cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-02-2017
Exécuté par Alan (administrateur) sur PC-PORTABLE (09-02-2017 09:50:36)
Exécuté depuis C:\Users\Alan\Desktop
Profils chargés: Alan (Profils disponibles: Alan & Administrateur)
Platform: Windows 8.1 (Update) (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Hanwang Technology Co.,Ltd. ) C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.1\Lightshot.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\AsusWSPanel.exe

==================== Registre (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [1080992 2014-05-15] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.2.2.524\ASUSWSLoader.exe [63272 2015-05-31] ()
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKU\S-1-5-21-1551662607-3715958130-1626234642-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation)
HKU\S-1-5-21-1551662607-3715958130-1626234642-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8810200 2016-06-10] (Piriform Ltd)
HKU\S-1-5-21-1551662607-3715958130-1626234642-1001\...\Run: [Google Update] => C:\Users\Alan\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe [601752 2016-12-16] (Google Inc.)
HKU\S-1-5-21-1551662607-3715958130-1626234642-1001\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\Bluestacks\HD-Agent.exe
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.2.2.524\ASUSWSShellExt64.dll [2015-04-22] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Fichier hosts non détecté dans le dossier par défaut
Tcpip\Parameters: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{1B49DC48-DACE-47A4-B6C3-E34C23AC6411}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{C1653C7D-191D-41B3-BDB0-A9355A7C8CDE}: [DhcpNameServer] 192.168.0.254

Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-1551662607-3715958130-1626234642-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1551662607-3715958130-1626234642-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-23] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-23] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: sozaqbp9.default
FF ProfilePath: C:\Users\Alan\AppData\Roaming\Mozilla\Firefox\Profiles\sozaqbp9.default [2017-02-09]
FF NetworkProxy: Mozilla\Firefox\Profiles\sozaqbp9.default -> type", 0
FF Extension: (Adblock Plus) - C:\Users\Alan\AppData\Roaming\Mozilla\Firefox\Profiles\sozaqbp9.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-30]
FF SearchPlugin: C:\Users\Alan\AppData\Roaming\Mozilla\Firefox\Profiles\sozaqbp9.default\searchplugins\McSiteAdvisor.xml [2015-12-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-11] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-09] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-09] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-23] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-23] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1551662607-3715958130-1626234642-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Alan\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-1551662607-3715958130-1626234642-1001: @talk.google.com/O1DPlugin -> C:\Users\Alan\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-1551662607-3715958130-1626234642-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Alan\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-1551662607-3715958130-1626234642-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Alan\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-1551662607-3715958130-1626234642-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Alan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [Pas de fichier]
FF Plugin ProgramFiles/Appdata: C:\Users\Alan\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Alan\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [693440 2016-01-28] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-01-19] (Adobe Systems, Incorporated)
R2 ASUS FaceID Service; C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe [261648 2013-10-24] (Hanwang Technology Co.,Ltd. )
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.2.301\AsusWSWinService.exe [71680 2014-02-25] (ASUS Cloud Corporation) [Fichier non signé]
R2 DriverMFTService; C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe [9728 2014-01-09] (ASUSTek Computer Inc.) [Fichier non signé]
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [245544 2016-02-14] (EasyAntiCheat Ltd)
R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288 2014-05-09] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [314696 2014-06-19] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-09] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-09] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-05-29] ()
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-01-20] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-01-20] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2017-02-07] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2184208 2017-02-07] (Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1318128 2017-02-02] (Overwolf LTD)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-05-29] (Intel® Corporation)

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation)
R3 btmaux; C:\WINDOWS\system32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.)
R3 btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [1424184 2014-04-22] (Motorola Solutions, Inc.)
S3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2016-04-05] (LogMeIn Inc.)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [192456 2014-05-09] (Intel Corporation)
R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [Fichier non signé]
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [100312 2013-12-09] (Intel Corporation)
R3 NETwNb64; C:\WINDOWS\system32\DRIVERS\Netwbw02.sys [3446240 2014-06-18] (Intel Corporation)
S3 NETwNe64; C:\WINDOWS\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-01-20] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2017-01-06] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [502488 2014-05-08] (Realsil Semiconductor Corporation)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 xb1usb; C:\WINDOWS\System32\drivers\xb1usb.sys [42760 2016-02-22] (Microsoft Corporation)
U0 aswVmm; pas de ImagePath
S3 catchme; \??\C:\Users\Alan\AppData\Local\Temp\catchme.sys [X] <==== ATTENTION
U0 msahci; system32\drivers\msahci.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-02-09 09:49 - 2017-02-09 09:50 - 00061940 _____ C:\Users\Alan\Desktop\Addition.txt
2017-02-09 09:48 - 2017-02-09 09:50 - 00018347 _____ C:\Users\Alan\Desktop\FRST.txt
2017-02-09 09:48 - 2017-02-09 09:50 - 00000000 ____D C:\FRST
2017-02-09 09:47 - 2017-02-09 09:47 - 02421248 _____ (Farbar) C:\Users\Alan\Desktop\FRST64.exe
2017-02-05 18:54 - 2017-02-05 18:54 - 00001434 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-02-05 18:54 - 2017-02-05 18:54 - 00001434 _____ C:\ProgramData\Desktop\GeForce Experience.lnk
2017-02-05 18:52 - 2017-01-20 19:39 - 00057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-02-04 17:52 - 2017-02-04 17:52 - 00000000 ____D C:\Users\Alan\AppData\Roaming\com.freakinware.mitosis
2017-02-04 13:37 - 2017-02-04 13:37 - 00000000 ____D C:\Users\Alan\AppData\LocalLow\ESG
2017-02-01 15:38 - 2017-02-01 15:39 - 00000000 ____D C:\Users\Alan\Desktop\pack gd
2017-02-01 15:25 - 2017-02-01 15:26 - 21441153 _____ C:\Users\Alan\Downloads\MLG TEXTURE PACK GD 2.1.rar
2017-01-29 08:39 - 2017-01-29 08:40 - 20401422 _____ C:\Users\Alan\Downloads\Just Another Life by The Railgunner.rar
2017-01-22 13:12 - 2017-01-23 07:30 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2017-01-22 13:12 - 2017-01-22 16:27 - 00000000 ____D C:\Users\Alan\AppData\Roaming\discord
2017-01-22 13:11 - 2017-01-23 07:30 - 00000000 ____D C:\Users\Alan\AppData\Local\Discord
2017-01-22 13:11 - 2017-01-22 13:12 - 00000000 ____D C:\Users\Alan\AppData\Local\SquirrelTemp
2017-01-22 12:15 - 2017-01-22 12:16 - 52553728 _____ (Hammer & Chisel, Inc.) C:\Users\Alan\Downloads\DiscordSetup.exe
2017-01-19 20:09 - 2017-01-19 20:09 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-01-19 20:09 - 2016-09-09 19:25 - 00269600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-01-19 20:09 - 2016-09-09 19:25 - 00261920 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-01-19 20:09 - 2016-09-09 19:25 - 00110880 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-01-19 20:09 - 2016-09-09 19:24 - 00125216 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-01-19 20:06 - 2016-12-12 03:37 - 40125496 _____ C:\WINDOWS\system32\nvcompiler.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 35222976 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 34703416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 28138432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 17436808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 17376896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 14410472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 14073400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2017-01-19 20:06 - 2016-12-12 03:37 - 10912744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 10795312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 10345696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 09151216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 08913328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 03640376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 01953336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437633.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 01586744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437633.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 01036224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00975416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00944184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00896056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00683640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00521096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00438208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00388544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00170688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00148016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2017-01-19 20:06 - 2016-12-12 03:37 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-01-19 20:06 - 2016-12-12 03:37 - 00000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-01-16 20:35 - 2017-01-16 20:35 - 04839556 _____ C:\Users\Alan\Downloads\[Geometry Dash] Material 2.0.zip
2017-01-15 19:07 - 2017-01-15 19:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT
2017-01-15 19:01 - 2017-01-15 19:04 - 17109714 _____ C:\Users\Alan\Downloads\ROCCAT_Lua_DRV1.14.zip
2017-01-13 17:54 - 2017-01-20 19:39 - 01872320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2017-01-13 17:54 - 2017-01-20 19:39 - 01755072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2017-01-13 17:54 - 2017-01-20 19:39 - 01464768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2017-01-13 17:54 - 2017-01-20 19:39 - 01317312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2017-01-13 17:54 - 2017-01-20 19:39 - 00120256 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-01-13 17:53 - 2017-02-05 18:53 - 00004146 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:53 - 00003742 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:52 - 00003738 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:52 - 00003738 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:52 - 00003730 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:52 - 00003554 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-02-05 18:52 - 00003494 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-01-13 17:53 - 2017-01-20 15:07 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-01-13 17:53 - 2017-01-20 14:36 - 00001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-01-13 17:53 - 2017-01-13 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-01-13 17:53 - 2017-01-06 02:07 - 00156608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2017-01-13 17:53 - 2017-01-06 02:07 - 00124352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-01-13 17:53 - 2017-01-06 02:07 - 00046016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2017-01-13 17:47 - 2017-01-13 17:49 - 78445264 _____ (NVIDIA Corporation) C:\Users\Alan\Downloads\GeForce_Experience_v3.2.2.49.exe
2017-01-13 07:41 - 2017-01-13 07:41 - 00001274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
2017-01-13 07:41 - 2017-01-13 07:41 - 00001262 _____ C:\Users\Public\Desktop\paint.net.lnk
2017-01-13 07:41 - 2017-01-13 07:41 - 00001262 _____ C:\ProgramData\Desktop\paint.net.lnk
2017-01-13 07:40 - 2017-01-13 07:40 - 07055677 _____ C:\Users\Alan\Downloads\paint.net.4.0.13.install.zip
2017-01-11 19:07 - 2017-01-11 19:07 - 00592277 _____ C:\Users\Alan\Downloads\Relire son écrit.pdf

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-02-09 09:48 - 2016-11-30 17:51 - 00000000 ____D C:\Users\Alan\AppData\LocalLow\Mozilla
2017-02-09 09:47 - 2015-06-09 11:57 - 00000000 ____D C:\Program Files (x86)\Steam
2017-02-09 09:47 - 2015-05-31 21:23 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Skype
2017-02-09 09:44 - 2016-10-20 19:09 - 00000410 _____ C:\WINDOWS\Tasks\update-sys.job
2017-02-09 09:37 - 2015-05-31 20:57 - 00000093 _____ C:\Users\Alan\AppData\Roaming\sp_data.sys
2017-02-09 09:37 - 2014-10-22 12:10 - 00000000 ____D C:\ProgramData\NVIDIA
2017-02-09 00:02 - 2016-12-18 15:37 - 00000000 ____D C:\Users\Alan\AppData\Roaming\Origin
2017-02-09 00:02 - 2016-12-18 15:33 - 00000000 ____D C:\ProgramData\Origin
2017-02-08 23:24 - 2015-06-01 06:50 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2017-02-08 22:34 - 2015-12-22 22:29 - 00000000 ____D C:\Program Files (x86)\Overwolf
2017-02-08 22:27 - 2015-06-01 06:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-02-08 20:47 - 2016-10-20 19:09 - 00000410 _____ C:\WINDOWS\Tasks\update-S-1-5-21-1551662607-3715958130-1626234642-1001.job
2017-02-08 18:19 - 2016-06-13 16:44 - 00003480 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
2017-02-08 18:19 - 2015-05-31 20:59 - 00003470 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
2017-02-07 20:56 - 2016-10-26 13:50 - 00000000 ____D C:\Users\Alan\AppData\Local\GeometryDash
2017-02-07 11:28 - 2016-07-09 13:01 - 00000000 ____D C:\Users\Alan\AppData\Roaming\.minecraft
2017-02-07 11:26 - 2016-07-28 22:01 - 00000000 ____D C:\Program Files (x86)\Minecraft
2017-02-07 09:11 - 2014-12-06 02:23 - 00000000 ___DO C:\Users\Alan\OneDrive
2017-02-07 09:06 - 2016-12-18 15:37 - 00000000 ____D C:\Program Files (x86)\Origin
2017-02-07 08:25 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-02-07 08:24 - 2015-12-21 22:35 - 00000000 ____D C:\Users\Alan\AppData\Local\CrashDumps
2017-02-06 09:12 - 2015-05-31 20:59 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1551662607-3715958130-1626234642-1001
2017-02-05 18:57 - 2014-05-16 00:55 - 00812350 _____ C:\WINDOWS\system32\perfh00C.dat
2017-02-05 18:57 - 2014-05-16 00:55 - 00159412 _____ C:\WINDOWS\system32\perfc00C.dat
2017-02-05 18:57 - 2014-03-18 16:26 - 01824010 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-02-05 18:57 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2017-02-05 18:54 - 2014-10-22 12:09 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-02-05 18:52 - 2014-10-22 12:10 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-02-05 18:52 - 2014-10-22 12:09 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-02-03 15:58 - 2013-08-22 16:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-01-29 15:24 - 2016-12-11 12:44 - 00000000 ____D C:\Users\Alan\Desktop\Travail école , ou photo pour faire exercice
2017-01-29 08:35 - 2015-05-31 21:23 - 00000000 ____D C:\ProgramData\Skype
2017-01-24 07:46 - 2016-12-18 15:33 - 00000000 ____D C:\Users\Alan\AppData\Local\Origin
2017-01-23 21:05 - 2015-06-12 06:28 - 00000000 ____D C:\ProgramData\Oracle
2017-01-23 21:01 - 2015-06-12 06:28 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2017-01-23 21:01 - 2015-06-12 06:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-01-23 21:01 - 2015-06-12 06:28 - 00000000 ____D C:\Program Files (x86)\Java
2017-01-22 13:12 - 2016-12-02 15:39 - 00000000 ____D C:\Users\Alan\Desktop\musique de bg (pour moi)
2017-01-22 12:38 - 2016-12-11 17:44 - 00000000 ____D C:\Users\Alan\Desktop\Evaluation d'anglais oral
2017-01-20 18:18 - 2015-05-31 20:53 - 00000000 ____D C:\Users\Alan\AppData\Local\NVIDIA Corporation
2017-01-19 20:08 - 2016-12-25 17:57 - 00000000 ____D C:\Users\Alan\Documents\Plants vs Zombies GW2
2017-01-18 12:53 - 2016-12-02 07:21 - 00000000 ____D C:\Users\Alan\Documents\Camtasia Studio
2017-01-15 19:07 - 2014-10-22 12:12 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-01-14 11:34 - 2016-12-13 16:22 - 00000000 ____D C:\Users\Alan\AppData\Local\osu!
2017-01-13 23:29 - 2016-08-15 18:11 - 00000000 ____D C:\Users\Alan\BrawlhallaReplays
2017-01-13 17:56 - 2015-05-31 20:53 - 00000000 ____D C:\Users\Alan\AppData\Local\NVIDIA
2017-01-13 07:41 - 2016-09-13 18:07 - 00000000 ____D C:\Program Files\paint.net
2017-01-11 18:37 - 2015-06-06 08:46 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-01-11 18:35 - 2015-06-06 08:46 - 135657872 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-01-11 12:24 - 2015-06-01 06:50 - 00003890 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-01-11 12:24 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed

==================== Fichiers à la racine de certains dossiers =======

2015-05-31 20:57 - 2017-02-09 09:37 - 0000093 _____ () C:\Users\Alan\AppData\Roaming\sp_data.sys
2016-02-28 10:44 - 2016-02-28 10:44 - 0001011 _____ () C:\Users\Alan\AppData\Local\recently-used.xbel
2016-09-17 07:35 - 2016-09-17 07:35 - 0007605 _____ () C:\Users\Alan\AppData\Local\Resmon.ResmonCfg
2016-12-29 12:24 - 2016-11-23 14:37 - 0000570 _____ () C:\Users\Alan\AppData\Local\TroubleshooterConfig.json
2016-10-20 19:09 - 2016-10-20 19:09 - 0000003 _____ () C:\Users\Alan\AppData\Local\updater.log
2016-10-20 19:09 - 2016-10-20 19:09 - 0000424 _____ () C:\Users\Alan\AppData\Local\UserProducts.xml
2014-10-22 12:12 - 2014-10-22 12:12 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-05-15 16:58 - 2012-09-07 12:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-05-15 16:58 - 2009-07-22 11:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2017-02-07 19:45

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité