Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:14-12-2015 Exécuté par GAEL (administrateur) sur GAEL-PC (15-12-2015 18:05:25) Exécuté depuis C:\Users\GAEL\Downloads Profils chargés: GAEL (Profils disponibles: GAEL) Platform: Windows 7 Professional Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe (IOBit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCAvSvc.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\Monitor.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (GGS) C:\Users\GAEL\AppData\Local\THORN\Thorn.exe (GGS) C:\Users\GAEL\AppData\Local\THORN\ThornHelper.exe (Rational Thought Solutions) C:\ProgramData\aJhFjnd\twcTwj.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (GGS) C:\Program Files (x86)\QGNA\qGNA.exe (GGS) C:\Program Files (x86)\QGNA\gamenet.ui.exe (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe (IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8712960 2015-11-11] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2757424 2015-11-12] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-03-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5893920 2015-11-12] (IObit) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [286720 2007-06-29] (Apple Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2015-12-12] (AVAST Software) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [3725328 2015-10-15] (Simply Super Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3013712 2015-12-14] (Valve Corporation) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\Run: [Advanced SystemCare Ultimate] => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCTray.exe [2596640 2015-05-22] (IObit) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8551848 2015-10-19] (Piriform Ltd) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\Run: [GameNet] => C:\Program Files (x86)\QGNA\qGNA.exe [2900984 2015-11-23] (GGS) HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\...\MountPoints2: {f6617925-874b-11e5-805f-806e6f6e6963} - D:\Run.exe ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-12-12] (AVAST Software) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{35822561-3A91-407B-8581-F2513862A97A}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-1985233667-4196353002-1568303605-1000 -> {5A415F93-4B2E-4DDF-BA6E-FDA5C275A75D} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-12-12] (AVAST Software) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-12] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-12] (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-12] (Oracle Corporation) FireFox: ======== FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-12] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-12] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-12] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-12] Chrome: ======= CHR HomePage: Default -> hxxp://google/ CHR StartupUrls: Default -> "hxxp://www.istartpageing.com/?type=hp&ts=1449922625&z=86c9e9d29417efd4928d380gez6zet7tfoco7q6ofc&from=cmi&uid=WDCXWD10EZRX-00D8PB0_WD-WMC4M0DP1R4RP1R4R" CHR DefaultSearchURL: Default -> hxxp://www-searching.com/search.aspx?site=shdefault&chext=v2&s=&q={searchTerms} CHR DefaultSearchKeyword: Default -> Search Module Plus CHR DefaultSuggestURL: Default -> hxxps://fr.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Session Restore: Default -> est activé. CHR Profile: C:\Users\GAEL\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (AdBlock) - C:\Users\GAEL\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-12] CHR Extension: (Avast Online Security) - C:\Users\GAEL\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-12-12] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\GAEL\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-12] CHR HKU\S-1-5-21-1985233667-4196353002-1568303605-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [jlcgehabolcakkjhgmgpkagpolbjlhfa] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-12] CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ASCService.exe [911648 2014-11-22] (IObit) R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-03-04] (Advanced Micro Devices, Inc.) [Fichier non signé] R2 ASCAntivirusSrv; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 8\ascavsvc.exe [660768 2015-06-11] (IOBit) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2015-12-12] (AVAST Software) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156384 2015-10-12] (NVIDIA Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Fichier non signé] R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [882464 2015-11-04] (IObit) S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048 2015-11-10] (IObit) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-11-12] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424 2015-11-12] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440 2015-11-12] (NVIDIA Corporation) R2 Thorn; C:\Users\GAEL\AppData\Local\THORN\Thorn.exe [56824 2015-10-01] (GGS) R2 twcTwj; C:\ProgramData\aJhFjnd\twcTwj.exe [3001328 2015-12-12] (Rational Thought Solutions) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2015-11-11] (Advanced Micro Devices Inc.) R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-12-12] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-12-12] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-12-12] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-12-12] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1055560 2015-12-12] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [450504 2015-12-12] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2015-12-12] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-12-12] (AVAST Software) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-11-16] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2015-03-25] (IObit) S3 gdrv; pas de ImagePath R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-11-11] (REALiX(tm)) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-11-12] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2015-03-25] (IObit.com) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit) R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2015-03-25] (IObit.com) S3 cpuz137; \??\C:\Users\GAEL\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-12-15 18:05 - 2015-12-15 18:05 - 00015490 _____ C:\Users\GAEL\Downloads\FRST.txt 2015-12-15 18:05 - 2015-12-15 18:05 - 00000000 ____D C:\FRST 2015-12-15 18:04 - 2015-12-15 18:04 - 02369536 _____ (Farbar) C:\Users\GAEL\Downloads\FRST64.exe 2015-12-15 17:48 - 2015-12-15 17:49 - 00000000 ____D C:\Program Files (x86)\BDO - English Please 2015-12-15 17:48 - 2015-12-15 17:48 - 00002105 _____ C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\BDO - English Please.lnk 2015-12-15 17:48 - 2015-12-15 17:48 - 00002081 _____ C:\Users\GAEL\Documents\BDO - English Please.lnk 2015-12-15 17:48 - 2015-12-15 17:48 - 00002028 _____ C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall.lnk 2015-12-15 17:48 - 2015-12-15 17:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BDO - English Please 2015-12-15 17:46 - 2015-12-15 17:47 - 01525586 _____ C:\Users\GAEL\Downloads\bdo-englishplease_setup.exe 2015-12-15 11:22 - 2015-12-15 11:22 - 00000000 ____D C:\ProgramData\Radio 2015-12-12 19:57 - 2015-12-12 19:57 - 00000000 ____D C:\ProgramData\Browser 2015-12-12 15:57 - 2015-12-12 15:57 - 00927824 _____ (Google Inc.) C:\Users\GAEL\Downloads\ChromeSetup.exe 2015-12-12 15:56 - 2015-12-12 15:57 - 00002257 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-12-12 15:55 - 2015-12-15 18:02 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-12 15:55 - 2015-12-15 16:47 - 00001060 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-12 15:55 - 2015-12-12 15:57 - 00004060 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-12 15:55 - 2015-12-12 15:57 - 00003808 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-12-12 15:47 - 2015-12-12 16:31 - 00000000 ____D C:\Users\GAEL\AppData\Local\HealthAlert 2015-12-12 14:23 - 2015-12-14 18:10 - 00000000 ____D C:\AdwCleaner 2015-12-12 14:22 - 2015-12-12 14:23 - 01738240 _____ C:\Users\GAEL\Downloads\adwcleaner_5.024.exe 2015-12-12 13:51 - 2015-12-12 13:51 - 00000000 ____D C:\ProgramData\Aabledaiasne 2015-12-12 13:46 - 2015-12-12 13:46 - 00001215 _____ C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-12-12 13:41 - 2015-12-12 13:48 - 00000000 ____D C:\ProgramData\aJhFjnd 2015-12-12 13:17 - 2015-12-14 19:53 - 00000000 ____D C:\ProgramData\Tmp0x0x 2015-12-12 12:24 - 2015-12-14 20:16 - 00000000 ____D C:\Users\GAEL\Documents\Processing 2015-12-12 12:24 - 2015-12-14 18:13 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\Processing 2015-12-12 12:23 - 2015-10-23 16:23 - 00000000 ____D C:\Users\GAEL\Documents\processing-3.0.1 2015-12-12 12:21 - 2015-12-12 12:23 - 115715619 _____ C:\Users\GAEL\Downloads\processing-3.0.1-windows64.zip 2015-12-12 12:20 - 2015-12-12 13:37 - 00000000 ____D C:\ProgramData\TEMP 2015-12-12 12:15 - 2015-12-12 12:15 - 00000000 ____D C:\Users\GAEL\Documents\Simply Super Software 2015-12-12 12:15 - 2015-12-12 12:15 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\Simply Super Software 2015-12-12 12:14 - 2015-12-12 12:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover 2015-12-12 12:14 - 2015-12-12 12:15 - 00000000 ____D C:\Program Files (x86)\Trojan Remover 2015-12-12 12:14 - 2015-12-12 12:14 - 28167528 _____ (Simply Super Software ) C:\Users\GAEL\Downloads\trjsetup693 (1).exe 2015-12-12 12:14 - 2015-12-12 12:14 - 00000000 ____D C:\ProgramData\Simply Super Software 2015-12-12 12:13 - 2015-12-12 12:11 - 00386096 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2015-12-12 12:12 - 2015-12-12 12:12 - 09256696 _____ (Simply Super Software ) C:\Users\GAEL\Downloads\trjsetup693.exe 2015-12-12 12:11 - 2015-12-14 17:35 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2015-12-12 12:11 - 2015-12-12 12:11 - 01055560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00450504 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00273784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00155304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00097648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00093528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00065224 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00043112 _____ (AVAST Software) C:\Windows\avastSS.scr 2015-12-12 12:11 - 2015-12-12 12:11 - 00028656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2015-12-12 12:11 - 2015-12-12 12:11 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2015-12-12 12:11 - 2015-12-12 12:11 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2015-12-12 12:11 - 2015-12-12 12:11 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\AVAST Software 2015-12-12 12:11 - 2015-12-12 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-12-12 12:11 - 2015-12-12 12:11 - 00000000 ____D C:\Program Files\Common Files\AV 2015-12-12 12:10 - 2015-12-12 12:10 - 00000000 ____D C:\ProgramData\AVAST Software 2015-12-12 12:10 - 2015-12-12 12:10 - 00000000 ____D C:\Program Files\AVAST Software 2015-12-12 12:09 - 2015-12-12 12:09 - 05066096 _____ (AVAST Software) C:\Users\GAEL\Downloads\avast_free_antivirus_setup_online.exe 2015-12-12 11:38 - 2015-12-12 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-12-12 11:38 - 2015-12-12 13:56 - 00002900 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_GAEL 2015-12-12 11:38 - 2015-12-12 11:38 - 00000000 ____D C:\ProgramData\Apple Computer 2015-12-12 11:01 - 2015-12-12 11:01 - 00002934 _____ C:\Windows\System32\Tasks\{CA9C9EE6-205C-47FF-909E-38D541F08192} 2015-12-12 10:56 - 2015-12-12 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-12-12 09:56 - 2015-12-12 09:56 - 00003086 _____ C:\Windows\System32\Tasks\spw3016 2015-12-12 09:55 - 2015-12-12 09:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-12-12 09:55 - 2015-12-12 09:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-12-12 09:54 - 2015-12-12 10:10 - 00000000 ____D C:\Users\GAEL\AppData\Local\Opera Software 2015-12-12 09:53 - 2009-06-10 22:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak 2015-12-12 09:51 - 2015-12-12 09:53 - 00000884 _____ C:\Windows\SysWOW64\${LOGFILE} 2015-12-12 09:29 - 2015-12-12 09:34 - 00000000 ____D C:\Users\GAEL\Documents\torrent 2015-12-12 09:21 - 2015-12-12 09:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2015-12-12 08:46 - 2015-12-12 08:46 - 00001264 _____ C:\Users\GAEL\Desktop\BlackDesert.lnk 2015-12-12 08:46 - 2015-12-12 08:46 - 00001264 _____ C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\BlackDesert.lnk 2015-12-11 20:46 - 2015-12-15 07:17 - 00000000 ____D C:\Users\GAEL\AppData\Local\THORN 2015-12-11 20:45 - 2015-12-15 07:18 - 00000000 ____D C:\Program Files (x86)\QGNA 2015-12-11 20:45 - 2015-12-12 11:01 - 00004296 _____ C:\Windows\System32\Tasks\GameNet 2015-12-11 20:45 - 2015-12-11 20:45 - 00000967 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameNet.lnk 2015-12-11 20:45 - 2015-12-11 20:45 - 00000955 _____ C:\Users\GAEL\Desktop\GameNet.lnk 2015-12-11 20:45 - 2015-12-11 20:45 - 00000000 ____D C:\Users\GAEL\AppData\Local\Vebanaul 2015-12-11 20:26 - 2015-12-11 20:26 - 00000222 _____ C:\Users\GAEL\Desktop\Emily is Away.url 2015-12-11 18:54 - 2015-12-12 10:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mephisto 2015-12-11 18:18 - 2015-12-12 08:46 - 00000000 ____D C:\Games 2015-12-10 20:42 - 2015-12-10 20:42 - 00000000 ____D C:\Users\GAEL\Documents\camtasia 2015-12-10 16:22 - 2015-12-14 18:11 - 00000000 ____D C:\Users\GAEL\AppData\Local\CrashDumps 2015-12-10 16:02 - 2015-12-10 16:02 - 00000000 ____D C:\Users\GAEL\AppData\Local\TechSmith 2015-12-10 13:59 - 2015-11-20 19:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-12-10 13:59 - 2015-11-20 19:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-12-10 13:59 - 2015-11-20 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-12-10 13:59 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-12-10 13:59 - 2015-11-20 19:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-12-10 13:59 - 2015-11-20 19:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-12-10 13:59 - 2015-11-20 19:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-12-10 13:59 - 2015-11-20 19:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-12-10 13:59 - 2015-11-20 19:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-12-10 13:59 - 2015-11-11 22:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-12-10 13:59 - 2015-11-11 21:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-12-10 13:59 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2015-12-10 13:59 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2015-12-10 13:59 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2015-12-10 13:59 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2015-12-10 13:59 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-12-10 13:59 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-12-10 13:59 - 2015-11-11 16:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-12-10 13:59 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-12-10 13:59 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-12-10 13:59 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-12-10 13:59 - 2015-11-11 15:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-12-10 13:59 - 2015-11-10 19:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-12-10 13:59 - 2015-11-10 19:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-12-10 13:59 - 2015-11-10 19:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-12-10 13:59 - 2015-11-10 19:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-12-10 13:59 - 2015-11-10 19:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-12-10 13:59 - 2015-11-10 18:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-12-10 13:59 - 2015-11-10 01:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-12-10 13:59 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-12-10 13:59 - 2015-11-10 01:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-12-10 13:59 - 2015-11-10 01:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-12-10 13:59 - 2015-11-10 01:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-12-10 13:59 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-12-10 13:59 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-12-10 13:59 - 2015-11-10 01:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-12-10 13:59 - 2015-11-10 01:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-12-10 13:59 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-12-10 13:59 - 2015-11-10 01:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-12-10 13:59 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-12-10 13:59 - 2015-11-10 01:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-12-10 13:59 - 2015-11-10 00:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-12-10 13:59 - 2015-11-10 00:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-12-10 13:59 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-12-10 13:59 - 2015-11-10 00:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-12-10 13:59 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-12-10 13:59 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-12-10 13:59 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-12-10 13:59 - 2015-11-10 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-12-10 13:59 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-12-10 13:59 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-12-10 13:59 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-12-10 13:59 - 2015-11-08 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-12-10 13:59 - 2015-11-08 23:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-12-10 13:59 - 2015-11-08 23:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-12-10 13:59 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-12-10 13:59 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-12-10 13:59 - 2015-11-08 23:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-12-10 13:59 - 2015-11-08 23:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-12-10 13:59 - 2015-11-08 23:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-12-10 13:59 - 2015-11-08 23:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-12-10 13:59 - 2015-11-08 23:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-12-10 13:59 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-12-10 13:59 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-12-10 13:59 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-12-10 13:59 - 2015-11-08 23:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-12-10 13:59 - 2015-11-08 23:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-12-10 13:59 - 2015-11-08 23:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-12-10 13:59 - 2015-11-08 22:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-12-10 13:59 - 2015-11-08 22:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-12-10 13:59 - 2015-11-08 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-12-10 13:59 - 2015-11-08 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-12-10 13:59 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-12-10 13:59 - 2015-11-08 22:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-12-10 13:59 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-12-10 13:59 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-12-10 13:59 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-12-10 13:59 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-12-10 13:59 - 2015-11-08 22:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-12-10 13:59 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-12-10 13:59 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-12-10 13:59 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-12-10 13:59 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-12-10 13:59 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2015-12-10 13:59 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2015-12-10 13:59 - 2015-11-05 20:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-12-10 13:59 - 2015-11-05 20:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2015-12-10 13:59 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-12-10 13:59 - 2015-11-03 20:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-12-10 13:59 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-12-10 13:59 - 2015-10-09 00:22 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2015-12-10 13:59 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL 2015-12-10 13:59 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll 2015-12-10 13:59 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL 2015-12-10 13:59 - 2015-10-09 00:18 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL 2015-12-10 13:59 - 2015-10-09 00:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll 2015-12-10 13:59 - 2015-10-09 00:18 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL 2015-12-10 13:59 - 2015-10-09 00:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll 2015-12-10 13:59 - 2015-10-08 20:13 - 00419928 _____ C:\Windows\SysWOW64\locale.nls 2015-12-10 13:59 - 2015-10-08 19:52 - 00419928 _____ C:\Windows\system32\locale.nls 2015-12-10 13:58 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2015-12-10 13:58 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2015-12-10 13:41 - 2015-12-10 13:41 - 00000000 _____ C:\Windows\SysWOW64\track 2015-12-09 18:21 - 2015-12-12 11:38 - 00054156 ____H C:\Windows\QTFont.qfn 2015-12-09 18:19 - 2015-12-09 18:19 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2015-12-09 18:19 - 2015-12-09 18:19 - 00000000 ____D C:\Users\GAEL\AppData\LocalLow\Apple Computer 2015-12-09 18:19 - 2015-12-09 18:19 - 00000000 ____D C:\Users\GAEL\AppData\Local\Apple 2015-12-09 18:19 - 2015-12-09 18:19 - 00000000 ____D C:\ProgramData\Apple 2015-12-09 18:19 - 2015-12-09 18:19 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2015-12-09 18:15 - 2015-12-09 18:15 - 00000000 ____D C:\Users\GAEL\Documents\Camtasia Studio 2015-12-09 18:12 - 2015-12-12 11:38 - 00000000 ____D C:\Program Files (x86)\QuickTime 2015-12-09 18:12 - 2015-12-09 18:12 - 00001168 _____ C:\Users\Public\Desktop\Camtasia Studio 8.lnk 2015-12-09 18:12 - 2015-12-09 18:12 - 00000000 ____D C:\ProgramData\regid.1995-08.com.techsmith 2015-12-09 18:12 - 2015-12-09 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith 2015-12-09 18:11 - 2015-12-09 18:11 - 00000000 ____D C:\ProgramData\TechSmith 2015-12-09 18:11 - 2015-12-09 18:11 - 00000000 ____D C:\Program Files (x86)\TechSmith 2015-12-09 18:00 - 2015-12-09 18:00 - 00003320 _____ C:\Windows\System32\Tasks\Format Factory 2015-12-09 17:08 - 2015-12-10 17:12 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\vlc 2015-12-09 17:08 - 2015-12-09 17:08 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk 2015-12-09 17:08 - 2015-12-09 17:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-12-09 17:07 - 2015-12-09 17:07 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2015-12-09 17:05 - 2015-12-09 17:05 - 00003584 _____ C:\Users\GAEL\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-12-09 17:00 - 2015-12-09 17:00 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs 2015-12-09 17:00 - 2015-12-09 17:00 - 00000000 ____D C:\Program Files (x86)\Portable 2015-12-09 16:56 - 2015-12-09 16:56 - 00000222 _____ C:\Users\GAEL\Desktop\Orbital Gear.url 2015-12-07 12:59 - 2015-12-07 12:59 - 00000000 ____D C:\Users\GAEL\AppData\Local\Skyrim 2015-12-07 03:32 - 2015-12-07 03:32 - 00000000 ____D C:\Users\GAEL\Documents\My Games 2015-12-06 18:37 - 2015-12-06 18:37 - 00000221 _____ C:\Users\GAEL\Desktop\The Elder Scrolls V Skyrim.url 2015-12-04 19:49 - 2015-12-04 21:02 - 00000607 _____ C:\Users\GAEL\Documents\clic tune.txt 2015-12-04 15:21 - 2015-12-04 15:21 - 00000000 ____D C:\Users\GAEL\AppData\Local\EdgeOfReality 2015-12-03 18:39 - 2015-12-03 20:24 - 00000877 _____ C:\Users\GAEL\Documents\Nouveau document texte.txt 2015-12-03 17:57 - 2015-12-12 12:23 - 00000000 ____D C:\Users\GAEL\Documents\ROVIP 2015-12-03 17:57 - 2015-12-03 17:57 - 00000000 ____D C:\Users\GAEL\Documents\SRMI 2015-12-01 18:26 - 2015-12-02 20:27 - 00000000 ____D C:\Users\GAEL\Documents\Klei 2015-11-30 19:49 - 2015-11-30 19:49 - 00000222 _____ C:\Users\GAEL\Desktop\dst together.url 2015-11-30 10:11 - 2015-12-04 21:02 - 00003209 _____ C:\Users\GAEL\Documents\tweet goldmine.txt 2015-11-30 09:46 - 2015-11-30 09:46 - 00010240 ___SH C:\Users\GAEL\Documents\Thumbs.db 2015-11-23 15:20 - 2015-11-23 15:20 - 00014975 _____ C:\Users\GAEL\Documents\stage question.odt 2015-11-22 13:18 - 2015-11-22 13:18 - 00000756 _____ C:\Users\GAEL\Desktop\wow.lnk 2015-11-21 20:38 - 2015-11-21 20:38 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2015-11-21 18:54 - 2015-11-22 13:23 - 00000000 ____D C:\Program Files (x86)\FirestormLauncher 2015-11-21 18:54 - 2015-11-21 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firestorm Launcher 2015-11-21 18:08 - 2015-11-21 18:56 - 00000985 _____ C:\Users\GAEL\Documents\gold mine.txt 2015-11-20 17:30 - 2015-11-20 17:30 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\WinRAR 2015-11-20 17:30 - 2015-11-20 17:30 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-11-20 17:30 - 2015-11-20 17:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-11-20 17:30 - 2015-11-20 17:30 - 00000000 ____D C:\Program Files (x86)\WinRAR 2015-11-18 17:41 - 2015-11-23 13:40 - 00001294 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk 2015-11-18 17:41 - 2015-11-23 13:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2015-11-18 17:38 - 2015-11-18 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2015-11-17 19:59 - 2015-11-17 19:59 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-11-16 11:26 - 2015-12-12 09:25 - 00000000 ____D C:\Program Files (x86)\Sweathand 2015-11-16 11:24 - 2015-11-16 12:16 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\DAEMON Tools Lite 2015-11-16 11:24 - 2015-11-16 11:25 - 00030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys 2015-11-16 11:24 - 2015-11-16 11:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-11-16 11:24 - 2015-11-16 11:24 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2015-11-16 11:23 - 2015-11-16 11:24 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2015-11-16 11:05 - 2015-11-16 11:05 - 00000000 ____D C:\Users\GAEL\Downloads\This War Of Mine v1.4 -Repack [Sweathand] 2015-11-16 11:00 - 2015-12-12 09:52 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\qBittorrent 2015-11-16 11:00 - 2015-12-12 09:21 - 00000000 ____D C:\Program Files (x86)\qBittorrent 2015-11-16 11:00 - 2015-11-16 11:00 - 00000000 ____D C:\Users\GAEL\AppData\Local\qBittorrent ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-12-15 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Windows 2015-12-15 17:35 - 2009-07-14 05:45 - 00022768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-15 17:35 - 2009-07-14 05:45 - 00022768 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-15 07:20 - 2015-11-11 07:46 - 00003238 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler 2015-12-15 07:20 - 2015-11-11 07:46 - 00002870 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (GAEL) 2015-12-15 07:18 - 2015-11-10 20:57 - 00000000 ____D C:\Program Files (x86)\Steam 2015-12-15 07:16 - 2015-11-10 20:48 - 00000000 ____D C:\ProgramData\NVIDIA 2015-12-15 07:16 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-14 17:55 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2015-12-14 17:35 - 2015-11-11 07:38 - 00000000 ____D C:\ProgramData\ProductData 2015-12-14 17:34 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2015-12-12 20:55 - 2015-11-10 21:00 - 00000000 ____D C:\Users\GAEL\AppData\Local\Battle.net 2015-12-12 20:26 - 2015-11-10 21:04 - 00000000 ____D C:\Program Files (x86)\StarCraft II 2015-12-12 20:14 - 2015-11-10 20:59 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-12-12 20:03 - 2009-07-14 05:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-12-12 15:55 - 2015-11-10 20:20 - 00000000 ____D C:\Program Files (x86)\Google 2015-12-12 15:09 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2015-12-12 12:19 - 2015-11-12 20:03 - 00000000 ____D C:\ProgramData\Oracle 2015-12-12 12:19 - 2015-11-12 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-12-12 12:19 - 2015-11-12 20:03 - 00000000 ____D C:\Program Files (x86)\Java 2015-12-12 12:18 - 2015-11-12 20:03 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-12-12 12:18 - 2015-11-12 20:03 - 00000000 ____D C:\Users\GAEL\.oracle_jre_usage 2015-12-12 11:35 - 2015-11-10 21:04 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm 2015-12-12 09:09 - 2015-11-10 19:57 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-12-12 09:05 - 2011-04-12 10:16 - 00747320 _____ C:\Windows\system32\perfh00C.dat 2015-12-12 09:05 - 2011-04-12 10:16 - 00149844 _____ C:\Windows\system32\perfc00C.dat 2015-12-12 09:05 - 2009-07-14 06:13 - 01668256 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-11 17:44 - 2015-11-11 07:38 - 00000000 ____D C:\ProgramData\IObit 2015-12-11 07:03 - 2009-07-14 05:45 - 00327672 _____ C:\Windows\system32\FNTCACHE.DAT 2015-12-09 18:22 - 2015-11-10 19:42 - 00000000 ____D C:\Users\GAEL\AppData\Local\VirtualStore 2015-12-09 18:12 - 2015-11-10 19:42 - 00000000 ____D C:\Users\GAEL 2015-12-09 18:01 - 2015-11-10 20:20 - 00000000 ____D C:\Users\GAEL\AppData\Local\Google 2015-12-09 17:04 - 2011-04-12 10:28 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-12-06 23:48 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-12-06 17:05 - 2015-11-10 21:04 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-12-02 13:18 - 2010-11-21 04:27 - 00301728 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-12-01 18:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2015-11-30 15:16 - 2015-11-11 07:15 - 00000000 ____D C:\Users\GAEL\Documents\StarCraft II 2015-11-30 09:36 - 2015-11-11 07:39 - 00003198 _____ C:\Windows\System32\Tasks\ASCU8_PerformanceMonitor 2015-11-30 09:36 - 2015-11-11 07:38 - 00002882 _____ C:\Windows\System32\Tasks\ASCU8_SkipUac_GAEL 2015-11-30 09:36 - 2015-11-11 07:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 8 2015-11-23 13:52 - 2015-11-10 20:38 - 00000000 ____D C:\Users\GAEL\AppData\Local\NVIDIA Corporation 2015-11-23 13:52 - 2015-11-10 19:49 - 00000000 ____D C:\ProgramData\Package Cache 2015-11-22 21:03 - 2015-11-14 20:26 - 00000000 ____D C:\Users\GAEL\AppData\Local\Warframe 2015-11-15 18:25 - 2015-11-10 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-11-15 13:17 - 2015-11-12 11:21 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\NVIDIA 2015-11-15 11:34 - 2015-11-11 07:38 - 00000000 ____D C:\Users\GAEL\AppData\Roaming\IObit 2015-11-15 11:34 - 2015-11-11 07:38 - 00000000 ____D C:\Program Files (x86)\IObit ==================== Fichiers à la racine de certains dossiers ======= 2015-12-09 17:05 - 2015-12-09 17:05 - 0003584 _____ () C:\Users\GAEL\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-11-10 20:00 - 2015-11-10 20:00 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Certains fichiers dans TEMP: ==================== C:\Users\GAEL\AppData\Local\Temp\amisetup5008__15940.exe C:\Users\GAEL\AppData\Local\Temp\BrowserAirInst.exe C:\Users\GAEL\AppData\Local\Temp\CmdLineExt01.dll C:\Users\GAEL\AppData\Local\Temp\fsd2201.exe C:\Users\GAEL\AppData\Local\Temp\fsd8A84.exe C:\Users\GAEL\AppData\Local\Temp\jre-8u66-windows-au.exe C:\Users\GAEL\AppData\Local\Temp\Opera_NI_stable.exe C:\Users\GAEL\AppData\Local\Temp\setup27789.exe C:\Users\GAEL\AppData\Local\Temp\SIntf16.dll C:\Users\GAEL\AppData\Local\Temp\SIntf32.dll C:\Users\GAEL\AppData\Local\Temp\SIntfNT.dll C:\Users\GAEL\AppData\Local\Temp\sqlite3.dll C:\Users\GAEL\AppData\Local\Temp\UninstallModule.exe ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2015-12-12 15:02 ==================== Fin de FRST.txt ============================