cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 02.01.2018
Exécuté par Dave (administrateur) sur DAVE-PC (13-01-2018 03:33:48)
Exécuté depuis C:\Users\Dave\Desktop
Profils chargés: Dave (Profils disponibles: Dave)
Platform: Microsoft Windows 7 Professionnel Service Pack 1 (X86) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Conexant Systems, Inc.) C:\Program Files\Conexant\cAudioFilterAgent\caudiofilteragent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Conexant Systems, Inc) C:\Program Files\Conexant\SAII\SmartAudio.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files\EagleGet\EGMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(EagleGet.com) C:\Program Files\EagleGet\EagleGet.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [831104 2012-03-28] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2015-06-12] (Conexant Systems, Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [1793736 2015-02-19] (NVIDIA Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [246120 2017-12-23] (AVAST Software)
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2005-08-11] (Macrovision Corporation)
HKLM\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [2138272 2016-10-08] (AimerSoft)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [261432 2017-12-05] (Apple Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3048106047-1284188970-2360752325-1000\...\MountPoints2: {5b4eb37a-a654-11e5-bc7f-d4bed9eabefb} - F:\NokiaPCIA_Autorun.exe
HKU\S-1-5-21-3048106047-1284188970-2360752325-1000\...\MountPoints2: {5e3b9162-1cbb-11e7-81f7-d4bed9eabefb} - F:\Lenovo_Suite.exe
HKU\S-1-5-21-3048106047-1284188970-2360752325-1000\...\MountPoints2: {a3f1f969-ffc0-11e5-8e0d-d4bed9eabefb} - F:\.\Setup.exe AUTORUN=1
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 193.95.57.20 8.8.8.8
Tcpip\..\Interfaces\{BADAFC5F-61EE-4227-86D5-FD344747C7FE}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{DA30D91B-8A47-4A12-8FE9-4F713B004DDB}: [DhcpNameServer] 193.95.57.20 8.8.8.8
ManualProxies: 0hxxp://notblocked.biz/wpad.dat?2666a59752bc5e867a60651603f806f825432841

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3048106047-1284188970-2360752325-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
HKU\S-1-5-21-3048106047-1284188970-2360752325-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
SearchScopes: HKLM -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_eaggtfs_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dtn%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0DyE0B0E0Dzy0E0A0B0E0F0ByC0AyC0DtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyE0FzztByC0A0DyEtGtB0E0F0EtGzy0E0B0BtGyB0DyCyBtGyBzyzz0ByB0EtCyD0DtC0B0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtDzzzzyByB0CtDtG0FyByCtBtGyEyDtB0BtGzytCyByDtG0C0F0CyB0E0AyCtDtA0Ezz0C2QtN0A0LzuyE%26cr%3D871531270%26a%3Dwbf_eaggtfs_16_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVoIBQkSRVNCbQwNAAtcFQYaeRQAVglBDFEVJgxaBFtDRVYUcx9aFQQTSEcFME0FCFwEURNNfWpXD1ASdUdCKVc=&q={searchTerms}
SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3048106047-1284188970-2360752325-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_eaggtfs_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dtn%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0DyE0B0E0Dzy0E0A0B0E0F0ByC0AyC0DtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyE0FzztByC0A0DyEtGtB0E0F0EtGzy0E0B0BtGyB0DyCyBtGyBzyzz0ByB0EtCyD0DtC0B0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtDzzzzyByB0CtDtG0FyByCtBtGyEyDtB0BtGzytCyByDtG0C0F0CyB0E0AyCtDtA0Ezz0C2QtN0A0LzuyE%26cr%3D871531270%26a%3Dwbf_eaggtfs_16_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3048106047-1284188970-2360752325-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_eaggtfs_16_37¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dtn%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0DyE0B0E0Dzy0E0A0B0E0F0ByC0AyC0DtN0D0Tzu0StCyBtBtDtN1L2XzutAtFtByEtFyCtFzytN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2SyE0FzztByC0A0DyEtGtB0E0F0EtGzy0E0B0BtGyB0DyCyBtGyBzyzz0ByB0EtCyD0DtC0B0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AtDzzzzyByB0CtDtG0FyByCtBtGyEyDtB0BtGzytCyByDtG0C0F0CyB0E0AyCtDtA0Ezz0C2QtN0A0LzuyE%26cr%3D871531270%26a%3Dwbf_eaggtfs_16_37%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3048106047-1284188970-2360752325-1000 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVoIBQkSRVNCbQwNAAtcFQYaeRQAVglBDFEVJgxaBFtDRVYUcx9aFQQTSEcFME0FCFwEURNNfWpXD1ASdUdCKVc=&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3048106047-1284188970-2360752325-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
BHO: EGet Class -> {1E871FF8-029C-4732-8AA7-39E3D3872057} -> C:\Program Files\EagleGet\eagleSniffer.dll [2017-02-01] (EagleGet.com)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-11-16] (AVAST Software)
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll Pas de fichier
Handler: WSKVAllmytubechrome - Pas de valeur CLSID -
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF DefaultProfile: of6afsev.default
FF ProfilePath: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default [2018-01-10]
FF Homepage: Mozilla\Firefox\Profiles\of6afsev.default -> hxxps://www.google.com/?bcutc=sp-006
FF NewTab: Mozilla\Firefox\Profiles\of6afsev.default -> about:newtab
FF Extension: (Avast SafePrice) - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default\Extensions\sp@avast.com.xpi [2018-01-10]
FF Extension: (Avast Online Security) - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default\Extensions\wrc@avast.com.xpi [2017-10-24]
FF SearchPlugin: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default\searchplugins\default.xml [2016-09-15]
FF SearchPlugin: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default\searchplugins\google-avast.xml [2017-02-22]
FF SearchPlugin: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\of6afsev.default\searchplugins\yahoo! powered.xml [2016-09-16]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-01-09] ()
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [Pas de fichier]
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-10] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-10] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN)
FF Plugin HKU\S-1-5-21-3048106047-1284188970-2360752325-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dave\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2017-05-18] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3048106047-1284188970-2360752325-1000: eagleget.com/EagleGet32 -> C:\Program Files\EagleGet\npEagleget.dll [2016-09-13] (EagleGet)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\26482464.js [2017-02-14] <==== ATTENTION (Pointe vers un fichier *.cfg)
FF ExtraCheck: C:\Program Files\mozilla firefox\26482464.cfg [2017-02-14] <==== ATTENTION

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.fr/
CHR StartupUrls: Default -> "hxxps://www.facebook.com/","hxxp://youtube.com/"
CHR DefaultSearchURL: Default -> hxxp://srch.bar/{searchTerms}
CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
CHR Profile: C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default [2018-01-13]
CHR Extension: (Magic Actions for YouTube™) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2018-01-11]
CHR Extension: (h264ify) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\aleakchihdccplidncghkekgioiakgal [2018-01-10]
CHR Extension: (Docs) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-10]
CHR Extension: (Adblock Plus) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-01-11]
CHR Extension: (Copyfish 🐟 Free OCR Software) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\eenjdnjldapjajjofmldgmkjaienebbj [2018-01-11]
CHR Extension: (Flash Playlist) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanagokoaogopceablgmpndejhedkjjb [2018-01-11]
CHR Extension: (ZenMate VPN - Sécurité internet & Unblock) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2018-01-11]
CHR Extension: (AdBlock) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-01-11]
CHR Extension: (Avast Online Security) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-10-10]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Gmail) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-08]
CHR Extension: (Chrome Media Router) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-14]
CHR HKLM\...\Chrome\Extension: [ccjleegmemocfpghkhpjmiccjcacackp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
CHR HKLM\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files\EagleGet\addon\eagleget_cext@eagleget.com.crx [2016-09-16]
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AGSService; C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5906816 2017-12-23] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [301168 2017-12-23] (AVAST Software)
S2 DellDigitalDelivery; C:\Program Files\Dell Digital Delivery\DeliveryService.exe [199176 2013-08-07] (Dell Products, LP.)
S2 egGetSvc; C:\Program Files\EagleGet\EGMonitor.exe [247464 2017-02-01] ()
S3 npggsvc; C:\Windows\system32\GameMon.des [7801944 2016-10-20] (INCA Internet Co., Ltd.)
R2 SAService; C:\Windows\system32\SAsrv.exe [446592 2015-06-12] (Conexant Systems, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S3 WsDrvInst; "C:\Program Files\Keepvid\KeepVid Pro (Desktop)\DriverInstall.exe" [X]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [158224 2017-12-23] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [255584 2017-12-23] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [157376 2017-12-23] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [276696 2017-12-23] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [50344 2017-12-23] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [118144 2017-12-23] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42824 2017-12-23] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [39784 2017-09-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [123880 2018-01-10] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [99528 2017-12-23] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [70832 2017-12-23] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [783104 2017-12-23] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [390256 2018-01-10] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [151328 2017-12-23] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [294680 2017-12-23] (AVAST Software)
S3 AXIOM; C:\Windows\System32\DRIVERS\MAudioAxiom.sys [115336 2010-02-19] (M-Audio)
R3 eagleGet; C:\Windows\System32\Drivers\eagleGet.sys [62064 2016-10-11] (eagleGet)
R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [41216 2011-09-22] (Intel Corporation)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [36944 2017-02-14] (Anchorfree Inc.)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [128704 2016-08-16] (MBB)
R1 YSDrv; C:\Program Files\Bignox\BigNoxVM\RT\YSDrv.sys [220432 2017-12-27] (BigNox Corporation)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-01-13 03:33 - 2018-01-13 03:34 - 000019509 _____ C:\Users\Dave\Desktop\FRST.txt
2018-01-13 03:33 - 2018-01-13 03:33 - 000000000 ____D C:\FRST
2018-01-13 03:32 - 2018-01-13 03:32 - 001753600 _____ (Farbar) C:\Users\Dave\Desktop\FRST.exe
2018-01-12 20:00 - 2018-01-12 20:00 - 000000000 ____D C:\ProgramData\SWCUTemp
2018-01-10 23:32 - 2018-01-10 23:32 - 000002215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-01-10 23:32 - 2018-01-10 23:32 - 000002203 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-01-10 23:30 - 2018-01-10 23:32 - 000000000 ____D C:\Program Files\Google
2018-01-10 23:29 - 2018-01-10 23:29 - 001129816 _____ (Google Inc.) C:\Users\Dave\Downloads\ChromeSetup(1).exe
2018-01-06 12:51 - 2018-01-06 12:51 - 000001747 _____ C:\Users\Public\Desktop\iTunes.lnk
2018-01-06 12:51 - 2018-01-06 12:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2018-01-06 12:51 - 2018-01-06 12:51 - 000000000 ____D C:\Program Files\iPod
2018-01-06 12:50 - 2018-01-06 12:51 - 000000000 ____D C:\Program Files\iTunes
2018-01-06 12:47 - 2018-01-06 12:47 - 000000000 ____D C:\Program Files\Bonjour
2018-01-06 12:27 - 2018-01-06 12:27 - 000000000 ____D C:\Users\Dave\AppData\Local\AVAST Software
2018-01-02 16:58 - 2018-01-02 16:58 - 000000000 ____D C:\Users\Dave\AppData\Local\CrashDumps
2018-01-02 16:36 - 2018-01-02 16:36 - 000000000 ____D C:\Users\Dave\Documents\Camtasia Studio
2018-01-02 16:36 - 2018-01-02 16:36 - 000000000 ____D C:\Users\Dave\AppData\Roaming\TechSmith
2018-01-02 16:35 - 2018-01-02 16:35 - 000000000 ____D C:\Users\Dave\AppData\Local\TechSmith
2018-01-02 16:33 - 2018-01-02 16:33 - 000001126 _____ C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2018-01-02 16:33 - 2018-01-02 16:33 - 000000000 ____D C:\ProgramData\regid.1995-08.com.techsmith
2018-01-02 16:33 - 2018-01-02 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2018-01-02 16:33 - 2018-01-02 16:33 - 000000000 ____D C:\Program Files\QuickTime
2018-01-02 16:32 - 2018-01-02 16:32 - 000000000 ____D C:\ProgramData\TechSmith
2018-01-02 16:32 - 2018-01-02 16:32 - 000000000 ____D C:\Program Files\TechSmith
2018-01-02 16:32 - 2018-01-02 16:32 - 000000000 ____D C:\Program Files\Common Files\TechSmith Shared
2017-12-28 02:18 - 2017-12-28 02:18 - 000000000 ____D C:\Users\Dave\AppData\Local\VirtualDJ
2017-12-27 01:09 - 2017-12-27 01:09 - 000000066 _____ C:\Users\Dave\inittk.ini
2017-12-27 01:08 - 2017-12-27 01:08 - 000000045 _____ C:\Users\Dave\nuuid.ini
2017-12-27 01:08 - 2017-12-27 01:08 - 000000041 _____ C:\Users\Dave\inst.ini
2017-12-27 01:08 - 2017-12-27 01:08 - 000000000 ____D C:\Users\Dave\Nox_share
2017-12-27 01:07 - 2018-01-13 00:42 - 000000000 ____D C:\Users\Dave\vmlogs
2017-12-27 01:07 - 2018-01-13 00:42 - 000000000 ____D C:\Users\Dave\.BigNox
2017-12-27 01:07 - 2017-12-27 01:08 - 000000000 ____D C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Nox
2017-12-27 01:07 - 2017-12-27 01:07 - 000000937 _____ C:\Users\Dave\Desktop\Nox.lnk
2017-12-27 01:06 - 2017-12-27 01:07 - 000000000 ____D C:\Program Files\Bignox
2017-12-27 01:05 - 2018-01-13 00:44 - 000000000 ____D C:\Users\Dave\AppData\Local\Nox
2017-12-27 01:05 - 2017-12-27 01:05 - 000000000 ____D C:\Program Files\Nox
2017-12-27 00:42 - 2017-12-28 19:16 - 000000000 ___RD C:\Users\Dave\Creative Cloud Files
2017-12-27 00:42 - 2017-12-27 00:42 - 000000040 ____H C:\38F368E6C93D
2017-12-27 00:31 - 2017-12-28 19:40 - 000000000 ____D C:\ProgramData\Adobe
2017-12-27 00:30 - 2017-12-28 19:40 - 000000000 ____D C:\Program Files\Common Files\Adobe
2017-12-27 00:30 - 2017-12-28 19:40 - 000000000 ____D C:\Program Files\Adobe
2017-12-26 16:45 - 2017-12-26 23:26 - 000000000 ____D C:\Program Files\Beatpad
2017-12-26 16:44 - 2017-12-26 16:44 - 000000000 ____D C:\Users\Dave\AppData\Local\Downloaded Installations
2017-12-26 16:36 - 2017-12-26 16:36 - 000000450 _____ C:\Windows\system32\launchpd.dsk
2017-12-26 16:35 - 2017-12-26 23:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LaunchPad
2017-12-25 19:55 - 2017-12-25 19:55 - 000000000 ____D C:\Users\Dave\.cache
2017-12-25 02:55 - 2017-12-25 02:55 - 000000000 ____D C:\Users\Dave\AppData\Local\Keepvid
2017-12-25 02:55 - 2017-12-25 02:55 - 000000000 ____D C:\Users\Dave\AppData\Local\Aimersoft
2017-12-25 02:55 - 2017-12-25 02:55 - 000000000 ____D C:\ProgramData\Aimersoft
2017-12-25 02:55 - 2017-12-25 02:55 - 000000000 ____D C:\Program Files\Common Files\Aimersoft
2017-12-25 02:54 - 2017-12-25 02:54 - 000000000 ____D C:\ProgramData\KeepVid
2017-12-25 02:49 - 2017-12-25 02:55 - 000000000 ____D C:\Users\Public\Documents\Keepvid
2017-12-25 01:05 - 2017-12-25 01:23 - 000000000 ____D C:\Users\Dave\AppData\Roaming\BITS
2017-12-25 01:05 - 2017-12-25 01:05 - 000000025 _____ C:\Windows\emcore.INI
2017-12-25 01:05 - 2017-12-25 01:05 - 000000000 ____D C:\Users\Dave\AppData\Roaming\FlashgetSetup
2017-12-25 01:05 - 2017-12-25 01:05 - 000000000 ____D C:\Program Files\FlashGet Network
2017-12-25 00:32 - 2017-12-25 00:32 - 001129816 _____ (Google Inc.) C:\Users\Dave\Downloads\ChromeSetup.exe
2017-12-24 23:50 - 2018-01-11 03:57 - 000000000 ____D C:\Users\Dave\AppData\Roaming\SystemProcess
2017-12-24 23:47 - 2017-12-24 23:47 - 000000000 ___HD C:\$AV_ASW
2017-12-24 23:45 - 2017-12-24 23:45 - 008391467 _____ C:\Users\Dave\Downloads\AppNee.com.IDM.v6.30.B1.Portable.FR.7z
2017-12-24 23:41 - 2018-01-11 20:13 - 000000000 ____D C:\Users\Dave\AppData\Roaming\IDM
2017-12-24 23:41 - 2018-01-11 20:13 - 000000000 ____D C:\Program Files\Internet Download Manager
2017-12-24 23:41 - 2017-12-24 23:41 - 000000000 ____D C:\Users\Dave\Downloads\Video
2017-12-24 23:41 - 2017-12-24 23:41 - 000000000 ____D C:\Users\Dave\Downloads\Compressed
2017-12-23 21:03 - 2017-12-23 21:03 - 000305840 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-12-23 21:03 - 2017-12-23 21:02 - 000118144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2017-12-20 13:30 - 2017-12-20 13:30 - 000001978 _____ C:\Users\Public\Desktop\FL Studio 12.lnk

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-01-13 03:21 - 2016-10-11 16:37 - 000000000 ____D C:\Windows\system32\Macromed
2018-01-13 00:43 - 2016-12-15 02:28 - 000000000 ____D C:\Users\Dave\.android
2018-01-13 00:07 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-01-13 00:07 - 2009-07-14 05:34 - 000031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-01-12 20:00 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-01-12 19:59 - 2015-06-12 21:20 - 000000000 ____D C:\ProgramData\NVIDIA
2018-01-10 23:30 - 2016-11-21 23:16 - 000000000 ____D C:\Users\Dave\AppData\LocalLow\Mozilla
2018-01-10 20:12 - 2015-06-15 16:51 - 000390256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-01-10 20:12 - 2015-06-15 16:51 - 000123880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-01-09 15:53 - 2016-10-11 16:37 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2018-01-09 15:53 - 2016-10-11 16:37 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2018-01-09 12:42 - 2015-06-21 21:19 - 000000000 ____D C:\Users\Dave\AppData\Roaming\vlc
2018-01-08 21:08 - 2016-11-14 20:11 - 000000000 ____D C:\Users\Dave\Desktop\Nouveau dossier
2018-01-06 12:36 - 2015-06-15 16:53 - 000001028 _____ C:\Users\Public\Desktop\VLC media player.lnk
2018-01-06 12:32 - 2016-11-21 20:09 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-04 17:14 - 2016-12-10 07:35 - 000000000 ____D C:\Users\Dave\Desktop\Nouveau dossier (2)
2017-12-29 13:10 - 2015-06-11 15:31 - 000000000 ____D C:\Users\Dave
2017-12-28 19:40 - 2014-04-18 02:02 - 000000000 ____D C:\Temp
2017-12-28 19:39 - 2015-06-13 06:29 - 000000000 ____D C:\Users\Dave\AppData\Roaming\Adobe
2017-12-28 19:16 - 2015-06-12 19:42 - 000000000 ____D C:\Users\Dave\AppData\Local\Adobe
2017-12-27 01:07 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\registration
2017-12-27 00:33 - 2015-07-05 11:23 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-27 00:06 - 2015-07-04 20:15 - 000000000 ____D C:\Users\Dave\Desktop\--
2017-12-26 23:56 - 2016-10-15 15:18 - 000000000 ____D C:\Users\Dave\AppData\Local\Bluestacks
2017-12-26 23:51 - 2016-12-07 19:21 - 000000000 ____D C:\Program Files\Globalnet Connection Manager
2017-12-26 23:26 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
2017-12-24 23:50 - 2015-09-27 15:59 - 000002046 __RSH C:\ProgramData\ntuser.pol
2017-12-23 21:35 - 2009-07-14 03:37 - 000000000 __RHD C:\Users\Public\Libraries
2017-12-23 21:03 - 2017-11-16 15:19 - 000158224 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000783104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000294680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000151328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000099528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000070832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-12-23 21:03 - 2015-06-15 16:51 - 000042824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-12-23 21:02 - 2017-03-10 21:59 - 000276696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblogx.sys
2017-12-23 21:02 - 2017-03-10 21:59 - 000255584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriverx.sys
2017-12-23 21:02 - 2017-03-10 21:59 - 000157376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidshx.sys
2017-12-23 21:02 - 2017-03-10 21:59 - 000050344 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbunivx.sys
2017-12-20 20:10 - 2016-12-10 23:42 - 000000000 ____D C:\Users\Dave\AppData\Local\ElevatedDiagnostics
2017-12-20 13:36 - 2016-12-31 00:51 - 000000000 ____D C:\Program Files\Image-Line
2017-12-20 13:35 - 2016-12-31 01:01 - 000000000 ____D C:\Program Files\ASIO4ALL v2
2017-12-20 13:31 - 2016-12-31 01:00 - 000000000 ____D C:\Program Files\VstPlugins
2017-12-20 13:29 - 2016-12-31 00:59 - 000000000 ____D C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2017-12-19 23:26 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\system32\NDF

==================== Fichiers à la racine de certains dossiers =======

2017-09-18 21:05 - 2017-09-18 21:06 - 000001000 _____ () C:\Users\Dave\AppData\Roaming\downloads.json
2016-12-15 02:21 - 2016-11-23 14:37 - 000000570 _____ () C:\Users\Dave\AppData\Local\TroubleshooterConfig.json

Certains fichiers dans TEMP:
====================
2017-03-06 21:50 - 2017-03-06 21:50 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\0kvwj38g.dll
2017-01-23 13:56 - 2017-01-23 13:56 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\0sl_z6jt.dll
2017-04-23 12:52 - 2017-04-23 12:52 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\0ywe647-.dll
2017-02-12 01:00 - 2017-02-12 01:00 - 000005632 _____ () C:\Users\Dave\AppData\Local\Temp\1ningxqg.dll
2017-04-24 18:42 - 2017-04-24 18:42 - 000005632 _____ () C:\Users\Dave\AppData\Local\Temp\41drohhc.dll
2017-03-19 14:51 - 2017-03-19 14:51 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\47lrx11b.dll
2016-10-30 18:40 - 2016-10-30 18:40 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\4nehrwor.dll
2016-12-19 16:00 - 2016-12-19 16:00 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\5vx8wih2.dll
2016-11-28 13:46 - 2016-11-28 13:46 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\65ly57eo.dll
2016-11-06 09:34 - 2016-11-06 09:34 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\7akoam6e.dll
2017-04-02 19:02 - 2017-04-02 19:02 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\7irrlli6.dll
2017-01-29 12:23 - 2017-01-29 12:23 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\7trlzugk.dll
2017-04-23 18:39 - 2017-04-23 18:39 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\8ln4hzxx.dll
2016-11-15 18:22 - 2016-11-15 18:22 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\9g4y2waz.dll
2017-01-08 15:39 - 2017-01-08 15:39 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\9qjaral2.dll
2017-01-22 11:35 - 2017-01-22 11:35 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\9v5ev-18.dll
2016-11-13 10:05 - 2016-11-13 10:05 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\9vj43fam.dll
2017-12-26 23:31 - 2017-12-18 08:00 - 000999480 _____ (BlueStack Systems, Inc.) C:\Users\Dave\AppData\Local\Temp\BlueStacksClientUninstaller.exe
2016-12-15 02:02 - 2016-09-29 14:57 - 000966168 _____ (BlueStack Systems, Inc.) C:\Users\Dave\AppData\Local\Temp\BluestacksUninstaller.exe
2016-09-26 12:35 - 2016-09-26 12:35 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\bo-gtqdc.dll
2016-12-12 13:46 - 2016-12-12 13:46 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\bofq-eeb.dll
2017-02-19 23:06 - 2017-02-19 23:06 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\c3se9nde.dll
2016-10-02 18:13 - 2016-10-02 18:13 - 000005632 _____ () C:\Users\Dave\AppData\Local\Temp\cj1ghrnx.dll
2017-02-27 15:52 - 2017-02-27 15:52 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\dlttbzc6.dll
2016-10-13 20:05 - 2016-10-13 20:05 - 000008192 _____ () C:\Users\Dave\AppData\Local\Temp\e03dv-hk.dll
2016-12-11 09:54 - 2016-12-11 09:54 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\eahthvoi.dll
2017-09-24 20:29 - 2017-10-20 03:48 - 000000000 _____ () C:\Users\Dave\AppData\Local\Temp\ed6e8e8c4b588010c8f64663407c6196.dll
2016-10-24 15:50 - 2016-10-30 13:15 - 005484808 _____ (EagleGet ) C:\Users\Dave\AppData\Local\Temp\EGSetup.exe
2017-03-20 00:11 - 2017-03-20 00:11 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\esp1phdr.dll
2017-09-24 20:30 - 2017-10-20 03:02 - 000000088 _____ () C:\Users\Dave\AppData\Local\Temp\f2f1447aa8dacbdd467ff550c0c269d1.dll
2017-01-30 18:02 - 2017-01-30 18:02 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\f8vvkcsd.dll
2016-11-11 22:20 - 2016-11-11 22:20 - 000008192 _____ () C:\Users\Dave\AppData\Local\Temp\fgtfutys.dll
2016-10-03 14:25 - 2016-10-03 14:25 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\fixznvi-.dll
2017-02-05 12:10 - 2017-02-05 12:10 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\gin3vjwz.dll
2012-04-28 03:42 - 2012-04-28 03:42 - 000079488 _____ () C:\Users\Dave\AppData\Local\Temp\gtapi_signed.dll
2016-11-27 23:03 - 2016-11-27 23:03 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\h9--_jtw.dll
2016-12-15 02:02 - 2016-09-29 14:56 - 000187416 _____ (BlueStack Systems) C:\Users\Dave\AppData\Local\Temp\HD-LibraryHandler.dll
2016-12-15 02:02 - 2016-09-29 14:54 - 000246808 _____ (BlueStack Systems) C:\Users\Dave\AppData\Local\Temp\HD-Logger-Native.dll
2017-01-15 11:30 - 2017-01-15 11:30 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\hstndsd2.dll
2017-01-15 01:03 - 2017-01-15 01:03 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\ij2tow77.dll
2016-12-05 16:39 - 2016-12-05 16:39 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\iwy9vaj0.dll
2017-04-16 08:20 - 2017-04-16 08:20 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\jes2jr9l.dll
2016-10-02 09:49 - 2016-10-02 09:49 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\jgwhshp5.dll
2017-12-26 23:31 - 2017-12-18 07:59 - 000421400 _____ (CodeTitans) C:\Users\Dave\AppData\Local\Temp\JSON.dll
2017-01-09 19:50 - 2017-01-09 19:50 - 000005632 _____ () C:\Users\Dave\AppData\Local\Temp\khextfmw.dll
2016-09-19 13:21 - 2016-09-19 13:21 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\kmie2pw5.dll
2016-11-06 21:44 - 2016-11-06 21:44 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\kumlwxl5.dll
2016-12-04 23:26 - 2016-12-04 23:26 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\kxyvn8hk.dll
2017-02-13 19:36 - 2017-02-13 19:36 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\l2dlocc9.dll
2016-12-15 01:59 - 2016-12-15 01:59 - 000023040 _____ () C:\Users\Dave\AppData\Local\Temp\LZMA.DLL
2016-11-13 02:40 - 2016-11-13 02:40 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\mmuncanl.dll
2016-12-25 14:27 - 2016-12-25 14:27 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\mn_xbuic.dll
2017-03-13 12:03 - 2017-03-13 12:03 - 000004608 _____ () C:\Users\Dave\AppData\Local\Temp\nmuplkwl.dll
2016-11-11 22:19 - 2016-11-11 22:19 - 000008192 _____ () C:\Users\Dave\AppData\Local\Temp\noce8eh7.dll
2017-03-27 23:33 - 2017-03-27 23:33 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\ogbmhf5q.dll
2017-04-10 18:10 - 2017-04-10 18:10 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\ohuw0ikf.dll
2006-10-28 01:58 - 2006-10-28 01:58 - 000145184 ____R (Microsoft Corporation) C:\Users\Dave\AppData\Local\Temp\ose00000.exe
2017-02-12 22:24 - 2017-02-12 22:24 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\pcxcwqbt.dll
2017-02-12 14:17 - 2017-02-12 14:17 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\qfzc13bg.dll
2016-10-23 22:30 - 2016-10-23 22:30 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\qibyoo-z.dll
2017-02-20 15:47 - 2017-02-20 15:47 - 000004608 _____ () C:\Users\Dave\AppData\Local\Temp\rqecaohf.dll
2017-03-26 18:38 - 2017-03-26 18:38 - 000004608 _____ () C:\Users\Dave\AppData\Local\Temp\ruuopioh.dll
2016-12-15 03:00 - 2016-12-15 03:00 - 000053248 _____ () C:\Users\Dave\AppData\Local\Temp\rvy5qclg.dll
2016-10-24 18:41 - 2016-10-24 18:41 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\sk4scdhx.dll
2016-12-11 19:19 - 2016-12-11 19:19 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\tcrkyxlr.dll
2016-10-30 09:10 - 2016-10-30 09:10 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\tj8guocm.dll
2017-01-22 19:24 - 2017-01-22 19:24 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\ulqnifih.dll
2015-09-13 00:01 - 2015-09-13 00:01 - 028358256 _____ (Popcorn Official) C:\Users\Dave\AppData\Local\Temp\update.exe
2016-12-15 01:59 - 2016-12-15 02:26 - 000245248 _____ (NEEMedia) C:\Users\Dave\AppData\Local\Temp\USkinDLL.dll
2016-10-31 17:28 - 2016-10-31 17:28 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\v6eaea5k.dll
2016-11-13 17:15 - 2016-11-13 17:15 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\vagh5hl9.dll
2017-03-23 15:11 - 2017-03-23 15:11 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\vfx7lpiw.dll
2017-10-28 12:55 - 2017-10-28 12:57 - 030950664 _____ () C:\Users\Dave\AppData\Local\Temp\vlc-2.2.6-win32.exe
2017-01-01 14:00 - 2017-01-01 14:00 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\vnsrwfdz.dll
2016-11-27 13:40 - 2016-11-27 13:40 - 000005632 _____ () C:\Users\Dave\AppData\Local\Temp\vvzn7dwo.dll
2017-03-05 12:35 - 2017-03-05 12:35 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\vxxgnszj.dll
2016-10-03 20:05 - 2016-10-03 20:05 - 000008192 _____ () C:\Users\Dave\AppData\Local\Temp\wzqdzxil.dll
2016-10-23 15:04 - 2016-10-23 15:04 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\xbpx2eh-.dll
2016-11-21 14:51 - 2016-11-21 14:51 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\xuojypg8.dll
2016-10-10 21:11 - 2016-10-10 21:11 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\y76fsqf2.dll
2017-02-06 17:27 - 2017-02-06 17:27 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\ytkhvjmj.dll
2016-12-18 14:28 - 2016-12-18 14:28 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\zc6yycbn.dll
2017-01-02 20:20 - 2017-01-02 20:20 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\zcplzkty.dll
2016-11-07 12:37 - 2016-11-07 12:37 - 000003584 _____ () C:\Users\Dave\AppData\Local\Temp\zpdprlic.dll

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2018-01-08 04:53

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité