cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 10.11.2018
Exécuté par g-gauvreau (administrateur) sur PC-GGAUVREAU (11-11-2018 11:08:29)
Exécuté depuis E:\Données\Desktop
Profils chargés: g-gauvreau (Profils disponibles: g-gauvreau)
Platform: Windows 10 Pro Version 1803 17134.345 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe
(Index Education) C:\Program Files (x86)\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\AMSP\coreFrameworkHost.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(ArcSoft, Inc.) C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSvcHost.exe
(Plantronics, Inc.) C:\Program Files (x86)\Plantronics\Spokes3G\SpokesUpdateService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtWatchDog.exe
(Broadcom Corporation.) C:\Program Files\ASUS\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\userinit.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3091224 2013-07-31] (Logitech, Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Trend Micro Client Framework] => C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [245840 2018-07-30] (Trend Micro Inc.)
HKLM\...\Run: [Platinum] => C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSessionAgent.exe [1246200 2018-07-30] (Trend Micro Inc.)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [507016 2012-12-21] (MSI)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-08-14] (CyberLink Corp.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [PLTHub.exe] => C:\Program Files (x86)\Plantronics\Spokes3G\PLTHub.exe [3755008 2017-07-18] (Plantronics, Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (CANON INC.)
HKLM-x32\...\Run: [SSD Tweaker] => C:\Program Files (x86)\SSD Tweaker\SSD Tweaker.exe [857600 2013-09-30] (Elpamsoft.com)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-09-18] (Google Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [Google Update] => C:\Users\g-gauvreau\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [46459080 2018-10-04] ()
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [HP Officejet 6700 (NET)] => C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [Dropbox Update] => C:\Users\g-gauvreau\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-06] (Dropbox, Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2018-10-22] (Apple Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [912480 2015-09-02] (Microsoft Corporation)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [MusicManager] => C:\Users\g-gauvreau\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [5968896 2018-01-30] (Google Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19467544 2018-10-23] (Piriform Ltd)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\RunOnce: [Application Restart #0] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [912480 2015-09-02] (Microsoft Corporation)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\RunOnce: [Application Restart #1] => C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSessionAgent.exe [1246200 2018-07-30] (Trend Micro Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\RunOnce: [Application Restart #2] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3091224 2013-07-31] (Logitech, Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\RunOnce: [Application Restart #3] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080 2018-11-08] (Google Inc.)
HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\...\MountPoints2: {8875cdd8-b525-11e8-8054-5cf370718fff} - "F:\HiSuiteDownLoader.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2016-01-02]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ASUS\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2013-09-19]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk [2013-09-18]
ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Intel Corporation)
Startup: C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Alertes de surveillance de l'encre - HP Officejet 6700 (réseau).lnk [2018-11-11]
ShortcutTarget: Alertes de surveillance de l'encre - HP Officejet 6700 (réseau).lnk -> C:\Program Files\HP\HP Officejet 6700\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2018-11-07]
ShortcutTarget: Dropbox.lnk -> C:\Users\g-gauvreau\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2014-06-20]
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{46e185ce-9205-4b2c-8b06-e096d8a28f80}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{5df76ee1-1177-4dc8-a3d8-38ca764ed71c}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: Trend Micro Security Toolbar Helper -> {43C6D902-A1C5-45c9-91F6-FD9E90337E18} -> C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO: Pas de nom -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Pas de fichier
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-30] (Google Inc.)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2013-07-31] (Logitech, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Trend Micro Security Toolbar Helper -> {43C6D902-A1C5-45c9-91F6-FD9E90337E18} -> C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-21] (Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-08-26] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-30] (Google Inc.)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2013-07-31] (Logitech, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-21] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-30] (Google Inc.)
Toolbar: HKLM - Trend Micro Security Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-30] (Google Inc.)
Toolbar: HKLM-x32 - Trend Micro Security Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
Toolbar: HKU\S-1-5-21-3072335524-1783179252-4220101014-1004 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-30] (Google Inc.)
Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
Handler-x32: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2018-07-30] (Trend Micro Inc.)
Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ProToolbarIMRatingActiveX.dll [2018-07-30] (Trend Micro Inc.)
Handler-x32: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll [2018-07-30] (Trend Micro Inc.)

FireFox:
========
FF ProfilePath: C:\Users\g-gauvreau\AppData\Roaming\Mozilla\Firefox\Profiles\wc6y2za5.default [2018-11-11]
FF Extension: (Adblock Plus) - C:\Users\g-gauvreau\AppData\Roaming\Mozilla\Firefox\Profiles\wc6y2za5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-11-11]
FF HKLM\...\Firefox\Extensions: [fftmtoolbar@trendmicro.com] - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension => non trouvé(e)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => non trouvé(e)
FF HKLM-x32\...\Firefox\Extensions: [fftmtoolbar@trendmicro.com] - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension => non trouvé(e)
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => non trouvé(e)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_31_0_0_122.dll [2018-10-10] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_122.dll [2018-10-10] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-09-28] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=1.1.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2011-08-09] (the VideoLAN Team)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3072335524-1783179252-4220101014-1004: @talk.google.com/GoogleTalkPlugin -> C:\Users\g-gauvreau\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3072335524-1783179252-4220101014-1004: @talk.google.com/O1DPlugin -> C:\Users\g-gauvreau\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
FF Plugin HKU\S-1-5-21-3072335524-1783179252-4220101014-1004: @tools.google.com/Google Update;version=3 -> C:\Users\g-gauvreau\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [Pas de fichier]
FF Plugin HKU\S-1-5-21-3072335524-1783179252-4220101014-1004: @tools.google.com/Google Update;version=9 -> C:\Users\g-gauvreau\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [Pas de fichier]
FF Plugin HKU\S-1-5-21-3072335524-1783179252-4220101014-1004: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\g-gauvreau\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-06-10] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\g-gauvreau\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\g-gauvreau\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)

Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Profile: C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default [2018-11-11]
CHR Extension: (Docs) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-05]
CHR Extension: (Google Drive) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-01]
CHR Extension: (YouTube) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Recherche Google) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-01]
CHR Extension: (Google Docs hors connexion) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-17]
CHR Extension: (Vysor) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\gidgenkbbabolejbgbpnhbimgjbffefm [2018-10-24]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-26]
CHR Extension: (Google Hangouts) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2018-06-04]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-10]
CHR Extension: (Trend Micro Toolbar) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf [2018-10-24]
CHR Extension: (Gmail) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Extension: (Chrome Media Router) - C:\Users\g-gauvreau\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-27]
CHR HKU\S-1-5-21-3072335524-1783179252-4220101014-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ohhcpmplhhiiaoiddkfboafbhiknefdf] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 ADExchange; C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [44064 2013-07-08] (ArcSoft, Inc.)
R2 Amsp; C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [376016 2018-07-23] (Trend Micro Inc.)
R2 btwdins; C:\Program Files\ASUS\Bluetooth Software\btwdins.exe [960368 2012-12-30] (Broadcom Corporation.)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Fichier non signé]
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [337888 2016-05-03] (Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [397472 2018-03-15] ()
S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [Fichier non signé]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165336 2013-01-14] (Intel Corporation)
R2 MajIndexEducationService; C:\Program Files (x86)\Index Education\Mise a jour automatique\ServiceMiseAJourIndex.exe [3224856 2018-07-27] (Index Education)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [144008 2012-12-21] (MSI)
R2 PlantronicsUpdateService; C:\Program Files (x86)\Plantronics\Spokes3G\SpokesUpdateService.exe [1813504 2017-07-18] (Plantronics, Inc.) [Fichier non signé]
R2 Platinum Host Service; C:\Program Files\Trend Micro\Titanium\plugin\Pt\PtSvcHost.exe [1127416 2018-07-30] (Trend Micro Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-07-15] (Microsoft Corporation)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-11-07] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-11-07] (Microsoft Corporation)
S3 WMPNetworkSvc; "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe" [X]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 ArcSec; C:\WINDOWS\System32\drivers\ArcSec.sys [311872 2011-11-10] ()
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [20968 2012-08-16] ()
R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [19944 2012-08-16] ()
S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19000 2012-07-27] (Windows (R) Win 7 DDK provider)
R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46016 2012-08-16] ()
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260480 2018-11-11] (Malwarebytes)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2018-04-12] (Realtek )
R3 rtwlane_13; C:\WINDOWS\System32\drivers\rtwlane_13.sys [3717120 2018-04-12] (Realtek Semiconductor Corporation )
R1 tmactmon; C:\WINDOWS\system32\DRIVERS\tmactmon.sys [147712 2018-09-28] (Trend Micro Inc.)
R0 tmcomm; C:\WINDOWS\System32\DRIVERS\tmcomm.sys [464136 2018-09-28] (Trend Micro Inc.)
R0 TMEBC; C:\WINDOWS\System32\DRIVERS\TMEBC64.sys [72504 2016-01-05] (Trend Micro Inc.)
S3 tmeevw; C:\WINDOWS\system32\DRIVERS\tmeevw.sys [147672 2017-05-10] (Trend Micro Inc.)
S0 tmel; C:\WINDOWS\System32\DRIVERS\tmel.sys [38408 2018-05-23] (Trend Micro Inc.)
R1 tmevtmgr; C:\WINDOWS\system32\DRIVERS\tmevtmgr.sys [148736 2018-09-28] (Trend Micro Inc.)
S3 tmnciesc; C:\WINDOWS\system32\DRIVERS\tmnciesc.sys [562296 2018-03-07] (Trend Micro Inc.)
R1 tmumh; C:\WINDOWS\system32\DRIVERS\TMUMH.sys [149896 2018-09-25] (Trend Micro Inc.)
R2 tmusa; C:\WINDOWS\system32\DRIVERS\tmusa.sys [137360 2018-03-28] (Trend Micro Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46184 2018-11-07] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [328696 2018-11-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60408 2018-11-07] (Microsoft Corporation)
S3 WPRO_41_2001; C:\WINDOWS\System32\drivers\WPRO_41_2001.sys [34752 2016-02-03] ()

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-11-11 11:08 - 2018-11-11 11:08 - 000260480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-11-11 11:08 - 2018-11-11 11:08 - 000000000 ___HD C:\OneDriveTemp
2018-11-11 10:16 - 2018-11-11 10:16 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2018-11-11 10:16 - 2018-11-11 10:16 - 000002874 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2018-11-11 10:16 - 2018-11-11 10:16 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2018-11-11 10:16 - 2018-11-11 10:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2018-11-11 10:16 - 2018-11-11 10:16 - 000000000 ____D C:\Program Files\CCleaner
2018-11-11 09:32 - 2018-11-11 09:32 - 003176832 _____ C:\Users\g-gauvreau\ZHPDiag3.exe
2018-11-11 09:19 - 2018-11-11 09:19 - 003286912 _____ C:\Users\g-gauvreau\ZHPCleaner.exe
2018-11-10 14:31 - 2018-11-10 14:31 - 000000932 _____ C:\Users\Public\Desktop\Winaero Tweaker.lnk
2018-11-10 14:31 - 2018-11-10 14:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winaero Tweaker
2018-11-10 14:31 - 2018-11-10 14:31 - 000000000 ____D C:\Program Files\Winaero Tweaker
2018-11-10 13:49 - 2018-11-11 10:59 - 000000000 ____D C:\FRST
2018-11-10 13:04 - 2018-11-10 13:11 - 000000008 __RSH C:\ProgramData\ntuser.pol
2018-11-10 12:35 - 2018-11-10 12:39 - 000000000 ____D C:\ProgramData\HitmanPro
2018-11-10 12:33 - 2018-11-10 12:33 - 000000558 _____ C:\Users\g-gauvreau\Desktop\JRT.txt
2018-11-10 12:17 - 2018-11-10 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed
2018-11-10 12:17 - 2018-11-10 12:17 - 000000000 ____D C:\Program Files\WhoCrashed
2018-11-10 10:47 - 2018-11-11 09:35 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\ZHP
2018-11-10 10:47 - 2018-11-10 11:34 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\ZHP
2018-11-10 10:29 - 2018-11-10 10:29 - 000000000 ___HD C:\$SysReset
2018-11-07 23:12 - 2018-11-07 23:12 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\D3DSCache
2018-11-07 23:02 - 2018-11-07 23:02 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-11-07 23:02 - 2018-11-07 23:02 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\mbamtray
2018-11-07 23:02 - 2018-11-07 23:02 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\mbam
2018-11-07 23:02 - 2018-11-07 23:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-11-07 23:02 - 2018-10-18 08:44 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-11-07 23:01 - 2018-11-10 11:04 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2018-11-07 23:01 - 2018-11-07 23:01 - 000000000 ____D C:\WINDOWS\pss
2018-11-07 22:47 - 2018-11-07 22:47 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-11-07 22:47 - 2018-11-07 22:47 - 000000000 ____D C:\Program Files\Malwarebytes
2018-11-07 22:41 - 2018-11-07 22:42 - 000000000 ____D C:\AdwCleaner
2018-11-07 22:25 - 2018-11-07 22:24 - 000559880 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2018-11-07 11:43 - 2018-11-07 11:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2018-11-07 11:43 - 2018-11-07 11:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2018-11-07 11:43 - 2018-11-07 11:43 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2018-11-07 11:41 - 2018-11-07 11:41 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2018-11-06 11:10 - 2018-11-06 11:12 - 000000000 ____D C:\Program Files (x86)\Dachshund Software
2018-11-06 11:10 - 2018-11-06 11:10 - 000000051 ____H C:\WINDOWS\winshell.dat
2018-10-18 17:27 - 2018-10-18 17:27 - 000000000 ___HD C:\TMRescueDisk
2018-10-18 06:17 - 2018-10-18 06:17 - 000000000 ____D C:\WINDOWS\SysWOW64\tmumh
2018-10-18 06:17 - 2018-10-18 06:17 - 000000000 ____D C:\WINDOWS\system32\tmumh
2018-10-18 06:17 - 2018-10-18 06:17 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Internet Security
2018-10-18 06:17 - 2018-09-28 09:00 - 000464136 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmcomm.sys
2018-10-18 06:17 - 2018-09-28 09:00 - 000148736 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmevtmgr.sys
2018-10-18 06:17 - 2018-09-28 09:00 - 000147712 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmactmon.sys
2018-10-18 06:17 - 2018-09-25 15:32 - 000149896 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\TMUMH.sys
2018-10-18 06:17 - 2018-05-23 22:46 - 000038408 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmel.sys
2018-10-18 06:17 - 2018-03-28 21:05 - 000137360 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmusa.sys
2018-10-18 06:17 - 2018-03-07 21:05 - 000562296 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmnciesc.sys
2018-10-18 06:17 - 2017-05-10 08:46 - 000147672 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\tmeevw.sys
2018-10-18 06:17 - 2016-01-05 04:35 - 000072504 _____ (Trend Micro Inc.) C:\WINDOWS\system32\Drivers\TMEBC64.sys
2018-10-18 06:16 - 2018-10-18 06:16 - 000000059 _____ C:\WINDOWS\system32\SupportTool.exe.bat
2018-10-17 21:09 - 2018-09-04 23:36 - 001476904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2018-11-11 11:08 - 2018-05-17 21:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-11-11 11:08 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-11 11:08 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-11 11:08 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-11 11:08 - 2018-03-05 10:08 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\Packages
2018-11-11 11:08 - 2014-11-26 23:26 - 000000000 __SHD C:\Users\g-gauvreau\IntelGraphicsProfiles
2018-11-11 11:08 - 2014-07-27 20:12 - 000000000 ___RD C:\Users\g-gauvreau\OneDrive
2018-11-11 11:07 - 2018-04-11 22:04 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2018-11-11 11:07 - 2016-11-20 16:14 - 000000000 ____D C:\Users\g-gauvreau\AppData\LocalLow\Mozilla
2018-11-11 10:11 - 2018-05-17 21:38 - 001766590 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-11-11 10:11 - 2018-04-12 17:19 - 000789786 _____ C:\WINDOWS\system32\perfh00C.dat
2018-11-11 10:11 - 2018-04-12 17:19 - 000149318 _____ C:\WINDOWS\system32\perfc00C.dat
2018-11-11 10:11 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF
2018-11-11 10:08 - 2018-04-11 22:04 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2018-11-11 10:06 - 2014-06-23 14:57 - 000000000 ___RD C:\Users\g-gauvreau\Google Drive
2018-11-11 09:32 - 2018-05-17 21:30 - 000000000 ____D C:\Users\g-gauvreau
2018-11-11 09:18 - 2018-05-17 21:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-11-11 08:50 - 2018-05-17 21:36 - 000004182 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{EC0FF105-4037-4AE5-8CF0-6AFE00F556CA}
2018-11-10 13:48 - 2018-05-13 15:57 - 000000000 ____D C:\ProgramData\Trend Micro
2018-11-10 13:16 - 2013-10-16 11:29 - 000000000 ____D C:\ProgramData\IndexEducation
2018-11-10 13:02 - 2013-08-22 16:36 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2018-11-10 11:18 - 2018-05-13 18:05 - 000396792 _____ (Trend Micro Inc.) C:\WINDOWS\RegBootClean64.exe
2018-11-10 11:12 - 2018-05-17 21:30 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\Google
2018-11-10 10:31 - 2013-09-20 11:51 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2018-11-10 10:17 - 2015-08-30 16:17 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\ElevatedDiagnostics
2018-11-10 09:52 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-11-10 09:51 - 2013-09-18 18:57 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-11-10 09:51 - 2013-09-18 18:57 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-11-08 22:36 - 2016-08-30 11:26 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\BiblioManuels
2018-11-07 22:52 - 2018-05-17 21:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-11-07 22:52 - 2018-04-12 00:38 - 000000000 ___RD C:\Program Files\Windows Defender
2018-11-07 22:42 - 2016-11-20 16:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2018-11-07 22:19 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-11-07 16:08 - 2017-10-01 12:48 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\GeoGebra
2018-11-07 13:18 - 2018-07-18 16:04 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth
2018-11-07 11:43 - 2015-11-01 14:51 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2018-11-07 11:41 - 2013-09-18 22:08 - 000000000 ____D C:\Users\g-gauvreau\AppData\Roaming\Dropbox
2018-11-07 11:38 - 2013-09-18 18:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-11-06 11:11 - 2017-09-28 06:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2018-11-06 11:11 - 2014-06-23 14:56 - 000002073 _____ C:\Users\Public\Desktop\Google Slides.lnk
2018-11-06 11:11 - 2014-06-23 14:56 - 000002071 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2018-11-06 11:11 - 2014-06-23 14:56 - 000002061 _____ C:\Users\Public\Desktop\Google Docs.lnk
2018-11-06 11:04 - 2013-09-18 18:47 - 000001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2018-11-04 22:47 - 2018-09-06 20:51 - 000000000 ____D C:\ProgramData\CanonIJPLM
2018-10-24 19:28 - 2016-01-03 10:36 - 000000000 ____D C:\ProgramData\tmp
2018-10-23 13:44 - 2018-07-18 07:34 - 000000000 ____D C:\ProgramData\Packages
2018-10-23 13:42 - 2018-03-05 10:18 - 000000000 ____D C:\Users\g-gauvreau\AppData\Local\PlaceholderTileLogoFolder
2018-10-23 13:38 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2018-10-18 17:20 - 2018-05-13 15:37 - 000000000 ____D C:\ProgramData\Trend Micro Installer
2018-10-18 17:20 - 2018-04-12 00:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2018-10-18 06:16 - 2018-05-13 15:57 - 000000000 ____D C:\Program Files\Trend Micro
2018-10-17 21:08 - 2018-05-17 21:36 - 000003382 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3072335524-1783179252-4220101014-1004
2018-10-17 21:08 - 2018-05-17 21:30 - 000002468 _____ C:\Users\g-gauvreau\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-17 21:07 - 2018-05-17 21:29 - 000495576 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-10-17 21:07 - 2016-03-24 16:19 - 000000000 ___RD C:\Users\g-gauvreau\3D Objects
2018-10-17 21:07 - 2015-08-13 21:06 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-10-17 21:06 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2018-10-17 21:05 - 2017-07-02 22:25 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys

==================== Fichiers à la racine de certains dossiers =======

2018-11-11 09:19 - 2018-11-11 09:19 - 003286912 _____ () C:\Users\g-gauvreau\ZHPCleaner.exe
2018-11-11 09:32 - 2018-11-11 09:32 - 003176832 _____ () C:\Users\g-gauvreau\ZHPDiag3.exe
2014-02-03 11:43 - 2014-02-03 11:43 - 004412622 _____ () C:\Users\g-gauvreau\AppData\Local\ASbs.ac
2018-05-13 15:57 - 2018-05-13 15:57 - 000000036 _____ () C:\Users\g-gauvreau\AppData\Local\housecall.guid.cache
2018-03-10 15:29 - 2018-04-22 15:48 - 000000600 _____ () C:\Users\g-gauvreau\AppData\Local\PUTTY.RND
2013-09-20 11:50 - 2013-09-20 11:50 - 000007605 _____ () C:\Users\g-gauvreau\AppData\Local\Resmon.ResmonCfg

Certains fichiers dans TEMP:
====================
2018-11-10 10:31 - 2018-11-10 10:31 - 000192512 _____ () C:\Users\g-gauvreau\AppData\Local\Temp\sfamcc00001.dll

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2018-05-17 21:29

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité