cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-01-2017
Exécuté par Jean (administrateur) sur MAISON (13-01-2017 19:05:08)
Exécuté depuis C:\Users\Jean\Desktop\Réparation ordi en ligne... avec Christian Steffen
Profils chargés: Jean (Profils disponibles: Jean)
Platform: Windows 8.1 (Update) (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros Commnucations) C:\Windows\System32\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleChromeDAV.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.4.9926.18471_x64__8wekyb3d8bbwe\glcnd.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registre (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [GoogleChromeAutoLaunch_76F2AE789A64FBA063F2980B364474D8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1104728 2016-12-08] (Google Inc.)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27226072 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [Chromium] => "c:\users\jean\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-11-17] (Apple Inc.)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-11-17] (Apple Inc.)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2016-11-17] (Apple Inc.)
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9539800 2016-12-15] (Piriform Ltd)
GroupPolicy: Restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{09D8695C-0033-49EF-8DA5-116097104728}: [DhcpNameServer] 192.168.1.1 192.168.1.100
Tcpip\..\Interfaces\{554B596C-EC71-48EB-9652-8A1A796F703E}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{62BA6FEB-2448-4FAD-8578-EE26E114F130}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1
HKU\S-1-5-21-681085730-2189678031-1402669622-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.palikan.com/results.php?f=4&q={searchTerms}&a=bfp_coinisre_16_02&cd=2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyEyByEtN1L2XzutAtFtCyCtFtAtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyEtByCzztByBtC0AtGtCyB0F0EtGyB0B0F0BtGyEyDyDtAtGtAtA0FtDyCzz0FtDyEyB0ByE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE&cr=1656316813&ir=
SearchScopes: HKU\S-1-5-21-681085730-2189678031-1402669622-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}
SearchScopes: HKU\S-1-5-21-681085730-2189678031-1402669622-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_mdaffmarmar_16_10¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0BzzyByCtA0F0FyDtDyC0EtD0CyCtCtAtN0D0Tzu0StCyDtByBtN1L2XzutAtFtCzytFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StB0DtCyEtCtBtCzytGtCyE0ByDtG0CyE0DyDtGyB0C0E0AtGyEyC0EzyyEzzyBzzyE0CzyyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtDtC0BtAzz0D0BtG0D0A0FtBtGyE0FtByEtGzytBtBtDtG0E0E0D0CtByB0A0Ezy0CtA0D2QtN0A0LzuyE%26cr%3D363735932%26a%3Dwncy_mdaffmarmar_16_10%26os_ver%3D6.3%26os%3DWindows%2B8.1&p={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-11-11] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-11] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-11-11] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-11] (Oracle Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-11] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-11] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-11] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.fr/?gws_rd=ssl
CHR Session Restore: Default -> est activé.
CHR Profile: C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default [2017-01-13]
CHR Extension: (Google Slides) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-23]
CHR Extension: (Google Docs) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-23]
CHR Extension: (Google Drive) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-23]
CHR Extension: (YouTube) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-23]
CHR Extension: (Recherche Google) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-23]
CHR Extension: (Dropbox pour Gmail) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2016-01-03]
CHR Extension: (Adobe Acrobat) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-01-13]
CHR Extension: (Google Sheets) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-23]
CHR Extension: (Signets iCloud) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2016-11-26]
CHR Extension: (Google Docs hors connexion) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (AdBlock) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-12-29]
CHR Extension: (Copy clean Links) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\mccgphdljaoibmimmngmeehgdocpcajn [2017-01-08]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (Gmail) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-23]
CHR Extension: (Chrome Media Router) - C:\Users\Jean\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-19]
CHR HKLM\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-681085730-2189678031-1402669622-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
R2 AtherosSvc; C:\Windows\system32\AdminService.exe [208384 2012-08-29] (Atheros Commnucations) [Fichier non signé]
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-12-26] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-12-26] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 SOWS; C:\WINDOWS\System32\drivers\sows.sys [24280 2012-06-10] (Sony Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44560 2015-12-26] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2015-12-26] (Microsoft Corporation)
R2 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-12-26] (Microsoft Corporation)
S3 catchme; \??\C:\Users\Jean\AppData\Local\Temp\catchme.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-01-13 19:04 - 2017-01-13 19:04 - 02419200 _____ (Farbar) C:\Users\Jean\Downloads\FRST64 (1).exe
2017-01-13 13:51 - 2017-01-13 19:05 - 00000000 ____D C:\FRST
2017-01-13 13:49 - 2017-01-13 13:49 - 02419200 _____ (Farbar) C:\Users\Jean\Downloads\FRST64.exe
2017-01-13 13:13 - 2017-01-13 19:05 - 00000000 ____D C:\Users\Jean\Desktop\Réparation ordi en ligne... avec Christian Steffen
2017-01-13 12:43 - 2017-01-13 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2017-01-13 12:43 - 2017-01-13 12:43 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2017-01-13 12:40 - 2017-01-13 12:40 - 03521617 _____ (Nicolas Coolman ) C:\Users\Jean\Downloads\ZHPFix.exe
2017-01-12 13:55 - 2017-01-12 13:55 - 02639872 _____ C:\Users\Jean\Downloads\ZHPDiag3.exe
2017-01-12 13:50 - 2017-01-13 13:03 - 00000000 ____D C:\Users\Jean\AppData\Roaming\ZHP
2017-01-11 19:28 - 2017-01-11 19:28 - 00011811 _____ C:\Users\Jean\Downloads\BonDeRetrait2M04172749804.pdf
2017-01-10 22:12 - 2017-01-10 22:13 - 00000834 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-01-10 22:12 - 2017-01-10 22:12 - 00002784 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2017-01-10 22:12 - 2017-01-10 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-01-10 22:12 - 2017-01-10 22:12 - 00000000 ____D C:\Program Files\CCleaner
2016-12-31 19:06 - 2016-12-31 19:06 - 00000162 ____H C:\Users\Jean\Desktop\~$uveau Document Microsoft Office Word.docx
2016-12-31 11:19 - 2016-12-31 11:19 - 00000000 ____D C:\Users\Jean\AppData\LocalLow\Temp
2016-12-31 11:18 - 2016-12-31 11:19 - 00164275 _____ C:\Users\Jean\Desktop\Le Patroclien expo.oxps
2016-12-31 10:50 - 2016-12-31 10:58 - 00000000 ____D C:\Users\Jean\Desktop\Voeux 2017
2016-12-30 16:34 - 2016-12-30 16:37 - 00011565 _____ C:\Users\Jean\Desktop\Bissap.docx
2016-12-30 16:24 - 2016-12-30 16:33 - 00011903 _____ C:\Users\Jean\Desktop\Chorizade.docx
2016-12-29 09:47 - 2016-12-29 09:47 - 00196794 _____ C:\Users\Jean\Desktop\Actualisation Pôle Emploi Décembre 2016.pdf
2016-12-24 12:28 - 2016-12-24 12:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-12-24 12:24 - 2016-12-24 12:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-12-24 12:24 - 2016-12-24 12:24 - 00000000 ____D C:\Program Files\iTunes
2016-12-24 12:24 - 2016-12-24 12:24 - 00000000 ____D C:\Program Files\iPod
2016-12-22 16:41 - 2016-12-22 16:41 - 00247216 _____ C:\Users\Jean\Desktop\Bon cadeau Arthur.pdf
2016-12-18 21:54 - 2016-12-18 21:59 - 00010399 _____ C:\Users\Jean\Desktop\Bonne année (de Victor Hugo).docx
2016-12-17 13:29 - 2017-01-11 20:01 - 00000000 ____D C:\Users\Jean\Desktop\Photos à trier
2016-12-14 22:01 - 2016-12-14 22:01 - 23894820 _____ C:\Users\Jean\Desktop\iphone_ios7_guide_de_l_utilisateur.pdf
2016-12-14 20:00 - 2016-10-20 14:14 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2016-12-14 20:00 - 2016-10-20 14:10 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2016-12-14 09:04 - 2016-11-19 22:24 - 00567152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-14 09:04 - 2016-11-19 22:24 - 00152856 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-12-14 09:04 - 2016-11-19 20:29 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-12-14 09:04 - 2016-11-19 19:44 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-12-14 09:04 - 2016-11-19 18:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-12-14 09:04 - 2016-11-19 18:22 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-14 09:04 - 2016-11-16 22:49 - 00377176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-14 09:04 - 2016-11-12 22:06 - 00738104 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-12-14 09:04 - 2016-11-12 20:38 - 00613632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-12-14 09:04 - 2016-11-12 20:25 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-12-14 09:04 - 2016-11-12 20:08 - 25759744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-14 09:04 - 2016-11-12 20:07 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-12-14 09:04 - 2016-11-12 19:53 - 06049280 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-14 09:04 - 2016-11-12 19:29 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-12-14 09:04 - 2016-11-12 19:23 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-12-14 09:04 - 2016-11-12 19:17 - 20302848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-14 09:04 - 2016-11-12 19:14 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-12-14 09:04 - 2016-11-12 19:10 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-12-14 09:04 - 2016-11-12 18:45 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-12-14 09:04 - 2016-11-12 18:41 - 15257088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-14 09:04 - 2016-11-12 18:38 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-12-14 09:04 - 2016-11-12 18:37 - 04608000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-14 09:04 - 2016-11-12 18:35 - 02920960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-14 09:04 - 2016-11-12 18:21 - 13653504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-14 09:04 - 2016-11-12 18:20 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-14 09:04 - 2016-11-12 18:11 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-12-14 09:04 - 2016-11-12 18:05 - 02444800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-14 09:04 - 2016-11-12 18:02 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-14 09:04 - 2016-11-12 18:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-12-14 09:04 - 2016-11-11 03:33 - 01541240 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-14 09:04 - 2016-11-09 18:25 - 01376768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-14 09:04 - 2016-11-05 21:46 - 00422744 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-12-14 09:04 - 2016-11-05 19:35 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-14 09:04 - 2016-11-05 18:57 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-14 09:04 - 2016-11-05 18:11 - 03606528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-14 09:04 - 2016-11-05 16:56 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-12-14 09:04 - 2016-11-05 16:46 - 02463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-12-14 09:04 - 2016-10-28 03:56 - 01380048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-12-14 09:04 - 2016-10-27 15:28 - 01097728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-12-14 09:04 - 2016-10-12 22:49 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-12-14 09:04 - 2016-10-12 22:11 - 00922968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2016-12-14 09:04 - 2016-10-11 17:45 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-12-14 09:04 - 2016-10-11 00:31 - 00990040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-12-14 09:04 - 2016-10-10 19:18 - 00069976 _____ (Microsoft Corporation) C:\WINDOWS\system32\apisetschema.dll
2016-12-14 09:04 - 2016-10-10 19:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-12-14 09:04 - 2016-10-09 15:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2016-12-14 09:04 - 2016-10-09 15:08 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-12-14 09:04 - 2016-10-09 15:08 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2016-12-14 09:04 - 2016-10-08 23:24 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-12-14 09:04 - 2016-10-08 22:31 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-12-14 09:04 - 2016-10-08 22:10 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-12-14 09:04 - 2016-10-05 15:01 - 01200128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-12-14 09:04 - 2016-10-05 15:00 - 00868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-12-14 09:04 - 2016-10-05 15:00 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-12-14 09:04 - 2016-10-05 14:52 - 00513456 _____ C:\WINDOWS\SysWOW64\locale.nls
2016-12-14 09:04 - 2016-10-05 14:52 - 00513456 _____ C:\WINDOWS\system32\locale.nls
2016-12-14 09:04 - 2016-10-05 05:15 - 01969944 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-12-14 09:04 - 2016-10-05 05:15 - 01613528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-12-14 09:04 - 2016-10-05 05:15 - 00324896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-12-14 09:04 - 2016-10-05 05:15 - 00245320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-12-14 09:04 - 2016-09-27 21:16 - 00445873 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-12-14 09:04 - 2016-09-20 23:30 - 02462040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-01-13 18:44 - 2016-01-12 21:52 - 00000000 ____D C:\Users\Jean\AppData\Roaming\Skype
2017-01-13 13:52 - 2016-01-02 09:08 - 00003924 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{43E20501-D1B6-4181-8A11-BCBD6D90AAEF}
2017-01-13 13:31 - 2015-12-22 15:45 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-681085730-2189678031-1402669622-1001
2017-01-13 13:23 - 2014-11-20 23:46 - 01824010 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-13 13:23 - 2014-11-20 23:03 - 00812350 _____ C:\WINDOWS\system32\perfh00C.dat
2017-01-13 13:23 - 2014-11-20 23:03 - 00159412 _____ C:\WINDOWS\system32\perfc00C.dat
2017-01-13 13:23 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2017-01-13 13:21 - 2016-11-26 10:36 - 00000000 ___RD C:\Users\Jean\iCloudDrive
2017-01-13 13:21 - 2016-01-12 21:49 - 00000000 __RDO C:\Users\Jean\OneDrive
2017-01-13 13:21 - 2015-12-26 14:23 - 00000000 __SHD C:\Users\Jean\IntelGraphicsProfiles
2017-01-13 13:17 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-01-13 13:17 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2017-01-13 11:01 - 2015-12-23 16:35 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-01-13 11:00 - 2015-12-23 16:35 - 00004476 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-01-12 09:53 - 2015-12-22 17:43 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-01-12 09:52 - 2015-12-22 17:43 - 135657872 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-01-11 17:43 - 2015-12-24 09:59 - 00000000 ____D C:\Users\Jean\Documents\Comptes
2017-01-11 17:43 - 2015-12-12 06:45 - 00081920 _____ C:\Users\Jean\Desktop\@dministratif.xls
2017-01-11 17:27 - 2016-07-23 19:50 - 00000000 ____D C:\Users\Jean\Desktop\GARNIER
2017-01-11 07:36 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-01-10 22:17 - 2015-12-26 13:56 - 00000000 ___DC C:\WINDOWS\Panther
2017-01-10 21:58 - 2016-11-26 11:17 - 00000000 ____D C:\Users\Jean\AppData\Roaming\Molotov
2017-01-09 08:11 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-12-31 11:19 - 2015-12-22 15:39 - 00000000 ____D C:\Users\Jean\AppData\LocalLow
2016-12-30 19:23 - 2016-03-10 10:37 - 00000000 ____D C:\Users\Jean\AppData\Roaming\vlc
2016-12-30 17:13 - 2016-11-30 22:17 - 00012351 _____ C:\Users\Jean\Desktop\Budget Janvier 2017.xlsx
2016-12-30 09:19 - 2015-12-24 09:58 - 00000000 ____D C:\Users\Jean\Documents\Retraite JLD
2016-12-27 08:03 - 2015-12-23 17:00 - 00000000 ____D C:\Users\Jean\AppData\Local\Diagnostics
2016-12-24 12:28 - 2016-10-03 09:46 - 00000000 ____D C:\Users\Jean\AppData\Roaming\Apple Computer
2016-12-24 12:24 - 2016-10-03 09:44 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-12-23 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-12-22 23:42 - 2016-11-09 20:14 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-12-22 23:42 - 2016-11-09 20:14 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-12-21 08:29 - 2015-12-26 14:04 - 00524288 ___SH C:\WINDOWS\system32\config\COMPONENTS{ed52ce2a-7101-11e4-80c7-b8ca3aeee02b}.TMContainer00000000000000000001.regtrans-ms
2016-12-21 07:43 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\catroot2
2016-12-20 19:35 - 2016-11-26 11:17 - 00000000 ____D C:\Users\Jean\AppData\Local\Molotov
2016-12-17 11:10 - 2015-12-23 10:18 - 00003500 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-17 11:10 - 2015-12-23 10:18 - 00003372 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-16 08:01 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2016-12-16 07:56 - 2013-08-22 16:36 - 00000000 __RSD C:\WINDOWS\assembly
2016-12-16 07:31 - 2013-08-22 16:31 - 00000000 ____D C:\WINDOWS\system32\DriverStore
2016-12-16 07:31 - 2013-08-22 15:44 - 00409000 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-12-15 22:34 - 2015-12-26 13:58 - 00524288 ___SH C:\WINDOWS\system32\config\DRIVERS{e1793794-0b3d-11e3-9dfe-80de722c933b}.TMContainer00000000000000000001.regtrans-ms
2016-12-15 22:34 - 2015-12-26 13:58 - 00065536 ___SH C:\WINDOWS\system32\config\DRIVERS{e1793794-0b3d-11e3-9dfe-80de722c933b}.TM.blf
2016-12-15 22:33 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\fr-FR
2016-12-15 22:33 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2016-12-15 22:33 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\wbem
2016-12-15 22:33 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-12-15 22:33 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\drivers
2016-12-15 21:12 - 2015-12-23 10:19 - 00002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk

==================== Fichiers à la racine de certains dossiers =======

2016-01-14 15:20 - 2016-01-16 08:21 - 0000101 _____ () C:\Users\Jean\AppData\Roaming\WB.CFG
2015-12-23 17:06 - 2015-12-23 17:07 - 392257212 _____ () C:\Users\Jean\AppData\Local\ADS1fo-23_12_15.reg
2016-02-19 15:48 - 2016-02-19 15:48 - 0005120 _____ () C:\Users\Jean\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2017-01-08 09:55

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité