cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 31-08-2016
Exécuté par Krimou (administrateur) sur KRIMOU-PC (07-09-2016 11:45:49)
Exécuté depuis D:\FOREX\Programs
Profils chargés: Krimou (Profils disponibles: Krimou)
Platform: Windows 7 Ultimate (X64) Langue: Français (France)
Internet Explorer Version 8 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AMD) C:\Windows\System32\atiesrxx.exe
(SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
() C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
() C:\Program Files (x86)\Photodex\ProShow Producer\scsiaccess.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Qualcomm®Atheros®) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
() C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe
(Zbshareware Lab) C:\Program Files (x86)\USB Disk Security\USBGuard.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [UnlockerAssistant] => C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe [17408 2010-07-04] ()
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-12-21] (Intel Corporation)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-12-11] (Intel Corporation)
HKLM-x32\...\Run: [NBKeyScan] => C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBKeyScan.exe [1373480 2007-06-29] (Nero AG)
HKLM-x32\...\Run: [USB Security] => C:\Program Files (x86)\USB Disk Security\USBGuard.exe [658632 2012-07-31] (Zbshareware Lab)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [847576 2015-02-03] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104088 2012-08-15] (VMware, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-09-05] (AVAST Software)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [337432 2014-02-03] (Power Software Ltd)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642816 2013-07-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2087264 2014-09-11] (Wondershare)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [132736 2013-07-02] (Qualcomm®Atheros®)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [455968 2007-08-23] (Hewlett-Packard Company)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152 2015-07-25] (Tonec Inc.)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29494400 2016-07-13] (Skype Technologies S.A.)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 5\CyberGhost.exe [426600 2016-01-11] (CyberGhost S.R.L.)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Run: [uTorrent] => C:\Users\Krimou\AppData\Roaming\uTorrent\uTorrent.exe [1972224 2016-08-05] (BitTorrent Inc.)
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\MountPoints2: {e9a6e0ad-cefe-11e4-8728-485ab6c2324c} - F:\setup.exe
HKU\S-1-5-18\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29494400 2016-07-13] (Skype Technologies S.A.)
ShellIconOverlayIdentifiers: [! IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-07-24] (Tonec Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-07-01] (AVAST Software)
Startup: C:\Users\Krimou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Ela-Salaty.lnk [2016-06-14]
ShortcutTarget: Ela-Salaty.lnk -> C:\Program Files (x86)\Ela-Salaty\Salaty.exe (www.ela-salaty.com)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{2A352DF8-EC17-4C79-8B4B-9AC751BCFB94}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr
HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.linkzb.com
URLSearchHook: HKLM-x32 - my-search Toolbar - {d366e137-6c51-46b1-a99a-7b679f8009c2} - C:\Program Files (x86)\my-search\tbmy-s.dll Pas de fichier
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3495489798-3233387786-2019199328-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-07-08] (Internet Download Manager, Tonec Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-18] (Oracle Corporation)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2013-07-02] (Qualcomm®Atheros®)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-07-01] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-18] (Oracle Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-07-08] (Internet Download Manager, Tonec Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-09-18] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-01] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-18] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-09-26] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-09-26] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-09-26] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-09-26] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default
FF NewTab: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-13] ()
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-18] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-11] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-11] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-18] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-18] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50524.0\npctrl.dll [2010-05-24] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2016-01-22] ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin HKU\S-1-5-21-3495489798-3233387786-2019199328-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Krimou\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-03-27] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2008-06-11] (Adobe Systems Inc.)
FF Extension: (IDM integration) - C:\Users\Krimou\AppData\Roaming\IDM\idmmzcc7 [2015-09-13]
FF Extension: (iMacros for Firefox) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} [2016-04-24]
FF Extension: (Hoxx VPN Proxy) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Extensions\@hoxx-vpn.xpi [2016-09-05]
FF Extension: (anonymoX) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Extensions\client@anonymox.net.xpi [2016-06-17]
FF Extension: (Firefox Hotfix) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-05]
FF Extension: (HMA! IP Checker) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Extensions\ipinfo@hidemyass.com.xpi [2016-03-04]
FF Extension: (MAFIAAFire: ThePirateBay Dancing!) - C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Extensions\thepiratebay@mafiaafire.com.xpi [2016-05-06]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-09-05]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-09-05]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Users\Krimou\AppData\Roaming\IDM\idmmzcc7
FF HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Krimou\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Krimou\AppData\Roaming\IDM\idmmzcc5 [2015-09-13] [non signé]

Chrome:
=======
CHR Profile: C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast SafePrice) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-09-06]
CHR Extension: (Avast Online Security) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-09-06]
CHR Extension: (Skype) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-09-06]
CHR Extension: (IDM Integration Module) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-09-06]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-06]
CHR Extension: (Chrome Media Router) - C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-06]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-07-24]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-07-24]
CHR HKU\S-1-5-21-3495489798-3233387786-2019199328-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2016-05-13]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-13]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-07-24]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-02] (Windows (R) Win 7 DDK provider) [Fichier non signé]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-01] (AVAST Software)
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2015-02-03] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2015-02-03] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [794328 2015-02-03] (BlueStack Systems, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [65128 2016-01-11] (CyberGhost S.R.L)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [387944 2016-05-18] (Digital Wave Ltd.)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [135496 2016-09-06] (SurfRight B.V.)
S2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [919040 2014-05-17] (AnchorFree Inc.) [Fichier non signé]
S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2014-05-17] ()
R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [430344 2014-05-16] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-11] (Intel Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe [625648 2015-06-08] (Lenovo)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [279848 2007-06-27] (Nero AG)
R2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShow Producer\ScsiAccess.exe [186760 2016-01-22] ()
S3 ShareItSvc; C:\Program Files (x86)\Lenovo\SHAREit\Shareit.Service.exe [33224 2016-04-15] (SHAREit Technologies Co.Ltd)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 Themes; C:\Windows\system32\themeservice.dll [44544 2009-08-03] (Microsoft Corporation) [Fichier non signé]
S2 VMAuthdService; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872 2012-08-15] (VMware, Inc.) [Fichier non signé]
S2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15680000 2012-08-15] () [Fichier non signé]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [36520 2012-09-14] (Advanced Micro Devices, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-07-01] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-07-01] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108304 2016-07-01] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-07-01] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-07-01] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-07-01] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [473592 2016-07-13] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162904 2016-07-01] (AVAST Software)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2015-02-27] (The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-05] (AVAST Software)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2015-02-03] (BlueStack Systems)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2013-07-02] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-20] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2014-05-17] (AnchorFree Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-09-07] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [100312 2013-12-11] (Intel Corporation)
S3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0120.sys [28640 2015-02-27] (SoftEther VPN Project at University of Tsukuba, Japan.)
S3 Neo_VPN2; C:\Windows\System32\DRIVERS\Neo_0051.sys [28640 2015-02-27] (SoftEther VPN Project at University of Tsukuba, Japan.)
S3 Neo_VPN3; C:\Windows\System32\DRIVERS\Neo_0111.sys [28640 2015-03-05] (SoftEther VPN Project at University of Tsukuba, Japan.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2015-01-27] (Duplex Secure Ltd.)
S3 StarOpen; pas de ImagePath
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2016-09-05] ()
U5 UnlockerDriver5; C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [Fichier non signé]
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70256 2012-07-06] (VMware, Inc.)
U3 a71j0n6v; C:\Windows\System32\Drivers\a71j0n6v.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zéro octet Fichier/Dossier)
S0 exyuouu; System32\drivers\udknnsk.sys [X]
S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-09-07 11:45 - 2016-09-07 11:45 - 00000000 ____D C:\FRST
2016-09-07 11:42 - 2016-09-07 11:42 - 00006709 _____ C:\Users\Krimou\Desktop\ZHPFixReport.txt
2016-09-07 11:39 - 2016-09-07 11:39 - 00001863 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-09-07 11:39 - 2016-09-07 11:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-09-07 11:39 - 2016-09-07 11:39 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-09-07 01:09 - 2016-09-07 01:39 - 00813064 _____ C:\Users\Krimou\Downloads\prentationpfebplan1-140321043819-phpapp02 (1).pptx
2016-09-06 22:14 - 2016-09-06 22:54 - 00741134 _____ C:\Users\Krimou\Downloads\prentationpfebplan1-140321043819-phpapp02.pptx
2016-09-06 16:02 - 2016-09-07 02:05 - 00001443 _____ C:\Users\Krimou\Desktop\ZHPCleaner.txt
2016-09-06 15:49 - 2016-09-07 01:54 - 00000793 _____ C:\Users\Krimou\Desktop\ZHPCleaner.lnk
2016-09-06 15:26 - 2016-09-06 15:26 - 00000344 _____ C:\Windows\system32\.crusader
2016-09-06 13:29 - 2016-09-05 18:23 - 00083312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2016-09-06 12:30 - 2016-09-06 12:30 - 02318848 _____ C:\Users\Krimou\ZHPDiag3.exe
2016-09-06 11:52 - 2016-09-06 11:52 - 00001949 _____ C:\Users\Public\Desktop\HitmanPro.lnk
2016-09-06 11:52 - 2016-09-06 11:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2016-09-06 11:52 - 2016-09-06 11:52 - 00000000 ____D C:\Program Files\HitmanPro
2016-09-06 11:46 - 2016-09-06 12:12 - 00000000 ____D C:\ProgramData\HitmanPro
2016-09-05 23:35 - 2016-09-05 23:35 - 00000000 ___RD C:\Users\Krimou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2016-09-05 23:03 - 2016-09-05 23:03 - 00024688 _____ C:\Windows\system32\Drivers\TrueSight.sys
2016-09-05 23:02 - 2016-09-05 23:02 - 00000000 ____D C:\ProgramData\RogueKiller
2016-09-05 22:39 - 2016-09-06 00:02 - 00000000 ____D C:\AdwCleaner
2016-09-05 22:31 - 2016-09-05 22:31 - 00008718 _____ C:\Users\Krimou\Desktop\JRT.txt
2016-09-05 15:04 - 2016-09-05 15:04 - 00107317 _____ C:\Users\Krimou\Downloads\tv_channels_zat.m3u
2016-09-05 14:47 - 2016-09-07 11:09 - 00187908 _____ C:\Users\Krimou\Desktop\ZHPDiag.txt
2016-09-05 14:42 - 2016-09-07 11:42 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\ZHP
2016-09-05 14:42 - 2016-09-06 12:30 - 00000630 _____ C:\Users\Krimou\Desktop\ZHPDiag.lnk
2016-09-05 13:10 - 2016-07-01 14:06 - 00390984 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-09-05 12:03 - 2016-09-05 12:03 - 00000000 _____ C:\openports.txt
2016-09-05 00:54 - 2016-09-05 00:54 - 00009371 _____ C:\Users\Krimou\Downloads\tv_channels_iptv4k.m3u
2016-09-05 00:54 - 2016-09-05 00:54 - 00009371 _____ C:\Users\Krimou\Downloads\tv_channels_iptv4k (1).m3u
2016-09-05 00:52 - 2016-09-05 00:52 - 00005069 _____ C:\Users\Krimou\Downloads\tv_channels_star7arab (1).m3u
2016-09-05 00:45 - 2016-09-05 00:45 - 00201856 _____ C:\Users\Krimou\Downloads\tv_channels_ital.m3u
2016-09-05 00:44 - 2016-09-05 00:44 - 00019889 _____ C:\Users\Krimou\Downloads\tv_channels_stalker (1).m3u
2016-09-05 00:44 - 2016-09-05 00:44 - 00017017 _____ C:\Users\Krimou\Downloads\tv_channels_mama.m3u
2016-09-05 00:39 - 2016-09-05 00:39 - 00053215 _____ C:\Users\Krimou\Downloads\tv_channels_oADdzK6f4W.m3u
2016-09-05 00:38 - 2016-09-05 00:38 - 00122190 _____ C:\Users\Krimou\Downloads\tv_channels_s1-00330.m3u
2016-09-05 00:38 - 2016-09-05 00:38 - 00019889 _____ C:\Users\Krimou\Downloads\tv_channels_stalker.m3u
2016-09-05 00:37 - 2016-09-05 00:37 - 00017860 _____ C:\Users\Krimou\Downloads\tv_channels_test (1).m3u
2016-09-03 00:32 - 2016-09-03 00:32 - 00205360 _____ C:\Users\Krimou\Downloads\tv_channels_hansie.m3u
2016-09-01 01:25 - 2016-09-01 01:25 - 00017161 _____ C:\Users\Krimou\Downloads\tv_channels_orange.m3u
2016-08-31 00:55 - 2016-08-31 00:55 - 00079958 _____ C:\Users\Krimou\Downloads\tv_channels_miguel.m3u
2016-08-31 00:49 - 2016-08-31 00:49 - 00112549 _____ C:\Users\Krimou\Downloads\tv_channels_wendy1.m3u
2016-08-29 00:37 - 2016-08-29 00:37 - 00089480 _____ C:\Users\Krimou\Downloads\tv_channels_Ze6ZrV7iJY.m3u
2016-08-27 23:19 - 2016-08-27 23:19 - 00228136 _____ C:\Users\Krimou\Downloads\tv_channels_YvIODZDTbl.m3u
2016-08-27 23:18 - 2016-08-27 23:19 - 00081959 _____ C:\Users\Krimou\Downloads\tv_channels_mix27.m3u
2016-08-27 00:07 - 2016-08-27 00:07 - 00223728 _____ C:\Users\Krimou\Downloads\tv_channels_8tgmuWZW7L.m3u
2016-08-26 14:26 - 2016-08-26 14:26 - 00016780 _____ C:\Users\Krimou\Downloads\حركة المشتريات - سما لإدارة المبيعات.pdf
2016-08-26 14:26 - 2016-08-26 14:26 - 00010591 _____ C:\Users\Krimou\Downloads\تأكيد فواتير المبيعات - سما لإدارة المبيعات.pdf
2016-08-26 00:25 - 2016-08-26 00:25 - 00109883 _____ C:\Users\Krimou\Downloads\tv_channels_mark2.m3u
2016-08-20 14:36 - 2016-08-20 14:36 - 00007943 _____ C:\Users\Krimou\Downloads\tv_channels_star7arab.m3u
2016-08-19 01:23 - 2016-09-05 11:02 - 00000000 _____ C:\Windows\SysWOW64\last.dump
2016-08-18 16:06 - 2016-08-18 16:06 - 00006991 _____ C:\Users\Krimou\Downloads\tv_channels_bein.m3u
2016-08-18 16:06 - 2016-08-18 16:06 - 00006991 _____ C:\Users\Krimou\Downloads\tv_channels_bein (1).m3u
2016-08-18 16:04 - 2016-08-18 16:04 - 00087845 _____ C:\Users\Krimou\Downloads\tv_channels_ARIVA 18.m3u
2016-08-18 16:02 - 2016-08-18 16:02 - 00002303 _____ C:\Users\Krimou\Downloads\tv_channels_albaniaiptv.com.m3u
2016-08-18 00:20 - 2016-09-05 11:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TV 3L PC
2016-08-17 23:19 - 2016-08-17 23:19 - 00002096 _____ C:\Users\Krimou\Downloads\tv_channels_star7 (1).m3u
2016-08-17 22:21 - 2016-08-17 22:21 - 00001288 _____ C:\Users\Krimou\Downloads\tv_channels_h0FpfEsesi.m3u
2016-08-17 19:31 - 2016-08-17 19:31 - 00085897 _____ C:\Users\Krimou\Downloads\tv_channels_free17.m3u
2016-08-16 02:16 - 2016-08-16 02:16 - 00095246 _____ C:\Users\Krimou\Downloads\tv_channels_Pete.m3u
2016-08-15 20:22 - 2016-08-15 20:22 - 00006417 _____ C:\Users\Krimou\Downloads\tv_channels_star7.m3u
2016-08-15 16:11 - 2016-08-15 16:11 - 00082271 _____ C:\Users\Krimou\Downloads\tv_channels_1315.m3u
2016-08-15 14:31 - 2016-08-15 14:31 - 00006217 _____ C:\Users\Krimou\Downloads\tv_channels_star7messi.m3u
2016-08-15 00:33 - 2016-08-15 00:33 - 00004084 _____ C:\Users\Krimou\Downloads\BEST XXX.m3u
2016-08-14 16:26 - 2016-08-14 16:26 - 00368422 _____ C:\Users\Krimou\Downloads\tv_channels_GnQNirodxj.m3u
2016-08-13 23:19 - 2016-08-13 23:19 - 00031308 _____ C:\Users\Krimou\Downloads\tv_channels_abdo_errifi.m3u
2016-08-11 15:40 - 2016-08-11 15:40 - 00000763 _____ C:\Users\Krimou\Downloads\tv_channels_vRRaxGAB3B.m3u
2016-08-08 16:28 - 2016-08-08 16:28 - 00006702 _____ C:\Users\Krimou\Downloads\tv_channels_test.m3u

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-09-07 11:45 - 2015-01-27 14:22 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\DMCache
2016-09-07 11:32 - 2015-02-21 22:16 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-09-07 11:16 - 2015-01-27 13:09 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-07 11:03 - 2015-04-22 22:27 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-09-07 10:29 - 2016-04-17 00:34 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\uTorrent
2016-09-07 10:29 - 2015-04-03 12:37 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\Skype
2016-09-07 10:22 - 2009-08-02 11:53 - 00739378 _____ C:\Windows\system32\perfh00C.dat
2016-09-07 10:22 - 2009-08-02 11:53 - 00150360 _____ C:\Windows\system32\perfc00C.dat
2016-09-07 10:22 - 2009-07-14 06:13 - 01674448 _____ C:\Windows\system32\PerfStringBackup.INI
2016-09-07 10:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-09-07 10:16 - 2015-02-25 21:36 - 00000000 ____D C:\ProgramData\VMware
2016-09-07 10:16 - 2015-01-27 13:09 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-07 10:14 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-09-07 02:08 - 2009-07-14 05:45 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-09-07 02:08 - 2009-07-14 05:45 - 00009584 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-09-06 18:26 - 2016-06-28 02:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-06 15:48 - 2016-04-17 12:16 - 00000000 ____D C:\Users\Krimou\Desktop\contest
2016-09-06 15:48 - 2016-04-01 21:30 - 00000000 ____D C:\Program Files (x86)\Pro Evolution Soccer 2015
2016-09-06 12:30 - 2015-01-24 05:39 - 00000000 ____D C:\Users\Krimou
2016-09-06 12:12 - 2015-07-29 12:46 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\IDM
2016-09-06 12:12 - 2015-04-16 22:36 - 00000000 ____D C:\Users\Krimou\Desktop\Jilali
2016-09-06 12:09 - 2015-11-24 17:32 - 00000000 ____D C:\Users\Krimou\Downloads\Sony Vegas Pro 13.0 build 290 (64 bit) Multilingual [ChingLiu]
2016-09-05 23:08 - 2015-06-12 12:04 - 00000000 ____D C:\Users\Krimou\Desktop\abdelmadjid41
2016-09-05 13:13 - 2016-05-13 22:15 - 00001926 _____ C:\Users\Public\Desktop\Avast Antivirus Gratuit.lnk
2016-09-05 13:12 - 2016-05-14 12:06 - 00003918 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1463223964
2016-09-05 13:12 - 2015-02-27 19:57 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-09-05 13:04 - 2016-04-28 15:01 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\RedSurf-client
2016-09-05 13:04 - 2015-12-04 21:58 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-09-05 13:04 - 2015-11-29 14:12 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\xm1
2016-09-05 13:04 - 2015-01-27 13:29 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\Notepad++
2016-09-05 13:04 - 2015-01-25 11:02 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\vlc
2016-09-05 13:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2016-09-05 13:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\AppCompat
2016-09-05 13:03 - 2016-07-27 00:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit
2016-09-05 13:03 - 2016-07-23 14:43 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stremio
2016-09-05 13:03 - 2016-05-13 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-09-05 13:03 - 2016-04-28 15:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedSurf-client
2016-09-05 13:03 - 2016-03-06 17:59 - 00000000 ____D C:\Program Files\TAP-Windows
2016-09-05 13:03 - 2016-03-06 17:58 - 00000000 ____D C:\Program Files\CyberGhost 5
2016-09-05 13:03 - 2016-02-20 00:52 - 00000000 ____D C:\Program Files (x86)\LiteForex MT4 Terminal
2016-09-05 13:03 - 2015-12-19 14:14 - 00000000 ____D C:\Program Files (x86)\FBS Trader 4
2016-09-05 13:03 - 2015-09-10 14:09 - 00000000 ____D C:\Program Files (x86)\MetaTrader 4 - RoboForex
2016-09-05 13:03 - 2015-08-03 14:17 - 00000000 ____D C:\Program Files (x86)\OctaTrader
2016-09-05 13:03 - 2015-08-01 11:58 - 00000000 ____D C:\Program Files (x86)\InstaTrader
2016-09-05 13:03 - 2015-07-08 17:49 - 00000000 ____D C:\Program Files (x86)\SuperTradingOnline MT4
2016-09-05 13:03 - 2015-06-27 02:27 - 00000000 ____D C:\Program Files (x86)\TV 3L PC
2016-09-05 13:03 - 2015-05-08 19:26 - 00000000 ____D C:\Program Files (x86)\XM MT4
2016-09-05 13:03 - 2015-04-05 09:00 - 00000000 ____D C:\Program Files (x86)\Hotspot Shield
2016-09-05 13:03 - 2015-04-03 14:06 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-09-05 13:03 - 2015-02-23 22:14 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2016-09-05 13:03 - 2015-01-24 05:49 - 00000000 ____D C:\ProgramData\Skype
2016-09-05 13:02 - 2015-12-03 21:46 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\stremio
2016-09-05 13:02 - 2015-05-08 19:21 - 00000000 ____D C:\Users\Krimou\AppData\Roaming\MetaQuotes
2016-09-05 13:02 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration
2016-09-05 13:01 - 2015-01-26 21:29 - 00000000 ____D C:\Users\Krimou\AppData\Local\Adobe
2016-09-05 11:42 - 2015-11-28 16:40 - 00000000 ___SD C:\Users\Krimou\AppData\LocalLow\Temp
2016-09-04 20:28 - 2016-03-10 15:52 - 00025472 _____ C:\Users\Krimou\Desktop\resultat.txt
2016-09-02 16:11 - 2016-01-02 21:00 - 00000000 ____D C:\stremio-cache
2016-08-30 00:00 - 2015-12-13 08:48 - 00006070 _____ C:\Users\Krimou\Desktop\Nouveau document texte.txt
2016-08-18 20:55 - 2016-03-10 15:32 - 00000281 _____ C:\Users\Krimou\Desktop\saample.txt
2016-08-08 22:13 - 2015-01-27 13:27 - 00002191 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-08 22:13 - 2015-01-24 05:47 - 00002203 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

==================== Fichiers à la racine de certains dossiers =======

2015-07-30 12:59 - 2016-06-06 13:30 - 0000132 _____ () C:\Users\Krimou\AppData\Roaming\Préfs Format PNG Adobe CS6
2015-02-26 18:45 - 2016-07-13 12:00 - 0000600 _____ () C:\Users\Krimou\AppData\Roaming\winscp.rnd
2015-07-30 13:34 - 2016-06-09 18:12 - 0001456 _____ () C:\Users\Krimou\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs
2015-12-12 13:20 - 2015-12-12 13:20 - 0004096 ____H () C:\Users\Krimou\AppData\Local\keyfile3.drm
2015-05-25 15:19 - 2015-05-25 15:19 - 0000001 _____ () C:\Users\Krimou\AppData\Local\llftool.4.40.agreement
2016-04-23 23:20 - 2016-04-23 23:20 - 0000337 _____ () C:\Users\Krimou\AppData\Local\Perfmon.PerfmonCfg
2015-02-26 19:29 - 2015-02-26 20:04 - 0000600 _____ () C:\Users\Krimou\AppData\Local\PUTTY.RND
2015-10-08 14:48 - 2015-10-13 09:22 - 0007603 _____ () C:\Users\Krimou\AppData\Local\Resmon.ResmonCfg

Fichiers à déplacer ou supprimer:
====================
C:\Users\Krimou\ZHPDiag3.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll
[2010-09-26 19:52] - [2015-01-24 05:58] - 1008640 ____A (Microsoft Corporation) 2C353B6CE0C8D03225CAA2AF33B68D79

C:\Windows\SysWOW64\User32.dll
[2010-09-26 19:52] - [2015-01-24 05:58] - 0833024 ____A (Microsoft Corporation) 861C4346F9281DC0380DE72C8D55D6BE

C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


ATTENTION: ==> Impossible d'accéder au BCD.


LastRegBack: 2016-09-05 23:51

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité