cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 25.04.2018
Exécuté par Clément (administrateur) sur SNEAZ (28-04-2018 21:32:58)
Exécuté depuis C:\Users\Clément\Desktop
Profils chargés: Clément (Profils disponibles: Clément)
Platform: Windows 8.1 (Update) (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
() C:\Program Files (x86)\Droid4X\Droid4XService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MemuService.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(AMD) C:\Windows\System32\atieclxx.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
() C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\System Setting\TssSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
() C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(Farbar) C:\Users\Clément\Desktop\FRST64 (1).exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [392168 2016-07-28] ()
HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe"
HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe"
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-01-20] (Realtek Semiconductor)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-04-17] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-14] (TOSHIBA Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297272 2017-12-11] (Apple Inc.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-24] (TOSHIBA)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3820440 2016-04-21] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\Run: [Chromium] => "c:\users\clément\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-14] (Valve Corporation)
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [160824 2017-05-24] (BlueStack Systems, Inc.)
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\Run: [CyberGhost] => "C:\Program Files\CyberGhost 5\CyberGhost.exe" /autostart /min
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\Run: [WTAnalytics.exe] => C:\Users\Clément\AppData\Roaming\LibreOffice\4\user\config\soffice.cfg\modules\scalc\images\WTAnalytics.exe [263168 2016-02-12] ()
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\RunOnce: [Application Restart #5] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated)
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\MountPoints2: {b3fa63e7-edca-11e4-828b-3010b3a89b57} - "F:\setup.exe"
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\MountPoints2: {b3fa66b0-edca-11e4-828b-3010b3a89b57} - "F:\setup.exe"
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\...\MountPoints2: {d0838b32-ecb9-11e6-82b8-3010b3a89b57} - "E:\HTC_Sync_Manager_PC.exe"
AppInit_DLLs-x32: C:/PROGRA~3/{73BA9~1/171~1.0/nese.dll => Pas de fichier
Startup: C:\Users\Clément\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\behaiuct.lnk [2018-04-28]
ShortcutTarget: behaiuct.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Startup: C:\Users\Clément\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rbedifrg.lnk [2018-04-28]
ShortcutTarget: rbedifrg.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
GroupPolicy: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: 127.0.0.1 localhost
Tcpip\Parameters: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{BEA30FBE-6E5A-45F0-ADD6-68094B163502}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{F7D2200E-95B3-4B28-97D2-931418102573}: [DhcpNameServer] 172.20.10.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2509020469-4088616332-3940483544-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2509020469-4088616332-3940483544-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-09-20] (Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [Pas de fichier]
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [Pas de fichier]
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-12] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-09-20] (Adobe Systems)

Chrome:
=======
CHR res: infecté resources.pak (Adware script). Réinstallez Chrome. <==== ATTENTION
CHR DefaultProfile: Profile 1
CHR StartupUrls: Profile 1 -> "hxxps://www.google.fr/"
CHR Profile: C:\Users\Clément\AppData\Local\Google\Chrome\User Data\Profile 1 [2018-04-28]
CHR Extension: (AdBlock) - C:\Users\Clément\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-04-20]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Clément\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
CHR Extension: (Chrome Media Router) - C:\Users\Clément\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-25]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 --; C:\Users\Clément\AppData\Local\Temp\s2s.exe [6106382 2018-04-27] () [Fichier non signé] <==== ATTENTION
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-11-27] (Apple Inc.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3647384 2016-04-21] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [336152 2016-04-21] (AVG Technologies CZ, s.r.o.)
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2014-10-07] (Broadcom Corporation.)
S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [387128 2017-05-24] (BlueStack Systems, Inc.)
S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [369720 2017-05-24] (BlueStack Systems, Inc.)
S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [406584 2017-05-24] (BlueStack Systems, Inc.)
R2 Droid4XService; C:\Program Files (x86)\Droid4X\Droid4XService.exe [279552 2016-06-13] () [Fichier non signé]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21328 2014-02-24] ()
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [354280 2016-07-28] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-10] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
R2 MEmusvc; C:\Program Files\Microvirt\MEmu\MemuService.exe [269480 2017-05-26] (Microvirt Software Technology Co. Ltd.)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [120392 2015-11-17] (Toshiba Europe GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
S3 McComponentHostService; "C:\Program Files\McAfee Security Scan\3.11.226\McCHSvc.exe" [X]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21152 2015-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [315312 2015-12-16] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [299440 2016-01-13] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [296368 2015-12-16] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255920 2016-01-22] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-10-07] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7633624 2015-04-01] (Broadcom Corporation)
S3 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [152672 2017-05-24] (BlueStack Systems)
S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2017-05-22] (Bluestack System Inc. )
S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30352 2015-04-29] (Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77432 2017-11-29] ()
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [193968 2018-04-28] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\DRIVERS\farflt.sys [110016 2018-04-28] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [46008 2018-04-28] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2018-04-28] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [94144 2018-04-28] (Malwarebytes)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260368 2015-11-02] (Microvirt Corporation)
S3 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [293592 2014-02-11] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-11] (Windows (R) Win 7 DDK provider)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2017-03-05] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 xb1usb; C:\Windows\System32\drivers\xb1usb.sys [42760 2016-02-23] (Microsoft Corporation)
S1 butldsk; \SystemRoot\System32\drivers\butldsk.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-04-28 21:32 - 2018-04-28 21:33 - 000023761 _____ C:\Users\Clément\Desktop\FRST.txt
2018-04-28 21:32 - 2018-04-28 21:32 - 002405888 _____ (Farbar) C:\Users\Clément\Desktop\FRST64 (1).exe
2018-04-28 21:30 - 2018-04-28 21:32 - 000468815 _____ C:\Users\Clément\Desktop\Non confirmé 192826.crdownload
2018-04-28 17:29 - 2018-04-28 17:29 - 003080576 _____ C:\Users\Clément\Downloads\ZHPDiag3 (1).exe
2018-04-28 17:29 - 2018-04-28 17:29 - 003080576 _____ C:\Users\Clément\Desktop\ZHPDiag3 (1).exe
2018-04-28 17:17 - 2018-04-28 17:17 - 000002345 _____ C:\Users\Clément\Desktop\AdwCleaner[C00].txt
2018-04-28 17:15 - 2018-04-28 17:15 - 000000401 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2018-04-28 16:34 - 2018-04-28 16:35 - 000005809 _____ C:\Users\Clément\Desktop\ZHPCleaner.txt
2018-04-28 15:54 - 2018-04-28 15:54 - 007256272 _____ (Malwarebytes) C:\Users\Clément\Desktop\adwcleaner_7.1.0.0.exe
2018-04-28 15:54 - 2018-04-28 15:54 - 000000887 _____ C:\Users\Clément\Desktop\ZHPCleaner.lnk
2018-04-28 15:53 - 2018-04-28 15:54 - 007256272 _____ (Malwarebytes) C:\Users\Clément\Downloads\adwcleaner_7.1.0.0.exe
2018-04-28 15:52 - 2018-04-28 15:52 - 003141504 _____ C:\Users\Clément\Downloads\ZHPCleaner.exe
2018-04-28 15:52 - 2018-04-28 15:52 - 003141504 _____ C:\Users\Clément\Desktop\ZHPCleaner.exe
2018-04-28 14:03 - 2018-04-28 17:37 - 000231538 _____ C:\Users\Clément\Desktop\ZHPDiag.txt
2018-04-28 13:54 - 2018-04-28 17:37 - 000000000 ____D C:\Users\Clément\AppData\Roaming\ZHP
2018-04-28 13:54 - 2018-04-28 17:29 - 000000877 _____ C:\Users\Clément\Desktop\ZHPDiag.lnk
2018-04-28 13:54 - 2018-04-28 15:54 - 000000000 ____D C:\Users\Clément\AppData\Local\ZHP
2018-04-28 13:53 - 2018-04-28 13:53 - 003080576 _____ C:\Users\Clément\Downloads\ZHPDiag3.exe
2018-04-28 13:53 - 2018-04-28 13:53 - 003080576 _____ C:\Users\Clément\Desktop\ZHPDiag3.exe
2018-04-28 13:47 - 2018-04-28 17:15 - 000000000 __SHD C:\Users\Clément\IntelGraphicsProfiles
2018-04-28 13:47 - 2018-04-28 13:47 - 000000000 ____D C:\Users\Clément\Desktop\Frst
2018-04-28 13:33 - 2018-04-28 21:32 - 000000000 ____D C:\FRST
2018-04-28 13:32 - 2018-04-28 13:31 - 002405888 _____ (Farbar) C:\Users\Clément\Desktop\FRST64.exe
2018-04-28 13:31 - 2018-04-28 13:31 - 002405888 _____ (Farbar) C:\Users\Clément\Downloads\FRST64.exe
2018-04-28 12:35 - 2018-03-24 17:57 - 001101824 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2018-04-28 12:35 - 2018-03-24 17:40 - 001171456 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2018-04-28 12:35 - 2018-03-24 17:34 - 000856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2018-04-28 12:35 - 2018-03-24 17:22 - 001086976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2018-04-28 12:35 - 2018-03-24 16:56 - 007033344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2018-04-28 12:35 - 2018-03-24 16:54 - 006214144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2018-04-28 12:35 - 2018-03-16 00:29 - 000136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2018-04-28 12:35 - 2018-03-10 22:55 - 000137968 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2018-04-28 12:35 - 2018-03-10 22:46 - 000178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-04-28 12:35 - 2018-03-10 21:04 - 000120376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2018-04-28 12:35 - 2018-03-10 19:51 - 000685568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2018-04-28 12:35 - 2018-03-10 19:47 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2018-04-28 12:35 - 2018-03-10 19:47 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2018-04-28 12:35 - 2018-03-10 19:43 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2018-04-28 12:35 - 2018-03-10 19:21 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2018-04-28 12:35 - 2018-03-10 19:01 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2018-04-28 12:35 - 2018-03-10 18:51 - 001436672 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-04-28 12:35 - 2018-03-10 18:46 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2018-04-28 12:35 - 2018-03-10 18:44 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-04-28 12:35 - 2018-03-10 18:35 - 000696832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2018-04-28 12:35 - 2018-03-10 18:35 - 000359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2018-04-28 12:35 - 2018-03-10 18:33 - 003717632 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2018-04-28 12:35 - 2018-03-10 18:22 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2018-04-28 12:35 - 2018-03-10 18:21 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2018-04-28 12:35 - 2018-03-10 18:21 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2018-04-28 12:35 - 2018-03-10 18:20 - 000124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2018-04-28 12:35 - 2018-03-10 18:18 - 000726528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2018-04-28 12:35 - 2018-03-10 18:18 - 000409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2018-04-28 12:35 - 2018-03-10 18:18 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2018-04-28 12:35 - 2018-03-10 18:18 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2018-04-28 12:35 - 2018-03-10 18:17 - 002240512 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2018-04-28 12:35 - 2018-03-10 18:17 - 000897024 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2018-04-28 12:35 - 2018-03-09 20:57 - 000276816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2018-04-28 12:35 - 2018-03-03 18:24 - 001725952 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2018-04-28 12:35 - 2018-03-03 18:18 - 000894976 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2018-04-28 12:35 - 2018-03-03 18:18 - 000322048 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2018-04-28 12:35 - 2018-03-03 18:15 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2018-04-28 12:35 - 2018-03-03 18:04 - 000741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2018-04-28 12:35 - 2018-03-03 18:04 - 000265728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2018-04-28 12:35 - 2018-02-14 23:45 - 001308336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2018-04-28 12:35 - 2018-02-14 16:47 - 000747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2018-04-28 12:35 - 2018-01-12 21:17 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-04-28 12:12 - 2018-04-28 13:03 - 000000000 ____D C:\Users\Clément\Desktop\transféré
2018-04-28 12:12 - 2014-11-17 22:17 - 000672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2018-04-28 12:12 - 2014-11-15 21:05 - 000801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2018-04-28 12:12 - 2014-11-15 08:29 - 000962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2018-04-28 12:12 - 2014-11-14 08:57 - 001027584 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2018-04-28 12:12 - 2014-11-14 08:54 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2018-04-28 12:12 - 2014-11-14 07:03 - 000885760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2018-04-28 12:12 - 2014-11-08 04:03 - 000733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2018-04-28 12:12 - 2014-11-08 03:58 - 004837376 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2018-04-28 12:12 - 2014-11-08 03:49 - 001154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2018-04-28 12:12 - 2014-11-05 04:12 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2018-04-28 12:12 - 2014-11-05 04:12 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2018-04-28 12:12 - 2014-11-05 04:06 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2018-04-28 12:12 - 2014-11-05 03:39 - 000155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2018-04-28 12:12 - 2014-11-05 03:39 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2018-04-28 12:12 - 2014-11-05 03:33 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2018-04-28 12:12 - 2014-11-05 03:14 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2018-04-28 12:12 - 2014-11-04 21:33 - 000058176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2018-04-28 12:12 - 2014-10-21 03:59 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2018-04-28 12:12 - 2014-10-21 03:19 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2018-04-28 12:12 - 2014-10-21 02:50 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2018-04-28 12:12 - 2014-10-21 02:31 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2018-04-28 12:12 - 2014-10-21 02:31 - 000055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2018-04-28 12:12 - 2014-10-21 02:20 - 001142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2018-04-28 12:12 - 2014-10-17 06:56 - 000039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2018-04-28 12:09 - 2015-06-10 00:39 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2018-04-28 12:09 - 2015-06-10 00:39 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2018-04-28 12:09 - 2015-06-10 00:38 - 001201664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2018-04-28 11:25 - 2018-04-28 11:25 - 000000000 ____D C:\Windows\pss
2018-04-28 00:59 - 2018-04-28 16:59 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2018-04-27 21:46 - 2018-04-28 18:17 - 000094144 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2018-04-27 21:46 - 2018-04-28 16:59 - 000253880 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-04-27 21:46 - 2018-04-28 16:59 - 000046008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2018-04-27 21:46 - 2018-04-28 11:27 - 000193968 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2018-04-27 21:46 - 2018-04-28 00:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-04-27 21:46 - 2018-04-27 21:46 - 000001854 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-04-27 21:46 - 2017-11-29 09:11 - 000077432 _____ C:\Windows\system32\Drivers\mbae64.sys
2018-04-27 21:45 - 2018-04-27 21:45 - 000000000 ____D C:\ProgramData\MB2Migration
2018-04-27 21:45 - 2018-04-27 21:45 - 000000000 ____D C:\Program Files\Malwarebytes
2018-04-27 21:32 - 2018-04-27 21:32 - 000002246 _____ C:\Users\Clément\Desktop\Google Chrome.lnk
2018-04-27 14:25 - 2018-04-27 14:25 - 000003598 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 4291967195
2018-04-27 12:13 - 2018-04-27 12:13 - 001370263 _____ C:\Users\Clément\Downloads\Séances Déclic Pecs - Nico Dalam (1).pdf
2018-04-27 12:13 - 2018-04-27 12:13 - 000947527 _____ C:\Users\Clément\Downloads\Séance Haut de Pectoraux - Nico Dalam (1).pdf
2018-04-27 10:50 - 2018-04-28 00:41 - 000000000 ____D C:\Windows\Minidump
2018-04-27 10:50 - 2018-04-27 10:50 - 640515570 _____ C:\Windows\MEMORY.DMP
2018-04-27 10:50 - 2018-04-27 10:50 - 000280240 _____ C:\Windows\Minidump\042718-79015-01.dmp
2018-04-27 10:31 - 2018-04-27 10:31 - 000003710 _____ C:\Windows\System32\Tasks\WindowsRecoveryCleaner
2018-04-27 10:29 - 2018-04-27 22:00 - 000000000 ____D C:\Users\Clément\AppData\Local\Optimizer
2018-04-27 10:29 - 2018-04-27 10:29 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
2018-04-27 10:28 - 2018-04-28 00:43 - 000000000 ____D C:\Program Files (x86)\Memeam
2018-04-27 10:28 - 2018-04-28 00:41 - 000000000 ____D C:\Windows\Downloaded Installations
2018-04-27 10:28 - 2018-04-27 10:52 - 000003598 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 2796787680
2018-04-27 10:28 - 2018-04-27 10:28 - 001433124 _____ (Igor Pavlov) C:\Users\Clément\AppData\Roaming\7ZIPUnpck.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000003604 _____ C:\Windows\System32\Tasks\{C6CC7827-8A98-53BF-298D-048B1BD0AF39}
2018-04-27 10:28 - 2018-04-27 10:28 - 000003426 _____ C:\Windows\System32\Tasks\{6C6C5DEF-FDD7-B3FA-30AC-63EFD7976F14}
2018-04-27 10:28 - 2018-04-27 10:28 - 000000003 _____ C:\Users\Clément\AppData\Local\wbem.ini
2018-04-27 10:06 - 2018-04-27 10:06 - 000184568 _____ C:\Users\Clément\Downloads\Contrôle Continu Missions, acteurs et innovations dans le domaine de lintervention-inclusion dans le système éducatif français - C. ROCHEBLAVE.pdf
2018-04-26 13:33 - 2018-04-26 13:33 - 000370804 _____ C:\Users\Clément\Downloads\M1 M3I2S - UE Modelisation Semestre 2 Session 2 - G. Escalie.pdf
2018-04-25 22:53 - 2018-04-25 22:53 - 001774724 _____ C:\Users\Clément\Downloads\Sport-et-poscolonialisme.pdf
2018-04-25 22:53 - 2018-04-25 22:53 - 000223447 _____ C:\Users\Clément\Downloads\Loudcher.pdf
2018-04-25 22:53 - 2018-04-25 22:53 - 000035918 _____ C:\Users\Clément\Downloads\modélisation-1.pdf
2018-04-25 11:50 - 2018-04-25 11:50 - 000203457 _____ C:\Users\Clément\Downloads\Awesome workflow layout, process, annual report, business slide in Microsoft Office PowerPoint (PPT).pptx
2018-04-25 10:01 - 2018-04-25 10:01 - 000425861 _____ C:\Users\Clément\Downloads\PowerPoint Animation Tutorial Infographic Slide by PowerPoint School.zip
2018-04-24 22:37 - 2018-04-25 18:41 - 000098986 _____ C:\Users\Clément\Downloads\Diapo.pptx
2018-04-24 22:30 - 2018-04-24 22:30 - 000030944 _____ C:\Users\Clément\Downloads\Red.Curtain.pptx
2018-04-24 21:04 - 2018-04-24 21:04 - 000359752 _____ C:\Users\Clément\Downloads\Consignes-CC-M1-M3I2S-semestre-2-1-au-6-avril-2018.pdf
2018-04-24 20:17 - 2018-04-24 20:17 - 000095591 _____ C:\Users\Clément\Downloads\PLANNING ORDRE DE PASSAGE INCLUSION ORAL 26 AVRIL - Moédélisations et conceptions dans le domaine de linclusion (1).pdf
2018-04-24 19:56 - 2018-04-24 19:56 - 000399992 _____ C:\Users\Clément\Downloads\UE-Modélisations-et-conception-dans-le-domaine-de-lintervention.pdf
2018-04-24 08:18 - 2018-04-24 08:18 - 000375828 _____ C:\Users\Clément\Documents\etnh.pdf
2018-04-23 19:25 - 2018-04-23 19:25 - 000696369 _____ C:\Users\Clément\Downloads\RELI_022_0091 (1).pdf
2018-04-23 18:11 - 2018-04-23 18:11 - 000120494 _____ C:\Users\Clément\Downloads\Handicap.pdf
2018-04-23 13:27 - 2018-04-23 13:27 - 003093090 _____ C:\Users\Clément\Downloads\Dossier_synthese_inegalites-CNESCO-2016.pdf
2018-04-22 00:14 - 2018-04-28 00:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movavi Photo Editor 5
2018-04-22 00:14 - 2018-04-22 00:14 - 000000901 _____ C:\Users\Public\Desktop\Movavi Photo Editor 5.lnk
2018-04-22 00:13 - 2018-04-28 00:43 - 000000000 ____D C:\Program Files\Movavi Photo Editor 5
2018-04-22 00:11 - 2018-04-22 00:12 - 062858080 _____ (Movavi) C:\Users\Clément\Downloads\MovaviPhotoEditorSetupC (1).exe
2018-04-20 22:21 - 2018-04-20 22:21 - 001638408 _____ C:\Users\Clément\Downloads\ES_033_0185.pdf
2018-04-19 15:05 - 2018-04-19 15:05 - 001398363 _____ C:\Users\Clément\Downloads\Guide Élèves à besoins éducatifs particuliers, édition 2017, Onisep Aix-Marseille.pdf
2018-04-18 22:01 - 2018-04-18 22:01 - 000179313 _____ C:\Users\Clément\Downloads\UE-ethoculturelle.pdf
2018-04-18 12:41 - 2018-04-18 12:41 - 001304253 _____ C:\Users\Clément\Downloads\Séances Déclic Jambes - Nico Dalam (1).pdf
2018-04-17 10:36 - 2018-04-17 10:36 - 000001096 _____ C:\Users\Clément\Downloads\URLLink.acsm
2018-04-17 10:06 - 2018-04-17 10:06 - 000224897 _____ C:\Users\Clément\Downloads\De-la-politique-de-la-reconnaissance-au-pluralisme-libéral.pdf
2018-04-16 17:23 - 2018-04-16 17:23 - 000696366 _____ C:\Users\Clément\Downloads\RELI_022_0091.pdf
2018-04-16 16:27 - 2018-04-16 16:27 - 000391359 _____ C:\Users\Clément\Downloads\École-et-ethnicité-en-France-_-pour-une-approche-systémique-contextualisée.pdf
2018-04-16 16:27 - 2018-04-16 16:27 - 000152745 _____ C:\Users\Clément\Downloads\Le-coeur-de-Banlieu.pdf
2018-04-11 20:18 - 2018-03-23 15:50 - 004168704 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2018-04-11 20:18 - 2018-03-23 01:00 - 025742336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-04-11 20:18 - 2018-03-22 23:26 - 020287488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2018-04-11 20:18 - 2018-03-22 23:17 - 000578048 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2018-04-11 20:18 - 2018-03-22 23:15 - 005780480 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2018-04-11 20:18 - 2018-03-22 23:06 - 000794112 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2018-04-11 20:18 - 2018-03-22 22:52 - 000499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2018-04-11 20:18 - 2018-03-22 22:42 - 000661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2018-04-11 20:18 - 2018-03-22 22:37 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2018-04-11 20:18 - 2018-03-22 22:29 - 015282688 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2018-04-11 20:18 - 2018-03-22 22:29 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2018-04-11 20:18 - 2018-03-22 22:29 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2018-04-11 20:18 - 2018-03-22 22:29 - 000381440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-04-11 20:18 - 2018-03-22 22:27 - 002135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2018-04-11 20:18 - 2018-03-22 22:21 - 004496896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2018-04-11 20:18 - 2018-03-22 22:20 - 013680128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2018-04-11 20:18 - 2018-03-22 22:20 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2018-04-11 20:18 - 2018-03-22 22:15 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-04-11 20:18 - 2018-03-22 22:15 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2018-04-11 20:18 - 2018-03-22 22:15 - 000333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2018-04-11 20:18 - 2018-03-22 22:14 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2018-04-11 20:18 - 2018-03-22 22:04 - 001545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-04-11 20:18 - 2018-03-22 21:55 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2018-04-11 20:18 - 2018-03-22 21:53 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2018-04-11 20:18 - 2018-03-22 21:52 - 001313792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2018-04-11 20:18 - 2018-03-22 21:51 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2018-04-11 20:18 - 2018-03-10 19:50 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2018-04-11 20:18 - 2018-03-10 02:16 - 001549136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2018-04-11 20:18 - 2018-03-10 02:16 - 000388440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2018-04-11 20:18 - 2018-03-09 23:20 - 007405392 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-04-11 20:18 - 2018-03-09 23:20 - 001737592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2018-04-11 20:18 - 2018-03-09 23:20 - 001676056 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2018-04-11 20:18 - 2018-03-09 23:20 - 001536112 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-04-11 20:18 - 2018-03-09 23:20 - 001500424 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2018-04-11 20:18 - 2018-03-09 23:20 - 001371344 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2018-04-11 20:18 - 2018-03-09 23:20 - 000418640 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2018-04-11 20:18 - 2018-03-09 21:59 - 000121168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2018-04-11 20:18 - 2018-03-09 16:52 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2018-04-11 20:18 - 2018-03-09 16:52 - 000113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2018-04-11 20:18 - 2018-03-09 16:52 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2018-04-11 20:18 - 2018-03-09 16:52 - 000078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2018-04-11 20:18 - 2018-03-08 20:15 - 000005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2018-04-11 20:18 - 2018-03-08 20:14 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2018-04-11 20:18 - 2018-03-08 16:21 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2018-04-11 20:18 - 2018-03-08 01:46 - 000202576 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2018-04-11 20:18 - 2018-03-08 01:42 - 000174928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2018-04-11 20:18 - 2018-03-07 21:28 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2018-04-11 20:18 - 2018-03-07 20:26 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2018-04-11 20:18 - 2018-03-03 19:44 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2018-04-11 20:18 - 2018-03-03 19:04 - 000252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2018-04-11 20:18 - 2018-02-10 03:29 - 000531632 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2018-04-11 20:18 - 2018-02-10 03:25 - 001137872 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-04-11 20:18 - 2018-02-09 19:21 - 000862208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2018-04-11 20:18 - 2018-02-08 20:53 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2018-04-11 20:18 - 2018-02-08 20:22 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2018-04-11 20:18 - 2018-02-08 20:18 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2018-04-11 20:18 - 2018-02-08 20:03 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2018-04-11 20:18 - 2018-02-08 19:49 - 000289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2018-04-11 20:18 - 2018-02-08 19:42 - 001001984 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2018-04-11 20:18 - 2018-02-08 19:42 - 000192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2018-04-11 20:18 - 2018-02-08 19:40 - 001096192 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2018-04-11 20:18 - 2018-02-08 19:38 - 000866304 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2018-04-11 20:18 - 2018-02-08 19:27 - 000367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2018-04-11 20:18 - 2018-02-08 19:24 - 000199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2018-04-11 20:18 - 2018-02-08 19:03 - 000664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2018-04-11 20:18 - 2018-02-08 19:03 - 000167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2018-04-11 20:18 - 2018-01-25 16:19 - 000995272 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2018-04-11 20:18 - 2018-01-25 16:14 - 000922944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 001559552 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000739840 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000656384 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000599552 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000450048 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000414720 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-04-11 20:03 - 2018-03-14 15:23 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-04-11 20:02 - 2018-03-16 20:51 - 000144000 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-04-11 20:02 - 2018-03-14 15:23 - 001993728 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-04-09 00:05 - 2018-04-09 00:05 - 000034304 _____ C:\Users\Clément\Downloads\Présence ANIMS Vac de Paques.xls
2018-04-08 11:41 - 2018-04-08 11:41 - 001304253 _____ C:\Users\Clément\Downloads\Séances Déclic Jambes - Nico Dalam.pdf
2018-04-08 11:39 - 2018-04-08 11:39 - 000832461 _____ C:\Users\Clément\Downloads\Séances Déclic Abdos - Nico Dalam.pdf
2018-04-07 21:16 - 2018-04-07 21:16 - 000359752 _____ C:\Users\Clément\Downloads\Consignes CC M1 M3I2S - semestre 2-1 au 6 avril 2018.pdf
2018-04-07 20:18 - 2018-04-28 15:48 - 000231424 ___SH C:\Users\Clément\Desktop\Thumbs.db
2018-04-06 14:44 - 2018-04-06 14:54 - 731897856 _____ C:\Users\Clément\Downloads\Les##Amours%&Imaginaires&%French%éDvdRip%.avi
2018-04-06 14:14 - 2018-04-06 14:31 - 733913494 _____ C:\Users\Clément\Downloads\J'ai.tué.ma.mère.French.DVDRIP.avi
2018-04-05 21:15 - 2018-04-05 21:15 - 001554688 _____ C:\Users\Clément\Downloads\gpupec.zip
2018-04-05 21:13 - 2018-04-05 21:13 - 000155175 _____ C:\Users\Clément\Downloads\PeopsCdr104.zip
2018-04-05 20:49 - 2018-04-05 20:49 - 002064627 _____ C:\Users\Clément\Downloads\gsdx_1.0.1.9_(20160105)_windows.zip
2018-04-05 20:46 - 2018-04-05 20:46 - 000175318 _____ C:\Users\Clément\Downloads\gpupeteogl209 (1).zip
2018-04-05 20:30 - 2018-04-05 20:30 - 000091627 _____ C:\Users\Clément\Downloads\gpupec.dll_epsxe_2.0_windows.zip
2018-04-05 20:28 - 2018-04-28 00:41 - 000000000 ____D C:\Users\Clément\Desktop\espx
2018-04-05 20:27 - 2018-04-05 20:27 - 001381554 _____ C:\Users\Clément\Downloads\epsxe-2-0-5.zip
2018-04-05 19:03 - 2018-04-05 19:03 - 000091627 _____ C:\Users\Clément\Downloads\gpupec dll epsxe v20.zip
2018-04-05 18:32 - 2018-04-28 00:43 - 000000000 ____D C:\Program Files (x86)\psx emulation cheater
2018-04-05 18:32 - 2018-04-05 20:35 - 000001988 _____ C:\Users\Clément\Desktop\psx emulation cheater.lnk
2018-04-05 18:26 - 2018-04-05 18:26 - 000551301 _____ C:\Users\Clément\Downloads\PSX_Bios.rar
2018-04-05 18:23 - 2018-04-05 18:23 - 002034208 _____ C:\Users\Clément\Downloads\Plugins_PSX.rar
2018-04-05 18:19 - 2018-04-05 18:19 - 000000000 ____D C:\Users\Clément\Downloads\ePSXe202-1
2018-04-05 18:18 - 2018-04-05 18:18 - 001307547 _____ C:\Users\Clément\Downloads\ePSXe202-1.zip
2018-04-05 18:00 - 2018-04-05 18:00 - 001265215 _____ C:\Users\Clément\Downloads\ePSXe200.zip
2018-04-05 18:00 - 2018-04-05 18:00 - 000000000 ____D C:\Users\Clément\AppData\Roaming\fltk.org
2018-04-05 17:59 - 2018-04-05 17:59 - 154415677 _____ C:\Users\Clément\Desktop\Digimon World (E) [SLES-02914].7z
2018-04-05 17:59 - 2018-04-05 17:59 - 001336832 _____ () C:\Users\Clément\Downloads\pecsetup-1768.exe
2018-04-05 17:58 - 2018-04-05 17:59 - 009254219 _____ C:\Users\Clément\Downloads\epsxe160_full.7z
2018-04-05 17:56 - 2018-04-05 17:59 - 154415677 _____ C:\Users\Clément\Downloads\Digimon World (E) [SLES-02914].7z
2018-04-05 17:56 - 2018-04-05 17:56 - 000169473 _____ C:\Users\Clément\Downloads\Pcsx-1.5-218.zip
2018-04-05 17:49 - 2018-04-05 17:49 - 000175318 _____ C:\Users\Clément\Downloads\gpupeteogl209.zip
2018-04-05 17:16 - 2018-04-28 00:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RomStation
2018-04-05 17:16 - 2018-04-05 17:16 - 000000649 _____ C:\Users\Public\Desktop\RomStation.lnk
2018-04-05 17:14 - 2018-04-28 00:43 - 000000000 ____D C:\RomStation
2018-04-05 11:49 - 2018-04-05 11:49 - 001336832 _____ () C:\Users\Clément\Downloads\psx_emulation_cheater_2.5_windows.exe
2018-04-05 11:19 - 2018-04-05 11:19 - 000272271 _____ C:\Users\Clément\Downloads\cep [cheat emulator psxfin].rar
2018-04-05 11:14 - 2018-04-28 00:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\psx emulation cheater
2018-04-05 11:14 - 2018-04-05 11:14 - 000000000 ____D C:\Users\Clément\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\psx emulation cheater
2018-04-05 11:12 - 2018-04-05 11:12 - 001336832 _____ () C:\Users\Clément\Downloads\pecsetup.exe
2018-04-05 11:10 - 2018-04-05 11:10 - 001590951 _____ C:\Users\Clément\Downloads\epsxe_cheats_pack_(numbers_-_z_5.0_windows.rar
2018-04-05 11:10 - 2018-04-05 11:10 - 000162165 _____ C:\Users\Clément\Downloads\[pec]_cheat_database_editor_2.1_windows.zip
2018-04-03 20:43 - 2018-04-03 20:43 - 000095591 _____ C:\Users\Clément\Downloads\PLANNING ORDRE DE PASSAGE INCLUSION ORAL 26 AVRIL - Moédélisations et conceptions dans le domaine de linclusion.pdf
2018-04-03 20:43 - 2018-04-03 20:43 - 000006502 _____ C:\Users\Clément\Downloads\M1 M3I2S-Sem2_Contrôle Continu 26 AVRIL 2018.pdf

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-04-28 21:26 - 2017-05-31 18:28 - 000000000 ____D C:\Users\Clément\.MemuHyperv
2018-04-28 21:10 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness
2018-04-28 17:34 - 2014-12-13 15:05 - 000003788 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3F0871DC-E165-4C01-A6C6-6F8C86AE535F}
2018-04-28 17:20 - 2014-12-13 15:05 - 000003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2509020469-4088616332-3940483544-1001
2018-04-28 17:15 - 2017-02-28 10:50 - 000000000 ____D C:\Program Files (x86)\Steam
2018-04-28 17:15 - 2015-03-13 12:44 - 000000000 ___DO C:\Users\Clément\OneDrive
2018-04-28 17:03 - 2014-05-06 16:37 - 000806842 _____ C:\Windows\system32\perfh00C.dat
2018-04-28 17:03 - 2014-05-06 16:37 - 000156662 _____ C:\Windows\system32\perfc00C.dat
2018-04-28 17:03 - 2014-03-18 11:53 - 001817064 _____ C:\Windows\system32\PerfStringBackup.INI
2018-04-28 17:03 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2018-04-28 16:58 - 2017-05-31 18:28 - 000000000 _____ C:\hsrv.txt
2018-04-28 16:58 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-04-28 16:45 - 2014-12-13 15:24 - 000000000 ____D C:\ProgramData\MFAData
2018-04-28 16:38 - 2015-04-17 00:24 - 000000000 ____D C:\AdwCleaner
2018-04-28 16:22 - 2016-11-13 19:40 - 000003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2018-04-28 13:47 - 2014-12-13 14:59 - 000000000 ____D C:\Users\Clément
2018-04-28 12:57 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2018-04-28 12:45 - 2015-07-22 11:09 - 000000000 ____D C:\Users\Clément\AppData\Local\CrashDumps
2018-04-28 11:48 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\ELAM
2018-04-28 00:43 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-04-28 00:41 - 2016-05-10 22:54 - 000000000 ____D C:\Users\Clément\AppData\Local\Microsoft Help
2018-04-28 00:41 - 2015-03-16 02:17 - 000000000 ____D C:\Users\Clément\AppData\Roaming\vlc
2018-04-28 00:41 - 2013-08-22 17:36 - 000000000 __RSD C:\Windows\Media
2018-04-28 00:41 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-04-28 00:40 - 2014-12-16 19:11 - 000000000 ___SD C:\Windows\system32\CompatTel
2018-04-28 00:40 - 2014-12-16 19:11 - 000000000 ____D C:\Windows\system32\appraiser
2018-04-28 00:40 - 2014-10-07 22:22 - 000000000 ____D C:\Windows\System32\Tasks\TOSHIBA
2018-04-28 00:40 - 2013-08-22 17:36 - 000000000 ___RD C:\Windows\ToastData
2018-04-28 00:40 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\system32\Sysprep
2018-04-28 00:40 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\servicing
2018-04-28 00:15 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\registration
2018-04-27 22:00 - 2008-03-21 00:21 - 000000000 ____D C:\Users\Clément\AppData\Roaming\Web View Invoker
2018-04-27 21:45 - 2014-12-13 15:25 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-04-27 21:45 - 2014-12-13 15:25 - 000000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2018-04-27 10:42 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2018-04-27 10:29 - 2014-09-11 04:13 - 000000000 ____D C:\Program Files (x86)\Google
2018-04-27 10:28 - 2013-08-22 15:25 - 000007130 _____ C:\Windows\win.ini
2018-04-25 18:53 - 2014-12-13 14:59 - 000000000 ____D C:\Users\Clément\AppData\Local\Packages
2018-04-23 12:16 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\NDF
2018-04-22 21:40 - 2015-03-15 23:36 - 004496896 ___SH C:\Users\Clément\Downloads\Thumbs.db
2018-04-16 21:13 - 2013-08-22 16:44 - 000543808 _____ C:\Windows\system32\FNTCACHE.DAT
2018-04-14 01:16 - 2014-12-14 17:54 - 000000000 ____D C:\Windows\system32\MRT
2018-04-13 21:03 - 2017-10-12 10:34 - 136971704 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-04-13 21:02 - 2014-12-14 17:54 - 136971704 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-04-11 19:25 - 2017-10-24 15:15 - 000004644 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-04-11 19:25 - 2017-10-24 15:15 - 000004496 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-04-11 19:25 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\system32\Macromed
2018-04-11 19:24 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-04-08 22:34 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2018-04-05 17:17 - 2014-12-14 20:32 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-04-05 17:16 - 2014-12-14 20:32 - 000000000 ___HD C:\Windows\msdownld.tmp
2018-04-03 03:01 - 2018-03-27 21:47 - 000835064 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-04-03 03:01 - 2018-03-27 21:47 - 000179704 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Fichiers à la racine de certains dossiers =======

2018-04-27 10:28 - 2018-04-27 10:28 - 001433124 _____ (Igor Pavlov) C:\Users\Clément\AppData\Roaming\7ZIPUnpck.exe
2017-12-11 14:48 - 2017-12-19 13:55 - 000000033 _____ () C:\Users\Clément\AppData\Roaming\AdobeWLCMCache.dat
1601-01-03 21:33 - 1601-01-03 21:33 - 000197120 ____N (Microsoft Corporation) C:\Users\Clément\AppData\Roaming\AOHYYeIoQun.exe
2017-05-31 17:51 - 2017-05-31 18:29 - 000002378 _____ () C:\Users\Clément\AppData\Roaming\droid4xinstaller.log
2015-02-03 17:54 - 2016-05-10 16:54 - 000000238 _____ () C:\Users\Clément\AppData\Roaming\WB.CFG
2015-02-05 09:51 - 2015-02-05 09:51 - 000000010 _____ () C:\Users\Clément\AppData\Local\DSI.DAT
2017-12-11 16:45 - 2017-12-11 16:45 - 000000735 _____ () C:\Users\Clément\AppData\Local\recently-used.xbel
2018-04-27 10:28 - 2018-04-27 10:28 - 000000003 _____ () C:\Users\Clément\AppData\Local\wbem.ini

Certains fichiers dans TEMP:
====================
2018-04-27 10:28 - 2018-04-27 10:28 - 001650688 _____ (Denied MAC house) C:\Users\Clément\AppData\Local\Temp\7pro.exe
2015-01-31 20:28 - 2015-01-31 20:28 - 000467968 _____ (Realtek Semiconductor Corp.) C:\Users\Clément\AppData\Local\Temp\COMAP.EXE
2015-06-03 22:41 - 2016-08-13 09:40 - 001737080 _____ (Microsoft Corporation) C:\Users\Clément\AppData\Local\Temp\dllnt_dump.dll
2018-01-21 15:42 - 2018-01-21 15:43 - 036691368 _____ (Ellora Assets Corporation ) C:\Users\Clément\AppData\Local\Temp\FreemakeVideoConverterFull.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000794752 _____ (V1hH4oYqWjZSkx1w9VtG ) C:\Users\Clément\AppData\Local\Temp\installer.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 001351680 _____ () C:\Users\Clément\AppData\Local\Temp\installer_mi.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 008303559 _____ (Poker-Spy ) C:\Users\Clément\AppData\Local\Temp\install_2.92.21.exe
2018-01-10 19:22 - 2014-11-21 17:18 - 000098824 _____ (McAfee Inc.) C:\Users\Clément\AppData\Local\Temp\mccspuninstall.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000007314 _____ () C:\Users\Clément\AppData\Local\Temp\movari.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000290464 _____ () C:\Users\Clément\AppData\Local\Temp\n2n.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000603136 _____ (Microsoft Corporation) C:\Users\Clément\AppData\Local\Temp\netstream.exe
2018-04-27 10:28 - 2018-04-27 10:29 - 006106382 _____ () C:\Users\Clément\AppData\Local\Temp\s2s.exe
2017-05-31 18:31 - 2018-04-27 20:39 - 000492544 _____ () C:\Users\Clément\AppData\Local\Temp\s3.exe
2018-04-27 10:28 - 2018-04-27 10:28 - 000674413 _____ ( ) C:\Users\Clément\AppData\Local\Temp\setup (1).exe
2018-04-27 10:29 - 2018-04-27 10:29 - 001046016 _____ () C:\Users\Clément\AppData\Local\Temp\setup (2).exe
2017-03-02 21:04 - 2017-03-02 21:04 - 000489854 _____ () C:\Users\Clément\AppData\Local\Temp\setup.exe
2018-02-24 17:40 - 2018-02-24 17:40 - 030950664 _____ () C:\Users\Clément\AppData\Local\Temp\vlc-2.2.6-win32.exe

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2015-12-16 11:01

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité