cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-11-2016
Exécuté par Ahmed (administrateur) sur AHMED-PC (18-11-2016 17:45:31)
Exécuté depuis C:\Users\Ahmed\Downloads\Programs
Profils chargés: Ahmed (Profils disponibles: Ahmed)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 8 (Navigateur par défaut: IE)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
() C:\ProgramData\Dim@net\OnlineUpdate\ouc.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
() C:\Windows\KMS-QAD.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
() C:\ProgramData\MobileBrServ\mbbService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
(Kepware Technologies) C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
() C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(SIEMENS AG) C:\Program Files (x86)\Siemens\Step7\S7BIN\s7hspsvx.exe
(SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe
(SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Atheros) C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\pniomgr.exe
(Kepware Technologies) C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nipxism.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(National Instruments Corporation) C:\Windows\SysWOW64\nicitdl5.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI-VISA\niLxiDiscovery.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(SIEMENS AG) C:\Windows\SysWOW64\pniopcac.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\Program Files (x86)\Upwork\upwork.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe
() C:\Program Files (x86)\Dim@net\Dim@net.exe
() C:\Program Files (x86)\Upwork\upwork.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Upwork\upwork.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registre (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3917289 2015-12-20] (Tonec Inc.)
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [794200 2016-06-01] (National Instruments Corporation)
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\Run: [Upwork] => C:\Program Files (x86)\Upwork\upwork.exe [2267912 2016-08-19] ()
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: G - G:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: H - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: I - I:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: J - J:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: K - K:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {0c451aaa-3a2f-11e6-8969-001e101f1f81} - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {0e040175-e262-11e5-bca1-806e6f6e6963} - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {2abbbab5-972e-11e5-964f-806e6f6e6963} - G:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {79167285-d75e-11e5-8d13-806e6f6e6963} - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {977b173b-98e4-11e5-ad7e-9cb70dc38f33} - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {a2599651-9753-11e5-90e7-9cb70dc38f33} - H:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {d2ecf1e0-96b9-11e5-89fa-9cb70dc38f33} - J:\AutoRun.exe
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\MountPoints2: {d2ecf1ec-96b9-11e5-89fa-9cb70dc38f33} - H:\AutoRun.exe
ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 07 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26936 2016-05-31] (National Instruments Corporation)
Winsock: Catalog5-x64 07 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [30008 2016-05-31] (National Instruments Corporation)
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\..\Interfaces\{125BCD21-98DA-4E44-AC0C-DC142D8585B0}: [NameServer] 196.203.82.4 8.8.8.8
Tcpip\..\Interfaces\{1616E64B-B0D5-4DDD-8E09-633244C33C23}: [NameServer] 196.203.82.4 8.8.8.8
Tcpip\..\Interfaces\{4216BD99-CB73-412E-9A4F-0A6A7041ABFC}: [NameServer] 196.203.82.4 8.8.8.8
Tcpip\..\Interfaces\{5D0ADA3B-77C4-4B98-830B-8E4CFB2BC4CD}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{7357C438-BE79-4353-BC40-EC5C711DB05B}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{8A69040F-676D-406E-BA8E-127BE3B51CA0}: [DhcpNameServer] 192.168.1.1 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://fr.yahoo.com?fr=fp-comodo&type=33050001005_8.4.0.5165_u_hp
SearchScopes: HKU\S-1-5-21-2231268998-1281614173-1854668964-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2231268998-1281614173-1854668964-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2231268998-1281614173-1854668964-1000 -> {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://fr.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo&type=33050001005_8.4.0.5165_u_ds
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-11-14] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-10-01] (Oracle Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17] (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-11-14] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-10-01] (Oracle Corporation)
BHO-x32: Microsoft Web Test Recorder 10.0 Helper -> {DDA57003-0068-4ed2-9D32-4D1EC707D94D} -> C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2010-03-19] (Microsoft Corporation)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2016-11-14] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2016-11-14] (AO Kaspersky Lab)
Toolbar: HKU\S-1-5-21-2231268998-1281614173-1854668964-1000 -> Pas de nom - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Pas de fichier
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17] (Skype Technologies S.A.)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: zqsvdbfz.default
FF ProfilePath: C:\Users\Ahmed\AppData\Roaming\Mozilla\Firefox\Profiles\zqsvdbfz.default [2016-11-15]
FF Extension: (Firefox Hotfix) - C:\Users\Ahmed\AppData\Roaming\Mozilla\Firefox\Profiles\zqsvdbfz.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-20]
FF Extension: (Dashlane) - C:\Users\Ahmed\AppData\Roaming\Mozilla\Firefox\Profiles\zqsvdbfz.default\Extensions\jetpack-extension@dashlane.com.xpi [2016-08-12]
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2015-12-09]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-11-15]
FF HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Ahmed\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Ahmed\AppData\Roaming\IDM\idmmzcc5 [2016-11-18] [non signé]
FF HKU\S-1-5-21-2231268998-1281614173-1854668964-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-10-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-10-01] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 9\npnitromozilla.dll [2014-05-19] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-12-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-2231268998-1281614173-1854668964-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\Ahmed\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [Pas de fichier]
FF Plugin HKU\S-1-5-21-2231268998-1281614173-1854668964-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\Ahmed\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [Pas de fichier]
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2011win32.dll [2012-07-13] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2012win32.dll [2013-05-29] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win32.dll [2013-06-20] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2014win32.dll [2016-01-25] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2015win32.dll [2016-04-25] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2016win32.dll [2016-06-08] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.tn/
CHR StartupUrls: Default -> "hxxps://www.google.tn/","hxxp://www.gmail.com/"
CHR DefaultSearchKeyword: Default -> lp
CHR Profile: C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default [2016-11-18]
CHR Extension: (Google Traduction) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2015-11-27]
CHR Extension: (Google Slides) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-27]
CHR Extension: (Google Docs) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-27]
CHR Extension: (Google Drive) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-27]
CHR Extension: (YouTube) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-27]
CHR Extension: (Adblock pour Youtube™) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2016-03-05]
CHR Extension: (Recherche Google) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-27]
CHR Extension: (Source Mapper) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\enenhalmnhnpofkecebdmgnmmhfkhcpb [2015-11-27]
CHR Extension: (ZenMate VPN - Sécurité internet & Unblock) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2016-11-11]
CHR Extension: (Google Sheets) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-27]
CHR Extension: (Google Docs hors connexion) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-11-09]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2016-11-17]
CHR Extension: (Rapportive) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\hihakjfhbmlmjdnnhegiciffjplmdhin [2015-11-27]
CHR Extension: (Page Marker) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfiihjeimjpkpoaekpdpllpaeichkiod [2016-11-13]
CHR Extension: (Grammarly for Chrome) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2016-11-18]
CHR Extension: (Save as PDF) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpdjmbiefanbdgnkcikhllpmjnnllbbc [2015-11-27]
CHR Extension: (Skype) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-10-21]
CHR Extension: (Sales Prospecting - Datanyze Insider) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlholfadgbpidekmhdibonbjhdmpmafd [2016-11-01]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Transcribe: transcribe audio/interviews fast!) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogokenmicnjdfhmhocanoemnddmpcjjm [2016-02-03]
CHR Extension: (Gmail) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-27]
CHR Extension: (Chrome Media Router) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-22]
CHR Extension: (sourceLair) - C:\Users\Ahmed\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmdllfjnhmnohbhidhdnbaanbnmopfcn [2015-11-27]
CHR Extension: (Sci-Hub) - C:\Users\Ahmed\Downloads\Compressed\Sci-Hub [2016-10-14] [UpdateUrl: hxxp://31.184.194.81/update] <==== ATTENTION
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-28]
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-01-17]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-28]

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-12-08] (Kaspersky Lab ZAO)
S2 Dim@net. RunOuc; C:\Program Files (x86)\Dim@net\UpdateDog\ouc.exe [655712 2015-11-29] ()
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
R2 KMS-R@1n; C:\Windows\KMS-QAD.exe [22528 2015-11-28] () [Fichier non signé]
R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2015-06-05] (National Instruments, Inc.)
R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [50200 2016-06-08] (National Instruments Corporation)
R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [60440 2016-06-08] (National Instruments Corporation)
R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [242256 2014-08-20] ()
R2 MSSQL$CITADEL; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\sqlservr.exe [43040096 2011-06-17] (Microsoft Corporation)
R2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [57617752 2016-11-05] (Microsoft Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [94752 2016-05-23] (National Instruments Corporation)
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [65096 2016-05-31] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [83528 2016-05-31] (National Instruments Corporation)
R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [594984 2016-05-27] (National Instruments Corporation)
R2 NICitadel5Service; C:\Windows\SysWOW64\nicitdl5.exe [1298752 2013-06-17] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [394264 2016-06-08] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 niLXIDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI-VISA\niLxiDiscovery.exe [375160 2015-09-22] (National Instruments Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [334424 2016-05-31] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [179304 2016-05-31] (National Instruments Corporation)
S3 NIOPCServersKeySvcV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\keysvc.exe [34816 2013-05-06] (Kepware Technologies)
R2 NIOPCServersLoggerV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_eventlog.exe [143872 2013-05-06] (Kepware Technologies)
R2 NIOPCServersV2013; C:\Program Files (x86)\National Instruments\Shared\NI OPC Servers\V5\server_runtime.exe [257024 2013-05-06] (Kepware Technologies)
R2 nipxirmu; C:\Windows\SysWOW64\nipxism.exe [21328 2015-05-26] (National Instruments Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [102512 2016-05-19] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [65080 2016-05-31] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [699952 2016-06-05] (National Instruments Corporation)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-05-19] (Nitro PDF Software)
R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-05-19] ()
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [Fichier non signé]
R2 s7hspsvx; C:\Program Files (x86)\Siemens\Step7\s7bin\s7hspsvx.exe [61493 2011-05-30] (SIEMENS AG) [Fichier non signé]
R2 s7oiehsx64; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [139864 2011-06-22] (SIEMENS AG)
R2 S7TraceServiceX; C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe [229976 2011-06-22] (SIEMENS AG)
S4 SQLAgent$CITADEL; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.CITADEL\MSSQL\Binn\SQLAGENT.EXE [370016 2011-06-17] (Microsoft Corporation)
S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [427880 2016-11-05] (Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros) [Fichier non signé]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R3 dpmconv; C:\Windows\System32\DRIVERS\dpmconv.sys [259072 2011-04-19] (SIEMENS AG)
S2 DS1410D; C:\Windows\SysWow64\Drivers\DS1410D.sys [6689 2004-03-24] (Dallas Semiconductor MAXIM) [Fichier non signé]
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2016-01-27] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 FcSerial; C:\Windows\System32\DRIVERS\FcSerial.sys [221568 2016-06-24] (Flash Card.)
R2 hardlock; C:\Windows\SysWOW64\drivers\hardlock.sys [665600 2016-05-12] (Aladdin Knowledge Systems) [Fichier non signé]
S2 Haspnt; C:\Windows\SysWOW64\drivers\Haspnt.sys [47616 2016-05-12] (Aladdin Knowledge Systems) [Fichier non signé]
S3 HTCAND64; C:\Windows\System32\Drivers\ANDROIDUSB.sys [33736 2009-11-02] (HTC, Corporation) [Fichier non signé]
R2 IntelHaxm; C:\Windows\System32\DRIVERS\IntelHaxm.sys [84992 2016-11-08] (Intel Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [77728 2016-11-15] (AO Kaspersky Lab)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [181640 2015-12-08] (AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [237480 2016-11-14] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [943536 2016-11-15] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [49240 2016-11-15] (AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [41144 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-12-08] (AO Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-06-11] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
S3 ni1045k; C:\Windows\System32\drivers\ni1045kl.sys [12984 2015-03-31] (National Instruments Corporation)
S3 ni1065k; C:\Windows\System32\drivers\ni1065k.sys [30032 2015-06-12] (National Instruments Corporation)
R3 nidimk; C:\Windows\System32\drivers\nidimkl.sys [15200 2014-09-18] (National Instruments Corporation)
R3 nimdbgk; C:\Windows\System32\drivers\nimdbgkl.sys [15200 2015-02-05] (National Instruments Corporation)
R3 nimxdfk; C:\Windows\System32\drivers\nimxdfkl.sys [15184 2015-02-05] (National Instruments Corporation)
S3 niorbk; C:\Windows\system32\drivers\niorbkl.sys [15184 2014-07-31] (National Instruments Corporation)
S3 nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [15232 2015-05-20] (National Instruments Corporation)
R0 NIPALK; C:\Windows\System32\drivers\nipalk.sys [777560 2015-05-20] (National Instruments Corporation)
S3 nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [15224 2015-05-20] (National Instruments Corporation)
R0 nipbcfk; C:\Windows\System32\drivers\nipbcfk.sys [19288 2014-02-28] (National Instruments Corporation)
R0 nipcibrd; C:\Windows\System32\drivers\nipcibrd.sys [107888 2015-06-11] (National Instruments Corporation)
R0 nipxibrc; C:\Windows\System32\drivers\nipxibrc.sys [72600 2015-06-12] (National Instruments Corporation)
S3 nipxifpk; C:\Windows\System32\drivers\nipxifpk.sys [37272 2015-05-26] (National Instruments Corporation)
S3 nipxigpk; C:\Windows\System32\drivers\nipxigpk.sys [23896 2015-05-26] (National Instruments Corporation)
R2 nipxirmk; C:\Windows\System32\drivers\nipxirmkl.sys [15184 2015-05-26] (National Instruments Corporation)
R3 NiViPciK; C:\Windows\System32\drivers\NiViPciKl.sys [15200 2015-09-22] (National Instruments Corporation)
R2 NiViPxiK; C:\Windows\System32\drivers\NiViPxiKl.sys [15200 2015-09-22] (National Instruments Corporation)
S3 rspWhySoSlow; C:\Windows\System32\DRIVERS\rspWhy64.sys [33536 2016-02-06] (Resplendence Software Projects Sp.)
R3 s7odpx2x64; C:\Windows\System32\DRIVERS\s7odpx2x64.sys [71168 2011-05-06] (SIEMENS AG)
R3 s7oppinx64; C:\Windows\System32\DRIVERS\s7oppinx64.sys [107008 2011-05-06] (SIEMENS AG)
R3 s7oserix64; C:\Windows\System32\Drivers\s7oserix64.sys [121344 2011-05-06] (SIEMENS AG)
R3 s7osmcax64; C:\Windows\System32\DRIVERS\s7osmcax64.sys [195584 2011-05-06] (SIEMENS AG)
R3 s7osobux64; C:\Windows\System32\DRIVERS\s7osobux64.sys [152576 2011-05-06] (SIEMENS AG)
R3 s7otmcd64x; C:\Windows\System32\Drivers\s7otmcd64x.sys [199680 2011-05-06] (SIEMENS AG)
R3 s7otranx64; C:\Windows\System32\DRIVERS\s7otranx64.sys [260096 2011-05-06] (SIEMENS AG)
R3 s7otsadx64; C:\Windows\System32\DRIVERS\s7otsadx64.sys [192000 2011-05-06] (SIEMENS AG)
R2 s7ousbu64x; C:\Windows\System32\DRIVERS\s7ousbu64x.sys [190464 2011-05-06] (SIEMENS AG)
R2 s7sn2srtx; C:\Windows\System32\DRIVERS\s7sn2srtx.sys [83032 2011-06-16] (SIEMENS AG)
S2 Sentinel; C:\Windows\SysWOW64\Drivers\SENTINEL.SYS [76288 2002-12-17] (Rainbow Technologies, Inc.) [Fichier non signé]
R2 SNTIE; C:\Windows\System32\DRIVERS\sntie.sys [179288 2011-05-31] (SIEMENS AG)
S3 Sntnlusb; C:\Windows\SysWOW64\DRIVERS\SNTNLUSB.SYS [26120 2002-12-17] (Rainbow Technologies Inc.)
R3 vsnl2ada; C:\Windows\System32\DRIVERS\vsnl2ada.sys [120832 2011-04-19] (SIEMENS AG)
S3 CLMirrorDriver; system32\DRIVERS\CLMirrorDriver.sys [X]
S1 epp; \??\C:\PROGRAM FILES\EMSISOFT ANTI-MALWARE\epp.sys [X]
U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-11-18 17:45 - 2016-11-18 17:45 - 00000000 ____D C:\FRST
2016-11-18 17:09 - 2016-11-18 17:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7
2016-11-18 17:08 - 2016-11-18 17:21 - 00000000 ____D C:\Python27
2016-11-18 16:55 - 2016-11-18 16:59 - 18907136 _____ C:\Users\Ahmed\Downloads\python-2.7.12.msi
2016-11-18 16:41 - 2016-11-18 16:40 - 00815192 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120d.dll
2016-11-18 16:40 - 2016-11-18 16:40 - 00815192 _____ (Microsoft Corporation) C:\Users\Ahmed\Downloads\msvcp120d.dll
2016-11-18 16:15 - 2016-11-18 16:15 - 00000000 ____D C:\autre
2016-11-18 16:12 - 2016-11-18 16:12 - 00286270 _____ C:\Users\Ahmed\Downloads\Installation Cheat Sheet 1 - OpenCV 3 and C++.pdf
2016-11-18 16:06 - 2016-11-18 16:06 - 00279022 _____ C:\Users\Ahmed\Downloads\Installation Cheat Sheet 2 - OpenCV 3 and Python 2.X (1).pdf
2016-11-18 15:40 - 2016-11-18 15:40 - 00011830 _____ C:\Users\Ahmed\Downloads\SBF 120.xlsx
2016-11-18 15:14 - 2016-11-18 15:15 - 01859014 _____ C:\Users\Ahmed\Downloads\LVMH-Document-de-Reference-2015.pdf
2016-11-18 15:09 - 2016-11-18 15:09 - 04875656 _____ C:\Users\Ahmed\Downloads\ACCOR-2015-Registration-Document.pdf
2016-11-18 10:13 - 2016-11-18 10:13 - 00004080 _____ C:\Windows\System32\Tasks\JKIUpdateTask
2016-11-18 10:13 - 2016-11-18 10:13 - 00001169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VI Package Manager.lnk
2016-11-18 10:13 - 2016-11-18 10:13 - 00000000 ____D C:\Program Files (x86)\JKI
2016-11-18 10:10 - 2016-11-18 10:10 - 00000000 ____D C:\Program Files\Common Files\OPC Foundation
2016-11-18 10:05 - 2016-11-18 10:05 - 00001092 _____ C:\Users\Public\Desktop\NI MAX.lnk
2016-11-18 09:58 - 2016-11-18 09:58 - 00001069 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI LabVIEW 2016 (32-bit).lnk
2016-11-18 09:48 - 2016-11-18 09:48 - 00000000 ____D C:\Windows\SysWOW64\cvirte
2016-11-18 09:48 - 2016-11-18 09:48 - 00000000 ____D C:\Windows\system32\cvirte
2016-11-18 09:46 - 2015-07-18 14:08 - 00984448 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00901264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-11-18 09:46 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-11-17 22:17 - 2016-11-18 12:01 - 00000000 ____D C:\Users\Ahmed\Desktop\TP1 LabView
2016-11-17 20:46 - 2016-11-17 20:46 - 00395750 _____ C:\Users\Ahmed\Downloads\zodiac 1 soudage TIG.pdf
2016-11-17 20:42 - 2016-11-17 20:44 - 00340046 _____ C:\Users\Ahmed\Downloads\zodiac 2 gestion technique.pdf
2016-11-17 19:49 - 2016-11-17 19:50 - 00976393 _____ C:\Users\Ahmed\Downloads\TP1 labview 3 inf.pdf
2016-11-17 19:19 - 2016-11-10 15:36 - 00000000 ____D C:\Users\Ahmed\Desktop\tp1capintell
2016-11-17 18:50 - 2016-11-18 17:24 - 00000298 _____ C:\Users\Ahmed\Desktop\opencvv.txt
2016-11-15 21:33 - 2016-11-15 21:33 - 00303761 _____ C:\Users\Ahmed\Downloads\sujet PFE MAS6.pdf
2016-11-15 21:29 - 2016-11-15 21:30 - 00303943 _____ C:\Users\Ahmed\Downloads\sujet PFE MSAP6.pdf
2016-11-15 01:25 - 2016-11-15 01:25 - 00000144 _____ C:\Users\Ahmed\.appletviewer
2016-11-14 23:41 - 2016-11-16 00:02 - 00000000 ____D C:\Users\Ahmed\Downloads\khlifiserv kis_2016 Patch
2016-11-14 23:38 - 2016-11-14 23:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2016-11-14 23:38 - 2016-11-14 23:37 - 00002138 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2016-11-14 23:36 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2016-11-14 23:35 - 2016-11-18 17:34 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-11-14 23:35 - 2016-11-14 23:35 - 00000000 ____D C:\Windows\ELAMBKUP
2016-11-14 23:35 - 2016-11-14 23:35 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2016-11-14 23:34 - 2016-11-15 00:32 - 00943536 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2016-11-14 23:34 - 2015-12-08 01:24 - 00181640 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2016-11-14 21:22 - 2016-11-14 21:25 - 00279022 _____ C:\Users\Ahmed\Downloads\Installation Cheat Sheet 2 - OpenCV 3 and Python 2.X.pdf
2016-11-14 14:21 - 2016-11-14 14:22 - 01267673 _____ C:\Users\Ahmed\Downloads\khlifiserv kis_2016 Patch.rar
2016-11-14 01:11 - 2016-11-14 01:11 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\Microsoft Corporation
2016-11-14 00:33 - 2016-11-14 00:33 - 00000000 ____D C:\opencv
2016-11-14 00:26 - 2016-11-14 00:26 - 00000000 ____D C:\Users\Ahmed\Desktop\hough-master
2016-11-14 00:26 - 2016-11-14 00:24 - 00257288 _____ C:\Users\Ahmed\Desktop\hough-master.zip
2016-11-14 00:24 - 2016-11-14 00:24 - 00257288 _____ C:\Users\Ahmed\Downloads\hough-master.zip
2016-11-14 00:08 - 2016-11-14 00:37 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\Malwarebytes
2016-11-14 00:07 - 2016-11-14 13:15 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2016-11-13 23:58 - 2016-11-13 23:58 - 00001095 _____ C:\Users\Ahmed\Desktop\CodeBlocks.lnk
2016-11-13 23:58 - 2016-11-13 23:58 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks
2016-11-13 23:58 - 2016-11-13 23:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks
2016-11-13 23:58 - 2016-11-13 23:58 - 00000000 ____D C:\Program Files (x86)\CodeBlocks
2016-11-11 20:17 - 2016-11-11 20:18 - 00829057 _____ C:\Users\Ahmed\Downloads\CV-Ahmed REJEB.pdf
2016-11-11 20:03 - 2016-11-17 18:54 - 00000000 ____D C:\Users\Ahmed\Desktop\CV Ahmed REJEB
2016-11-11 11:22 - 2016-11-11 11:22 - 00000000 ____H C:\Users\Ahmed\Desktop\~WRL0103.tmp
2016-11-11 01:14 - 2016-11-11 01:14 - 00095320 ____H C:\Users\Ahmed\Desktop\~WRL0689.tmp
2016-11-08 23:17 - 2016-11-18 17:29 - 00000091 _____ C:\HaxLogs.txt
2016-11-08 23:17 - 2016-11-08 23:17 - 00084992 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelHaxm.sys
2016-11-08 23:17 - 2016-11-08 23:17 - 00000000 ____D C:\Program Files\Intel
2016-11-08 22:54 - 2016-11-08 22:54 - 00000000 ____D C:\Program Files\Android
2016-11-06 22:09 - 2016-11-06 22:09 - 00000000 ____D C:\ProgramData\Microsoft Visual Studio
2016-11-05 23:09 - 2016-11-06 22:09 - 00000000 ____D C:\Users\Ahmed\.nbi
2016-11-05 22:35 - 2016-11-05 22:35 - 00155981 _____ C:\Users\Ahmed\Downloads\chenille.jar
2016-11-05 20:43 - 2016-11-05 20:43 - 00038031 _____ C:\Users\Ahmed\Downloads\ENIM.PDF
2016-11-05 10:06 - 2009-07-22 09:17 - 00111640 _____ (Microsoft Corporation) C:\Windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2016-11-05 10:06 - 2009-07-22 09:17 - 00079896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2016-11-05 10:06 - 2009-07-22 09:17 - 00078872 _____ (Microsoft Corporation) C:\Windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2016-11-05 10:06 - 2009-07-22 09:17 - 00050200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2016-11-05 10:05 - 2016-11-05 10:05 - 00000000 ____D C:\Windows\system32\RsFx
2016-11-05 10:04 - 2016-11-05 10:04 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 9.0
2016-11-05 09:58 - 2016-11-05 09:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework
2016-11-05 09:58 - 2016-11-05 09:58 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2016-11-05 09:57 - 2016-11-05 09:57 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2016-11-05 09:57 - 2016-11-05 09:57 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2016-11-05 09:57 - 2016-11-05 09:57 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2016-11-05 09:57 - 2016-11-05 09:57 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-11-05 09:51 - 2016-11-05 09:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 3 SDK
2016-11-05 09:48 - 2016-11-05 09:48 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2016-11-05 09:44 - 2016-11-05 09:44 - 00000000 ____D C:\Users\Ahmed\Documents\Visual Studio 2008
2016-11-05 09:43 - 2016-11-14 00:53 - 00000000 ____D C:\Users\Ahmed\Documents\Visual Studio 2010
2016-11-05 09:31 - 2016-11-14 21:31 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2016-11-05 09:31 - 2016-11-05 09:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010
2016-11-05 09:31 - 2016-11-05 09:37 - 00000000 ____D C:\Program Files (x86)\Microsoft F#
2016-11-05 09:31 - 2016-11-05 09:34 - 00000000 ____D C:\Program Files (x86)\HTML Help Workshop
2016-11-05 09:25 - 2016-11-05 09:58 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 10.0
2016-11-05 09:25 - 2016-11-05 09:58 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2016-11-05 09:25 - 2016-11-05 09:25 - 00000000 ____D C:\Windows\symbols
2016-11-05 09:25 - 2016-11-05 09:25 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2016-11-04 01:15 - 2016-11-04 01:15 - 00000000 ____D C:\Users\Ahmed\Downloads\android-sdk_r24.4.1-windows
2016-11-04 01:14 - 2016-11-04 01:14 - 00000000 ____D C:\Users\Ahmed\android-sdks
2016-11-04 00:34 - 2016-11-04 01:10 - 199701062 _____ C:\Users\Ahmed\Downloads\android-sdk_r24.4.1-windows.zip
2016-11-03 23:22 - 2016-11-03 23:22 - 01186904 _____ (Microsoft Corporation) C:\Users\Ahmed\Downloads\wdexpress_full.exe
2016-11-03 23:08 - 2016-11-03 23:09 - 00000000 ____D C:\Work
2016-11-03 21:48 - 2016-11-03 21:50 - 03257737 _____ C:\Users\Ahmed\Downloads\[Jean-Daniel_Boissonnat,_Mariette_Yvinec,_Herve_Br(BookSee.org).djvu
2016-11-03 12:46 - 2016-11-03 12:46 - 00000000 ____D C:\Users\Ahmed\AppData\Local\CrashRpt
2016-11-03 12:46 - 2016-11-03 12:46 - 00000000 ____D C:\Users\Ahmed\AppData\Local\CallofDuty4MW
2016-11-02 19:25 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh9.bmp
2016-11-02 19:25 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh8.bmp
2016-11-02 19:25 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh10.bmp
2016-11-02 19:24 - 2016-11-01 22:08 - 00050454 ____N C:\Users\Ahmed\qms-bmh3.bmp
2016-11-02 19:24 - 2016-11-01 22:08 - 00050454 ____N C:\Users\Ahmed\qms-bmh2.bmp
2016-11-02 19:24 - 2016-11-01 21:22 - 00050454 ____N C:\Users\Ahmed\qms-bmh1.bmp
2016-11-02 19:24 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh7.bmp
2016-11-02 19:24 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh6.bmp
2016-11-02 19:24 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh5.bmp
2016-11-02 19:24 - 2016-10-30 18:35 - 00016922 ____N C:\Users\Ahmed\qms-bmh4.bmp
2016-11-02 19:19 - 2016-11-02 19:19 - 00001761 _____ C:\Users\Public\Desktop\Quartus II 9.1sp2 Web Edition.lnk
2016-11-02 19:18 - 2016-11-02 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Altera
2016-11-02 19:07 - 2016-11-08 20:31 - 00000000 ____D C:\Users\Ahmed\Desktop\Amelioration
2016-11-02 15:39 - 2016-11-02 15:40 - 01916346 _____ C:\Users\Ahmed\Downloads\tp2-nios.pdf
2016-11-02 15:39 - 2016-11-02 15:39 - 01908276 _____ C:\Users\Ahmed\Downloads\Merdassi_Saghaier_nios-II_TP.pdf
2016-11-02 15:39 - 2016-11-02 15:39 - 01696634 _____ C:\Users\Ahmed\Downloads\tp2.SMP.pdf
2016-11-02 15:39 - 2016-11-02 15:39 - 01261097 _____ C:\Users\Ahmed\Downloads\smp_riahimehrez (2).pdf
2016-11-02 15:38 - 2016-11-02 15:39 - 01145409 _____ C:\Users\Ahmed\Downloads\compte-rendu-2.pdf
2016-11-01 23:50 - 2016-11-01 23:50 - 01261097 _____ C:\Users\Ahmed\Downloads\smp_riahimehrez (1).pdf
2016-11-01 21:51 - 2016-11-01 21:51 - 00281277 _____ C:\Users\Ahmed\Downloads\pv2.pdf
2016-11-01 14:01 - 2016-11-16 01:43 - 00000000 ____D C:\Users\Ahmed\Desktop\pt1
2016-10-31 22:44 - 2016-11-07 19:23 - 00000000 ____D C:\Users\Ahmed\Desktop\Call of Duty
2016-10-24 17:56 - 2016-10-25 22:38 - 07595365 _____ C:\Users\Ahmed\Downloads\Systeme d_exploitation (1).pdf
2016-10-24 12:20 - 2016-10-24 12:20 - 00892156 _____ C:\Users\Ahmed\Downloads\tp1fil.pdf
2016-10-23 10:16 - 2016-10-23 10:16 - 00389030 _____ C:\Users\Public\Public.rar
2016-10-21 22:12 - 2016-10-21 22:12 - 00000000 ____D C:\Users\Ahmed\AppData\OICE_15_974FA576_32C1D314_3311
2016-10-21 21:56 - 2016-10-21 22:02 - 07639373 _____ C:\Users\Ahmed\Downloads\Systeme d_exploitation.pdf
2016-10-20 23:31 - 2016-10-20 23:31 - 01261097 _____ C:\Users\Ahmed\Downloads\smp_riahimehrez.pdf

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-11-18 17:37 - 2009-07-14 05:45 - 00026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-11-18 17:37 - 2009-07-14 05:45 - 00026544 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-11-18 17:30 - 2015-12-02 19:13 - 00000501 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2016-11-18 17:28 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-11-18 17:24 - 2015-12-28 11:10 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\DMCache
2016-11-18 11:44 - 2016-01-29 15:31 - 00000000 ____D C:\Users\Ahmed\Documents\29.01.2016
2016-11-18 11:25 - 2015-11-28 16:30 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\vlc
2016-11-18 10:40 - 2016-01-21 22:28 - 00000000 ____D C:\Users\Ahmed\Documents\LabVIEW Data
2016-11-18 10:36 - 2016-01-23 19:58 - 00003212 _____ C:\Windows\System32\Tasks\NIUpdateServiceCheckTask
2016-11-18 10:14 - 2016-01-23 01:52 - 00003240 _____ C:\Windows\System32\Tasks\NIUpdateServiceStartupTask
2016-11-18 10:13 - 2016-01-21 19:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2016-11-18 10:13 - 2016-01-21 19:03 - 00000000 ____D C:\ProgramData\JKI
2016-11-18 10:07 - 2016-01-21 18:34 - 00000000 ____D C:\ProgramData\National Instruments
2016-11-18 10:05 - 2016-01-21 19:00 - 00001104 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NI MAX.lnk
2016-11-18 09:58 - 2016-01-21 18:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2016-11-18 09:58 - 2016-01-21 18:49 - 00000000 ____D C:\Program Files\National Instruments
2016-11-18 09:58 - 2016-01-21 18:45 - 00000000 ____D C:\Program Files (x86)\National Instruments
2016-11-18 09:51 - 2016-01-23 11:03 - 00000300 _____ C:\Windows\ODBC.INI
2016-11-18 09:46 - 2015-12-29 20:49 - 00000000 ____D C:\ProgramData\Package Cache
2016-11-18 09:44 - 2015-12-28 11:10 - 00000000 ____D C:\Users\Ahmed\Downloads\Compressed
2016-11-18 09:32 - 2015-11-28 11:48 - 02044748 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-11-18 09:32 - 2011-04-12 10:16 - 00848596 _____ C:\Windows\system32\perfh00C.dat
2016-11-18 09:32 - 2011-04-12 10:16 - 00259032 _____ C:\Windows\system32\perfc00C.dat
2016-11-18 09:32 - 2009-07-14 06:13 - 02044748 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-18 09:32 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-11-16 22:31 - 2016-02-06 12:22 - 00000132 _____ C:\Users\Ahmed\AppData\Roaming\Préfs Format PNG Adobe CS6
2016-11-16 02:03 - 2016-01-28 01:13 - 00000000 ____D C:\Users\Ahmed\Documents\MATLAB
2016-11-15 13:16 - 2016-01-23 22:06 - 00000000 ____D C:\Program Files\Common Files\AV
2016-11-15 01:54 - 2015-11-27 23:55 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-15 01:54 - 2015-11-27 23:55 - 00002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-11-15 01:25 - 2015-11-27 22:48 - 00000000 ____D C:\Users\Ahmed
2016-11-15 00:32 - 2015-06-11 19:32 - 00049240 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klim6.sys
2016-11-15 00:32 - 2015-06-06 08:51 - 00077728 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\kldisk.sys
2016-11-14 23:52 - 2015-12-08 01:24 - 00237480 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys
2016-11-14 23:33 - 2016-09-03 21:11 - 00000000 ____D C:\ProgramData\Comodo
2016-11-14 23:17 - 2016-09-03 20:52 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2016-11-14 21:32 - 2016-09-03 19:49 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-11-14 21:28 - 2016-09-16 00:53 - 00000000 ____D C:\Users\Ahmed\.spyder2-py3
2016-11-14 21:28 - 2016-09-16 00:53 - 00000000 ____D C:\Users\Ahmed\.matplotlib
2016-11-14 00:07 - 2016-09-03 19:49 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-11-13 23:04 - 2016-07-28 18:45 - 00000000 ____D C:\Users\Ahmed\Documents\Fichiers Outlook
2016-11-11 03:15 - 2016-09-22 20:33 - 00000000 ____D C:\Users\Ahmed\Desktop\Apropos
2016-11-10 22:09 - 2015-11-28 00:06 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\Skype
2016-11-09 00:17 - 2016-01-12 12:26 - 00000000 ____D C:\Users\Ahmed\AndroidStudioProjects
2016-11-08 23:17 - 2016-01-12 01:23 - 00000000 ____D C:\Users\Ahmed\.android
2016-11-08 22:58 - 2016-01-12 01:17 - 00000000 ____D C:\Users\Ahmed\AppData\Local\Android
2016-11-05 23:23 - 2016-10-01 09:02 - 00000000 ____D C:\Users\Ahmed\Documents\workspace
2016-11-05 10:05 - 2016-01-23 10:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
2016-11-05 10:05 - 2015-11-28 11:37 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2016-11-05 10:04 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-11-05 10:03 - 2015-11-28 11:37 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2016-11-05 09:53 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\MSBuild
2016-11-05 09:37 - 2010-03-19 05:17 - 00111440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VSPerf100.dll
2016-11-05 09:32 - 2016-01-23 10:46 - 00000000 ____D C:\Windows\SysWOW64\1033
2016-11-05 09:32 - 2010-03-18 23:21 - 00269144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsjitdebugger.exe
2016-11-05 09:31 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-11-05 09:26 - 2016-01-23 10:48 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 9.0
2016-11-05 09:25 - 2016-01-23 10:46 - 00000000 ____D C:\Windows\system32\1033
2016-11-05 09:25 - 2010-03-18 22:01 - 00316760 _____ (Microsoft Corporation) C:\Windows\system32\vsjitdebugger.exe
2016-11-03 22:19 - 2009-07-14 06:08 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-11-03 00:52 - 2016-10-07 23:35 - 00000993 _____ C:\Users\Ahmed\quartus2.ini
2016-11-02 19:19 - 2016-10-07 23:34 - 00000027 _____ C:\Users\Ahmed\quartus2.qreg
2016-11-02 18:48 - 2015-11-27 23:46 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-02 15:09 - 2015-11-27 23:53 - 00000000 ____D C:\Users\Ahmed\AppData\Local\Google
2016-11-01 19:37 - 2016-10-09 17:15 - 00000000 ____D C:\Users\Ahmed\Desktop\cours 3eme
2016-11-01 13:59 - 2015-12-28 11:10 - 00000000 ____D C:\Users\Ahmed\AppData\Roaming\IDM
2016-11-01 00:44 - 2016-10-10 12:16 - 00003276 _____ C:\Windows\System32\Tasks\{0FCF1818-3747-4B85-BD93-B7462DC00C08}
2016-10-23 10:16 - 2015-12-29 20:56 - 00000000 ____D C:\Users\Public\CyberLink
2016-10-20 12:47 - 2015-11-27 22:49 - 00000000 ____D C:\Users\Ahmed\AppData\Local\VirtualStore

==================== Fichiers à la racine de certains dossiers =======

2016-02-06 12:22 - 2016-11-16 22:31 - 0000132 _____ () C:\Users\Ahmed\AppData\Roaming\Préfs Format PNG Adobe CS6
2016-02-03 16:38 - 2016-02-03 16:42 - 238720274 _____ () C:\Users\Ahmed\AppData\Local\ACCCx3_5_0_206.zip.aamdownload
2016-02-03 16:38 - 2016-02-03 16:42 - 0002741 _____ () C:\Users\Ahmed\AppData\Local\ACCCx3_5_0_206.zip.aamdownload.aamd
2016-02-06 12:23 - 2016-02-06 12:23 - 0001456 _____ () C:\Users\Ahmed\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs
2015-12-28 10:25 - 2015-12-29 20:57 - 0003584 _____ () C:\Users\Ahmed\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-12-18 18:54 - 2015-12-18 18:54 - 0007605 _____ () C:\Users\Ahmed\AppData\Local\Resmon.ResmonCfg
2016-03-03 18:51 - 2016-03-03 18:51 - 0270764 _____ () C:\ProgramData\1457027373.bdinstall.bin

Fichiers à déplacer ou supprimer:
====================
C:\Users\Public\Public.exe


Certains fichiers dans TEMP:
====================
C:\Users\Ahmed\AppData\Local\Temp\numpy-1.9.2-sse3.exe


==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-10-25 18:26

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité