cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 16-11-2017
Exécuté par Moi (administrateur) sur DESKTOP-TRDDKBE (16-11-2017 19:55:57)
Exécuté depuis C:\Users\Moi\Downloads
Profils chargés: Moi (Profils disponibles: Moi)
Platform: Microsoft Windows 10 Famille Version 1607 14393.1884 (X86) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AO Kaspersky Lab) C:\Program Files\NordNet\Securitoo PC 10.1\avp.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Acer Incorporated) C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
() C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Mode Change Indicator\MCISvc.exe
(Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(Acer Incorporated) C:\OEM\DOCK_KB\QAPSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(Dashlane SAS) C:\Program Files\Dashlane\Upgrade\DashlaneUpgradeService.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Acer Cloud Technology) C:\Program Files\Acer\AOP Framework\acer\ccd.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(AO Kaspersky Lab) C:\Program Files\NordNet\Securitoo PC 10.1\avpui.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.480.0_x86__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Realtek Semiconductor) C:\Program Files\REALTEK\Audio\AP\RtkNGUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_TATINEE.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Glarysoft Ltd) C:\Program Files\Glary Utilities 5\Integrator.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Acer Incorporated) C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe
(Acer) C:\Program Files\Acer\Acer Portal\AcerPortal.exe
(Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1883_none_22b9b05469b2ef4b\TiWorker.exe
() C:\Program Files\Acer\Care Center\ACCStd.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [113664 2015-06-23] (Intel Corporation)
HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [7778816 2015-01-29] (Realtek Semiconductor)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [261432 2017-09-11] (Apple Inc.)
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\...\Run: [uTorrent] => C:\Users\Moi\AppData\Roaming\uTorrent\uTorrent.exe [1982144 2017-09-29] (BitTorrent Inc.)
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\W32X86\3\E_TATINEE.EXE [262208 2013-12-16] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\...\Run: [GUDelayStartup] => C:\Program Files\Glary Utilities 5\StartupManager.exe [44024 2017-11-03] (Glarysoft Ltd)
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7814600 2017-11-08] (Piriform Ltd)
BootExecute: autocheck autochk *

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [152864 2010-05-18] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{136a05fd-970f-4e27-8313-5bcf2d41446c}: [DhcpNameServer] 192.168.224.1
Tcpip\..\Interfaces\{507046a3-4f9d-4a73-9ea7-4d51fa296490}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1420756083-46208772-1634248434-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE
SearchScopes: HKLM -> DefaultScope {1A62C918-6DE5-4643-A144-667B81EF44F6} URL =
BHO: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files\NordNet\Securitoo PC 10.1\IEExt\ie_plugin.dll [2017-03-21] (AO Kaspersky Lab)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-08-13] (Oracle Corporation)
BHO: Pas de nom -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Pas de fichier
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-13] (Oracle Corporation)
Toolbar: HKLM - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files\NordNet\Securitoo PC 10.1\IEExt\ie_plugin.dll [2017-03-21] (AO Kaspersky Lab)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~1\mcafee\msc\mcsniepl.dll Pas de fichier

FireFox:
========
FF DefaultProfile: alz3g4r2.default
FF ProfilePath: C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default [2017-11-16]
FF Homepage: Mozilla\Firefox\Profiles\alz3g4r2.default -> hxxps://www.google.fr/
FF Extension: (العربية Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-ar@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Английски (САЩ) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-bg@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Czech (CZ) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-cs@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Dansk (da) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-da@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Deutsch (DE) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-de@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Ελληνικά Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-el@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (English (US) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-en-US@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Español (España) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-es-ES@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Estonian Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-et@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Finnish Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-fi@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Français Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-fr@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Hebrew (IL) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-he@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Magyar (HU) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-hu@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Italiano (IT) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-it@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Japanese Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-ja@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Korean (KR) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-ko@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Lietuvių Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-lt@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Norsk bokmål (NO) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-nb-NO@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Nederlands (NL) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-nl@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Polski Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-pl@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Português (pt-BR) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-pt-BR@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Português (Europeu) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-pt-PT@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Russian (RU) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-ru@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Slovak (SK) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-sk@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Slovenski jezik Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-sl@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (српски (sr) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-sr@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Svenska (SE) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-sv-SE@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (ไทย Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-th@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Türkçe (TR) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-tr@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Ukrainian (UA) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-uk@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Chinese Simplified (zh-CN) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-zh-CN@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Traditional Chinese (zh-TW) Language Pack) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\langpack-zh-TW@firefox.mozilla.org.xpi [2017-10-04] [Lagacy]
FF Extension: (Safe Browsing Version 4 (temporary add-on)) - C:\Users\Moi\AppData\Roaming\Mozilla\Firefox\Profiles\alz3g4r2.default\Extensions\sbv4-gradual-rollout@mozilla.com.xpi [2017-11-08] [Lagacy]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor\saffplg.xpi => non trouvé(e)
FF HKLM\...\Firefox\Extensions: [light_plugin_ACF0E80077C511E59DED005056C00008@kaspersky.com] - C:\Program Files\NordNet\Securitoo PC 10.1\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files\NordNet\Securitoo PC 10.1\FFExt\light_plugin_firefox\addon.xpi [2017-09-19]
FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => non trouvé(e)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-25] ()
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-13] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-13] (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [Pas de fichier]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default [2017-11-15]
CHR Extension: (Slides) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-29]
CHR Extension: (Docs) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-29]
CHR Extension: (Google Drive) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-18]
CHR Extension: (YouTube) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-18]
CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2017-11-01]
CHR Extension: (Adobe Acrobat) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-08-18]
CHR Extension: (Sheets) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-29]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2017-10-29]
CHR Extension: (Google Docs hors connexion) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-08-18]
CHR Extension: (Extension de sécurité pour votre application antivirus) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgleflkdamakpmckkidkcmnmdikbbmok [2017-08-18]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-02]
CHR Extension: (Gmail) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-18]
CHR Extension: (Chrome Media Router) - C:\Users\Moi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-29]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [kgleflkdamakpmckkidkcmnmdikbbmok] - hxxps://chrome.google.com/webstore/detail/kgleflkdamakpmckkidkcmnmdikbbmok

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AVP16.0.1; C:\Program Files\NordNet\Securitoo PC 10.1\avp.exe [236928 2015-12-22] (AO Kaspersky Lab)
R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [144600 2015-05-28] ()
R2 CCDMonitorService; C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe [2278616 2017-03-20] (Acer Incorporated)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [290224 2015-08-31] (Intel Corporation)
R2 Dashlane Upgrade Service; C:\Program Files\Dashlane\Upgrade\DashlaneUpgradeService.exe [75056 2015-06-24] (Dashlane SAS)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [118792 2015-06-23] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [115712 2015-06-23] (Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [125952 2015-06-23] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [283568 2015-08-31] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920 2017-11-01] (Malwarebytes)
R2 MCISvc; C:\Program Files\Acer\Acer Mode Change Indicator\MCISvc.exe [220000 2015-07-13] (Acer Incorporated)
S2 mfevtp; C:\Windows\system32\mfevtps.exe [328704 2017-04-30] (McAfee, Inc.)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [851160 2017-05-22] (Intel Security, Inc.)
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [366944 2015-07-09] (Acer Incorporated)
R2 QAPSvc; c:\oem\dock_KB\QAPSvc.exe [408928 2015-07-13] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [411488 2015-07-09] (Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [247040 2015-05-27] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [271488 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [84912 2017-10-09] (Microsoft Corporation)
S3 ClientAnalyticsService; "C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe" [X]
S2 HomeNetSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McAPExe; "C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe" [X]
S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [X]
S2 mcbootdelaystartsvc; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\2.5.312.0\\McCSPServiceHost.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S4 McOobeSv2; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mcpltsvc; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S3 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe" [X]
S2 mfemms; "C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe" [X]
S2 ModuleCoreService; "C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe" [X]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 BthMini; C:\WINDOWS\System32\drivers\BTHMINI.sys [23040 2016-08-20] (Microsoft Corporation)
R3 camera; C:\WINDOWS\system32\DRIVERS\iacamera32.sys [683904 2015-07-20] (Intel(R) Corporation)
S3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [72208 2017-05-02] (McAfee, Inc.)
R3 CM3218x; C:\WINDOWS\System32\drivers\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [201912 2015-07-05] (Kaspersky Lab ZAO)
R3 CPLMACPI; C:\WINDOWS\System32\drivers\CPLMACPI.sys [25032 2015-06-15] (Capella Microsystems, Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [109184 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [88584 2015-06-23] (Intel Corporation)
S3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [55816 2015-06-23] (Intel Corporation)
R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [59392 2015-06-23] (Intel Corporation)
R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [85000 2015-06-23] (Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [203264 2015-06-23] (Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [467968 2015-06-23] (Intel Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [34176 2015-06-10] (Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [27496 2015-06-10] (Intel Corporation)
R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [17472 2017-11-15] (Glarysoft Ltd)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [161272 2017-05-31] (McAfee, Inc.)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [57360 2015-06-18] (Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [98568 2015-07-22] (Intel Corporation)
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [277256 2015-06-12] (Intel(R) Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35392 2015-07-20] (Intel Corporation)
R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [155304 2015-09-11] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [46776 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [66440 2015-12-01] (AO Kaspersky Lab)
R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [67456 2015-12-01] (AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [25208 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [148984 2017-10-14] (AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [59896 2017-10-14] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP16.0.1\Bases\klids.sys [168416 2017-11-15] (AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [781304 2017-10-14] (AO Kaspersky Lab)
R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [45144 2017-03-21] (AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [46464 2015-11-11] (AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [37560 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [41864 2015-12-07] (AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [74160 2017-03-21] (AO Kaspersky Lab)
R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [99552 2017-03-21] (AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [161672 2015-12-02] (AO Kaspersky Lab)
R3 kxspb; C:\WINDOWS\System32\drivers\kxspb.sys [42992 2015-08-31] (Kionix, Inc.)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [221112 2017-11-15] (Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [75712 2017-11-14] (Malwarebytes)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [33792 2015-06-16] (Intel Corporation)
S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [362000 2017-05-02] (McAfee, Inc.)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [73272 2017-05-02] (McAfee, Inc.)
S3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [390160 2017-05-02] (McAfee, Inc.)
S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [386064 2017-04-07] (McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [91160 2017-04-07] (McAfee, Inc.)
S3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [93712 2017-05-02] (McAfee, Inc.)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [209936 2017-05-02] (McAfee, Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [62976 2016-07-16] ()
R3 ov2722; C:\WINDOWS\System32\drivers\ov2722.sys [108104 2015-07-20] (Intel(R) Corporation)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [77424 2015-06-16] (Intel Corporation)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [255192 2015-05-05] (Realtek Semiconductor Corp.)
S3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-22] (Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\System32\drivers\rtwlans.sys [4304384 2016-07-16] (Realtek Semiconductor Corporation )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [147072 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 SynRMIHID; C:\WINDOWS\System32\drivers\SynRMIHID.sys [41128 2015-05-27] (Synaptics Incorporated)
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [84520 2015-05-27] (Intel Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37912 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [244576 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [100192 2016-07-16] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
S3 mfeavfk01; \Device\mfeavfk01.sys [X]
S3 mfesapsn; \??\C:\Program Files\McAfee\SiteAdvisor\mfesapsn.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-11-16 19:55 - 2017-11-16 19:57 - 000029186 _____ C:\Users\Moi\Downloads\FRST.txt
2017-11-16 19:55 - 2017-11-16 19:55 - 000000000 ____D C:\FRST
2017-11-16 19:53 - 2017-11-16 19:55 - 001788928 _____ (Farbar) C:\Users\Moi\Downloads\FRST.exe
2017-11-16 19:51 - 2017-11-16 19:51 - 000000000 ___HD C:\OneDriveTemp
2017-11-15 15:37 - 2017-11-15 15:37 - 000001038 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-11-15 15:37 - 2017-11-15 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-11-15 15:35 - 2017-11-15 15:36 - 010849904 _____ (Piriform Ltd) C:\Users\Moi\Downloads\ccsetup537.exe
2017-11-15 15:35 - 2017-11-15 15:35 - 010849904 _____ (Piriform Ltd) C:\Users\Moi\Downloads\ccsetup537(1).exe
2017-11-15 15:22 - 2017-11-15 15:22 - 000017472 _____ (Glarysoft Ltd) C:\WINDOWS\system32\Drivers\GUBootStartup.sys
2017-11-15 15:22 - 2017-11-15 15:22 - 000001123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2017-11-15 15:22 - 2017-11-15 15:22 - 000001111 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk
2017-11-15 15:22 - 2017-11-15 15:22 - 000000000 ____D C:\Users\Moi\AppData\Roaming\GlarySoft
2017-11-15 15:22 - 2017-11-15 15:22 - 000000000 ____D C:\Users\Moi\AppData\Roaming\DiskDefrag
2017-11-15 15:22 - 2017-11-15 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
2017-11-15 15:21 - 2017-11-16 19:51 - 000000000 ____D C:\Program Files\Glary Utilities 5
2017-11-15 15:20 - 2017-11-15 15:21 - 017113192 _____ C:\Users\Moi\Downloads\glary-utilities_5-87_fr_73266.exe
2017-11-15 10:36 - 2017-11-01 23:44 - 000557400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2017-11-15 10:36 - 2017-11-01 23:43 - 000075040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2017-11-15 10:36 - 2017-11-01 23:27 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-11-15 10:36 - 2017-11-01 23:27 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2017-11-15 10:36 - 2017-11-01 23:26 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-11-15 10:36 - 2017-11-01 23:25 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-11-15 10:36 - 2017-11-01 23:24 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-11-15 10:36 - 2017-11-01 23:22 - 000822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-11-15 10:36 - 2017-11-01 23:22 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-11-15 10:36 - 2017-11-01 23:18 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2017-11-15 10:36 - 2017-11-01 23:17 - 002641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-11-15 10:36 - 2017-11-01 23:16 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-11-15 10:36 - 2017-11-01 23:16 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2017-11-15 10:36 - 2017-11-01 23:15 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-11-15 10:36 - 2017-11-01 23:15 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2017-11-15 10:36 - 2017-11-01 23:14 - 006066176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-11-15 10:36 - 2017-11-01 23:14 - 003662848 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-11-15 10:36 - 2017-11-01 23:14 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-11-15 10:36 - 2017-11-01 23:14 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2017-11-15 10:36 - 2017-11-01 23:13 - 001988096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-11-15 10:36 - 2017-11-01 23:13 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-11-15 10:36 - 2017-11-01 23:13 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-11-15 10:36 - 2017-11-01 23:12 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-11-15 10:36 - 2017-11-01 23:12 - 000656896 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-11-15 10:36 - 2017-11-01 23:11 - 002997760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-11-15 10:36 - 2017-10-09 03:39 - 000067928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2017-11-15 10:36 - 2017-10-09 03:34 - 000965464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2017-11-15 10:36 - 2017-10-09 03:24 - 000205104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2017-11-15 10:36 - 2017-10-09 03:23 - 020967832 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-11-15 10:36 - 2017-10-09 03:20 - 001962328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-11-15 10:36 - 2017-10-09 03:19 - 000455000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-11-15 10:36 - 2017-10-09 03:19 - 000353112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-11-15 10:36 - 2017-10-09 03:16 - 001384696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-11-15 10:36 - 2017-10-09 03:16 - 000178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2017-11-15 10:36 - 2017-10-09 03:02 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2017-11-15 10:36 - 2017-10-09 03:02 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2017-11-15 10:36 - 2017-10-09 03:00 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCredential.dll
2017-11-15 10:36 - 2017-10-09 02:58 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2017-11-15 10:36 - 2017-10-09 02:53 - 003774464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-11-15 10:36 - 2017-10-09 02:52 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-11-15 10:36 - 2017-10-09 02:51 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2017-11-15 10:36 - 2017-10-09 02:44 - 001890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-11-15 10:36 - 2017-10-09 02:44 - 000711168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2017-11-15 10:36 - 2017-10-09 02:44 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-11-15 10:36 - 2017-10-09 02:42 - 001438720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-11-15 10:35 - 2017-11-01 23:50 - 001954144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-11-15 10:35 - 2017-11-01 23:45 - 001896800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-11-15 10:35 - 2017-11-01 23:45 - 000550752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-11-15 10:35 - 2017-11-01 23:45 - 000342368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-11-15 10:35 - 2017-11-01 23:44 - 000581048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2017-11-15 10:35 - 2017-11-01 23:44 - 000341976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2017-11-15 10:35 - 2017-11-01 23:44 - 000269152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2017-11-15 10:35 - 2017-11-01 23:44 - 000139096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2017-11-15 10:35 - 2017-11-01 23:44 - 000120416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2017-11-15 10:35 - 2017-11-01 23:26 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-11-15 10:35 - 2017-11-01 23:22 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2017-11-15 10:35 - 2017-11-01 23:21 - 012205056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-11-15 10:35 - 2017-11-01 23:20 - 019415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-11-15 10:35 - 2017-11-01 23:20 - 018365952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-11-15 10:35 - 2017-11-01 23:20 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2017-11-15 10:35 - 2017-11-01 23:19 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2017-11-15 10:35 - 2017-11-01 23:16 - 012349440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2017-11-15 10:35 - 2017-11-01 23:16 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-11-15 10:35 - 2017-11-01 23:16 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2017-11-15 10:35 - 2017-11-01 23:15 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2017-11-15 10:35 - 2017-11-01 23:15 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2017-11-15 10:35 - 2017-11-01 23:12 - 002028032 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2017-11-15 10:35 - 2017-11-01 23:12 - 000693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-11-15 10:35 - 2017-11-01 23:11 - 001161728 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2017-11-15 10:35 - 2017-11-01 20:44 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\msexcl40.dll
2017-11-15 10:35 - 2017-10-09 03:35 - 005994840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-11-15 10:35 - 2017-10-09 03:33 - 000173400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2017-11-15 10:35 - 2017-10-09 03:30 - 000950104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-11-15 10:35 - 2017-10-09 03:20 - 000784728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2017-11-15 10:35 - 2017-10-09 03:05 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2017-11-15 10:35 - 2017-10-09 02:59 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2017-11-15 10:35 - 2017-10-09 02:58 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\regsvc.dll
2017-11-15 10:35 - 2017-10-09 02:55 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2017-11-15 10:35 - 2017-10-09 02:53 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2017-11-15 10:35 - 2017-10-09 02:52 - 001220608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-11-15 10:35 - 2017-10-09 02:52 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2017-11-15 10:35 - 2017-10-09 02:49 - 001139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2017-11-15 10:35 - 2017-10-09 02:44 - 004423680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-11-15 10:35 - 2017-10-09 01:29 - 000788624 _____ C:\WINDOWS\system32\locale.nls
2017-11-15 10:34 - 2017-11-02 00:06 - 000550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-11-15 10:34 - 2017-11-02 00:06 - 000517984 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-11-15 10:34 - 2017-11-02 00:06 - 000496992 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-11-15 10:34 - 2017-11-02 00:06 - 000223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2017-11-15 10:34 - 2017-11-02 00:06 - 000158560 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-11-15 10:34 - 2017-11-02 00:06 - 000116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-11-15 10:34 - 2017-11-02 00:05 - 001927008 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2017-11-15 10:34 - 2017-11-02 00:05 - 001330016 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-11-15 10:34 - 2017-11-02 00:05 - 000364384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2017-11-15 10:34 - 2017-11-02 00:05 - 000312152 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2017-11-15 10:34 - 2017-11-02 00:05 - 000060256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2017-11-15 10:34 - 2017-11-02 00:05 - 000030552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-11-15 10:34 - 2017-11-01 23:47 - 000581664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-11-15 10:34 - 2017-11-01 23:47 - 000409440 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2017-11-15 10:34 - 2017-11-01 23:17 - 000538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
2017-11-15 10:34 - 2017-10-09 03:34 - 000082608 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2017-11-15 10:34 - 2017-10-09 03:32 - 000370520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2017-11-15 10:34 - 2017-10-09 03:28 - 000482384 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2017-11-15 10:34 - 2017-10-09 03:26 - 000459096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-11-15 10:34 - 2017-10-09 03:26 - 000290648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-11-15 10:34 - 2017-10-09 03:24 - 000126808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2017-11-15 10:34 - 2017-10-09 03:17 - 000198496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-11-15 10:34 - 2017-10-09 03:00 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2017-11-15 10:34 - 2017-10-09 02:55 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2017-11-15 10:34 - 2017-10-09 02:54 - 000728064 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2017-11-15 10:34 - 2017-10-09 02:51 - 000494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2017-11-15 10:34 - 2017-10-09 02:49 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2017-11-15 10:34 - 2017-10-09 02:45 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2017-11-15 10:34 - 2017-10-09 02:44 - 000920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2017-11-15 10:10 - 2017-11-15 15:51 - 000000957 _____ C:\WINDOWS\Tasks\EPSON XP-322 323 325 Series Update {99169B06-D4A0-4E09-B18E-3F4997879FCF}.job
2017-11-14 20:29 - 2017-11-15 15:59 - 000221112 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2017-11-14 20:29 - 2017-11-14 20:30 - 000075712 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-11-14 20:29 - 2017-11-14 20:29 - 000002097 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-11-14 20:29 - 2017-11-14 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-11-14 20:29 - 2017-11-01 08:54 - 000059896 _____ C:\WINDOWS\system32\Drivers\mbae.sys
2017-11-14 20:28 - 2017-11-14 20:28 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-11-14 20:09 - 2017-11-14 20:28 - 078346672 _____ (Malwarebytes ) C:\Users\Moi\Downloads\mb3-setup-35891.35891-3.3.1.2183.exe
2017-11-13 14:51 - 2017-11-13 14:51 - 000000000 ____D C:\Program Files\Bonjour
2017-11-11 12:35 - 2017-11-11 12:35 - 000076674 _____ C:\Users\Moi\Downloads\paje_bulletinsalaire.pdf
2017-11-06 21:09 - 2017-11-06 21:09 - 000000000 ____D C:\Users\Moi\.QtWebEngineProcess
2017-11-06 21:09 - 2017-11-06 21:09 - 000000000 ____D C:\Users\Moi\.PokerClient
2017-11-06 21:08 - 2017-11-06 21:08 - 000001792 _____ C:\Users\Moi\AppData\Roaming\Microsoft\Windows\Start Menu\Unibet.fr.lnk
2017-11-06 21:08 - 2017-11-06 21:08 - 000001790 _____ C:\Users\Moi\Desktop\Unibet.fr.lnk
2017-11-06 21:07 - 2017-11-06 21:08 - 000000000 ____D C:\Users\Moi\AppData\Local\Unibet.fr
2017-11-01 21:29 - 2017-11-01 21:38 - 729587708 _____ C:\Users\Moi\Downloads\[nextorrent.tv] Le.Manoir.2017.FRENCH.HDRip.XviD-EXTREME.avi
2017-11-01 15:12 - 2017-11-01 15:12 - 000049138 _____ C:\Users\Moi\Downloads\20171031_185112.jpeg
2017-10-31 14:16 - 2017-10-31 14:16 - 000000000 _____ C:\rtrDB85.tmp
2017-10-31 14:03 - 2017-10-31 14:03 - 000000000 _____ C:\rtrA826.tmp
2017-10-31 14:03 - 2017-10-31 14:03 - 000000000 _____ C:\rtr6D01.tmp
2017-10-31 13:56 - 2017-10-31 13:56 - 000000000 _____ C:\rtr1DE5.tmp
2017-10-29 10:18 - 2017-10-29 10:29 - 000000000 ____D C:\Users\Moi\Desktop\Photos
2017-10-28 23:36 - 2017-10-28 23:37 - 035796928 _____ C:\Users\Moi\Downloads\Pangu_v1.2.1.exe
2017-10-28 23:26 - 2017-10-29 10:01 - 000000000 ____D C:\Users\Moi\AppData\Local\pangu
2017-10-25 11:49 - 2017-10-25 11:49 - 014492635 _____ C:\Users\Moi\Downloads\com.yoosee-12.apk
2017-10-24 22:16 - 2017-10-24 22:16 - 000000061 _____ C:\Users\Moi\Downloads\films.txt
2017-10-23 18:34 - 2017-10-24 21:38 - 728110676 _____ C:\Users\Moi\Downloads\[nextorrent.net] Moana.2016.FRENCH.BDRip.XviD-EXTREME.avi

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-11-16 19:51 - 2017-08-01 22:09 - 000000000 ____D C:\Users\Moi\AppData\Roaming\uTorrent
2017-11-16 19:51 - 2015-08-31 19:53 - 000000000 ___RD C:\Users\Moi\OneDrive
2017-11-16 19:50 - 2017-08-08 18:31 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2017-11-16 19:50 - 2015-08-31 19:49 - 000000000 __SHD C:\Users\Moi\IntelGraphicsProfiles
2017-11-16 10:35 - 2017-04-09 13:55 - 003986920 _____ C:\WINDOWS\system32\perfh00C.dat
2017-11-16 10:35 - 2017-04-09 13:55 - 001152922 _____ C:\WINDOWS\system32\perfc00C.dat
2017-11-16 10:35 - 2015-07-30 03:54 - 008109236 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-16 10:29 - 2017-04-09 13:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-15 21:31 - 2016-01-04 14:59 - 000002106 _____ C:\Users\Moi\Desktop\gains.txt
2017-11-15 16:01 - 2015-07-30 03:51 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-11-15 15:59 - 2017-04-09 13:45 - 000000000 ____D C:\WINDOWS\INF
2017-11-15 15:58 - 2017-04-09 13:35 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2017-11-15 15:58 - 2017-04-09 13:04 - 000192944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-15 15:57 - 2017-04-09 13:48 - 000000000 ___RD C:\Program Files\Windows Defender
2017-11-15 15:57 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-11-15 15:57 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-11-15 15:57 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-11-15 15:56 - 2017-04-09 13:48 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-11-15 15:41 - 2017-04-11 16:48 - 000000000 ____D C:\Users\Moi\AppData\Local\CrashDumps
2017-11-15 15:37 - 2017-10-16 10:55 - 000000000 ____D C:\Program Files\CCleaner
2017-11-15 13:31 - 2017-04-09 13:36 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-11-15 13:30 - 2017-04-14 19:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-11-15 13:03 - 2017-10-10 20:46 - 124282896 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-11-15 13:02 - 2017-04-10 17:40 - 124282896 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-11-15 10:49 - 2017-04-09 13:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-11-14 14:08 - 2017-01-20 09:22 - 000000579 _____ C:\DelFix.txt
2017-11-14 14:05 - 2017-04-09 13:21 - 000000000 ____D C:\Users\Moi
2017-11-14 13:56 - 2017-06-15 20:34 - 000000000 ____D C:\Users\Moi\AppData\Roaming\ZHP
2017-11-13 23:23 - 2017-08-18 17:31 - 000002220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-11-13 23:23 - 2017-08-18 17:31 - 000002208 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-11-13 17:25 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-11-13 14:56 - 2015-07-30 03:53 - 000000000 ____D C:\Program Files\Acer
2017-11-13 14:53 - 2017-04-10 14:14 - 000000000 ____D C:\Users\Moi\AppData\Local\clear.fi
2017-11-13 14:52 - 2015-07-30 04:38 - 000000000 ___HD C:\OEM
2017-11-13 14:52 - 2015-07-30 03:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2017-11-11 21:08 - 2017-08-08 15:35 - 000000000 ____D C:\Users\Moi\Desktop\Serie
2017-11-10 14:39 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-11-08 20:59 - 2017-04-09 13:48 - 000000000 ___HD C:\Program Files\WindowsApps
2017-11-06 21:10 - 2017-04-29 21:12 - 000000000 ____D C:\Users\Moi\AppData\Local\PokerClient
2017-11-05 13:23 - 2017-04-09 13:36 - 000000000 ____D C:\Users\Moi\AppData\Local\Packages
2017-11-05 01:47 - 2017-04-09 13:52 - 000835568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2017-11-05 01:47 - 2017-04-09 13:52 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2017-11-04 17:30 - 2017-04-10 14:29 - 000002405 _____ C:\Users\Moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-11-02 23:13 - 2017-09-29 12:33 - 000000000 ____D C:\Program Files\rempl
2017-10-27 13:25 - 2015-07-30 03:54 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-10-27 13:25 - 2015-07-30 03:54 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-10-25 13:50 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-10-23 18:42 - 2017-04-09 13:48 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-10-23 18:21 - 2017-08-08 15:46 - 000000000 ____D C:\Users\Moi\Desktop\Dessins animés

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2017-11-13 16:29

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité