Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2016 01 Exécuté par feesoleil64 (administrateur) sur FEESOLEIL (26-08-2016 21:52:54) Exécuté depuis C:\Users\feesoleil64\Downloads Profils chargés: feesoleil64 (Profils disponibles: feesoleil64 & Administrateur) Platform: Windows 8 (X64) Langue: Français (France) Internet Explorer Version 10 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteUser.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 5\program\soffice.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 5\program\soffice.bin (Farbar) C:\Users\feesoleil64\Downloads\FRST64(1).exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-08-20] (IDT, Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808 2016-07-01] (Synaptics Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-09-18] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [581024 2012-09-07] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2629632 2012-09-25] (Brother Industries, Ltd.) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [204560 2016-08-18] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6709008 2016-07-28] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2016-08-23] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-4191687600-3337495284-2790797349-1001\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [1711680 2013-01-27] (CyberLink Corp.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Pas de fichier ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{E8E5D411-1865-4EDB-809F-CE4C2BA5AA08}: [DhcpNameServer] 192.168.0.254 ManualProxies: Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/3 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/3 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/3 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/3 HKU\S-1-5-21-4191687600-3337495284-2790797349-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/3 HKU\S-1-5-21-4191687600-3337495284-2790797349-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/3 SearchScopes: HKLM -> {34B99490-A983-4E3F-9991-BEF6098AD37D} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> {34B99490-A983-4E3F-9991-BEF6098AD37D} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\S-1-5-21-4191687600-3337495284-2790797349-1001 -> {34B99490-A983-4E3F-9991-BEF6098AD37D} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-4191687600-3337495284-2790797349-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Pas de nom -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> Pas de fichier BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-08-23] (AVAST Software) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard) BHO-x32: Pas de nom -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> Pas de fichier BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-08-23] (AVAST Software) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) FireFox: ======== FF ProfilePath: C:\Users\feesoleil64\AppData\Roaming\Mozilla\Firefox\Profiles\53hdez6k.default-1465160478062 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll [2012-08-08] (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-28] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-13] CHR Extension: (Google Docs) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-13] CHR Extension: (Google Drive) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-13] CHR Extension: (YouTube) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-13] CHR Extension: (Adblock Plus) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-08-23] CHR Extension: (Avast SafePrice) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-08-25] CHR Extension: (Google Sheets) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-13] CHR Extension: (Google Docs hors connexion) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-13] CHR Extension: (Luminator) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcpgeidanebjmbbilkjfibcaecolkham [2016-08-21] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-13] CHR Extension: (Gmail) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-13] CHR Extension: (Chrome Media Router) - C:\Users\feesoleil64\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-21] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-08-23] (AVAST Software) S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [674552 2016-07-28] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5267456 2016-07-28] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488 2016-08-18] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [760024 2016-07-28] (AVG Technologies CZ, s.r.o.) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [Fichier non signé] R2 HPConnectedRemote; C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35744 2012-10-12] (Hewlett-Packard) R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-14] (Realsil Microelectronics Inc.) [Fichier non signé] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) S3 vmicvss; C:\Windows\System32\ICSvc.dll [336384 2012-07-26] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-07-10] (Advanced Micro Devices, Inc.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-08-23] (AVAST Software) S3 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-08-23] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-08-23] (AVAST Software) S3 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-08-23] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-08-23] (AVAST Software) S3 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-08-23] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-08-23] (AVAST Software) S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-08-23] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-08-23] (AVAST Software) S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [314112 2016-06-30] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [261376 2016-06-01] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-06-01] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [261888 2016-07-19] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.) R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.) R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [313088 2016-07-20] (AVG Technologies CZ, s.r.o.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [130688 2016-07-22] (Samsung Electronics Co., Ltd.) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3265256 2012-11-01] (Broadcom Corporation) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2016-07-01] (Synaptics Incorporated) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-26 21:52 - 2016-08-26 21:53 - 00019841 _____ C:\Users\feesoleil64\Downloads\FRST.txt 2016-08-26 21:52 - 2016-08-26 21:52 - 02396160 _____ (Farbar) C:\Users\feesoleil64\Downloads\FRST64(1).exe 2016-08-26 21:52 - 2016-08-26 21:52 - 00000000 ____D C:\FRST 2016-08-26 21:33 - 2016-08-26 21:33 - 00000109 ____H C:\Users\feesoleil64\Downloads\.~lock.Sarah(1).pages# 2016-08-26 21:31 - 2016-08-26 21:31 - 00789113 _____ C:\Users\feesoleil64\Downloads\Sarah(1).pages 2016-08-26 21:24 - 2016-08-26 21:24 - 00789113 _____ C:\Users\feesoleil64\Downloads\Sarah.pages 2016-08-25 23:21 - 2016-08-25 23:21 - 02396160 _____ (Farbar) C:\Users\feesoleil64\Downloads\FRST64.exe 2016-08-25 23:15 - 2016-08-25 23:15 - 00114159 _____ C:\Users\feesoleil64\Desktop\ZHPDiag.txt 2016-08-25 23:14 - 2016-08-25 23:14 - 02299904 _____ C:\Users\feesoleil64\Downloads\ZHPDiag3 (2).exe 2016-08-23 22:55 - 2016-08-23 22:55 - 00000788 _____ C:\Users\feesoleil64\Desktop\ZHPDiag.lnk 2016-08-23 22:54 - 2016-08-23 22:54 - 02299904 _____ C:\Users\feesoleil64\Downloads\ZHPDiag3 (1).exe 2016-08-23 22:53 - 2016-08-23 22:53 - 02299904 _____ C:\Users\feesoleil64\Downloads\ZHPDiag3.exe 2016-08-23 22:48 - 2016-08-23 22:48 - 01036367 _____ C:\Users\feesoleil64\Downloads\adblock_plus-2.7.3-sm+tb+fx+an (2).xpi 2016-08-23 22:47 - 2016-08-23 22:47 - 00242256 _____ C:\Users\feesoleil64\Downloads\Firefox Setup Stub 48.0.1 (1).exe 2016-08-23 22:47 - 2016-08-23 22:47 - 00003918 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1471985236 2016-08-23 22:47 - 2016-08-23 22:47 - 00001043 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk 2016-08-23 22:47 - 2016-08-23 22:47 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2016-08-23 22:46 - 2016-08-23 22:45 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2016-08-23 22:44 - 2016-08-23 22:44 - 01036367 _____ C:\Users\feesoleil64\Downloads\adblock_plus-2.7.3-sm+tb+fx+an (1).xpi 2016-08-23 22:44 - 2016-08-23 22:44 - 00242256 _____ C:\Users\feesoleil64\Downloads\Firefox Setup Stub 48.0.1.exe 2016-08-23 22:35 - 2016-08-23 22:35 - 01036367 _____ C:\Users\feesoleil64\Downloads\adblock_plus-2.7.3-sm+tb+fx+an.xpi 2016-08-23 22:32 - 2016-08-23 22:32 - 00000000 ____D C:\Users\feesoleil64\AppData\Roaming\AVAST Software 2016-08-23 22:31 - 2016-08-23 22:47 - 00004180 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-08-23 22:31 - 2016-08-23 22:30 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-08-23 22:31 - 2016-08-23 22:30 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-08-23 22:30 - 2016-08-23 22:30 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-08-23 22:30 - 2016-08-23 22:30 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-08-23 22:26 - 2016-08-23 22:45 - 00000000 ____D C:\Program Files\AVAST Software 2016-08-23 22:25 - 2016-08-23 22:26 - 06334848 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe 2016-08-23 22:25 - 2016-08-23 22:26 - 06334848 _____ (AVAST Software) C:\Users\feesoleil64\Downloads\avast_free_antivirus_setup_online.exe 2016-08-23 09:08 - 2016-08-23 09:08 - 00592901 _____ C:\Users\feesoleil64\Desktop\23-08-2016 08;27;27.PDF 2016-08-23 09:07 - 2016-08-23 09:07 - 00592901 _____ C:\Users\feesoleil64\Downloads\23-08-2016 08;27;27.PDF 2016-08-23 09:03 - 2016-08-23 09:03 - 00003651 _____ C:\Users\feesoleil64\Desktop\AdwCleaner[C0].txt 2016-08-23 08:57 - 2016-08-23 08:57 - 00003470 _____ C:\Users\feesoleil64\Desktop\AdwCleaner[S0].txt 2016-08-23 08:44 - 2016-08-23 08:58 - 00000000 ____D C:\AdwCleaner 2016-08-23 08:44 - 2016-08-23 08:44 - 03784256 _____ C:\Users\feesoleil64\Downloads\adwcleaner_6.000.exe 2016-08-21 20:25 - 2016-08-21 20:25 - 00110881 _____ C:\Users\feesoleil64\Documents\Vinaigre blanc contre les puces - Ooreka.pdf 2016-08-21 20:25 - 2016-08-21 20:25 - 00002166 _____ C:\Users\feesoleil64\Documents\traitement des puces.txt 2016-08-05 08:00 - 2016-07-14 10:26 - 00002403 _____ C:\Users\feesoleil64\Documents\mission victor.txt 2016-08-02 19:07 - 2016-08-02 19:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software 2016-08-02 13:39 - 2016-08-02 13:39 - 00000000 ____D C:\Users\feesoleil64\AppData\LocalLow\Temp 2016-08-02 13:30 - 2016-08-02 13:32 - 00000000 ____D C:\Windows\LastGood.Tmp 2016-07-22 05:51 - 2016-07-22 05:51 - 00164992 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\ssudmdm.sys 2016-07-22 05:51 - 2016-07-22 05:51 - 00130688 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\ssudbus.sys 2016-07-20 08:46 - 2016-07-20 08:46 - 00313088 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgwfpa.sys 2016-07-19 12:27 - 2016-07-19 12:27 - 00261888 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2016-07-15 21:35 - 2016-07-15 21:35 - 00000000 ____D C:\Users\feesoleil64\AppData\Roaming\WildTangent 2016-07-15 21:27 - 2016-07-15 21:27 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2016-07-13 14:24 - 2016-06-25 20:28 - 00050368 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-07-13 14:24 - 2016-06-25 17:55 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2016-07-13 14:24 - 2016-06-25 17:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-07-13 14:24 - 2016-06-17 15:09 - 01208320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-07-12 09:16 - 2016-08-23 22:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2016-07-12 09:16 - 2016-07-12 09:16 - 00000000 ____D C:\Users\feesoleil64\AppData\Roaming\TuneUp Software 2016-07-12 09:16 - 2016-07-12 09:16 - 00000000 ____D C:\Users\feesoleil64\AppData\Roaming\AVG 2016-07-12 09:15 - 2016-07-12 09:15 - 00000000 ___HD C:\$AVG 2016-07-12 09:12 - 2016-08-26 15:06 - 00000000 ____D C:\ProgramData\MFAData 2016-07-12 09:12 - 2016-07-12 09:12 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\MFAData 2016-07-12 09:11 - 2016-08-04 21:44 - 00000984 _____ C:\Users\Public\Desktop\AVG.lnk 2016-07-12 09:11 - 2016-08-04 21:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen 2016-07-12 09:10 - 2016-07-12 09:14 - 00000000 ____D C:\Program Files (x86)\AVG 2016-07-12 09:07 - 2016-08-23 22:19 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\AvgSetupLog 2016-07-12 09:07 - 2016-08-02 19:04 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\Avg 2016-07-12 09:07 - 2016-07-12 09:15 - 00000000 ____D C:\ProgramData\Avg 2016-07-07 21:57 - 2016-08-25 23:25 - 00003202 _____ C:\Windows\System32\Tasks\HPCeeScheduleForfeesoleil64 2016-07-07 21:56 - 2016-08-26 15:03 - 00000376 _____ C:\Windows\Tasks\HPCeeScheduleForfeesoleil64.job 2016-07-07 11:12 - 2016-07-07 11:12 - 00000000 _____ C:\Windows\SysWOW64\last.dump 2016-07-06 10:17 - 2016-06-25 20:09 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe 2016-07-02 21:46 - 2016-07-02 21:46 - 00000000 ____D C:\Users\Public\CyberLink 2016-07-01 08:52 - 2016-07-01 08:52 - 00003174 _____ C:\Windows\System32\Tasks\CLVDLauncher 2016-07-01 08:52 - 2016-07-01 08:52 - 00003174 _____ C:\Windows\System32\Tasks\CLMLSvc_P2G8 2016-07-01 08:52 - 2012-06-25 10:24 - 00092536 _____ (CyberLink) C:\Windows\system32\Drivers\CLVirtualDrive.sys 2016-07-01 08:20 - 2016-07-01 08:19 - 01060080 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll 2016-07-01 08:20 - 2016-07-01 08:19 - 00544496 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll 2016-07-01 08:20 - 2016-07-01 08:19 - 00495856 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys 2016-07-01 08:20 - 2016-07-01 08:19 - 00264432 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll 2016-07-01 08:20 - 2016-07-01 08:19 - 00192240 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo18.dll 2016-07-01 08:20 - 2016-07-01 08:19 - 00151280 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynTPCom.dll 2016-07-01 08:20 - 2016-07-01 08:19 - 00033008 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2016-06-30 14:41 - 2016-06-30 14:41 - 00314112 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2016-06-28 22:11 - 2016-06-28 22:15 - 00000000 ____D C:\Users\feesoleil64\Documents\photo jacky 2016-06-23 21:53 - 2016-06-23 21:53 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-06-23 21:53 - 2016-06-23 21:53 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-06-23 21:53 - 2016-06-23 21:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-06-20 15:22 - 2016-06-20 15:22 - 00077056 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avguniva.sys 2016-06-18 17:57 - 2016-07-10 09:17 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\CrashDumps 2016-06-14 22:06 - 2016-06-04 11:42 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2016-06-14 22:06 - 2012-10-25 05:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2016-06-14 22:06 - 2012-10-25 05:26 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2016-06-14 22:06 - 2012-10-25 05:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2016-06-13 07:30 - 2016-06-18 16:44 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\Google 2016-06-12 22:42 - 2016-08-08 23:01 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-12 22:37 - 2016-08-26 15:13 - 00001092 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-12 22:37 - 2016-08-26 00:00 - 00001096 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-12 22:37 - 2016-07-28 22:55 - 00004068 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-06-12 22:37 - 2016-07-28 22:55 - 00003832 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-06-12 22:36 - 2016-06-12 22:41 - 00000000 ____D C:\Program Files (x86)\Google 2016-06-12 22:18 - 2016-08-12 19:29 - 00000000 ____D C:\Program Files\Common Files\AV 2016-06-12 22:18 - 2016-07-01 00:24 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.146732548954602 2016-06-12 22:18 - 2016-06-12 22:18 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2016-06-12 22:13 - 2016-08-23 22:45 - 00000000 ____D C:\ProgramData\AVAST Software 2016-06-11 11:08 - 2016-06-23 21:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-06-09 16:40 - 2016-06-09 16:40 - 00000000 ____D C:\Users\feesoleil64\AppData\LocalLow\Adobe 2016-06-09 16:34 - 2016-07-12 17:54 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2016-06-09 16:33 - 2016-08-04 21:37 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-06-09 16:33 - 2016-06-09 16:44 - 00000000 ____D C:\ProgramData\Adobe 2016-06-09 16:33 - 2016-06-09 16:33 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-06-02 13:20 - 2016-06-02 13:20 - 00035946 _____ C:\Users\feesoleil64\Documents\AttestationDroits.pdf 2016-06-01 13:28 - 2016-06-01 13:28 - 00260352 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2016-06-01 13:25 - 2016-06-01 13:25 - 00261376 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2016-06-01 13:16 - 2016-06-01 13:16 - 00052992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys ==================== Trois mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-26 21:51 - 2016-05-04 23:53 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-08-26 15:03 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-08-25 23:25 - 2016-04-12 20:02 - 00000000 ____D C:\Users\feesoleil64 2016-08-25 23:16 - 2016-04-13 21:30 - 00000000 ____D C:\Users\feesoleil64\AppData\Roaming\ZHP 2016-08-25 23:16 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2016-08-25 23:14 - 2012-07-26 10:12 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-23 08:40 - 2012-12-18 00:02 - 00000000 ____D C:\ProgramData\CyberLink 2016-08-23 08:30 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2016-08-23 08:04 - 2016-04-27 16:52 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-08-20 08:51 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2016-08-16 15:45 - 2012-11-01 20:10 - 00875886 _____ C:\Windows\system32\perfh00C.dat 2016-08-16 15:45 - 2012-11-01 20:10 - 00188684 _____ C:\Windows\system32\perfc00C.dat 2016-08-16 15:45 - 2012-07-26 09:28 - 01997848 _____ C:\Windows\system32\PerfStringBackup.INI 2016-08-16 15:45 - 2012-07-26 07:37 - 00000000 ____D C:\Windows\Inf 2016-08-16 15:44 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2016-08-10 22:37 - 2016-04-12 23:19 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\VirtualStore 2016-08-10 22:37 - 2016-01-31 21:10 - 00000000 ____D C:\Users\feesoleil64\AppData\Local\Packages 2016-08-10 21:24 - 2016-04-16 11:17 - 00000000 ____D C:\Windows\system32\MRT 2016-08-10 21:08 - 2016-04-16 11:17 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-08-04 23:18 - 2016-04-13 08:13 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4191687600-3337495284-2790797349-1001 2016-07-28 07:44 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\LiveKernelReports ==================== Fichiers à la racine de certains dossiers ======= 2012-12-18 00:00 - 2012-12-18 00:00 - 0000595 _____ () C:\ProgramData\CyberlinkOutput.txt 2016-04-12 23:20 - 2016-04-12 23:20 - 0000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc Certains fichiers dans TEMP: ==================== C:\Users\feesoleil64\AppData\Local\Temp\avguirn_081467546272.exe C:\Users\feesoleil64\AppData\Local\Temp\avguirn_08723644912.exe C:\Users\feesoleil64\AppData\Local\Temp\Extract.exe C:\Users\feesoleil64\AppData\Local\Temp\libeay32.dll C:\Users\feesoleil64\AppData\Local\Temp\msvcr120.dll C:\Users\feesoleil64\AppData\Local\Temp\ReimagePackage.exe C:\Users\feesoleil64\AppData\Local\Temp\SP60051.exe C:\Users\feesoleil64\AppData\Local\Temp\SP61037.exe C:\Users\feesoleil64\AppData\Local\Temp\SP61277.exe C:\Users\feesoleil64\AppData\Local\Temp\SP61882.exe C:\Users\feesoleil64\AppData\Local\Temp\SP62364.exe C:\Users\feesoleil64\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-08-25 23:39 ==================== Fin de FRST.txt ============================