cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 21-09-2016
Exécuté par PC (administrateur) sur PC-PC-VAIO (23-09-2016 17:58:30)
Exécuté depuis C:\Users\PC\Desktop
Profils chargés: PC (Profils disponibles: PC & deux)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: IE)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\DbxSvc.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ABBYY) C:\Program Files (x86)\ABBYY FineReader 9.0 Express Edition\Bonus.ScreenshotReader.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\Admload.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(RealNetworks, Inc.) C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe
(RealNetworks, Inc.) C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe
(RealNetworks, Inc.) C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) E:\OFFICE-2003\OFFICE11\OUTLOOK.EXE
(Microsoft Corporation) E:\OFFICE-2003\OFFICE11\WINWORD.EXE
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [NWEReboot] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9107616 2016-09-12] (AVAST Software)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [25382344 2016-09-20] (Dropbox, Inc.)
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\...\Run: [ABBYY Screenshot Reader Bonus] => C:\Program Files (x86)\ABBYY FineReader 9.0 Express Edition\Bonus.ScreenshotReader.exe [939272 2009-04-15] (ABBYY)
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8912088 2016-08-26] (Piriform Ltd)
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\...\MountPoints2: {815224d3-12cf-11e1-94a3-806e6f6e6963} - "F:\ShareLink_PC .exe" bootup
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\...\MountPoints2: {86e0dd74-03ab-11e1-b8ce-90004ed0cbb8} - "F:\ShareLink_PC .exe" bootup
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\...\MountPoints2: {86e0dd7c-03ab-11e1-b8ce-90004ed0cbb8} - "F:\ShareLink_PC .exe" bootup
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [241664 2010-11-21] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-09-10] (AVAST Software)
ShellIconOverlayIdentifiers: [1SkyPath] -> {1FD3CA00-2099-4344-93D0-5598F09D5215} => C:\Program Files\Imageshack\SkyPath\SkypathOverlay.dll [2013-02-10] (ImageShack)
ShellIconOverlayIdentifiers: [2SkyPath] -> {1FD3CA01-2099-4344-93D0-5598F09D5215} => C:\Program Files\Imageshack\SkyPath\SkypathOverlay.dll [2013-02-10] (ImageShack)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => Pas de fichier
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.43.dll [2016-09-20] (Dropbox, Inc.)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7BEB5D94-475E-4737-B5B1-4572D23DA121}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://orange.fr/portail
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.sony.eu/vaioportal
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://tissageabras.free.fr/
hxxp://forum.tricofolk.info/forum/index.php
hxxps://admin.alwaysdata.com/
hxxps://imp.free.fr/horde/imp/mailbox.php?actionID=105
hxxps://mail.google.com/mail/u/0/?pc=carousel-about-fr#inbox
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
HKU\S-1-5-21-2830284794-1469629017-4241600099-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2830284794-1469629017-4241600099-1000 -> {69CBF47B-5273-4285-A9EC-D29509376186} URL = hxxp://rover.ebay.com/rover/1/709-42536-16445-27/4?satitle={searchTerms}
SearchScopes: HKU\S-1-5-21-2830284794-1469629017-4241600099-1000 -> {F222B6BA-F23B-4784-B8A4-66AC477F73E8} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices
SearchScopes: HKU\S-1-5-21-2830284794-1469629017-4241600099-1000 -> ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ URL =
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2016-05-13] (RealDownloader)
BHO: Pas de nom -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> Pas de fichier
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-09-10] (AVAST Software)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.)
BHO: Pas de nom -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> Pas de fichier
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2016-05-13] (RealDownloader)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-09-11] (Oracle Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-31] (Atheros Commnucations)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-09-10] (AVAST Software)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01] (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-09-11] (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Pas de fichier
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc.)
Toolbar: HKU\S-1-5-21-2830284794-1469629017-4241600099-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc.)
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

FireFox:
========
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\9n823jay.default
FF NetworkProxy: "no_proxies_on", "localhost,127.0.0.1"
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll [2016-09-13] ()
FF Plugin: @java.com/DTPlugin,version=1.6.0_39 -> C:\Windows\system32\npdeployJava1.dll [2013-03-10] (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-13] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-09-11] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-09-11] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2012-05-12] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2012-05-12] (NVIDIA Corporation)
FF Plugin-x32: @real.com/nppl3260;version=18.1.4.135 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll [2016-06-20] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=18.1.4.135 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll [2016-06-20] (RealPlayer)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-09-11]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-09-11]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => non trouvé(e)
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF

Chrome:
=======
CHR StartupUrls: Default -> "hxxps://webmail1j.orange.fr/webmail/fr_FR/inbox.html?PAGE=1","hxxps://admin.alwaysdata.com/","hxxp://plecere.free.fr/","hxxp://up-ruelle.pagesperso-orange.fr/","hxxp://forum.tricofolk.info/forum/index.php","hxxp://brie.blogs.charentelibre.fr/"
CHR DefaultSearchURL: Default -> hxxps://id.orange.fr/auth_user/bin/auth_user.cgi?service=nextecare&return_url=https%3A%2F%2Fespaceclientv3.orange.fr%2F%3Fpage%3Dfactures-accueil
CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default [2016-09-18]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-08]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759072 2009-04-13] (ABBYY)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
S3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-03-31] (Atheros) [Fichier non signé]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [75936 2011-03-31] (Atheros Commnucations) [Fichier non signé]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-09-10] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [223600 2016-09-11] (AVAST Software)
S3 cbVSCService; C:\Program Files (x86)\Cobian Backup 10\cbVSCService.exe [67584 2010-09-23] (CobianSoft, Luis Cobian) [Fichier non signé]
S3 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-08] (CobianSoft, Luis Cobian) [Fichier non signé]
S3 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-22] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-22] (Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [42792 2016-09-20] (Windows (R) Win 7 DDK provider)
S3 DCDhcpService; C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [104096 2011-07-19] (Atheros Communication Inc.) [Fichier non signé]
S3 DokanMounter; C:\Program Files\Orange\mes contenus - mon disque\mounter.exe [64384 2012-07-20] (F-Secure)
S3 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Fichier non signé]
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG) [Fichier non signé]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [Fichier non signé]
S3 NTI BackupNowEZSvr; C:\Program Files (x86)\NTI\NTI Backup Now EZ\BackupNowEZSvr.exe [46072 2013-11-07] (NTI Corporation)
S3 nvservice; C:\Windows\system32\nvservice.exe [192800 2013-02-04] (NVIDIA Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [487960 2014-12-16] (Sony Corporation)
S3 RealPlayer Cloud Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [1095440 2016-06-20] (RealNetworks, Inc.)
S3 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [32544 2016-05-13] ()
S3 RealTimes Desktop Service; c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe [1095440 2016-06-20] (RealNetworks, Inc.)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [259192 2011-01-29] (Sony Corporation)
S3 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.)
S2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [887000 2011-01-20] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1656600 2016-03-31] (Sony Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
S3 ASAPIW2k; C:\Windows\SysWOW64\drivers\ASAPIW2k.sys [11264 2004-03-10] (Pinnacle Systems GmbH) [Fichier non signé]
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-10] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-09-10] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-10] (AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [28312 2016-09-11] (AVAST Software)
R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [453192 2016-09-11] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-10] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-10] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-09-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-09-22] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-10] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-09-10] (AVAST Software)
R2 Dokan; C:\Windows\system32\drivers\dokan.sys [112296 2012-07-18] (Windows (R) Win 7 DDK provider)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S4 InCDfs; C:\Windows\SysWow64\Drivers\InCDfs.sys [88800 2003-09-05] (Ahead Software) [Fichier non signé]
S1 InCDPass; C:\Windows\SysWOW64\DRIVERS\InCDPass.sys [28528 2003-09-05] (Ahead Software) [Fichier non signé]
U1 InCDrec; C:\Windows\SysWow64\Drivers\InCDrec.sys [5328 2003-09-05] (Ahead Software AG) [Fichier non signé]
S1 PCLEPCI; C:\Windows\SysWOW64\drivers\pclepci.sys [14165 2004-07-16] (Pinnacle Systems GmbH) [Fichier non signé]
S3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [416768 2009-06-10] (Realtek Semiconductor Corporation )
S3 dbx; system32\DRIVERS\dbx.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-09-23 17:58 - 2016-09-23 17:59 - 00027981 _____ C:\Users\PC\Desktop\FRST.txt
2016-09-23 17:58 - 2016-09-23 17:58 - 00000000 ____D C:\FRST
2016-09-23 17:57 - 2016-09-23 17:57 - 02402816 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2016-09-22 18:12 - 2016-09-22 18:12 - 00193142 _____ C:\Users\PC\Desktop\ZHPDiag.txt
2016-09-22 18:08 - 2016-09-22 18:08 - 00000819 _____ C:\Users\PC\Desktop\ZHPDiag.lnk
2016-09-21 17:39 - 2016-09-22 18:27 - 00000000 ____D C:\Users\PC\Desktop\ZHP
2016-09-21 14:23 - 2016-09-21 14:23 - 02105344 _____ C:\Users\PC\Desktop\ZHPDiag3 (1).exe
2016-09-20 09:12 - 2016-09-20 09:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-09-20 03:15 - 2016-09-20 03:15 - 00042792 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DbxSvc.exe
2016-09-20 03:07 - 2016-09-20 03:07 - 00073840 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\dbx-stable.sys
2016-09-20 03:07 - 2016-09-20 03:07 - 00073840 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\dbx-dev.sys
2016-09-20 03:07 - 2016-09-20 03:07 - 00073840 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\dbx-canary.sys
2016-09-18 19:10 - 2016-09-18 19:10 - 00000000 ____D C:\Users\PC\AppData\Local\ElevatedDiagnostics
2016-09-18 18:59 - 2016-09-18 19:00 - 00541648 _____ C:\Windows\system32\FNTCACHE.DAT
2016-09-18 18:06 - 2016-09-18 18:06 - 00165568 _____ C:\Users\PC\AppData\Local\GDIPFONTCACHEV1.DAT
2016-09-18 18:00 - 2016-09-18 18:00 - 00063824 _____ C:\Users\PC\Documents\cc_20160918_180044.reg
2016-09-18 17:28 - 2016-09-18 17:28 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2016-09-18 09:22 - 2016-09-18 09:22 - 00001231 _____ C:\Users\PC\Desktop\adwcleaner_6.020.exe - Raccourci.lnk
2016-09-18 09:11 - 2016-09-18 09:11 - 00011597 _____ C:\Users\PC\Desktop\AdwCleaner[C0].txt
2016-09-18 09:02 - 2016-09-18 09:02 - 03861056 _____ C:\Users\PC\Desktop\adwcleaner_6.020.exe
2016-09-16 18:25 - 2016-09-16 18:25 - 00000000 ___DL C:\Users\PC\AppData\LocalLow\PlayReady
2016-09-15 17:48 - 2016-09-23 16:22 - 00003486 _____ C:\Windows\System32\Tasks\ReclaimerUpdateFiles_PC
2016-09-15 17:48 - 2016-09-22 19:22 - 00003480 _____ C:\Windows\System32\Tasks\ReclaimerUpdateXML_PC
2016-09-15 17:48 - 2016-09-15 17:48 - 00003604 _____ C:\Windows\System32\Tasks\RNUpgradeHelperResumePrompt_PC
2016-09-15 17:48 - 2016-09-15 17:48 - 00003188 _____ C:\Windows\System32\Tasks\RNUpgradeHelperLogonPrompt_PC
2016-09-15 14:57 - 2016-09-15 14:57 - 00022364 _____ C:\Users\PC\Downloads\Export.pdf
2016-09-15 14:14 - 2016-09-15 14:14 - 00000000 ____D C:\Users\PC\Desktop\Nouveau dossier (2)
2016-09-15 14:12 - 2016-09-15 14:12 - 01075595 _____ C:\Users\PC\Downloads\pieces jointes_15_09_2016.zip
2016-09-15 09:36 - 2016-09-15 09:36 - 06662856 _____ (Tim Kosse) C:\Users\PC\Downloads\FileZilla_3.21.0_win64-setup.exe
2016-09-14 19:03 - 2016-09-14 19:03 - 00000000 ____D C:\Users\deux\AppData\Local\CEF
2016-09-14 18:55 - 2016-09-14 18:58 - 00000000 ____D C:\Users\deux\AppData\Roaming\vlc
2016-09-14 18:54 - 2016-09-14 18:54 - 00000000 ____D C:\Users\deux\AppData\Local\CrashDumps
2016-09-14 18:04 - 2016-09-14 18:04 - 08244656 _____ (Piriform Ltd) C:\Users\PC\Downloads\ccsetup522.exe
2016-09-13 17:43 - 2016-09-13 17:43 - 01977595 _____ C:\Users\PC\Downloads\BI336- octobre.pdf
2016-09-12 09:23 - 2016-09-12 09:41 - 132339997 _____ C:\Users\PC\Downloads\YouPorn - lesbian pornshow on public stage.mp4
2016-09-11 18:12 - 2016-09-12 09:26 - 48578982 _____ C:\Users\PC\Downloads\pornovrai_video_2270332_trailer.mp4
2016-09-11 18:07 - 2016-09-12 09:26 - 52577539 _____ C:\Users\PC\Downloads\pornovrai_video_1177226_trailer.mp4
2016-09-11 17:50 - 2016-09-11 17:50 - 00001882 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2016-09-11 17:50 - 2016-09-11 17:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-09-11 17:49 - 2016-09-11 17:49 - 00044952 _____ () C:\Windows\system32\Drivers\staport.sys
2016-09-11 17:49 - 2016-09-11 17:48 - 00453192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2016-09-11 17:48 - 2016-09-11 17:48 - 00028312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys
2016-09-11 17:48 - 2016-09-10 14:43 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-09-11 10:09 - 2016-09-11 10:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-09-11 10:08 - 2016-09-11 10:09 - 00000000 ____D C:\Program Files\iTunes
2016-09-11 10:08 - 2016-09-11 10:08 - 00000000 ____D C:\Program Files\iPod
2016-09-11 10:08 - 2016-09-11 10:08 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-09-11 10:02 - 2016-09-11 10:02 - 00000000 ____D C:\Users\PC\AppData\Roaming\Sun
2016-09-11 10:02 - 2016-09-11 10:02 - 00000000 ____D C:\Users\PC\.oracle_jre_usage
2016-09-11 08:45 - 2016-09-23 13:54 - 00003338 _____ C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2830284794-1469629017-4241600099-1000
2016-09-10 14:43 - 2016-09-10 14:43 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-09-10 14:41 - 2016-09-10 14:41 - 00044952 _____ () C:\Windows\system32\Drivers\staport.sys.147351126130509.147351147936402
2016-09-09 09:34 - 2016-09-10 14:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2016-09-07 14:04 - 2016-09-07 14:24 - 186935997 _____ C:\Users\PC\Downloads\149810_6.mp4
2016-09-07 13:59 - 2016-09-07 13:59 - 06666301 _____ C:\Users\PC\Downloads\Acquisition et traitement des matières textiles d’origine végétale en Préhistoire - l’exemple du lin.pdf
2016-09-07 13:59 - 2016-09-07 13:59 - 01140121 _____ C:\Users\PC\Downloads\Quelques observations concernant la fabrication expérimentale des étoffes cordées.pdf
2016-09-07 13:59 - 2016-09-07 13:59 - 00733739 _____ C:\Users\PC\Downloads\Les textiles préhistoriques. Anatomie des écorces et analyse des traitements mis en œuvre pour en extraire la matière tex.pdf
2016-09-07 13:58 - 2016-09-07 14:00 - 02447774 _____ C:\Users\PC\Downloads\Les textiles cordés - armures et techniques.pdf
2016-09-07 13:58 - 2016-09-07 13:59 - 01703207 _____ C:\Users\PC\Downloads\Aux origine du textile européen.pdf
2016-09-07 13:57 - 2016-09-07 14:00 - 00226513 _____ C:\Users\PC\Downloads\Textiles d’écorce. La contribution des arbres à la production textile préhistorique.pdf
2016-09-05 09:36 - 2016-09-05 09:36 - 17802441 _____ C:\Users\PC\Downloads\xhamster.com_6500499_job_dete_a_lehpad.mp4
2016-09-05 09:35 - 2016-09-05 09:35 - 39231748 _____ C:\Users\PC\Downloads\xhamster.com_6498862_la_cochonne_french_mature_slut_gets_her_ass_pounded.mp4
2016-09-04 15:53 - 2016-09-15 11:40 - 00000000 ____D C:\Users\PC\Desktop\crakels
2016-08-30 15:34 - 2016-08-30 15:34 - 00000000 ___RD C:\Users\PC\Documents\Scanned Documents
2016-08-30 15:34 - 2016-08-30 15:34 - 00000000 ____D C:\Users\PC\Documents\Fax

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-09-23 17:57 - 2016-04-22 18:52 - 00001178 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-09-23 17:53 - 2011-05-22 16:39 - 33198114 _____ C:\Windows\system32\perfh00C.dat
2016-09-23 17:53 - 2011-05-22 16:39 - 11283072 _____ C:\Windows\system32\perfc00C.dat
2016-09-23 17:53 - 2009-07-14 07:13 - 00006748 _____ C:\Windows\system32\PerfStringBackup.INI
2016-09-23 17:32 - 2011-09-18 16:39 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-23 17:06 - 2013-02-07 20:14 - 00007646 _____ C:\Users\PC\AppData\Local\Resmon.ResmonCfg
2016-09-23 17:04 - 2012-11-14 09:55 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-09-23 14:08 - 2009-07-14 06:45 - 00028576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-09-23 14:08 - 2009-07-14 06:45 - 00028576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-09-23 14:07 - 2014-07-19 07:59 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-09-23 13:56 - 2016-04-22 19:03 - 00000000 ___RD C:\Users\PC\Dropbox
2016-09-23 13:54 - 2016-06-21 08:45 - 00003198 _____ C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2830284794-1469629017-4241600099-1000
2016-09-23 13:53 - 2016-04-22 18:52 - 00001174 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-09-23 13:53 - 2011-09-18 16:39 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-23 13:53 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-09-22 18:44 - 2011-09-13 17:37 - 00003932 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{FB950024-0FF3-4FCC-A095-D3F8D90B62A2}
2016-09-22 18:43 - 2011-11-21 18:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\vlc
2016-09-22 18:31 - 2015-07-20 14:36 - 00000000 ____D C:\AdwCleaner
2016-09-22 18:21 - 2015-07-20 13:56 - 00000000 ____D C:\Users\PC\AppData\Roaming\ZHP
2016-09-22 14:23 - 2015-07-22 17:48 - 00003876 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1437580118
2016-09-22 14:23 - 2012-08-30 10:54 - 00000000 ____D C:\Program Files (x86)\Opera
2016-09-22 14:20 - 2013-04-27 13:43 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2016-09-21 22:48 - 2014-07-19 07:58 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-09-21 17:42 - 2014-07-19 07:58 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-09-21 17:42 - 2014-07-19 07:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-09-20 23:10 - 2011-09-23 23:10 - 00000246 _____ C:\Windows\Tasks\Epson Printer Software Downloader.job
2016-09-20 18:06 - 2011-09-13 23:54 - 00000000 ____D C:\Users\PC\AppData\Local\CrashDumps
2016-09-20 14:38 - 2016-07-14 16:57 - 00003920 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1468488376
2016-09-20 09:12 - 2016-04-22 18:52 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-09-20 09:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-09-19 19:17 - 2011-10-21 23:32 - 00000000 ____D C:\Users\PC\AppData\Roaming\SoftGrid Client
2016-09-18 17:59 - 2013-11-21 20:04 - 00000000 ____D C:\Users\PC\AppData\Roaming\FileZilla
2016-09-18 17:59 - 2011-09-18 15:00 - 00000000 ____D C:\Users\PC\AppData\Roaming\XnView
2016-09-18 17:41 - 2016-07-21 13:45 - 00001105 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2016-09-18 17:34 - 2011-09-13 17:24 - 00000000 ____D C:\Windows\pss
2016-09-18 16:54 - 2011-09-13 17:27 - 00000000 ____D C:\Users\PC\Documents\Bluetooth Folder
2016-09-17 18:48 - 2011-02-11 01:03 - 00006750 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-09-17 10:39 - 2011-10-14 11:38 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-09-14 19:07 - 2015-07-22 17:54 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-09-14 18:58 - 2012-09-16 16:14 - 00165568 _____ C:\Users\deux\AppData\Local\GDIPFONTCACHEV1.DAT
2016-09-14 18:05 - 2014-09-14 09:44 - 00000782 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-09-13 19:04 - 2012-11-14 09:55 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-09-13 19:04 - 2012-04-21 09:38 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-09-13 19:04 - 2011-10-14 11:35 - 00000000 ____D C:\Windows\system32\Macromed
2016-09-13 19:04 - 2011-09-21 09:01 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-09-13 19:04 - 2011-05-22 07:17 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-09-13 17:49 - 2013-04-27 13:43 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2016-09-13 13:42 - 2011-10-13 09:51 - 00035268 _____ C:\test.xml
2016-09-11 19:25 - 2012-12-22 19:58 - 00000000 ____D C:\tmp
2016-09-11 17:49 - 2014-06-18 17:37 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-09-11 10:08 - 2012-06-10 09:34 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-09-11 10:02 - 2015-07-22 17:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-09-11 10:02 - 2011-09-13 17:24 - 00000000 ____D C:\Users\PC
2016-09-11 10:01 - 2015-07-22 17:30 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-09-11 10:01 - 2011-05-22 07:01 - 00000000 ____D C:\Program Files (x86)\Java
2016-09-11 09:59 - 2011-09-24 10:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-09-10 14:43 - 2016-07-14 13:04 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-09-10 14:43 - 2014-10-02 23:01 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-09-10 14:43 - 2014-10-02 23:01 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-09-10 14:43 - 2013-04-27 13:43 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-09-10 14:43 - 2013-04-27 13:43 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-09-10 14:43 - 2013-04-27 13:43 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-09-10 14:43 - 2013-04-27 13:43 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-09-10 14:34 - 2015-12-04 00:20 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-09-10 14:34 - 2015-04-04 23:58 - 00000000 ___SD C:\Windows\system32\GWX
2016-09-10 14:34 - 2012-09-16 16:11 - 00000000 ____D C:\Users\deux
2016-09-10 14:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2016-09-10 14:25 - 2012-09-27 23:54 - 00000000 ____D C:\ProgramData\Real
2016-09-10 14:25 - 2011-09-18 14:52 - 00000000 ____D C:\Program Files (x86)\Google
2016-09-10 14:16 - 2016-06-23 18:40 - 00000000 ____D C:\Users\PC\Desktop\Braconne
2016-09-06 19:06 - 2012-01-17 19:07 - 00000000 ____D C:\Users\PC\AppData\Roaming\Media Player Classic
2016-09-06 19:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\ModemLogs
2016-08-30 15:34 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-08-29 23:09 - 2011-09-14 09:37 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype
2016-08-29 23:04 - 2016-07-14 17:13 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-08-29 23:03 - 2011-05-22 07:51 - 00000000 ____D C:\ProgramData\Skype
2016-08-27 09:23 - 2011-09-18 00:08 - 00000000 ___RD C:\Users\PC\Desktop\Imprimante scanner
2016-08-27 08:54 - 2009-07-14 07:08 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-08-27 08:54 - 2009-07-14 07:08 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU(14).TXT

==================== Fichiers à la racine de certains dossiers =======

2012-12-20 18:47 - 2009-04-15 05:18 - 0167936 _____ () C:\Program Files (x86)\1026.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0214528 _____ () C:\Program Files (x86)\1028.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0107520 _____ () C:\Program Files (x86)\1029.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0108544 _____ () C:\Program Files (x86)\1031.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0012288 _____ () C:\Program Files (x86)\1033.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0098304 _____ () C:\Program Files (x86)\1034.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0104960 _____ () C:\Program Files (x86)\1036.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0111104 _____ () C:\Program Files (x86)\1038.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0100864 _____ () C:\Program Files (x86)\1040.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0296960 _____ () C:\Program Files (x86)\1041.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0661504 _____ () C:\Program Files (x86)\1042.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0099328 _____ () C:\Program Files (x86)\1043.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0104960 _____ () C:\Program Files (x86)\1045.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0097792 _____ () C:\Program Files (x86)\1046.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0171520 _____ () C:\Program Files (x86)\1049.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0108032 _____ () C:\Program Files (x86)\1051.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0105984 _____ () C:\Program Files (x86)\1055.mst
2012-12-20 18:47 - 2009-04-15 05:18 - 0227840 _____ () C:\Program Files (x86)\2052.mst
2012-12-20 18:47 - 2009-04-16 20:13 - 3999232 _____ () C:\Program Files (x86)\ABBYY FineReader 9.0 Express Edition.msi
2012-12-20 18:47 - 2009-04-15 04:37 - 1822520 _____ (Microsoft Corporation) C:\Program Files (x86)\instmsiw.exe
2012-12-20 18:47 - 2009-04-15 04:50 - 0455944 _____ (ABBYY) C:\Program Files (x86)\Setup.exe
2012-12-20 18:47 - 2009-04-15 04:37 - 0000252 _____ () C:\Program Files (x86)\setup.ini
2012-12-20 18:47 - 2009-04-15 01:12 - 0245408 _____ (Microsoft Corporation) C:\Program Files (x86)\unicows.dll
2013-11-06 00:26 - 2013-11-06 00:26 - 0000031 _____ () C:\Users\PC\AppData\Roaming\mbam.context.scan
2011-10-21 18:53 - 2015-12-05 12:35 - 0022016 _____ () C:\Users\PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-20 15:39 - 2014-08-20 15:39 - 0001894 _____ () C:\Users\PC\AppData\Local\recently-used.xbel
2013-02-07 20:14 - 2016-09-23 17:06 - 0007646 _____ () C:\Users\PC\AppData\Local\Resmon.ResmonCfg
2013-04-24 23:43 - 2013-04-25 09:06 - 95023320 ____T () C:\ProgramData\03in8.pad
2013-04-24 23:43 - 2013-04-24 23:43 - 0000151 _____ () C:\ProgramData\03in8.reg
2013-04-24 23:43 - 2013-04-25 09:06 - 0000000 _____ () C:\ProgramData\as98213.txt
2013-07-23 13:40 - 2013-07-23 13:40 - 0000000 _____ () C:\ProgramData\g252qs.txt
2011-11-21 00:19 - 2011-11-21 00:19 - 0005081 _____ () C:\ProgramData\hnbdehzc.pfe
2013-09-09 19:06 - 2013-09-09 19:06 - 0000000 _____ () C:\ProgramData\l7lg8zmq.ctrl
2013-09-09 19:06 - 2013-09-09 19:10 - 95025368 ____T () C:\ProgramData\l7lg8zmq.pff
2013-07-23 13:40 - 2013-07-23 13:43 - 95023320 ____T () C:\ProgramData\ocod8e.pad
2013-03-15 21:31 - 2013-03-15 21:31 - 0002072 _____ () C:\ProgramData\regid.1999-01.com.fiberworks-pcw_3EBEC49B-CB01-4040-BE4E-34B505B4C51B.swidtag

Fichiers à déplacer ou supprimer:
====================
C:\ProgramData\03in8.pad
C:\ProgramData\03in8.reg
C:\ProgramData\l7lg8zmq.ctrl
C:\ProgramData\l7lg8zmq.pff
C:\ProgramData\ocod8e.pad


Certains fichiers dans TEMP:
====================
C:\Users\PC\AppData\Local\Temp\lowproc.exe
C:\Users\PC\AppData\Local\Temp\stubhelper.dll


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-09-05 10:07

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité