - 2015-08-06 20:21 - 0000408 _____ () C:\Users\choc-_000\AppData\Roaming\CamLayout.ini
2015-08-04 19:32 - 2015-08-06 20:21 - 0000408 _____ () C:\Users\choc-_000\AppData\Roaming\CamShapes.ini
2015-08-04 19:25 - 2015-08-06 20:21 - 0004509 _____ () C:\Users\choc-_000\AppData\Roaming\CamStudio.cfg
2014-09-28 21:00 - 2016-06-18 20:52 - 0000121 _____ () C:\Users\choc-_000\AppData\Roaming\D2Info0
2014-09-28 21:00 - 2016-06-18 12:13 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_1
2014-09-28 21:12 - 2016-06-18 20:52 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_2
2014-09-28 21:14 - 2016-05-28 19:39 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_3
2014-12-13 01:03 - 2016-05-28 19:42 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_4
2014-12-13 01:16 - 2016-05-28 19:37 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_5
2014-12-14 00:43 - 2016-05-28 20:14 - 0000008 _____ () C:\Users\choc-_000\AppData\Roaming\DofusAppId0_6
2015-03-08 15:34 - 2015-03-29 22:39 - 0006144 _____ () C:\Users\choc-_000\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-06-28 15:53 - 2016-06-28 15:54 - 0007602 _____ () C:\Users\choc-_000\AppData\Local\Resmon.ResmonCfg
2016-01-17 13:06 - 2016-01-17 13:06 - 0000000 _____ () C:\Users\choc-_000\AppData\Local\{2BD27BAE-1832-4BD1-B173-6BE1BB97A8BC}
2014-09-28 20:27 - 2014-09-28 20:27 - 0000000 _____ () C:\Users\choc-_000\AppData\Local\{3619AA61-0055-45F6-ACD3-FFD2428A25FC}
2015-09-26 02:56 - 2015-09-26 02:56 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-12-10 15:58 - 2015-12-10 15:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Fichiers à déplacer ou supprimer:
====================
C:\Users\choc-_000\ZHPDiag3.exe
==================== Bamital & volsnap =================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
LastRegBack: 2016-07-16 22:44
==================== Fin de FRST.txt ============================