Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-08-2016 Exécuté par lakhdar (administrateur) sur LAKHDAR-PC (27-08-2016 23:12:53) Exécuté depuis C:\Users\lakhdar\Downloads\Programs Profils chargés: lakhdar (Profils disponibles: lakhdar) Platform: Windows 7 Ultimate Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 8 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe () C:\Program Files (x86)\EagleGet\EGMonitor.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE (My Digital Life Forums) C:\Windows\KMSServerService\KMS Server Service.exe () C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe () C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\EagleGet\EGMonitor.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\reader_sl.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe (Opera Software) C:\Program Files (x86)\Opera\39.0.2256.48\opera.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [WrtMon.exe] => C:\Windows\system32\spool\drivers\x64\3\WrtMon.exe [20480 2006-09-20] () HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [525312 2016-08-08] (IDT, Inc.) HKLM\...\Winlogon: [Userinit] wscript C:\Windows\run.vbs, Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8322328 2015-05-08] (Piriform Ltd) HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Run: [Software Informer] => C:\Program Files\Software Informer\softinfo.exe [1634304 2015-06-26] (Informer Technologies, Inc.) HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3491264 2013-01-21] (Tonec Inc.) SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - %SystemRoot%\system32\wpdshserviceobj.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2012-02-08] (Tonec Inc.) ShellIconOverlayIdentifiers: [JzShlobj] -> {7B286609-DA97-47E1-AC6B-33B8B4732C95} => Pas de fichier Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hyperappel du Petit Larousse 2010.lnk [2014-12-24] ShortcutTarget: Hyperappel du Petit Larousse 2010.lnk -> C:\Program Files (x86)\Larousse\Petit Larousse 2010\bin\Hyperappel.exe () BootExecute: 벰ل GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) AutoConfigURL: [S-1-5-21-4050100851-1036802284-602877230-1000] => hxxp://stoppblock.org/wpad.dat?b1dff59b233e2849d465a6d8ad9a3a0d14714562 Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.3 Tcpip\..\Interfaces\{0048CA1D-2B05-42A0-913F-CA59EA5FA5E5}: [DhcpNameServer] 192.168.1.3 ManualProxies: 0hxxp://stoppblock.org/wpad.dat?b1dff59b233e2849d465a6d8ad9a3a0d14714562 Internet Explorer: ================== HKU\S-1-5-21-4050100851-1036802284-602877230-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4050100851-1036802284-602877230-1000 -> DefaultScope {F813F595-1DA6-4476-915D-E3C2FDF0B758} URL = hxxp://www.google.com/cse?cx=partner-pub-6697027465779297:3144322079&ie=ISO-8859-1&sa=Search&q={searchTerms} SearchScopes: HKU\S-1-5-21-4050100851-1036802284-602877230-1000 -> {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = hxxp://fr.search.yahoo.com/search?p={searchTerms} SearchScopes: HKU\S-1-5-21-4050100851-1036802284-602877230-1000 -> {F813F595-1DA6-4476-915D-E3C2FDF0B758} URL = hxxp://www.google.com/cse?cx=partner-pub-6697027465779297:3144322079&ie=ISO-8859-1&sa=Search&q={searchTerms} BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2012-05-02] (Internet Download Manager, Tonec Inc.) BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-10-20] (AO Kaspersky Lab) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-04] (HP Inc.) BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2012-05-02] (Internet Download Manager, Tonec Inc.) BHO-x32: EGet Class -> {1E871FF8-029C-4732-8AA7-39E3D3872057} -> C:\Program Files (x86)\EagleGet\eagleSniffer.dll [2015-04-29] (EagleGet.com) BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-10-20] (AO Kaspersky Lab) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-04] (HP Inc.) Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-10-20] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-10-20] (AO Kaspersky Lab) Toolbar: HKU\S-1-5-21-4050100851-1036802284-602877230-1000 -> Pas de nom - {B01C50CF-7643-4299-A2BE-C257A7810017} - Pas de fichier DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\lakhdar\AppData\Roaming\Mozilla\Firefox\Profiles\j78amhv4.default FF NewTab: hxxp://www.nicesearches.com?type=hp&ts=1471337781&from=c3a00815&uid=st9500423as_5wr18f7t&z=7376da3fb0229a569762889gbz8m8gfc2c4mbb8efe FF Homepage: hxxp://www.google.com FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-15] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-15] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @pages.tvunetworks.com/WebPlayer -> C:\Windows\system32\TVUAx\npTVUAx.dll [Pas de fichier] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-21] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-21] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-4050100851-1036802284-602877230-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\lakhdar\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-05-08] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-4050100851-1036802284-602877230-1000: eagleget.com/EagleGet32 -> C:\Program Files (x86)\EagleGet\npEagleget.dll [2015-04-29] (EagleGet) FF Plugin HKU\S-1-5-21-4050100851-1036802284-602877230-1000: eagleget.com/EagleGet64_x86_64 -> C:\Program Files (x86)\EagleGet\npEagleget64.dll [2015-04-29] (EagleGet) FF user.js: detected! => C:\Users\lakhdar\AppData\Roaming\Mozilla\Firefox\Profiles\j78amhv4.default\user.js [2016-08-19] FF SearchPlugin: C:\Users\lakhdar\AppData\Roaming\Mozilla\Firefox\Profiles\j78amhv4.default\searchplugins\nice.xml [2016-08-19] FF Extension: (Pas de nom) - C:\Users\lakhdar\AppData\Roaming\Mozilla\Firefox\Profiles\j78amhv4.default\extensions\foxyproxy@eric.h.jung [non trouvé(e)] FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-05-26] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox FF HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\lakhdar\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\lakhdar\AppData\Roaming\IDM\idmmzcc5 [2015-10-30] [non signé] FF HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\lakhdar\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => non trouvé(e) FF HKU\S-1-5-21-4050100851-1036802284-602877230-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\lakhdar\AppData\Roaming\IDM\idmmzcc5 Chrome: ======= CHR HomePage: qudachmupishplalily -> hxxp://www.youndoo.com/?z=6b75518233b22d9b88324b2gczamdg5q6e4c2z7w8q&from=wak&uid=ST9500423AS_5WR18F7T&type=hp CHR StartupUrls: qudachmupishplalily -> "hxxp://www.google.fr/" CHR Profile: C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2 CHR Extension: (Google Slides) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-16] CHR Extension: (Google Docs) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-16] CHR Extension: (Google Drive) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-16] CHR Extension: (YouTube) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-16] CHR Extension: (Adblock Plus) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-02-16] CHR Extension: (Recherche Google) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-16] CHR Extension: (Google Sheets) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-16] CHR Extension: (Google Docs hors connexion) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-16] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-16] CHR Extension: (Gmail) - C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-16] CHR Profile: C:\Users\lakhdar\AppData\Local\Google\Chrome\User Data\Profile 4 CHR Extension: (Download Youtube Chrome) - D:\Nouveau dossier (5) [2016-07-21] [UpdateUrl: hxxp://www.downloadyoutubechrome.com/updates.xml] <==== ATTENTION CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20] CHR HKU\S-1-5-21-4050100851-1036802284-602877230-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20] CHR HKLM-x32\...\Chrome\Extension: [kaebhgioafceeldhgjmendlfhbfjefmo] - C:\Program Files (x86)\EagleGet\addon\eagleget_cext@eagleget.com.crx [2014-09-18] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20] Opera: ======= OPR Extension: (Adblock Plus) - C:\Users\lakhdar\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2016-08-22] ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-10-16] (Kaspersky Lab ZAO) R2 egGetSvc; C:\Program Files (x86)\EagleGet\EGMonitor.exe [233472 2015-04-29] () [Fichier non signé] R2 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [166400 2015-04-21] (SEIKO EPSON CORPORATION) [Fichier non signé] R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [128512 2015-04-21] (SEIKO EPSON CORPORATION) [Fichier non signé] R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.) S4 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-09-27] (Intel Corporation) R2 KMSServerService; C:\Windows\KMSServerService\KMS Server Service.exe [211968 2015-01-17] (My Digital Life Forums) [Fichier non signé] S4 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [703984 2014-09-22] (SEIKO EPSON CORPORATION) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2015-01-07] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [103736 2015-01-07] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2145080 2014-07-16] (TuneUp Software) S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [13924080 2016-08-11] (Zemana Ltd.) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AQFileRestore; C:\Windows\System32\DRIVERS\AQFileRestore.sys [21584 2013-12-13] () R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO) R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-10-07] (Disc Soft Ltd) R3 eagleGet; C:\Windows\System32\Drivers\eagleGet.sys [77112 2015-04-08] (eagleGet) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-09-27] (Intel Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO) R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [77728 2016-03-01] (AO Kaspersky Lab) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [181640 2015-10-20] (AO Kaspersky Lab) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [237480 2016-05-26] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [943536 2016-05-26] (AO Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [49240 2016-05-26] (AO Kaspersky Lab) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [41144 2015-06-06] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-10-16] (AO Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-06-11] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO) R3 mv2; C:\Windows\System32\DRIVERS\mv2.sys [12904 2013-10-24] (UVNC BVBA) U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [476888 2014-03-21] (Realsil Semiconductor Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381608 2016-02-05] (Duplex Secure Ltd.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2014-06-23] (TuneUp Software) R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [203680 2016-08-21] (Zemana Ltd.) U3 a5r5adj0; C:\Windows\System32\Drivers\a5r5adj0.sys [0 ] (Intel Corporation) <==== ATTENTION (zéro octet Fichier/Dossier) S3 VGPU; System32\drivers\rdvgkmd.sys [X] S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-27 13:59 - 2016-08-27 13:59 - 00000085 _____ C:\Users\lakhdar\Downloads\CCcam (17).cfg 2016-08-27 13:56 - 2016-08-27 13:56 - 00000042 _____ C:\Users\lakhdar\Downloads\CCcam (15).cfg 2016-08-27 13:50 - 2016-08-27 13:50 - 00000049 _____ C:\Users\lakhdar\Downloads\CCcam (13).cfg 2016-08-27 13:45 - 2016-08-27 13:45 - 00000067 _____ C:\Users\lakhdar\Downloads\CCcam (12).cfg 2016-08-27 11:32 - 2016-08-27 11:32 - 00000039 _____ C:\Users\lakhdar\Downloads\CCcam (16).cfg 2016-08-25 20:27 - 2016-08-25 20:27 - 00003156 _____ C:\Windows\System32\Tasks\{B951714E-2457-443E-94E6-0C08C28684E2} 2016-08-25 20:27 - 2016-08-25 20:27 - 00000594 _____ C:\Users\lakhdar\Desktop\ZHPFixReport.txt 2016-08-25 20:24 - 2016-08-25 20:24 - 00001849 _____ C:\Users\Public\Desktop\ZHPFix.lnk 2016-08-25 20:24 - 2016-08-25 20:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2016-08-25 20:23 - 2016-08-25 20:24 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2016-08-25 20:22 - 2016-08-25 20:23 - 03521617 _____ (Nicolas Coolman ) C:\Users\lakhdar\Downloads\ZHPFix.exe 2016-08-25 20:22 - 2016-08-25 20:23 - 02299904 _____ C:\Users\lakhdar\Downloads\ZHPDiag3 (1).exe 2016-08-25 18:15 - 2016-08-25 20:29 - 00137377 _____ C:\Users\lakhdar\Desktop\ZHPDiag.txt 2016-08-25 18:07 - 2016-08-25 18:07 - 00000824 _____ C:\Users\lakhdar\Desktop\ZHPDiag.lnk 2016-08-25 18:03 - 2016-08-25 18:05 - 02299904 _____ C:\Users\lakhdar\Downloads\ZHPDiag3.exe 2016-08-25 14:12 - 2016-08-25 14:12 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\WinZiper 2016-08-25 14:12 - 2016-08-25 14:12 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\eCyber 2016-08-23 17:36 - 2016-08-23 17:37 - 03784256 _____ C:\Users\lakhdar\Downloads\adwcleaner_6.000.exe 2016-08-23 17:30 - 2016-08-23 17:30 - 00000001 _____ C:\Windows\SysWOW64\fr.html 2016-08-23 14:16 - 2016-08-24 09:02 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\4FD763AE.sys 2016-08-22 20:36 - 2016-08-22 20:36 - 00178898 _____ C:\Users\lakhdar\Desktop\Free Cccam Generator v1.0.rar 2016-08-22 20:24 - 2016-08-22 20:25 - 06277448 _____ C:\Users\lakhdar\Desktop\Generateur cline mecccam.rar 2016-08-22 20:21 - 2016-08-22 20:23 - 00312345 _____ C:\Users\lakhdar\Desktop\Free Cccam Generator v1.1.zip 2016-08-22 20:17 - 2016-08-22 20:18 - 01892129 _____ C:\Users\lakhdar\Desktop\Amiros Cccam Generator V1.0_2.zip 2016-08-22 20:17 - 2016-08-22 20:17 - 00012852 _____ C:\Users\lakhdar\Documents\pu_2.pdf 2016-08-22 19:59 - 2016-08-22 19:59 - 01892129 _____ C:\Users\lakhdar\Desktop\Amiros Cccam Generator V1.0.zip 2016-08-22 18:35 - 2016-08-22 18:35 - 00003870 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1471887295 2016-08-22 18:34 - 2016-08-22 18:34 - 00001135 _____ C:\Users\Public\Desktop\Opera.lnk 2016-08-22 18:34 - 2016-08-22 18:34 - 00001135 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2016-08-22 18:06 - 2016-08-27 12:30 - 00000000 ____D C:\Program Files (x86)\Opera 2016-08-22 17:55 - 2016-08-22 17:55 - 00559138 _____ C:\Users\lakhdar\Downloads\adblock-plus (1) (1).xpi 2016-08-22 17:54 - 2016-08-22 17:54 - 00559138 _____ C:\Users\lakhdar\Downloads\adblock-plus (1).xpi 2016-08-22 17:52 - 2016-08-22 17:53 - 00559138 _____ C:\Users\lakhdar\Downloads\adblock-plus.xpi 2016-08-22 15:40 - 2016-08-22 15:40 - 00000312 _____ C:\Users\lakhdar\Downloads\NUEVOS KEYS MALWARE.zip 2016-08-22 15:30 - 2016-08-22 15:30 - 00012852 _____ C:\Users\lakhdar\Documents\pu.pdf 2016-08-22 15:30 - 2016-08-22 15:30 - 00000181 _____ C:\Users\lakhdar\Desktop\key Malwarebytes Anti-Malware 2.2.0.1024.rar 2016-08-22 15:00 - 2016-08-22 15:12 - 22908888 _____ (Malwarebytes ) C:\Users\lakhdar\Downloads\malwarebytes-anti-malware-2-2-0-1024-multi-win.exe 2016-08-22 11:11 - 2016-08-22 11:12 - 00000000 ____D C:\Program Files (x86)\vx2zxehq 2016-08-22 11:01 - 2016-08-22 11:01 - 00000000 _____ C:\Windows\SysWOW64\tmp7.html 2016-08-21 20:52 - 2016-08-21 20:52 - 00002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-08-21 20:52 - 2016-08-21 20:52 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-08-21 20:45 - 2016-08-27 23:00 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-08-21 20:45 - 2016-08-27 22:57 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-08-21 20:45 - 2016-08-21 21:52 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-08-21 20:45 - 2016-08-21 21:52 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-08-21 20:23 - 2016-08-21 20:23 - 00203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys 2016-08-21 19:40 - 2016-08-21 19:40 - 00000000 __SHD C:\found.000 2016-08-21 18:26 - 2016-08-27 23:12 - 00023593 _____ C:\Windows\ZAM_Guard.krnl.trace 2016-08-21 18:26 - 2016-08-21 20:22 - 00000000 ____D C:\Program Files (x86)\Zemana AntiMalware 2016-08-21 18:26 - 2016-08-21 20:03 - 00326538 _____ C:\Windows\ZAM.krnl.trace 2016-08-21 18:26 - 2016-08-21 18:26 - 00000000 ____D C:\Users\lakhdar\AppData\Local\Zemana 2016-08-21 15:08 - 2016-08-21 15:08 - 00000000 _____ C:\essai.txt 2016-08-20 13:47 - 2016-08-20 13:47 - 00000041 _____ C:\Users\lakhdar\Downloads\CCcam (9).cfg 2016-08-20 12:16 - 2016-08-20 12:16 - 00652316 _____ C:\Users\lakhdar\Downloads\CCcam.armeb 2016-08-20 12:16 - 2016-08-20 12:16 - 00652316 _____ C:\Users\lakhdar\Downloads\CCcam (1).armeb 2016-08-20 11:20 - 2016-08-20 11:24 - 24967695 _____ C:\Users\lakhdar\Desktop\BnStv3lpc.rar 2016-08-19 17:41 - 2016-08-19 17:42 - 00014336 _____ C:\Users\lakhdar\Downloads\ImvuCreditHack_meta.sqlite 2016-08-19 17:36 - 2016-08-19 17:36 - 00001965 _____ C:\Users\lakhdar\Downloads\ImvuCreditHack_archive.torrent 2016-08-19 17:10 - 2016-08-19 17:11 - 07504188 _____ C:\Users\lakhdar\Downloads\IMVU Credits Generator v.2.4.rar 2016-08-19 14:40 - 2016-08-19 14:40 - 00000000 ____D C:\Users\lakhdar\Desktop\Nouveau dossier (2) 2016-08-19 14:36 - 2016-08-19 14:36 - 00835773 _____ C:\Users\lakhdar\Downloads\foxyproxy_standard-3.5-fx+sm+tb (1).xpi 2016-08-19 11:43 - 2016-08-22 17:15 - 00000000 ____D C:\Program Files (x86)\Bvafivagh 2016-08-19 11:43 - 2016-08-19 14:23 - 00000000 ____D C:\Users\lakhdar\AppData\Local\fwoshdrauspliition 2016-08-19 10:58 - 2016-08-19 10:58 - 00000048 _____ C:\Users\lakhdar\Downloads\CCcam (6).cfg 2016-08-18 18:32 - 2016-08-18 18:32 - 00000091 _____ C:\Users\lakhdar\Downloads\CCcam (11).cfg 2016-08-18 18:28 - 2016-08-18 18:29 - 00000046 _____ C:\Users\lakhdar\Downloads\CCcam (10).cfg 2016-08-18 18:28 - 2016-08-18 18:28 - 00000039 _____ C:\Users\lakhdar\Downloads\CCcam (8).cfg 2016-08-18 14:32 - 2016-08-18 14:32 - 00044781 _____ C:\Users\lakhdar\Downloads\worldstream.m3u 2016-08-18 14:23 - 2016-08-18 14:23 - 00006950 _____ C:\Users\lakhdar\Downloads\acestream0203 (1).m3u 2016-08-18 14:22 - 2016-08-18 14:22 - 00006950 _____ C:\Users\lakhdar\Downloads\acestream0203.m3u 2016-08-18 14:20 - 2016-08-18 14:20 - 00059243 _____ C:\Users\lakhdar\Downloads\acestream-live-streaming-750-tv-channels-24-04.m3u 2016-08-18 13:33 - 2016-08-18 13:35 - 00000000 ____D C:\Users\lakhdar\AppData\Local\AMP 2016-08-18 13:28 - 2016-08-18 13:48 - 77841360 _____ C:\Users\lakhdar\Downloads\ace-player-hd (1).exe 2016-08-18 13:00 - 2016-08-18 13:00 - 77841360 _____ C:\Users\lakhdar\Downloads\ace-player-hd.exe 2016-08-18 12:03 - 2016-08-18 12:04 - 00000039 _____ C:\Users\lakhdar\Downloads\CCcam (7).cfg 2016-08-17 10:40 - 2016-08-17 10:40 - 00051537 _____ C:\Users\lakhdar\Desktop\formulaire.pdf 2016-08-17 09:25 - 2016-08-17 09:25 - 00366334 _____ C:\Users\lakhdar\Documents\conc.pdf 2016-08-17 09:23 - 2016-08-17 09:23 - 00239245 _____ C:\Users\lakhdar\Documents\poste-exam_0.pdf 2016-08-16 11:23 - 2016-08-22 11:12 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\setup1 2016-08-14 20:07 - 2016-08-14 20:07 - 00524897 _____ C:\Users\lakhdar\Documents\01-01-15-01-31-12_2_.pdf 2016-08-14 20:02 - 2016-08-14 20:03 - 00719648 _____ C:\Users\lakhdar\Documents\programmedefranais4eap1.pdf 2016-08-11 19:51 - 2016-08-11 19:52 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\BPFTP 2016-08-11 19:51 - 2016-08-11 19:52 - 00000000 ____D C:\Program Files (x86)\BulletProof FTP Client v2.5 2016-08-11 19:51 - 2016-08-11 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProof FTP Client v2.5 2016-08-11 19:45 - 2016-08-11 19:51 - 00001055 _____ C:\Users\Public\Desktop\BulletProof FTP Client.lnk 2016-08-11 19:45 - 2016-08-11 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProof FTP Server v2.3 2016-08-11 19:45 - 2016-08-11 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProof FTP Client v2.6 2016-08-11 19:45 - 2016-08-11 19:45 - 00000000 ____D C:\Program Files (x86)\BulletProof FTP Server v2.3 2016-08-11 19:45 - 2016-08-11 19:45 - 00000000 ____D C:\Program Files (x86)\BulletProof FTP Client v2.6 2016-08-11 19:18 - 2016-08-11 19:18 - 00001155 _____ C:\Users\Public\Desktop\BulletProof FTP Client 2010.lnk 2016-08-11 19:18 - 2016-08-11 19:18 - 00000000 ____D C:\Users\lakhdar\AppData\Local\BulletProof Software 2016-08-11 19:18 - 2016-08-11 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProof FTP Client 2010 2016-08-11 19:18 - 2016-08-11 19:18 - 00000000 ____D C:\Program Files (x86)\BulletProof FTP Client 2010 2016-08-11 19:04 - 2016-08-11 19:45 - 00001055 _____ C:\Users\lakhdar\Desktop\BulletProof FTP Server.lnk 2016-08-11 19:04 - 2016-08-11 19:09 - 00000000 ____D C:\Program Files (x86)\BPFTP Server 2016-08-11 19:04 - 2016-08-11 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BulletProof FTP Server 2016-08-11 18:42 - 2016-08-25 14:06 - 00000000 ____D C:\Users\lakhdar\Desktop\Crack 2016-08-11 18:39 - 2016-08-11 18:40 - 03122964 _____ C:\Users\lakhdar\Downloads\bulletproof.ftp.server.v2.4.0.31.rar 2016-08-11 18:31 - 2016-08-11 18:32 - 00000044 _____ C:\Users\lakhdar\Downloads\CCcam (5).cfg 2016-08-11 18:27 - 2016-08-11 18:27 - 00000044 _____ C:\Users\lakhdar\Downloads\CCcam (4).cfg 2016-08-11 18:22 - 2016-08-11 18:22 - 00000039 _____ C:\Users\lakhdar\Downloads\CCcam (3).cfg 2016-08-11 15:50 - 2016-08-11 15:50 - 00000000 ____D C:\Users\Public\Documents\chrome 2016-08-11 11:58 - 2016-08-22 16:39 - 00000000 ____D C:\ProgramData\Bookfat 2016-08-11 11:51 - 2016-08-11 11:51 - 00000000 ____D C:\Users\lakhdar\AppData\Local\Bookfat 2016-08-11 11:50 - 2016-08-11 11:50 - 00003556 _____ C:\Windows\System32\Tasks\BookfatUpdateTaskMachineCore 2016-08-11 11:50 - 2016-08-11 11:50 - 00003466 _____ C:\Windows\System32\Tasks\BookfatUpdateTaskMachineUA 2016-08-11 11:50 - 2016-08-11 11:50 - 00000000 ____D C:\Program Files (x86)\Bookfat 2016-08-11 11:40 - 2016-08-20 23:52 - 00000000 ____D C:\Windows\system32\log 2016-08-11 11:36 - 2016-08-22 13:23 - 00000000 _____ C:\Users\Public\Documents\report1.dat 2016-08-11 11:36 - 2016-08-11 11:36 - 00000000 _____ C:\Users\Public\Documents\report.dat 2016-08-09 12:38 - 2016-08-09 12:39 - 00000000 ____D C:\Program Files (x86)\1og70tny 2016-08-09 10:57 - 2016-08-09 10:57 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\IDT 2016-08-09 00:49 - 2016-08-09 00:53 - 16215325 _____ C:\Users\lakhdar\Downloads\range_of_the_dead.unity3d 2016-08-09 00:47 - 2016-08-09 00:54 - 15683624 _____ C:\Users\lakhdar\Downloads\dragon_fist_3d.swf 2016-08-08 21:11 - 2016-08-08 21:11 - 00000000 ____D C:\Windows\LastGood.Tmp 2016-08-08 21:10 - 2016-08-08 19:56 - 00565352 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2016-08-08 21:10 - 2016-08-08 19:56 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll 2016-08-08 19:18 - 2016-08-21 20:22 - 00000000 ____D C:\Windows\system32\SRSLabs 2016-08-08 19:18 - 2016-08-08 19:17 - 06017536 _____ (IDT, Inc.) C:\Windows\system32\IDTNGUI.exe 2016-08-08 19:18 - 2016-08-08 19:17 - 04637184 _____ (IDT, Inc.) C:\Windows\system32\stlang64.dll 2016-08-08 19:18 - 2016-08-08 19:17 - 03227648 _____ (IDT, Inc.) C:\Windows\system32\IDTNHP.dll 2016-08-08 19:18 - 2016-08-08 19:17 - 01019904 _____ (IDT, Inc.) C:\Windows\system32\IDTNX.dll 2016-08-08 19:18 - 2016-08-08 19:17 - 00564224 _____ (IDT, Inc.) C:\Windows\system32\idt64mp1.exe 2016-08-08 19:18 - 2016-08-08 19:17 - 00525312 _____ (IDT, Inc.) C:\Windows\sttray64.exe 2016-08-08 19:18 - 2016-08-08 19:17 - 00438784 _____ (IDT, Inc.) C:\Windows\system32\IDTNC64.cpl 2016-08-08 19:18 - 2016-08-08 19:17 - 00212480 _____ (IDT, Inc.) C:\Windows\system32\IDTNJ.exe 2016-08-08 19:17 - 2016-08-21 20:22 - 00000000 ____D C:\Program Files\IDT 2016-08-08 19:17 - 2016-08-08 19:17 - 01499136 _____ (IDT, Inc.) C:\Windows\system32\stapo64.dll 2016-08-08 19:17 - 2016-08-08 19:17 - 00651776 _____ (IDT, Inc.) C:\Windows\system32\stapi64.dll 2016-08-08 19:17 - 2016-08-08 19:17 - 00520192 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys 2016-08-08 19:17 - 2016-08-08 19:17 - 00431616 _____ (IDT, Inc.) C:\Windows\system32\stcplx64.dll 2016-08-08 19:17 - 2016-08-08 19:17 - 00220160 _____ (IDT, Inc.) C:\Windows\system32\staco64.dll 2016-08-07 10:05 - 2016-08-07 10:09 - 00057686 _____ C:\Users\lakhdar\Downloads\gladiator by hacksat.rar 2016-08-06 18:24 - 2016-08-06 18:24 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\Participatory Culture Foundation 2016-08-05 18:33 - 2016-08-05 18:33 - 00312953 _____ C:\Users\lakhdar\Documents\comm1.pdf 2016-08-05 18:24 - 2016-08-05 18:24 - 01025418 _____ C:\Users\lakhdar\Documents\dalil-tarkiyat.pdf 2016-08-05 18:23 - 2016-08-05 18:23 - 00823122 _____ C:\Users\lakhdar\Documents\109-نظام الترقية في الوظيفة العمومية.pdf 2016-08-05 18:19 - 2016-08-05 18:19 - 01245687 _____ C:\Users\lakhdar\Documents\avanc1 2.pdf 2016-08-04 19:31 - 2016-08-04 19:31 - 00124723 _____ C:\Users\lakhdar\Downloads\PLAN_ANNUEL_des_APPRENTISSAGES_converted.pptx 2016-08-04 19:15 - 2016-08-23 17:39 - 00000000 ____D C:\Users\lakhdar\Desktop\7 Français 2016-08-04 12:22 - 2016-08-04 12:22 - 00148456 _____ C:\Users\lakhdar\Documents\Evans (2003).pdf 2016-08-04 12:18 - 2016-08-04 12:18 - 00951818 _____ C:\Users\lakhdar\Documents\PROBA2.PDF 2016-08-04 12:05 - 2016-08-04 12:06 - 01384742 _____ C:\Users\lakhdar\Downloads\Rossi_NeuroEduc_2012.pdf 2016-08-04 11:52 - 2016-08-04 11:58 - 00112935 _____ C:\Users\lakhdar\Documents\250100.pdf 2016-08-04 11:52 - 2016-08-04 11:53 - 01130195 _____ C:\Users\lakhdar\Documents\Liste des_ tests_Testotheque2013.pdf 2016-08-04 11:51 - 2016-08-04 11:59 - 09852046 _____ C:\Users\lakhdar\Documents\M10009.pdf 2016-08-04 11:18 - 2016-08-04 11:19 - 02982252 _____ C:\Users\lakhdar\Documents\br3m3-inserm_cerveau_publication_complet.pdf 2016-08-03 13:13 - 2016-08-03 13:13 - 00085548 _____ C:\Users\lakhdar\Downloads\Extras.Txt 2016-08-03 13:08 - 2016-08-03 13:08 - 00140130 _____ C:\Users\lakhdar\Downloads\OTL.Txt 2016-08-03 12:50 - 2016-08-03 12:50 - 00602112 _____ (OldTimer Tools) C:\Users\lakhdar\Downloads\OTL (1).com 2016-08-03 12:49 - 2016-08-03 12:49 - 00602112 _____ (OldTimer Tools) C:\Users\lakhdar\Downloads\OTL.com 2016-08-03 12:44 - 2016-08-27 23:12 - 00000000 ____D C:\FRST 2016-08-03 11:27 - 2016-08-03 11:27 - 02287616 _____ C:\Users\lakhdar\Downloads\ZHPCleaner (3).exe 2016-08-03 11:26 - 2016-08-03 11:27 - 02287616 _____ C:\Users\lakhdar\Downloads\ZHPCleaner (2).exe 2016-08-03 11:26 - 2016-08-03 11:26 - 02287616 _____ C:\Users\lakhdar\Downloads\ZHPCleaner (1).exe 2016-08-03 00:15 - 2016-08-03 00:15 - 00000037 _____ C:\Users\lakhdar\Downloads\سيرفر سى سى كام 2 (1).txt 2016-08-03 00:00 - 2016-08-21 15:51 - 00001519 _____ C:\Users\lakhdar\Desktop\ZHPCleaner.txt 2016-08-02 23:09 - 2016-08-21 19:28 - 02348032 _____ C:\Users\lakhdar\ZHPCleaner.exe 2016-08-02 13:28 - 2016-08-21 00:05 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UC浏览器 2016-08-02 12:05 - 2016-08-02 12:05 - 00000000 ____D C:\Users\lakhdar\AppData\Local\UCBrowser 2016-08-02 11:41 - 2016-08-02 11:38 - 00002007 _____ C:\Windows\system32\Drivers\etc\hp.bak 2016-08-02 11:36 - 2016-08-25 13:59 - 00000000 ____D C:\Program Files (x86)\Bicsecogugh 2016-08-02 11:36 - 2016-08-02 11:38 - 00000000 ____D C:\Users\lakhdar\AppData\Local\anuqeiedclopagesterveied 2016-08-02 11:36 - 2016-08-02 11:36 - 01611944 _____ (Secure Download Ltd. ) C:\Users\lakhdar\Downloads\keygen 2016-08-02 11:06 - 2016-08-02 11:06 - 00000022 _____ C:\Users\lakhdar\Downloads\سيرفر سى سى كام.txt 2016-07-31 19:24 - 2016-07-31 21:37 - 846399800 _____ C:\Users\lakhdar\Desktop\Judge Archer (2016) 720p HDRip-RAVENSPIDER-IMM_3.mkv 2016-07-31 15:19 - 2016-07-31 15:20 - 02881055 _____ C:\Users\lakhdar\Downloads\Circulaire AR 2016-2017.pdf 2016-07-31 15:14 - 2016-07-31 15:14 - 00432406 _____ C:\Users\lakhdar\Downloads\Moyennes Minimales 2016.pdf 2016-07-31 15:14 - 2016-07-31 15:14 - 00194797 _____ C:\Users\lakhdar\Downloads\EPAU.rar 2016-07-31 09:50 - 2016-07-31 09:50 - 00000055 _____ C:\Users\lakhdar\Downloads\CCcam (2).cfg 2016-07-31 09:37 - 2016-07-31 09:37 - 00000038 _____ C:\Users\lakhdar\Downloads\CCcam (1).cfg 2016-07-30 10:29 - 2016-07-30 10:29 - 00060892 _____ C:\Users\lakhdar\Documents\olympicgames_rio_matchschedulemix_fifa_02052016_neutral.pdf 2016-07-28 19:05 - 2016-08-03 00:01 - 00001018 _____ C:\Users\lakhdar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2016-07-28 19:05 - 2016-08-03 00:01 - 00001018 _____ C:\Users\lakhdar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2016-07-28 19:05 - 2016-08-02 19:15 - 00001459 _____ C:\Users\lakhdar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-07-28 18:38 - 2016-07-28 18:38 - 01261041 _____ ( ) C:\Users\lakhdar\Downloads\Install_Quiz-Tree_Math_Games-Multiplication_11.exe ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-27 23:09 - 2014-09-21 06:49 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-08-27 23:07 - 2009-07-14 05:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-08-27 23:07 - 2009-07-14 05:45 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-08-27 23:00 - 2014-09-23 19:55 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2016-08-27 23:00 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-08-27 22:59 - 2014-09-18 18:13 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\DMCache 2016-08-27 22:01 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-08-26 14:43 - 2016-07-24 13:50 - 00003198 _____ C:\Windows\System32\Tasks\HPCeeScheduleForlakhdar 2016-08-26 14:43 - 2016-07-24 13:50 - 00000340 _____ C:\Windows\Tasks\HPCeeScheduleForlakhdar.job 2016-08-25 20:28 - 2014-12-03 17:47 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\ZHP 2016-08-25 14:19 - 2011-04-12 10:27 - 00000000 ____D C:\Windows\RemotePackages 2016-08-25 14:15 - 2015-02-20 10:47 - 00000000 ____D C:\ProgramData\WinZip 2016-08-25 14:07 - 2014-12-23 21:41 - 00000000 ____D C:\Program Files (x86)\Anuman Interactive 2016-08-25 12:15 - 2014-09-21 15:22 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\vlc 2016-08-25 12:14 - 2014-09-18 18:13 - 00000000 ____D C:\Users\lakhdar\Downloads\Video 2016-08-25 12:13 - 2016-04-13 20:24 - 00636416 ___SH C:\Users\lakhdar\Downloads\Thumbs.db 2016-08-24 17:44 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-08-23 17:46 - 2015-02-13 15:59 - 00000000 ____D C:\AdwCleaner 2016-08-23 11:32 - 2016-07-24 13:29 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\hpqLog 2016-08-22 20:58 - 2009-07-14 06:08 - 00032496 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-08-22 13:56 - 2015-04-11 20:49 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\IDM 2016-08-21 21:52 - 2014-10-07 20:57 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\DAEMON Tools Lite 2016-08-21 21:51 - 2015-09-18 00:01 - 00000000 ____D C:\Users\lakhdar\AppData\Local\CrashDumps 2016-08-21 21:45 - 2015-08-02 17:59 - 00000000 ____D C:\Users\lakhdar\Desktop\lecture 2016-08-21 21:03 - 2015-06-21 19:41 - 00002798 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2016-08-21 20:52 - 2014-09-18 17:36 - 00000000 ____D C:\Program Files (x86)\Google 2016-08-21 20:38 - 2014-09-27 18:46 - 00000000 ___SD C:\Users\lakhdar\AppData\LocalLow\Temp 2016-08-21 20:23 - 2014-09-17 21:48 - 00000000 ____D C:\Users\lakhdar 2016-08-21 20:22 - 2014-09-18 17:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-08-21 20:22 - 2011-04-12 10:27 - 00000000 ___RD C:\Users\Public\Recorded TV 2016-08-21 20:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\registration 2016-08-21 20:15 - 2014-10-25 21:34 - 00000000 ____D C:\Users\lakhdar\AppData\Local\ElevatedDiagnostics 2016-08-21 19:47 - 2015-06-19 18:48 - 00113064 _____ C:\Users\lakhdar\AppData\Local\GDIPFONTCACHEV1.DAT 2016-08-21 19:43 - 2015-06-19 23:37 - 00427184 _____ C:\Windows\system32\FNTCACHE.DAT 2016-08-21 10:49 - 2016-07-26 14:46 - 00000834 _____ C:\Users\lakhdar\Desktop\ZHPCleaner.lnk 2016-08-20 11:26 - 2015-10-01 22:38 - 00000000 ____D C:\Users\lakhdar\AppData\Local\Smart_PC_Soft 2016-08-19 14:50 - 2016-07-21 13:18 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\Mozilla 2016-08-14 21:21 - 2015-11-10 21:09 - 00000000 ____D C:\Users\lakhdar\Desktop\devoirs 2016-08-14 20:33 - 2014-09-18 16:00 - 00000000 ____D C:\Windows\System32\Tasks\Games 2016-08-08 22:26 - 2014-09-18 17:28 - 00000000 ____D C:\Program Files (x86)\Realtek 2016-08-08 19:56 - 2014-09-18 17:28 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2016-08-08 19:56 - 2014-09-18 17:28 - 00000000 ____D C:\swsetup 2016-08-05 09:58 - 2016-01-15 09:38 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-08-03 16:22 - 2015-08-19 21:35 - 00000000 ____D C:\Users\lakhdar\Desktop\Nouveau dossier 2016-07-30 14:06 - 2015-06-27 04:00 - 00000000 ____D C:\Users\lakhdar\Desktop\téléchargements 2016-07-28 19:57 - 2015-02-15 22:28 - 00000000 ____D C:\Program Files (x86)\ZHPDiag 2016-07-28 19:01 - 2014-11-26 21:49 - 00000000 ____D C:\Users\lakhdar\AppData\Roaming\Thinstall ==================== Fichiers à la racine de certains dossiers ======= 2010-08-28 21:43 - 2010-08-28 21:43 - 0096256 ____N (Google, inc) C:\Users\lakhdar\AppData\Roaming\AdbWinApi.dll 2010-08-28 21:43 - 2010-08-28 21:43 - 0060928 ____N (Google, inc) C:\Users\lakhdar\AppData\Roaming\AdbWinUsbApi.dll 2016-05-10 17:55 - 2016-05-10 17:55 - 0001440 _____ () C:\Users\lakhdar\AppData\Roaming\debug.log 2016-06-28 02:12 - 2016-06-28 02:12 - 0314434 ____N () C:\Users\lakhdar\AppData\Roaming\EYapp.apk 2015-04-14 17:28 - 2016-03-30 20:08 - 0000935 _____ () C:\Users\lakhdar\AppData\Roaming\rY0p33nNeCOJ2 2016-07-26 12:36 - 2016-07-26 12:36 - 7616340 _____ () C:\Users\lakhdar\AppData\Roaming\setup.apk 2015-04-19 13:20 - 2015-09-05 08:30 - 0000554 _____ () C:\Users\lakhdar\AppData\Roaming\V4da3EOM 2015-01-15 19:18 - 2015-01-15 19:18 - 0000044 _____ () C:\Users\lakhdar\AppData\Roaming\WB.CFG 2015-04-19 13:20 - 2016-03-30 20:08 - 0000554 _____ () C:\Users\lakhdar\AppData\Roaming\YrRmYgh 2015-09-05 08:46 - 2015-09-05 08:46 - 0000080 _____ () C:\Users\lakhdar\AppData\Local\recently-fix.db Fichiers à déplacer ou supprimer: ==================== C:\Users\lakhdar\ZHPCleaner.exe C:\Users\Public\first.vbs Certains fichiers dans TEMP: ==================== C:\Users\lakhdar\AppData\Local\Temp\inbezahiravlu.ru_World.exe C:\Users\lakhdar\AppData\Local\Temp\libeay32.dll C:\Users\lakhdar\AppData\Local\Temp\mdi064.dll C:\Users\lakhdar\AppData\Local\Temp\msvcr120.dll C:\Users\lakhdar\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-08-27 16:57 ==================== Fin de FRST.txt ============================