Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015 Exécuté par SOULEYMANE (administrateur) sur SOULEYMANE-HP (01-01-2016 15:45:23) Exécuté depuis C:\Users\SOULEYMANE\Desktop Profils chargés: SOULEYMANE (Profils disponibles: SOULEYMANE & DefaultAppPool) Platform: Windows 10 Pro (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe () C:\Users\SOULEYMANE\AppData\Local\Viber\Viber.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Farbar) C:\Users\SOULEYMANE\Desktop\FRST64(1).exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-11-02] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-07-03] (Synaptics Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2015-12-28] (AVAST Software) Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1550041179-468669968-642986644-1001\...\Run: [Viber] => C:\Users\SOULEYMANE\AppData\Local\Viber\Viber.exe [51657424 2015-11-09] () HKU\S-1-5-21-1550041179-468669968-642986644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileSyncShell64.dll [2015-12-09] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileSyncShell64.dll [2015-12-09] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64\FileSyncShell64.dll [2015-12-09] (Microsoft Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-12-28] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [2015-12-09] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [2015-12-09] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\SOULEYMANE\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll [2015-12-09] (Microsoft Corporation) GroupPolicyScripts: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{dd5ddeda-a79d-431f-828c-81152e0f2a86}: [DhcpNameServer] 192.168.0.254 Internet Explorer: ================== HKU\S-1-5-21-1550041179-468669968-642986644-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-1550041179-468669968-642986644-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm HKU\S-1-5-21-1550041179-468669968-642986644-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1550041179-468669968-642986644-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxps://www.google.com/search?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-12-01] (Oracle Corporation) BHO: Pas de nom -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> Pas de fichier BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-22] (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-01] (Oracle Corporation) BHO: Pas de nom -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> Pas de fichier BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-08-26] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22] (Google Inc.) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-10-19] (Hewlett-Packard Company) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-22] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-22] (Google Inc.) DPF: HKLM {3234EB1E-733E-4E6A-A8AB-EBB6287E5A7E} hxxp://content.systemrequirementslab.com/bin/srldetect_intel64_4.5.22.0.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668 FF DefaultSearchEngine: Yahoo! (Avast) FF DefaultSearchUrl: hxxps://fr.search.yahoo.com/yhs/search FF SearchEngineOrder.1: Yahoo! (Avast) FF SelectedSearchEngine: Yahoo! (Avast) FF Homepage: hxxp://www.google.fr/ FF Keyword.URL: hxxps://fr.search.yahoo.com/yhs/search FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-28] () FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-01] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-01] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-28] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1222172.dll [2015-11-19] (Adobe Systems, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2011-04-05] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll [2015-05-25] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1550041179-468669968-642986644-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\SOULEYMANE\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF user.js: detected! => C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668\user.js [2015-12-31] FF SearchPlugin: C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668\searchplugins\google-avast.xml [2014-12-20] FF SearchPlugin: C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668\searchplugins\yahoo-avast.xml [2014-12-21] FF Extension: Vlc context menu - C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668\extensions\vlcplaylist@helgatauscher.de.xpi [2015-12-27] FF Extension: Adblock Plus - C:\Users\SOULEYMANE\AppData\Roaming\Mozilla\Firefox\Profiles\s9vfzb5n.default-1419100266668\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-12-16] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-28] FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-04-23] <==== ATTENTION Chrome: ======= CHR Profile: C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-19] CHR Extension: (Google Docs) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-19] CHR Extension: (Google Drive) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-19] CHR Extension: (YouTube) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-19] CHR Extension: (Recherche Google) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-19] CHR Extension: (Google Sheets) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-19] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-19] CHR Extension: (Google Wallet) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-19] CHR Extension: (Gmail) - C:\Users\SOULEYMANE\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-19] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-28] ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) S3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [323152 2015-11-19] (Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2015-12-28] (AVAST Software) S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373824 2015-05-25] (WildTangent) R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP DayStarter\32-bit\HPDayStarterService.exe [133688 2011-01-28] (Hewlett-Packard Company) R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe [523680 2012-06-20] (Hewlett-Packard Company) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S3 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-10-23] () R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2013-11-02] (IDT, Inc.) [Fichier non signé] R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-07-03] (Synaptics Incorporated) S3 uArcCapture; C:\WINDOWS\SysWow64\ArcVCapRender\uArcCapture.exe [498352 2012-04-05] (ArcSoft, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-03-07] (Xobni Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ALCATELUSB; C:\Windows\System32\Drivers\AlcatelUsb.sys [25088 2014-09-30] (Windows (R) Codename Longhorn DDK provider) [Fichier non signé] R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [73976 2015-06-04] (Advanced Micro Devices, Inc.) R3 ARCVCAM; C:\Windows\system32\DRIVERS\ArcSoftVCapture.sys [42816 2012-02-03] (ArcSoft, Inc.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-12-28] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-12-28] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-12-28] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-12-28] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1055560 2015-12-28] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [451040 2015-12-28] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2015-12-28] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-12-28] (AVAST Software) R3 athr; C:\Windows\System32\drivers\athw10x.sys [4317808 2015-07-14] (Qualcomm Atheros Communications, Inc.) S3 blackberryncm; C:\Windows\System32\DRIVERS\blackberryncm6_AMD64.sys [25088 2014-09-08] (BlackBerry) [Fichier non signé] R3 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-05-27] (Disc Soft Ltd) R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160 2015-12-28] (Glarysoft Ltd) S3 jrdusbser; C:\Windows\System32\DRIVERS\jrdusbser.sys [119680 2014-09-30] (TCT International Mobile Ltd) [Fichier non signé] R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) S3 rimvndis; C:\Windows\System32\Drivers\rimvndis6_AMD64.sys [18432 2015-03-19] (BlackBerry Limited) [Fichier non signé] S3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [935168 2015-10-10] (Realtek ) R3 Sftfs; C:\Windows\System32\DRIVERS\Sftfswin7.sys [767648 2014-10-08] (Microsoft Corporation) R3 Sftplay; C:\Windows\System32\DRIVERS\Sftplaywin7.sys [273576 2014-10-08] (Microsoft Corporation) R3 Sftredir; C:\Windows\System32\DRIVERS\Sftredirwin7.sys [29864 2014-10-08] (Microsoft Corporation) R3 Sftvol; C:\Windows\System32\DRIVERS\Sftvolwin7.sys [23208 2014-10-08] (Microsoft Corporation) S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-12-12] (Synaptics Incorporated) R3 SNP2UVC; C:\Windows\system32\DRIVERS\snp2uvc.sys [2621128 2015-11-11] (Sonix Tech. Co., Ltd.) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 BTATH_BUS; \SystemRoot\System32\drivers\btath_bus.sys [X] U3 idsvc; pas de ImagePath S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-01-01 15:45 - 2016-01-01 15:46 - 00021052 _____ C:\Users\SOULEYMANE\Desktop\FRST.txt 2016-01-01 15:43 - 2016-01-01 15:45 - 00000000 ____D C:\FRST 2016-01-01 15:42 - 2016-01-01 15:43 - 02370560 _____ (Farbar) C:\Users\SOULEYMANE\Desktop\FRST64(1).exe 2016-01-01 15:36 - 2016-01-01 15:36 - 00016148 _____ C:\WINDOWS\system32\SOULEYMANE-HP_SOULEYMANE_HistoryPrediction.bin 2015-12-31 20:15 - 2015-12-31 20:16 - 05565560 _____ (Piriform Ltd) C:\Users\SOULEYMANE\Downloads\ccsetup513_slim.exe 2015-12-31 20:13 - 2015-12-31 20:13 - 00004144 _____ C:\Users\SOULEYMANE\Desktop\ZHPFixReport.txt 2015-12-31 20:05 - 2015-12-31 20:06 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2015-12-31 20:05 - 2015-12-31 20:05 - 00001918 _____ C:\Users\Public\Desktop\ZHPFix.lnk 2015-12-31 20:05 - 2015-12-31 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2015-12-31 20:04 - 2015-12-31 20:04 - 03521617 _____ (Nicolas Coolman ) C:\Users\SOULEYMANE\Downloads\ZHPFix.exe 2015-12-31 19:53 - 2015-12-31 19:53 - 00448512 _____ (OldTimer Tools) C:\Users\SOULEYMANE\Desktop\TFC.exe 2015-12-31 16:53 - 2015-12-31 16:53 - 02053120 _____ C:\Users\SOULEYMANE\ZHPDiag3.exe 2015-12-31 16:49 - 2015-12-31 16:49 - 00001072 _____ C:\Users\SOULEYMANE\Desktop\scanmalware.txt 2015-12-31 16:07 - 2015-12-31 16:07 - 00001171 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-12-31 16:07 - 2015-12-31 16:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-12-31 16:07 - 2015-12-31 16:07 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-12-31 16:07 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-12-31 16:07 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-12-31 16:07 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-12-31 16:02 - 2015-12-31 16:05 - 22908888 _____ (Malwarebytes ) C:\Users\SOULEYMANE\Desktop\mbam-setup-2.2.0.1024.exe 2015-12-31 15:53 - 2015-12-31 15:53 - 01745920 _____ C:\Users\SOULEYMANE\Desktop\adwcleaner_5.027.exe 2015-12-31 15:46 - 2015-12-31 15:46 - 00145425 _____ C:\Users\SOULEYMANE\Desktop\ZHPCleaner.txt 2015-12-31 15:08 - 2015-12-31 15:08 - 00000923 _____ C:\Users\SOULEYMANE\Desktop\ZHPCleaner.lnk 2015-12-31 15:07 - 2015-12-31 15:07 - 01978368 _____ C:\Users\SOULEYMANE\Downloads\ZHPCleaner.exe 2015-12-31 15:07 - 2015-12-31 15:07 - 01978368 _____ C:\Users\SOULEYMANE\Desktop\ZHPCleaner.exe 2015-12-31 00:28 - 2015-12-31 16:59 - 00124114 _____ C:\Users\SOULEYMANE\Desktop\ZHPDiag.txt 2015-12-31 00:24 - 2015-12-31 20:13 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\ZHP 2015-12-31 00:24 - 2015-12-31 16:54 - 00000913 _____ C:\Users\SOULEYMANE\Desktop\ZHPDiag.lnk 2015-12-31 00:12 - 2015-12-31 00:11 - 02052096 _____ C:\Users\SOULEYMANE\Desktop\ZHPDiag3.exe 2015-12-31 00:11 - 2015-12-31 00:11 - 02052096 _____ C:\Users\SOULEYMANE\Downloads\ZHPDiag3.exe 2015-12-28 19:03 - 2015-12-30 14:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-12-28 08:01 - 2015-12-28 08:03 - 15269608 _____ C:\Users\SOULEYMANE\Downloads\Glary_Utilities_v5.41.0.61.exe 2015-12-28 08:01 - 2015-12-28 08:03 - 01964912 _____ C:\Users\SOULEYMANE\Downloads\WinRAR_(64bit)_v5.30.exe 2015-12-28 07:27 - 2015-12-31 20:08 - 00000000 ____D C:\ProgramData\GlarySoft 2015-12-28 07:24 - 2015-12-28 07:24 - 00000000 ___HD C:\Users\SOULEYMANE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled 2015-12-28 06:56 - 2015-12-28 06:51 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2015-12-28 06:54 - 2015-12-31 20:08 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\GlarySoft 2015-12-28 06:54 - 2015-12-28 06:54 - 00020160 _____ (Glarysoft Ltd) C:\WINDOWS\system32\Drivers\GUBootStartup.sys 2015-12-28 06:54 - 2015-12-28 06:54 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\DiskDefrag 2015-12-28 06:52 - 2015-12-28 06:53 - 15262808 _____ C:\Users\SOULEYMANE\Downloads\glary-utilities_5-40_fr_73266.exe 2015-12-28 06:51 - 2016-01-01 15:36 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update 2015-12-28 06:51 - 2015-12-28 06:51 - 00451040 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00155304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2015-12-28 06:51 - 2015-12-28 06:51 - 00001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk 2015-12-28 06:51 - 2015-12-28 06:51 - 00001967 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2015-12-28 06:51 - 2015-12-28 06:51 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\AVAST Software 2015-12-28 06:51 - 2015-12-28 06:50 - 01055560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2015-12-28 06:50 - 2015-12-28 06:50 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2015-12-28 06:47 - 2015-12-28 06:47 - 00000000 ____D C:\Program Files\AVAST Software 2015-12-28 06:46 - 2015-12-28 06:47 - 05066096 _____ (AVAST Software) C:\Users\SOULEYMANE\Downloads\avast_free_antivirus_setup_online(1).exe 2015-12-28 06:30 - 2015-12-28 06:30 - 00002676 _____ C:\Users\SOULEYMANE\Documents\cc_20151228_063040.reg 2015-12-28 06:28 - 2015-12-28 06:29 - 00151742 _____ C:\Users\SOULEYMANE\Documents\cc_20151228_062836.reg 2015-12-27 22:54 - 2015-12-31 16:45 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-12-25 16:23 - 2015-12-25 16:23 - 00182727 _____ C:\Users\SOULEYMANE\Documents\RIB.pdf 2015-12-25 15:57 - 2015-12-25 15:57 - 00278623 ____T C:\Users\SOULEYMANE\Documents\RIB SGBCI.oxps 2015-12-25 14:22 - 2015-12-31 07:43 - 00000380 _____ C:\WINDOWS\Tasks\HPCeeScheduleForSOULEYMANE.job 2015-12-25 14:22 - 2015-12-30 22:15 - 00002884 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForSOULEYMANE 2015-12-20 21:06 - 2015-12-20 21:06 - 00000000 ____D C:\Program Files\Common Files\QCA_Bluetooth 2015-12-20 20:58 - 2015-12-20 21:05 - 10723620 _____ C:\Users\SOULEYMANE\Downloads\K1202-BT_10.0.1.5_Win10(1).zip 2015-12-20 20:34 - 2015-12-20 20:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2015-12-20 20:33 - 2015-12-20 21:06 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite 2015-12-20 20:30 - 2015-12-20 20:31 - 10723620 _____ C:\Users\SOULEYMANE\Downloads\K1202-BT_10.0.1.5_Win10.zip 2015-12-20 20:24 - 2015-12-20 20:24 - 00000000 ____D C:\Users\SOULEYMANE\Desktop\win10 2015-12-20 20:24 - 2015-07-14 08:00 - 04317808 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athw10x.sys 2015-12-20 20:16 - 2015-12-20 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com 2015-12-20 19:17 - 2015-12-20 19:17 - 02943229 _____ C:\Users\SOULEYMANE\Downloads\Driver Toolkit 8.5 Crack License key (smcracks.com).rar 2015-12-19 21:35 - 2015-12-19 21:35 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Local\Viber Media S.à r.l 2015-12-18 00:06 - 2015-12-18 00:06 - 00000000 ____D C:\ProgramData\ATI 2015-12-17 16:57 - 2015-12-17 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-12-17 16:57 - 2015-12-17 16:57 - 00000000 ____D C:\Program Files\ATI Technologies 2015-12-17 16:46 - 2015-12-17 16:46 - 00243696 _____ C:\WINDOWS\system32\clinfo.exe 2015-12-17 16:46 - 2015-12-17 16:46 - 00136176 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00122352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00111600 _____ C:\WINDOWS\system32\hsa-thunk64.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00111088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00103408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00096752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll 2015-12-17 16:46 - 2015-12-17 16:46 - 00012784 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 47794160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 30775792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 27544560 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 25320432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 22327280 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 15725552 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 14310896 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 09355016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 08982432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 08009360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 07683096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap 2015-12-17 16:44 - 2015-12-17 16:44 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap 2015-12-17 16:44 - 2015-12-17 16:44 - 01196032 _____ C:\WINDOWS\system32\amdocl_as64.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 01070592 _____ C:\WINDOWS\system32\amdocl_ld64.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 01004032 _____ C:\WINDOWS\SysWOW64\amdocl_as32.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00935408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00935408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00807424 _____ C:\WINDOWS\SysWOW64\amdocl_ld32.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00662400 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb 2015-12-17 16:44 - 2015-12-17 16:44 - 00662400 _____ C:\WINDOWS\system32\atiapfxx.blb 2015-12-17 16:44 - 2015-12-17 16:44 - 00375792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00341488 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00199664 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00168944 _____ C:\WINDOWS\system32\atieah64.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00165360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00152560 _____ C:\WINDOWS\SysWOW64\atieah32.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00150512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00083952 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00081160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00078320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00073712 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00071152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00068080 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00064496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00060912 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00059888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2015-12-17 16:44 - 2015-12-17 16:44 - 00057840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00052208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2015-12-17 16:44 - 2015-12-17 16:44 - 00038384 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2015-12-17 16:43 - 2015-12-17 16:44 - 39720944 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 06686192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 05216240 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00631792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00524272 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00471320 _____ C:\WINDOWS\system32\amdmiracast.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00213488 _____ C:\WINDOWS\system32\amdgfxinfo64.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00198640 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00143344 _____ C:\WINDOWS\system32\amdhdl64.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00132080 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2015-12-17 16:43 - 2015-12-17 16:43 - 00048112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2015-12-16 15:01 - 2015-12-16 15:01 - 00000000 ____D C:\Users\SOULEYMANE\Documents\prefec 2016 2015-12-16 14:59 - 2015-12-16 14:59 - 00199666 _____ C:\Users\SOULEYMANE\Downloads\1202 - R12E - étudiant.pdf 2015-12-16 14:59 - 2015-12-16 14:59 - 00130647 _____ C:\Users\SOULEYMANE\Downloads\170216 A 11H.pdf 2015-12-16 02:52 - 2015-12-16 02:52 - 00002300 _____ C:\Users\SOULEYMANE\Desktop\HP Support Assistant.lnk 2015-12-16 02:52 - 2015-12-16 02:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2015-12-16 02:47 - 2015-12-16 02:49 - 03795680 _____ (Oleg N. Scherbakov) C:\Users\SOULEYMANE\Downloads\HPSupportSolutionsFramework-12.0.30.219.exe 2015-12-16 02:32 - 2015-12-16 02:48 - 40538576 _____ (Hewlett-Packard ) C:\Users\SOULEYMANE\Downloads\sp72974.exe 2015-12-16 02:27 - 2015-12-16 02:27 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-12-16 02:27 - 2015-10-10 00:27 - 00935168 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys 2015-12-16 02:27 - 2015-10-10 00:27 - 00082544 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll 2015-12-16 02:16 - 2015-12-16 02:18 - 03223552 _____ (BluetoothInstaller.com) C:\Users\SOULEYMANE\Downloads\BluetoothDriverInstaller_x64.exe 2015-12-16 02:12 - 2015-12-16 02:14 - 03888007 _____ ( ) C:\Users\SOULEYMANE\Downloads\Bluetooth-Driver-Installer-1.0.0.9820.exe 2015-12-16 02:02 - 2015-12-16 02:03 - 02576738 _____ C:\Users\SOULEYMANE\Downloads\win10-10.0.0.324-whql.zip 2015-12-16 01:59 - 2015-12-16 02:02 - 09762243 _____ C:\Users\SOULEYMANE\Downloads\0003-Install_Win10_10006_10132015.zip 2015-12-16 01:56 - 2015-12-20 20:16 - 00001039 _____ C:\Users\Public\Desktop\DriversCloud.com - Démarrer la détection.lnk 2015-12-16 01:56 - 2015-12-20 20:16 - 00000000 ____D C:\ProgramData\DriversCloud.com 2015-12-16 01:56 - 2015-12-20 20:16 - 00000000 ____D C:\Program Files\DriversCloud.com 2015-12-16 01:53 - 2015-12-16 01:53 - 00268248 _____ C:\Users\SOULEYMANE\Downloads\DriversCloud_Win(1).exe 2015-12-16 01:52 - 2015-12-16 01:53 - 00268248 _____ C:\Users\SOULEYMANE\Downloads\DriversCloud_Win.exe 2015-12-12 17:45 - 2015-12-12 17:45 - 00000000 ___HD C:\OneDriveTemp 2015-12-11 08:17 - 2015-12-11 08:17 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-12-10 23:04 - 2015-12-10 23:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-12-09 01:07 - 2015-12-09 01:07 - 00000000 ____D C:\a37563c16ba483c72e4f2be3 2015-12-08 08:54 - 2015-12-08 08:59 - 00058262 _____ C:\Users\SOULEYMANE\Documents\enrolmentcertificate.odg 2015-12-08 08:38 - 2015-12-08 08:38 - 00055836 _____ C:\Users\SOULEYMANE\Downloads\161808-preenrolmentcertificate.pdf ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-01-01 15:43 - 2015-07-10 10:05 - 00000000 ____D C:\Windows 2016-01-01 15:41 - 2015-07-31 01:03 - 00007150 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-01-01 15:41 - 2015-07-10 17:24 - 01808526 _____ C:\WINDOWS\system32\perfh00C.dat 2016-01-01 15:41 - 2015-07-10 17:24 - 00473076 _____ C:\WINDOWS\system32\perfc00C.dat 2016-01-01 15:39 - 2015-09-30 20:46 - 00000000 ____D C:\Users\SOULEYMANE\Documents\ViberDownloads 2016-01-01 15:38 - 2015-02-18 19:16 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\ViberPC 2016-01-01 15:38 - 2013-04-13 19:14 - 00004180 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{888B9B63-1B0D-49DE-BCF2-F716D3BFA78E} 2016-01-01 15:37 - 2014-04-12 21:18 - 00001100 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-01-01 15:35 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-01-01 15:35 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-01-01 04:05 - 2015-07-10 10:05 - 00786432 ___SH C:\WINDOWS\system32\config\BBI 2016-01-01 04:03 - 2014-04-12 21:18 - 00001104 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-01-01 03:51 - 2013-04-13 20:12 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-01-01 03:50 - 2015-10-01 20:50 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\Skype 2016-01-01 00:01 - 2014-09-06 13:23 - 00000000 ____D C:\Users\SOULEYMANE\AppData\LocalLow\Temp 2015-12-31 22:04 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-12-31 20:19 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF 2015-12-31 20:16 - 2015-01-23 18:25 - 00002232 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-12-31 20:16 - 2015-01-23 18:25 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-12-31 20:07 - 2013-04-13 18:58 - 00000000 ____D C:\Program Files\Symantec 2015-12-31 19:56 - 2015-07-31 01:05 - 00000000 ____D C:\Users\SOULEYMANE 2015-12-31 16:43 - 2014-12-04 16:04 - 00000290 __RSH C:\ProgramData\ntuser.pol 2015-12-31 16:41 - 2015-11-17 10:26 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2015-12-31 15:58 - 2014-12-20 16:45 - 00000000 ____D C:\AdwCleaner 2015-12-31 15:17 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-31 07:43 - 2015-08-01 21:07 - 00001244 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1550041179-468669968-642986644-1001UA.job 2015-12-31 07:43 - 2015-08-01 21:07 - 00001192 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1550041179-468669968-642986644-1001Core.job 2015-12-30 22:11 - 2015-08-01 21:07 - 00003976 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1550041179-468669968-642986644-1001UA 2015-12-30 22:11 - 2015-08-01 21:07 - 00003708 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1550041179-468669968-642986644-1001Core 2015-12-30 14:31 - 2013-04-13 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-28 08:03 - 2014-12-03 08:26 - 00000000 ____D C:\Program Files\WinRAR 2015-12-28 08:03 - 2013-05-14 18:29 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-12-28 08:03 - 2013-05-14 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-12-28 06:47 - 2014-12-20 19:49 - 00000000 ____D C:\ProgramData\AVAST Software 2015-12-28 03:02 - 2014-02-17 17:17 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\SoftGrid Client 2015-12-27 22:53 - 2014-12-23 15:50 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\SOULEYMANE\Downloads\mbam-setup-2.0.4.1028.exe 2015-12-27 21:55 - 2013-11-20 20:56 - 00000000 ____D C:\Users\SOULEYMANE\Desktop\Prefecture 2015-12-27 06:50 - 2015-10-23 20:28 - 00280600 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-12-27 06:50 - 2014-05-13 20:52 - 00280600 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2015-12-27 06:35 - 2015-10-23 20:28 - 00280600 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2015-12-21 23:16 - 2013-04-13 18:57 - 00000000 ____D C:\ProgramData\Skype 2015-12-17 16:57 - 2015-07-31 01:01 - 00000000 ____D C:\Program Files (x86)\ATI Technologies 2015-12-17 16:51 - 2015-08-21 17:24 - 00000000 ____D C:\AMD 2015-12-17 16:46 - 2015-07-16 00:12 - 00874480 _____ (AMD) C:\WINDOWS\system32\coinst_15.20.dll 2015-12-17 16:44 - 2015-10-22 22:43 - 10211016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2015-12-17 16:44 - 2015-10-22 22:43 - 07482560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2015-12-17 16:44 - 2015-10-22 22:43 - 01223544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2015-12-17 16:44 - 2015-10-22 22:43 - 00143056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2015-12-17 16:44 - 2015-10-22 22:43 - 00112360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2015-12-17 16:44 - 2015-07-16 01:12 - 00162232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2015-12-17 16:44 - 2015-07-16 01:11 - 12088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2015-12-17 16:44 - 2015-07-16 01:11 - 08864920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2015-12-17 16:44 - 2015-07-16 01:11 - 01479808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2015-12-17 16:44 - 2015-07-16 01:11 - 00130064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2015-12-17 16:44 - 2015-07-16 01:06 - 21648880 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2015-12-17 16:44 - 2015-07-16 00:17 - 00683504 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2015-12-17 16:44 - 2015-07-16 00:17 - 00451056 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2015-12-17 16:44 - 2015-07-16 00:17 - 00255472 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2015-12-17 16:44 - 2015-07-16 00:13 - 01256432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2015-12-17 16:44 - 2015-07-16 00:13 - 00674288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2015-12-17 09:20 - 2014-02-24 08:02 - 00000000 ____D C:\Users\SOULEYMANE\Desktop\bloc note 2015-12-16 03:14 - 2013-04-13 19:05 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Local\Hewlett-Packard 2015-12-16 03:14 - 2011-05-03 19:12 - 00000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard 2015-12-16 03:14 - 2011-05-03 18:43 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-12-16 02:54 - 2015-07-10 13:20 - 00409400 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-12-16 02:52 - 2011-05-03 19:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-12-16 02:52 - 2011-05-03 18:43 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2015-12-16 02:49 - 2013-04-13 18:39 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\hpqLog 2015-12-16 02:48 - 2011-02-02 21:42 - 00000000 ____D C:\swsetup 2015-12-12 20:37 - 2013-04-23 18:46 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\vlc 2015-12-12 17:45 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-12-12 17:45 - 2014-12-03 15:12 - 00000000 ___RD C:\Users\SOULEYMANE\OneDrive 2015-12-11 08:17 - 2013-09-26 16:35 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Roaming\Dropbox 2015-12-10 23:04 - 2015-10-01 20:50 - 00002640 _____ C:\Users\Public\Desktop\Skype.lnk 2015-12-10 23:04 - 2014-02-27 23:08 - 00000000 ____D C:\Users\SOULEYMANE\AppData\Local\Skype 2015-12-10 23:04 - 2013-04-13 18:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-12-10 02:35 - 2013-04-14 23:34 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-12-10 02:35 - 2013-04-14 23:34 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-12-09 19:31 - 2013-04-14 23:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-12-09 17:07 - 2015-07-31 01:36 - 00002465 _____ C:\Users\SOULEYMANE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-12-09 04:39 - 2013-04-13 19:17 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2015-12-09 01:07 - 2013-07-16 17:17 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-12-09 01:07 - 2013-04-14 19:46 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-12-04 14:59 - 2014-04-12 21:18 - 00004162 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-04 14:58 - 2014-04-12 21:18 - 00003930 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore ==================== Fichiers à la racine de certains dossiers ======= 2013-04-13 18:53 - 2013-04-26 18:34 - 0105614 _____ () C:\Users\SOULEYMANE\AppData\Roaming\QWInstall.log 2013-04-19 19:48 - 2014-03-17 00:09 - 0003927 _____ () C:\Users\SOULEYMANE\AppData\Roaming\Rim.Desktop.Exception.log 2013-04-19 19:48 - 2014-03-28 06:15 - 0005146 _____ () C:\Users\SOULEYMANE\AppData\Roaming\Rim.Desktop.HttpServerSetup.log 2013-04-19 19:48 - 2014-03-17 00:09 - 0003927 _____ () C:\Users\SOULEYMANE\AppData\Roaming\Rim.DesktopHelper.Exception.log 2014-06-19 15:00 - 2014-06-19 15:00 - 0000024 _____ () C:\Users\SOULEYMANE\AppData\Roaming\temp.ini 2014-09-26 20:27 - 2015-05-18 04:50 - 0077824 _____ () C:\Users\SOULEYMANE\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-07-30 17:41 - 2015-07-30 17:41 - 0000351 _____ () C:\Users\SOULEYMANE\AppData\Local\LMIR0001.tmp_r.bat 2015-02-07 01:22 - 2015-02-07 01:22 - 0000746 _____ () C:\Users\SOULEYMANE\AppData\Local\recently-used.xbel 2014-12-26 23:11 - 2014-12-26 23:50 - 0007596 _____ () C:\Users\SOULEYMANE\AppData\Local\Resmon.ResmonCfg 2013-04-23 20:43 - 2013-04-23 20:43 - 0000000 _____ () C:\ProgramData\3b2626382a2b34292736592722_c 2013-04-13 19:15 - 2013-04-13 19:15 - 0000056 _____ () C:\ProgramData\ezsidmv.dat 2014-12-03 08:18 - 2014-12-03 08:43 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc Fichiers à déplacer ou supprimer: ==================== C:\Users\SOULEYMANE\ZHPDiag3.exe ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2015-12-30 14:44 ==================== Fin de FRST.txt ============================