cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-08-2016
Exécuté par QUENTIN (administrateur) sur QUENTIN-PC (06-08-2016 14:03:20)
Exécuté depuis C:\Users\QUENTIN\Desktop
Profils chargés: QUENTIN (Profils disponibles: QUENTIN)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
() C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\Greenshot\Greenshot.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe
(CompSoft) C:\Program Files (x86)\DoroPDFWriter\DoroServer.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
(RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe
(Acer) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(IDEVFH) C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\extensions\memoryfoxnext@idevfh.im\components\afom.exe
(Betclic.fr) C:\Users\QUENTIN\AppData\Local\Betclic Poker.fr\data\pokerclient.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_209.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7981088 2009-07-20] (Realtek Semiconductor)
HKLM\...\Run: [mwlDaemon] => C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512 2015-10-04] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [261888 2009-08-12] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [629280 2009-08-18] ()
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [DoroServer] => C:\Program Files (x86)\DoroPDFWriter\DoroServer.exe [106496 2006-12-29] (CompSoft)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-07-20] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6723856 2016-07-22] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation)
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [548864 2010-07-12] ()
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8891608 2016-07-13] (Piriform Ltd)
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\...\MountPoints2: {81b0d639-0e98-11df-9834-00262d16a080} - H:\setup.exe
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\...\MountPoints2: {c0e424d5-30e1-11df-bfe7-00262d16a080} - I:\Startme.exe
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\...\MountPoints2: {cff54977-a75d-11e2-88b7-00262d16a080} - G:\null.exe
AppInit_DLLs-x32: c:/progra~3/{711f9~1/191~1.1/fene.dll => Pas de fichier
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Pas de fichier
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2010-03-08]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

AutoConfigURL: [S-1-5-21-2157297118-1855698082-1033928261-1000] => hxxp://autoconfig.neyrial.com/arenfip-proxy.pac
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4
Tcpip\..\Interfaces\{FF7B8DE0-D4FA-4EEF-AD01-C5E995AF495B}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{FF7B8DE0-D4FA-4EEF-AD01-C5E995AF495B}: [DhcpNameServer] 192.168.1.1
ManualProxies: 0hxxp://autoconfig.neyrial.com/arenfip-proxy.pac

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://www.google.com
HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL =
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKLM-x32 -> {2E567E53-AE2D-4A8F-860C-AFC53B2B340E} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2157297118-1855698082-1033928261-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2157297118-1855698082-1033928261-1000 -> {2E567E53-AE2D-4A8F-860C-AFC53B2B340E} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_frFR364FR364
SearchScopes: HKU\S-1-5-21-2157297118-1855698082-1033928261-1000 -> {85A60A59-D3D8-468F-B598-FB4393789EF4} URL = hxxps://www.google.fr/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14] (CANON INC.)
BHO-x32: Pas de nom -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> Pas de fichier
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-27] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-27] (Oracle Corporation)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14] (CANON INC.)
Toolbar: HKU\S-1-5-21-2157297118-1855698082-1033928261-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523
FF NewTab: hxxp://www.google.fr
FF DefaultSearchEngine: Bing®
FF SelectedSearchEngine: Bing®
FF Homepage: hxxps://www.google.fr/?gws_rd=ssl
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-27] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-27] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-06-17] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-06-17] (NVIDIA Corporation)
FF Plugin-x32: @veetle.com/vbp;version=0.9.16 -> C:\Program Files (x86)\Veetle\VLCBroadcast\npvbp.dll [2010-01-08] (Veetle Inc)
FF Plugin-x32: @veetle.com/veetleCorePlugin,version=0.9.18 -> C:\Program Files (x86)\Veetle\plugins\npVeetle.dll [2010-10-16] (Veetle Inc)
FF Plugin-x32: @veetle.com/veetlePlayerPlugin,version=0.9.18 -> C:\Program Files (x86)\Veetle\Player\npvlc.dll [2010-09-21] (Veetle Inc)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2157297118-1855698082-1033928261-1000: @acestream.net/acestreamplugin,version=3.1.2 -> C:\Users\QUENTIN\AppData\Roaming\ACEStream\player\npace_plugin.dll [Pas de fichier]
FF Plugin HKU\S-1-5-21-2157297118-1855698082-1033928261-1000: @acestream.net/acestreamplugin,version=3.1.6 -> C:\Users\QUENTIN\AppData\Roaming\ACEStream\player\npace_plugin.dll [Pas de fichier]
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-09-14] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-09-14] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-09-14] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-09-14] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-09-14] (Apple Inc.)
FF Extension: Tab Mix Plus - C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2016-06-05]
FF Extension: Memory Fox Next - C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\extensions\memoryfoxnext@idevfh.im [2016-07-11]
FF Extension: WOT - C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2016-07-31]
FF Extension: NoScript - C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-08-02]
FF Extension: Adblock Plus - C:\Users\QUENTIN\AppData\Roaming\Mozilla\Firefox\Profiles\pzlkmw1k.default-1441317806523\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]

Chrome:
=======
CHR HKU\S-1-5-21-2157297118-1855698082-1033928261-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [637944 2016-07-22] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5251808 2016-07-22] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488 2016-07-20] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [712792 2016-07-22] (AVG Technologies CZ, s.r.o.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376 2015-10-04] (NVIDIA Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
R2 NMSAccessU; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [71096 2009-11-12] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-10-04] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816 2015-10-04] (NVIDIA Corporation)
R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [254904 2016-07-31] (RaMMicHaeL)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2010-02-01] ()
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [310016 2016-06-09] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [261376 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [249088 2016-06-02] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [280320 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [76544 2016-06-01] (AVG Technologies CZ, s.r.o.)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [69152 2010-11-22] (Lavasoft AB)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2010-02-01] ()
R3 MTKSCVAD; C:\Windows\System32\drivers\mtkvadx.sys [44544 2012-07-16] (Ralink Technology, Corp.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-10-04] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S3 s1018bus; C:\Windows\System32\DRIVERS\s1018bus.sys [113704 2009-03-25] (MCCI Corporation)
S3 s1018mdfl; C:\Windows\System32\DRIVERS\s1018mdfl.sys [19496 2009-03-25] (MCCI Corporation)
S3 s1018mdm; C:\Windows\System32\DRIVERS\s1018mdm.sys [153128 2009-03-25] (MCCI Corporation)
S3 s1018mgmt; C:\Windows\System32\DRIVERS\s1018mgmt.sys [133160 2009-03-25] (MCCI Corporation)
S3 s1018nd5; C:\Windows\System32\DRIVERS\s1018nd5.sys [34856 2009-03-25] (MCCI Corporation)
S3 s1018obex; C:\Windows\System32\DRIVERS\s1018obex.sys [128552 2009-03-25] (MCCI Corporation)
S3 s1018unic; C:\Windows\System32\DRIVERS\s1018unic.sys [146472 2009-03-25] (MCCI Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-01-31] () [Fichier non signé]
S3 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5504 2009-11-12] ()
S3 StarOpen; C:\Windows\SysWow64\Drivers\StarOpen.sys [7168 2009-11-12] () [Fichier non signé]
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [51712 2011-05-10] (Apple, Inc.) [Fichier non signé]
U3 a5nxpl52; C:\Windows\System32\Drivers\a5nxpl52.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zéro octet Fichier/Dossier)
S3 cpuz135; \??\C:\Users\QUENTIN\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X]
S3 cpuz137; \??\C:\Program Files (x86)\CPUID\PC Wizard 2015\pcwiz_x64.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-08-06 14:03 - 2016-08-06 14:03 - 00022438 _____ C:\Users\QUENTIN\Desktop\FRST.txt
2016-08-06 14:03 - 2016-08-06 14:03 - 00000000 ____D C:\FRST
2016-08-06 14:00 - 2016-08-06 14:00 - 00001347 _____ C:\Users\QUENTIN\Desktop\malware scan rapport.txt
2016-08-06 13:50 - 2016-08-06 13:50 - 02393600 _____ (Farbar) C:\Users\QUENTIN\Desktop\FRST64.exe
2016-08-06 09:52 - 2016-08-06 09:52 - 00002058 _____ C:\Users\Public\Desktop\SharkScope Desktop.lnk
2016-08-06 09:49 - 2016-08-06 09:50 - 67397064 _____ (Barbary Software) C:\Users\QUENTIN\Downloads\sharkscopedesktop_windows_1_36_build_4972.exe
2016-08-06 09:48 - 2016-08-06 09:48 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\java
2016-08-06 09:48 - 2016-08-06 09:48 - 00000000 ____D C:\Users\QUENTIN\AppData\Local\Barbary Software
2016-08-06 09:47 - 2016-08-06 09:52 - 00000000 ____D C:\Program Files (x86)\SharkScope Desktop
2016-08-06 00:05 - 2016-08-06 00:05 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\cef3-cache
2016-08-06 00:05 - 2016-08-06 00:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMU Poker
2016-08-05 17:43 - 2016-08-05 17:43 - 00002883 _____ C:\Users\QUENTIN\Desktop\ZHPCleaner nettoyage.txt
2016-08-05 17:31 - 2016-08-05 17:32 - 02333696 _____ C:\Users\QUENTIN\ZHPCleaner.exe
2016-08-04 22:28 - 2016-08-04 22:28 - 67043272 _____ (Barbary Software) C:\Users\QUENTIN\Desktop\sharkscopedesktop install.exe
2016-08-04 19:54 - 2016-08-04 19:54 - 00002804 _____ C:\Users\QUENTIN\Desktop\ZHPCleaner RAPPORT.txt
2016-08-04 18:56 - 2016-08-05 17:31 - 00000838 _____ C:\Users\QUENTIN\Desktop\ZHPCleaner.lnk
2016-08-04 18:48 - 2016-08-04 18:48 - 02330624 _____ C:\Users\QUENTIN\Desktop\ZHPCleaner.exe
2016-08-03 21:36 - 2016-08-03 21:37 - 81841080 _____ C:\Users\QUENTIN\Desktop\Ace_Stream_Media_3.1.6_VLC_1.1.12 install.exe
2016-08-03 18:26 - 2016-08-03 18:26 - 00008120 _____ C:\Users\QUENTIN\Desktop\AdwCleaner[C1].txt
2016-08-03 10:53 - 2016-08-04 18:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-08-03 00:21 - 2016-08-03 00:20 - 00009362 _____ C:\Users\QUENTIN\Desktop\AdwCleaner RAPPORT - Copie.txt
2016-08-03 00:14 - 2016-08-04 18:48 - 00000000 ____D C:\AdwCleaner
2016-08-02 23:38 - 2016-08-02 23:38 - 03712064 _____ C:\Users\QUENTIN\Desktop\adwcleaner_5.201.exe
2016-08-01 18:17 - 2016-08-03 22:35 - 00000655 _____ C:\Users\QUENTIN\Desktop\SCOPES.lnk
2016-08-01 18:13 - 2016-08-01 19:06 - 00001626 _____ C:\Users\QUENTIN\Desktop\POKER.lnk
2016-08-01 18:02 - 2016-08-01 18:05 - 00001615 _____ C:\Users\QUENTIN\Desktop\SERIES.lnk
2016-08-01 16:03 - 2016-08-01 16:03 - 00008389 _____ C:\Users\QUENTIN\Desktop\ZHPFixReport.txt
2016-08-01 16:00 - 2016-08-01 16:01 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-08-01 16:00 - 2016-08-01 16:00 - 00001817 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-08-01 16:00 - 2016-08-01 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-08-01 15:58 - 2016-08-01 15:58 - 03521617 _____ (Nicolas Coolman ) C:\Users\QUENTIN\Desktop\ZHPFix.exe
2016-08-01 09:54 - 2016-08-03 08:07 - 00000000 ____D C:\Users\QUENTIN\Desktop\WinDlg_v1_29
2016-08-01 09:18 - 2016-08-01 09:18 - 02234368 _____ C:\Users\QUENTIN\ZHPDiag3.exe
2016-07-31 19:39 - 2016-08-05 17:43 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\ZHP
2016-07-31 19:39 - 2016-08-01 09:18 - 00000675 _____ C:\Users\QUENTIN\Desktop\ZHPDiag.lnk
2016-07-31 19:37 - 2016-07-31 19:37 - 02233856 _____ C:\Users\QUENTIN\Desktop\ZHPDiag3.exe
2016-07-31 19:32 - 2016-07-31 19:32 - 03889464 _____ (Crystal Dew World ) C:\Users\QUENTIN\Downloads\crystaldiskinfo_4-0-0_en_306038.exe
2016-07-31 19:32 - 2016-07-31 19:32 - 00001168 _____ C:\Users\QUENTIN\Desktop\CrystalDiskInfo.lnk
2016-07-31 19:32 - 2016-07-31 19:32 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2016-07-31 17:09 - 2016-07-31 17:09 - 01443600 _____ (RaMMicHaeL) C:\Users\QUENTIN\Downloads\unchecky_setup.exe
2016-07-31 17:09 - 2016-07-31 17:09 - 00000987 _____ C:\Users\Public\Desktop\Unchecky.lnk
2016-07-31 17:09 - 2016-07-31 17:09 - 00000000 ____D C:\ProgramData\Unchecky
2016-07-31 17:09 - 2016-07-31 17:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky
2016-07-31 17:09 - 2016-07-31 17:09 - 00000000 ____D C:\Program Files (x86)\Unchecky
2016-07-31 16:41 - 2016-07-31 16:41 - 22851472 _____ (Malwarebytes ) C:\Users\QUENTIN\Downloads\mbam-setup-2.2.1.1043.exe
2016-07-31 16:26 - 2016-07-31 16:27 - 00000000 ____D C:\Program Files\Defraggler
2016-07-31 16:26 - 2016-07-31 16:26 - 00001728 _____ C:\Users\Public\Desktop\Defraggler.lnk
2016-07-31 16:25 - 2016-07-31 16:26 - 04529456 _____ (Piriform Ltd) C:\Users\QUENTIN\Downloads\dfsetup221.exe
2016-07-31 16:17 - 2016-07-31 16:17 - 00002798 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-07-31 16:17 - 2016-07-31 16:17 - 00000826 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-07-31 16:17 - 2016-07-31 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-07-31 16:17 - 2016-07-31 16:17 - 00000000 ____D C:\Program Files\CCleaner
2016-07-31 16:09 - 2016-07-31 16:09 - 08136664 _____ (Piriform Ltd) C:\Users\QUENTIN\Downloads\ccsetup520.exe
2016-07-31 11:53 - 2016-07-31 12:20 - 00000327 _____ C:\Users\QUENTIN\Desktop\PROBLEME ORDI FORUM.txt
2016-07-31 02:38 - 2016-07-31 02:38 - 00231760 _____ C:\Users\QUENTIN\Downloads\CrucialFRScan.exe
2016-07-30 20:34 - 2016-07-30 20:34 - 00001842 _____ C:\Users\QUENTIN\AppData\Roaming\Microsoft\Windows\Start Menu\Betclic Poker.fr.lnk
2016-07-30 20:34 - 2016-07-30 20:34 - 00001840 _____ C:\Users\QUENTIN\Desktop\Betclic Poker.fr.lnk
2016-07-30 20:34 - 2016-07-30 20:34 - 00000000 ____D C:\Users\QUENTIN\AppData\Local\Betclic Poker.fr
2016-07-30 19:51 - 2016-07-30 19:52 - 00016315 _____ C:\Users\QUENTIN\Downloads\Le Dahlia Noir.avi.1.torrent
2016-07-28 21:12 - 2016-07-28 21:12 - 00058476 _____ C:\Users\QUENTIN\Downloads\[www.Cpasbien.me] The.Broken.Circle.Breakdown.2012.TRUEFRENCH.DVDRip.XviD-UTT.avi.1.torrent
2016-07-28 20:32 - 2016-07-28 20:32 - 00029866 _____ C:\Users\QUENTIN\Downloads\[ www.CpasBien.cm ] UnREAL.S02E08.FASTSUB.VOSTFR.HDTV.XviD-ZT.avi.1.torrent
2016-07-28 18:03 - 2016-07-28 18:03 - 00001090 _____ C:\Users\QUENTIN\Desktop\EVEREST Ultimate Edition.lnk
2016-07-28 18:03 - 2016-07-28 18:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
2016-07-28 18:03 - 2016-07-28 18:03 - 00000000 ____D C:\Program Files (x86)\Lavalys
2016-07-28 18:02 - 2016-07-28 18:02 - 10255080 _____ (Lavalys, Inc. ) C:\Users\QUENTIN\Downloads\everest-ultimate_everest_ultimate_5.50.2100_francais_12281.exe
2016-07-28 14:45 - 2015-06-17 08:03 - 00571024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-07-27 22:06 - 2016-07-27 22:11 - 371723888 _____ C:\Users\QUENTIN\Downloads\Girls.S05E09.PROPER.VOSTFR.WEB-DL.XviD-McSteamy.zone-telechargement.com.avi
2016-07-26 19:32 - 2016-07-26 19:32 - 00360599 _____ C:\Users\QUENTIN\Downloads\[ www.CpasBien.cm ] The.Ardennes.2015.VOSTFR.720p.BluRay.x264-CherryCoke.mkv.1.torrent
2016-07-26 19:31 - 2016-07-26 19:31 - 00114966 _____ C:\Users\QUENTIN\Downloads\[ www.CpasBien.cm ] Belgica.2016.FRENCH.DVDRiP.XViD-AViTECH.avi.1.torrent
2016-07-26 19:31 - 2016-07-26 19:31 - 00000000 ____D C:\Users\QUENTIN\Desktop\Metronomy - Summer 08 - 2016
2016-07-21 03:01 - 2016-07-21 03:01 - 00000000 ____D C:\Windows\EOONotify
2016-07-14 23:50 - 2016-07-14 23:50 - 19527360 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2016-07-14 11:05 - 2016-07-14 11:05 - 00026680 _____ C:\Users\QUENTIN\Downloads\sfr-facture-09-B416-008231928.pdf
2016-07-14 11:02 - 2016-07-14 11:02 - 00024436 _____ C:\Users\QUENTIN\Downloads\sfr-facture-detail-09-B416-008231928.pdf
2016-07-13 12:54 - 2016-06-11 08:57 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-07-13 12:54 - 2016-06-11 06:48 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-07-13 12:54 - 2016-06-10 23:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-07-13 12:54 - 2016-06-10 23:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-07-13 12:54 - 2016-06-10 23:20 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-07-13 12:54 - 2016-06-10 23:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-07-13 12:54 - 2016-06-10 23:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-07-13 12:54 - 2016-06-10 23:18 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-07-13 12:54 - 2016-06-10 23:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-07-13 12:54 - 2016-06-10 23:17 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-07-13 12:54 - 2016-06-10 23:10 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-07-13 12:54 - 2016-06-10 23:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-07-13 12:54 - 2016-06-10 23:05 - 25814016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-07-13 12:54 - 2016-06-10 23:04 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-07-13 12:54 - 2016-06-10 23:03 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-07-13 12:54 - 2016-06-10 23:03 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-07-13 12:54 - 2016-06-10 23:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-07-13 12:54 - 2016-06-10 23:02 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-07-13 12:54 - 2016-06-10 22:53 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-07-13 12:54 - 2016-06-10 22:50 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-07-13 12:54 - 2016-06-10 22:49 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-07-13 12:54 - 2016-06-10 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-07-13 12:54 - 2016-06-10 22:38 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-07-13 12:54 - 2016-06-10 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-07-13 12:54 - 2016-06-10 22:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-07-13 12:54 - 2016-06-10 22:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-07-13 12:54 - 2016-06-10 22:28 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-07-13 12:54 - 2016-06-10 22:15 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-07-13 12:54 - 2016-06-10 22:13 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-07-13 12:54 - 2016-06-10 22:12 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-07-13 12:54 - 2016-06-10 22:11 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-07-13 12:54 - 2016-06-10 22:10 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-07-13 12:54 - 2016-06-10 21:45 - 15409664 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-07-13 12:54 - 2016-06-10 21:44 - 02869248 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-07-13 12:54 - 2016-06-10 21:30 - 01550848 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-07-13 12:54 - 2016-06-10 21:21 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-07-13 12:54 - 2016-06-10 21:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-07-13 12:54 - 2016-06-10 20:54 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-07-13 12:54 - 2016-06-10 20:53 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-07-13 12:54 - 2016-06-10 20:53 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-07-13 12:54 - 2016-06-10 20:53 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-07-13 12:54 - 2016-06-10 20:52 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-07-13 12:54 - 2016-06-10 20:47 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-07-13 12:54 - 2016-06-10 20:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-07-13 12:54 - 2016-06-10 20:45 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-07-13 12:54 - 2016-06-10 20:42 - 20348928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-07-13 12:54 - 2016-06-10 20:42 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-07-13 12:54 - 2016-06-10 20:41 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-07-13 12:54 - 2016-06-10 20:41 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-07-13 12:54 - 2016-06-10 20:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-07-13 12:54 - 2016-06-10 20:32 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-07-13 12:54 - 2016-06-10 20:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-07-13 12:54 - 2016-06-10 20:26 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-07-13 12:54 - 2016-06-10 20:24 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-07-13 12:54 - 2016-06-10 20:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-07-13 12:54 - 2016-06-10 20:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-07-13 12:54 - 2016-06-10 20:19 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-07-13 12:54 - 2016-06-10 20:14 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-07-13 12:54 - 2016-06-10 20:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-07-13 12:54 - 2016-06-10 20:10 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-07-13 12:54 - 2016-06-10 20:09 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-07-13 12:54 - 2016-06-10 20:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-07-13 12:54 - 2016-06-10 19:58 - 13806080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-07-13 12:54 - 2016-06-10 19:45 - 02392576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-07-13 12:54 - 2016-06-10 19:42 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-07-13 12:54 - 2016-06-10 19:41 - 01315840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-07-13 12:31 - 2016-06-26 02:35 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-07-13 12:31 - 2016-06-26 02:27 - 01208320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-07-13 12:31 - 2016-06-26 02:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-07-13 12:31 - 2016-06-26 02:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-07-13 12:31 - 2016-06-26 02:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-07-13 12:31 - 2016-06-26 02:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-07-13 12:31 - 2016-06-26 02:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2016-07-13 12:31 - 2016-06-25 21:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-07-13 12:31 - 2016-06-25 21:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-07-13 12:31 - 2016-06-25 21:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2016-07-13 12:31 - 2016-06-25 21:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2016-07-13 12:31 - 2016-06-25 21:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2016-07-13 12:31 - 2016-06-22 15:06 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-07-13 12:31 - 2016-06-17 20:24 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-07-13 12:28 - 2016-06-14 17:03 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-07-11 00:15 - 2016-07-11 00:15 - 41896256 _____ (Apple Inc.) C:\Users\QUENTIN\Downloads\QuickTimeInstaller.exe
2016-07-07 23:56 - 2016-07-07 23:56 - 00045926 _____ C:\Users\QUENTIN\Downloads\[ www.CpasBien.cm ] Ray.Donovan.S04E02.SUBFRENCH.HDTV.XviD-ZT.avi.1.torrent

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-08-06 13:50 - 2012-07-04 21:52 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-08-06 13:33 - 2014-12-26 19:20 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-08-06 12:21 - 2015-09-06 19:25 - 00000000 ____D C:\Users\QUENTIN\AppData\Local\CrashDumps
2016-08-06 09:50 - 2015-09-14 18:22 - 00000000 ____D C:\Users\QUENTIN\.oracle_jre_usage
2016-08-06 09:33 - 2010-01-29 21:52 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\uTorrent
2016-08-06 05:48 - 2015-10-03 14:33 - 00000000 ____D C:\ProgramData\MFAData
2016-08-06 03:40 - 2009-07-14 06:45 - 00018736 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-08-06 03:40 - 2009-07-14 06:45 - 00018736 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-08-06 00:05 - 2016-04-14 19:55 - 00000355 _____ C:\Users\QUENTIN\Desktop\PMU Poker.lnk
2016-08-06 00:05 - 2016-04-14 19:55 - 00000355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PMU Poker.lnk
2016-08-06 00:05 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-08-05 21:00 - 2010-01-30 00:36 - 00000000 ___RD C:\Users\QUENTIN\Desktop\torrent
2016-08-05 17:46 - 2013-04-15 13:56 - 00000000 ____D C:\ProgramData\NVIDIA
2016-08-05 17:46 - 2012-02-24 00:25 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-08-05 17:32 - 2010-01-29 17:59 - 00000000 ____D C:\Users\QUENTIN
2016-08-04 20:55 - 2010-01-29 21:41 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\vlc
2016-08-04 18:50 - 2015-09-03 19:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-08-04 03:24 - 2015-10-03 14:32 - 00000984 _____ C:\Users\Public\Desktop\AVG.lnk
2016-08-04 03:24 - 2015-10-03 14:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-08-03 21:45 - 2016-04-07 20:29 - 00001979 _____ C:\Users\QUENTIN\Desktop\Ace Player.lnk
2016-08-03 18:26 - 2015-08-16 22:42 - 00003868 _____ C:\Windows\wininit.ini
2016-08-03 00:50 - 2015-09-14 18:57 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-08-02 23:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-08-01 18:05 - 2010-01-29 21:27 - 00000000 ____D C:\Users\QUENTIN\AppData\Roaming\Winamp
2016-08-01 16:44 - 2010-03-02 19:24 - 00000000 ____D C:\Program Files (x86)\Sports Interactive
2016-08-01 12:55 - 2010-01-29 22:12 - 00000000 ____D C:\ProgramData\eMule
2016-08-01 12:55 - 2010-01-29 22:11 - 00000000 ____D C:\Users\QUENTIN\AppData\Local\eMule
2016-07-31 16:52 - 2013-04-02 17:27 - 00000000 ___RD C:\Users\QUENTIN\Desktop\photos
2016-07-31 16:48 - 2015-08-17 19:24 - 00000000 ____D C:\Users\QUENTIN\Desktop\CONCOURS B
2016-07-31 16:42 - 2014-11-29 19:41 - 00001070 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-07-31 16:42 - 2014-11-29 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-07-31 16:42 - 2014-11-29 19:41 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-07-31 16:16 - 2009-10-13 05:34 - 00000000 ____D C:\Program Files (x86)\Google
2016-07-31 16:15 - 2010-01-29 20:10 - 00000000 ____D C:\Users\QUENTIN\AppData\Local\Google
2016-07-31 10:57 - 2012-02-24 00:25 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-07-29 14:21 - 2013-10-26 19:00 - 00000000 ____D C:\ProgramData\CanonIJPLM
2016-07-28 14:45 - 2015-06-30 18:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-07-28 14:45 - 2007-10-10 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-07-27 01:23 - 2015-09-14 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-07-27 01:23 - 2014-03-31 11:30 - 00000000 ____D C:\ProgramData\Oracle
2016-07-27 01:23 - 2011-07-08 16:14 - 00000000 ____D C:\Program Files (x86)\Java
2016-07-27 01:22 - 2015-09-14 18:36 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-07-26 17:42 - 2016-05-04 23:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-07-26 14:24 - 2010-01-29 21:26 - 00504488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-07-21 03:00 - 2015-04-04 20:44 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2016-07-21 03:00 - 2015-04-04 20:44 - 00000000 ___SD C:\Windows\system32\GWX
2016-07-14 23:50 - 2012-07-04 21:52 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-07-14 23:50 - 2012-07-04 21:52 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-07-14 23:50 - 2011-11-21 15:35 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-07-14 04:29 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2016-07-14 03:40 - 2009-07-14 06:45 - 00436976 _____ C:\Windows\system32\FNTCACHE.DAT
2016-07-14 03:36 - 2014-12-11 04:27 - 00000000 ____D C:\Windows\system32\appraiser
2016-07-14 03:36 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2016-07-14 03:16 - 2013-08-04 23:36 - 00000000 ____D C:\Windows\system32\MRT
2016-07-14 03:04 - 2010-03-04 20:38 - 144749672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-07-13 12:35 - 2014-12-26 16:53 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-07-12 19:50 - 2011-10-06 14:53 - 00000000 ____D C:\Windows\system32\Macromed
2016-07-12 19:50 - 2009-10-13 05:43 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-07-09 13:12 - 2016-07-05 12:27 - 00000000 ____D C:\Users\QUENTIN\Desktop\BETCLIC PB

==================== Fichiers à la racine de certains dossiers =======

2015-02-02 00:14 - 2013-10-06 15:35 - 6583664 _____ (AVAST Software) C:\Program Files\AVA
2016-04-12 18:05 - 2016-04-14 19:42 - 0000001 _____ () C:\Program Files\SnGJPInfoCount.txt
2009-10-13 05:19 - 2009-02-10 21:23 - 0192484 _____ () C:\Program Files (x86)\Common Files\Acer GameZone online.ico
2010-10-11 14:12 - 2011-01-01 16:38 - 0000565 _____ () C:\Users\QUENTIN\AppData\Roaming\myMPQ.ini
2014-04-20 20:27 - 2015-07-01 17:54 - 0000134 _____ () C:\Users\QUENTIN\AppData\Roaming\WB.CFG
2013-04-17 19:27 - 2013-04-17 19:27 - 0000000 _____ () C:\Users\QUENTIN\AppData\Roaming\wklnhst.dat
2011-04-11 22:36 - 2011-04-11 22:40 - 0011389 _____ () C:\Users\QUENTIN\AppData\Local\MyWinLockerInstaller.txt-20110411.log
2015-09-14 17:52 - 2015-09-14 17:52 - 0000000 _____ () C:\Users\QUENTIN\AppData\Local\{3570A217-1F8A-4C06-9DD4-D961E06F80D3}
2007-10-10 13:21 - 2007-10-10 13:23 - 0008415 _____ () C:\ProgramData\ArcadeDeluxe3.log
2009-10-13 05:19 - 2009-07-18 03:57 - 0036136 _____ (Oberon Media) C:\ProgramData\FullRemove.exe
2010-01-29 21:30 - 2010-01-29 21:30 - 0000091 _____ () C:\ProgramData\PS.log
2010-03-17 20:44 - 2010-03-17 20:44 - 0013270 _____ () C:\ProgramData\Sony Ericsson PC Software.ico

Fichiers à déplacer ou supprimer:
====================
C:\Users\QUENTIN\fmodex.dll
C:\Users\QUENTIN\GMFMODSimple.dll
C:\Users\QUENTIN\ZHPCleaner.exe
C:\Users\QUENTIN\ZHPDiag3.exe


Certains fichiers dans TEMP:
====================
C:\Users\QUENTIN\AppData\Local\Temp\i4jdel0.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-08-06 03:12

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité