Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-08-2016 Exécuté par apapia8 (administrateur) sur APAPIA (07-08-2016 10:47:10) Exécuté depuis C:\Users\apapia8\Desktop Profils chargés: apapia8 (Profils disponibles: apapia8) Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: IE) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe (Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (AMD) C:\Windows\System32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe (CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (AMD) C:\Windows\System32\atieclxx.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe (Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17031_none_fa50b3979b1bcb4a\TiWorker.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-12-05] (IDT, Inc.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2758200 2013-10-14] (Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [155704 2013-10-14] (Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [155704 2013-10-14] (Hewlett-Packard) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2795248 2013-10-26] (Synaptics Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-25] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-07-24] (Hewlett-Packard Company) HKLM-x32\...\Run: [YouCam Service] => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224 2013-09-02] (CyberLink Corp.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-18\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 172.17.2.1 Tcpip\..\Interfaces\{A38174D5-6CCC-4A7B-8475-9E7C1AA528DB}: [DhcpNameServer] 172.17.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCOM14/9 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCOM14/9 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/9 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/9 HKU\S-1-5-21-2979582036-1988701110-4070777674-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.fr/ HKU\S-1-5-21-2979582036-1988701110-4070777674-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/9 BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard) BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab FireFox: ======== FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll [2013-09-05] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-17] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-17] (Intel Corporation) FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-08-07] Chrome: ======= CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 0015381470485856mcinstcleanup; C:\Windows\TEMP\001538~1.EXE [836168 2014-03-13] (McAfee, Inc.) R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-12-08] (Kaspersky Lab ZAO) R2 Cachedrv server; C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [109568 2013-10-14] () [Fichier non signé] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2950848 2016-07-04] (Microsoft Corporation) R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576 2013-09-05] (CyberLink) R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760 2013-09-05] (CyberLink) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-08-29] (Hewlett-Packard Company) [Fichier non signé] R2 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-17] (Intel Corporation) S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-10-23] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-17] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [87552 2013-10-14] (Softex Inc.) [Fichier non signé] R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-12-05] (IDT, Inc.) [Fichier non signé] S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-08-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-08-29] (Microsoft Corporation) S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X] S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-08-05] () R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO) R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [77728 2016-08-06] (AO Kaspersky Lab) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab) R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [181640 2015-12-08] (AO Kaspersky Lab) R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [238000 2016-08-06] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [933808 2016-08-06] (AO Kaspersky Lab) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [49240 2016-08-06] (AO Kaspersky Lab) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-12-08] (AO Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87984 2016-08-06] (AO Kaspersky Lab) R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-08-07] (Malwarebytes) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-17] (Intel Corporation) R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.) S3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2013-09-28] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2013-10-26] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-26] (Synaptics Incorporated) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2014-08-29] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [257880 2014-08-29] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-08-29] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X] ========================== MD5 Pilotes ======================= C:\Windows\System32\drivers\1394ohci.sys E1832BD9FD7E0FC2DC9FA5935DE3E8C1 C:\Windows\System32\drivers\3ware.sys AD508A1A46EC21B740AB31C28EFDFDB1 C:\Windows\system32\DRIVERS\Accelerometer.sys F39180029723D7779C80360F9E255709 C:\Windows\System32\drivers\ACPI.sys 9539F7917B4B6D92C90F0FAA6B86C605 C:\Windows\System32\Drivers\acpiex.sys AC8279D229398BCF05C3154ADCA86813 C:\Windows\System32\drivers\acpipagr.sys A8970D9BF23CD309E0403978A1B58F3F C:\Windows\System32\drivers\acpipmi.sys 111A89C99C5B4F1A7BCE5F643DD86F65 C:\Windows\System32\drivers\acpitime.sys 5758387D68A20AE7D3245011B07E36E7 C:\Windows\System32\drivers\ADP80XX.SYS 7C1FDF1B48298CBA7CE4BDD4978951AD C:\Windows\system32\drivers\afd.sys 7C7BE474915166B61B84C025F1F10157 C:\Windows\System32\drivers\agp440.sys 7DFAEBA9AD62D20102B576D5CAC45EC8 C:\Windows\System32\DRIVERS\ahcache.sys 8E8E34B7BA059050EED827410D0697A2 C:\Windows\System32\drivers\amdk8.sys 7589DE749DB6F71A68489DCE04158729 C:\Windows\system32\DRIVERS\atikmdag.sys ECEE0A0E6E872101C8339C8C75D12326 C:\Windows\system32\DRIVERS\atikmpag.sys ACE022C96AF60E8B4B34C72BD8AF926C C:\Windows\System32\drivers\amdppm.sys B46D2D89AFF8A9490FA8C98C7A5616E3 C:\Windows\System32\drivers\amdsata.sys D2BF2F94A47D332814910FD47C6BBCD2 C:\Windows\System32\drivers\amdsbs.sys A8E04943C7BBA7219AA50400272C3C6E C:\Windows\System32\drivers\amdxata.sys CEA5F4F27CFC08E3A44D576811B35F50 C:\Windows\system32\drivers\appid.sys 04951A9A937CBE28A2D3FEEA360B6D1F C:\Windows\System32\drivers\arcsas.sys 65045784366F7EC5FB4E71BCF923187B C:\Windows\System32\drivers\atapi.sys 74B14192CF79A72F7536B27CB8814FBD C:\Windows\System32\drivers\bxvbda.sys A4A73F631FE2AA2826FBE4A399B04DEF C:\Windows\System32\drivers\BasicDisplay.sys 8CC7F7E4AFCBA605921B137ED7992C68 C:\Windows\System32\drivers\BasicRender.sys 38A82F4EE8C416A6744B6D30381ED768 C:\Windows\System32\drivers\bcmfn2.sys C1ABB0F7E3BEA48A0417BDF6FF14AB21 C:\Windows\System32\Drivers\Beep.sys EC19013E4CF87609534165DF897274D6 C:\Windows\System32\DRIVERS\bowser.sys 6B4FFFDDC618FCF64473CAA86E305697 C:\Windows\System32\drivers\BthAvrcpTg.sys A8F23D453A424FF4DE04989C4727ECC7 C:\Windows\system32\DRIVERS\BthEnum.sys 131F1C8573E7BFB41C54FBF5309CCD94 C:\Windows\System32\drivers\bthhfenum.sys 746B9F94214915AECDE4B7FEA5FF9664 C:\Windows\System32\drivers\BthHFHid.sys 71FE2A48E4C93DDB9798C024880B6C07 C:\Windows\system32\DRIVERS\BthLEEnum.sys D30C67473A2E229662D21F27EAA9AAA5 C:\Windows\System32\drivers\bthmodem.sys 66B791F6B11DC4303DD18A224A501542 C:\Windows\system32\DRIVERS\bthpan.sys 3AFE71D80EDF5D4DE0C5731352905669 C:\Windows\System32\Drivers\BTHport.sys 92370F46AF28D54B67C135FA8C2AFCFC C:\Windows\System32\Drivers\BTHUSB.sys 23E75BED9076F856B36F5F934BBD5795 C:\Windows\System32\DRIVERS\cdfs.sys 2FA6510E33F7DEFEC03658B74101A9B9 C:\Windows\System32\drivers\cdrom.sys C6796EA22B513E3457514D92DCDB1A3D C:\Windows\System32\drivers\circlass.sys BE9936EDD3267FAAFF94A7835867F00B C:\Windows\System32\drivers\CLFS.sys 179A41249055D5F039F1B6703F3B6D2B C:\Windows\system32\DRIVERS\CLVirtualDrive.sys 3E76A1547F2448BCEE3D2F4AE3931AB5 C:\Windows\system32\DRIVERS\clwvd.sys 39F71BF21E7F8EBE9B4810BC95EE26D6 C:\Windows\System32\drivers\CmBatt.sys EF6EF85DADC3184A10D8F2F7159973CB C:\Windows\System32\DRIVERS\cm_km.sys B2A6D2A30E93B6F215F74AC7E1733C9C C:\Windows\System32\Drivers\cng.sys 4627C1FBF2802425A408A2D2AF28CF85 C:\Windows\System32\drivers\CompositeBus.sys 03AAED827C36F35D70900558B8274905 C:\Windows\System32\drivers\condrv.sys A1FF7DFBFBE164CF92603C651D304DD2 C:\Windows\System32\drivers\dam.sys 315BA4BC19316D72B2E037534E048B93 C:\Windows\System32\Drivers\dfsc.sys A03F362C5557E238CBFA914689C77248 C:\Windows\System32\drivers\disk.sys 4D40C9B33F738797CF50E77CB7C53E85 C:\Windows\System32\drivers\dmvsc.sys EB70A894708D1BC176AFD690FF06085F C:\Windows\system32\DRIVERS\Dot4.sys 27069CFFF29B7F04F4B1BB10154BE52B C:\Windows\System32\drivers\Dot4Prt.sys 0BD906A79F9CE3013F7D9D0AC45F9F9D C:\Windows\system32\DRIVERS\dot4usb.sys B7D595F2F464F7B628AD53F06547792C C:\Windows\system32\drivers\drmkaud.sys DDC11A202207C0400CBE07315B8FDE5E C:\Windows\System32\drivers\dxgkrnl.sys C7D252742946DD395670649742FBD73D C:\Windows\System32\drivers\evbda.sys 114BCFDF367FF37C3F1B0A96AF542E4D C:\Windows\System32\drivers\EhStorClass.sys 43531A5993380CC5113242C29D265FD9 C:\Windows\System32\drivers\EhStorTcgDrv.sys 6F8E738A9505A388B1157FDDE7B3101B C:\Windows\System32\drivers\errdev.sys DFFFAE1442BA4076E18EED5E406FA0D3 C:\Windows\System32\DRIVERS\EsgScanner.sys 3B32CAA07D672F8A2E0DF5CB3A873F45 C:\Windows\System32\Drivers\exfat.sys 7729D294A555C7AEB281ED8E4D0E01E4 C:\Windows\System32\Drivers\fastfat.sys 7C4E0D5900B2A1D11EDD626D6DDB937B C:\Windows\System32\drivers\fdc.sys 5D8402613E778B3BD45E687A8372710B C:\Windows\System32\drivers\fileinfo.sys BCFD8B149B3ADF92D0DB1E909CAF0265 C:\Windows\System32\drivers\filetrace.sys A1A66C4FDAFD6B0289523232AFB7D8AF C:\Windows\System32\drivers\flpydisk.sys BE743083CF7063C486A4398E3AEFE59A C:\Windows\System32\drivers\fltmgr.sys 6592D192E2823C043EDBC010E7774053 C:\Windows\System32\drivers\FsDepends.sys 35005534E600E993A90B036E4E599F2B C:\Windows\System32\Drivers\Fs_Rec.sys 09F460AFEDCA03F3BF6E07D1CCC9AC42 C:\Windows\System32\DRIVERS\fvevol.sys F152D55E497E12256290C43B31C7D0CE C:\Windows\System32\drivers\fxppm.sys 9591D0B9351ED489EAFD9D1CE52A8015 C:\Windows\System32\drivers\gagp30kx.sys FC3EF65EE20D39F8749C2218DBA681CA C:\Windows\System32\drivers\vmgencounter.sys 0BF5CAD281E25F1418E5B8875DC5ADD1 C:\Windows\System32\Drivers\msgpioclx.sys EF3AE7773394DF49CE74AF78A1C8D23D C:\Windows\system32\drivers\HdAudio.sys 56F69F7C25FB67C970997D7066DBC593 C:\Windows\System32\drivers\HDAudBus.sys 498288DD5CA42C2D36D125893E968C53 C:\Windows\System32\drivers\HidBatt.sys 10A70BC1871CD955D85CD88372724906 C:\Windows\System32\drivers\hidbth.sys 1EA1B4FABB8CC348E73CA90DBA22E104 C:\Windows\System32\drivers\hidi2c.sys C241A8BAFBBFC90176EA0F5240EACC17 C:\Windows\System32\drivers\hidir.sys 9BDDEE26255421017E161CCB9D5EDA95 C:\Windows\System32\drivers\hidusb.sys 8DB8EAB9D0C6A5DF0BDCADEA239220B4 C:\Windows\System32\DRIVERS\hpdskflt.sys 8B8E6BD988EAF18C1B86704BF05E5C03 C:\Windows\System32\drivers\HpSAMD.sys A6AACEA4C785789BDA5912AD1FEDA80D C:\Windows\System32\drivers\HTTP.sys 9DDCA7F18983C5410DEFF79F819DF93C C:\Windows\System32\drivers\hwpolicy.sys 90656C0B3864804B090434EFC582404F C:\Windows\System32\drivers\hyperkbd.sys 6D6F9E3BF0484967E52F7E846BFF1CA1 C:\Windows\system32\DRIVERS\HyperVideo.sys 907C870F8C31F8DDD6F090857B46AB25 C:\Windows\System32\drivers\i8042prt.sys 84CFC5EFA97D0C965EDE1D56F116A541 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 5D90E32E36CE5D4C535D17CE08AEAF05 C:\Windows\System32\drivers\iaLPSSi_I2C.sys DD05E7E80F52ADE9AEB292819920F32C C:\Windows\System32\drivers\iaStorA.sys 71341219FBB4BAB7F2462C4267DAB594 C:\Windows\System32\drivers\iaStorAV.sys 08BFE413B0B4AA8DFA4B5684CE06D3DC C:\Windows\System32\drivers\iaStorV.sys A2200C3033FA4EF249FC096A7A7D02A2 C:\Windows\system32\DRIVERS\igdkmd64.sys 40E022751ECBBAEAB90C199F3B8358FC C:\Windows\system32\drivers\intelaud.sys 4011430BC9DA46ADFAE9915EFEC312FB C:\Windows\system32\DRIVERS\IntcDAud.sys D6A22510D795928E8840619900D672B4 C:\Windows\System32\drivers\intelide.sys 4E448FCFFD00E8D657CD9E48D3E47157 C:\Windows\System32\drivers\intelpep.sys 139CFCDCD36B1B1782FD8C0014AC9B0E C:\Windows\System32\drivers\intelppm.sys 47E74A8E53C7C24DCE38311E1451C1D9 C:\Windows\System32\DRIVERS\ipfltdrv.sys 9DB76D7F9E4E53EFE5DD8C53DE837514 C:\Windows\System32\drivers\IPMIDrv.sys FD9C9E9E3F0ED51502C7E8C066BE26B9 C:\Windows\System32\drivers\ipnat.sys B7342B3C58E91107F6E946A93D9D4EFD C:\Windows\System32\drivers\irenum.sys AE44C526AB5F8A487D941CEB57B10C97 C:\Windows\System32\drivers\isapnp.sys 8AFEEA3955AA43616A60F133B1D25F21 C:\Windows\System32\drivers\msiscsi.sys D90AB68D0FAC9F357F663670FDBB511E C:\Windows\System32\drivers\iwdbus.sys EE03564B7FAFE2E44EDA33D52E83B4A3 C:\Windows\System32\drivers\kbdclass.sys 8BE92376799B6B44D543E8D07CDCF885 C:\Windows\System32\drivers\kbdhid.sys FB6E47E569D4872ABEB506BE03A45FBA C:\Windows\system32\DRIVERS\kdnic.sys 813871C7D402A05F2E3A7075F9584A05 C:\Windows\System32\DRIVERS\kl1.sys BEE1682DA217A4AD46C36896769AA580 C:\Windows\System32\DRIVERS\klbackupdisk.sys 86F40D79CE80ACBE6BEBAC8CE89D75A0 C:\Windows\System32\DRIVERS\klbackupflt.sys 2B4BC41223326FF440E2DB32B9239138 C:\Windows\system32\DRIVERS\kldisk.sys 80D7529E1CF09261FADF55E69EFDA90B C:\Windows\System32\DRIVERS\klelam.sys E2097C8F18F1E8E3B7D09F12B51843A3 C:\Windows\system32\DRIVERS\klflt.sys BACE50477C184A3AA0755702C23B8B27 C:\Windows\system32\DRIVERS\klhk.sys BE1DF4E950FF00A19BB72FA29CAEE32E C:\Windows\System32\DRIVERS\klif.sys B72D1864B3EC6E429DB127A642CFB8BB C:\Windows\system32\DRIVERS\klim6.sys 161573B8BE82D24ED8B5B8EBA01245EA C:\Windows\system32\DRIVERS\klkbdflt.sys DAE5768E6FD34A36E3B9D1AF1FCA682B C:\Windows\system32\DRIVERS\klmouflt.sys FD47C92A63B6EADEA830BFA96C06EAEE C:\Windows\System32\DRIVERS\klpd.sys F610F5F17BC87D61EF8954CCD793BAE4 C:\Windows\system32\DRIVERS\klwfp.sys 8334692AFEB3289984B40898B6B30C06 C:\Windows\system32\DRIVERS\klwtp.sys 91234D71CEED29F2DBA16942CABDCA4F C:\Windows\system32\DRIVERS\kneps.sys 1686DE8288052316EFDD49EEA8929065 C:\Windows\System32\Drivers\ksecdd.sys ADDECBCC777665BD113BED437E602AB0 C:\Windows\System32\Drivers\ksecpkg.sys F88CC88F4A6D8476F1664E805CA18CC2 C:\Windows\system32\drivers\ksthunk.sys 11AFB527AA370B1DAFD5C36F35F6D45F C:\Windows\system32\DRIVERS\lltdio.sys C09010B3680860131631F53E8FE7BAD8 C:\Windows\System32\drivers\lsi_sas.sys C755AE4635457AA2A11F79C0DF857ABC C:\Windows\System32\drivers\lsi_sas2.sys ADAC09CBE7A2040B7F68B5E5C9A75141 C:\Windows\System32\drivers\lsi_sas3.sys 04D1274BB9BBCCF12BD12374002AA191 C:\Windows\System32\drivers\lsi_sss.sys 327469EEF3833D0C584B7E88A76AEC0C C:\Windows\system32\drivers\luafv.sys DDEE191AB32DFC22C6465002ECDF5EE4 C:\Windows\system32\drivers\mbam.sys 78BFF5425E044086E74E78650A359FBB C:\Windows\system32\drivers\MBAMSwissArmy.sys 78488AF2AB2111D67B3C4044707A519B C:\Windows\system32\drivers\mwac.sys 898415AC0B5F1D2A9A48ABCB68A6DC4B C:\Windows\System32\drivers\megasas.sys EB5C03A070F30D64A6DF80E53B22F53F C:\Windows\System32\drivers\megasr.sys F6F13533196DE7A582D422B0241E4363 C:\Windows\system32\DRIVERS\TeeDriverx64.sys E0EF6C1399A9B1AAA0B28590411BED04 C:\Windows\System32\drivers\modem.sys 8B38C44F69259987C95135C9627E2378 C:\Windows\System32\drivers\monitor.sys 601589000CC90F0DF8DA2CC254A3CCC9 C:\Windows\System32\drivers\mouclass.sys CEAC6D40FE887CE8406C2393CF97DE06 C:\Windows\System32\drivers\mouhid.sys 02D98BF804084E9A0D69D1C69B02CCA9 C:\Windows\System32\drivers\mountmgr.sys 515549560D481138E6E21AF7C6998E56 C:\Windows\System32\drivers\mpsdrv.sys F170510BE94CF45E3C6274578F6204B2 C:\Windows\system32\drivers\mrxdav.sys 1D55DADC22D21883A2F80297F5A5AE48 C:\Windows\System32\DRIVERS\mrxsmb.sys 0696F66E4D423793951A60562F794D14 C:\Windows\System32\DRIVERS\mrxsmb10.sys 3E28B99198B514DFEB152EACF913025E C:\Windows\System32\DRIVERS\mrxsmb20.sys DBA635C6398782C549E3BE45CF1D0411 C:\Windows\system32\DRIVERS\bridge.sys 4E888019078AC363076A5433E89AA4F8 C:\Windows\System32\Drivers\Msfs.sys D13329FBF8345B28AB30F44CC247DC08 C:\Windows\System32\drivers\msgpiowin32.sys C6B474E46F9E543B875981ED3FFE6ADD C:\Windows\System32\drivers\mshidkmdf.sys 65C92EB9D08DB5C69F28C7FFD4E84E31 C:\Windows\System32\drivers\mshidumdf.sys 52299F086AC2DAFD100DD5DC4A8614BA C:\Windows\System32\drivers\msisadrv.sys 36D92AF3343C3A3E57FEF11C449AEA4C C:\Windows\system32\drivers\MSKSSRV.sys A9BBBD2BAE6142253B9195E949AC2E8D C:\Windows\system32\DRIVERS\mslldp.sys 375E44168F2DFB91A68B8A3F619C5A7C C:\Windows\system32\drivers\MSPCLOCK.sys 7B2128EB875DCBC006E6A913211006D6 C:\Windows\system32\drivers\MSPQM.sys 1E88171579B218115C7A772F8DE04BD8 C:\Windows\System32\Drivers\MsRPC.sys BBE2A455053E63BECBF42C2F9B21FAE0 C:\Windows\System32\drivers\mssmbios.sys 8D6B7D515C5CBCDB75B928A0B73C3C5E C:\Windows\system32\drivers\MSTEE.sys 115019AE01E0EB9C048530D2928AB4A2 C:\Windows\System32\drivers\MTConfig.sys 96D604A35070360F0DD4A7A8AF410B5E C:\Windows\System32\Drivers\mup.sys 619CA29326B82372621DB2C0964D8365 C:\Windows\System32\drivers\mvumis.sys B8C35C94DCB2DFEAF03BB42131F2F77F C:\Windows\system32\DRIVERS\nwifi.sys 78514B073CC5775800A65BFB82A0D66B C:\Windows\System32\drivers\ndis.sys F21B77B4D74092A543807D3CEB711A88 C:\Windows\system32\DRIVERS\ndiscap.sys C6BB12BC35D1637CA17AE16D3A4725EB C:\Windows\system32\DRIVERS\NdisImPlatform.sys 9F1DA20E943BE7AA4ED5F3E1EBA78B37 C:\Windows\system32\DRIVERS\ndistapi.sys 9423421E735BD5394351E0C47C76BB92 C:\Windows\system32\DRIVERS\ndisuio.sys B832B35055BA2B7B4181861FF94D8E59 C:\Windows\System32\drivers\NdisVirtualBus.sys 1F58E48EF75F34C35D8E93A0DC535CFE C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A C:\Windows\System32\Drivers\NDProxy.sys A5BD69A8812FA79D1A487691DD3FB244 C:\Windows\System32\drivers\Ndu.sys 5A072F0B90C29C5233D78BE33EF5ED78 C:\Windows\System32\DRIVERS\netbios.sys A83D67D347A684F10B7D3019C8A6380C C:\Windows\System32\DRIVERS\netbt.sys 0217532E19A748F0E5D569307363D5FD C:\Windows\system32\DRIVERS\netr28x.sys 76E90502D9001077DA92F81126D06C9B C:\Windows\system32\DRIVERS\netvsc63.sys 70414DB660BFBB7BD58FCE8EA4364E1B C:\Windows\System32\Drivers\Npfs.sys 8F44A2F57C9F1A19AC9C6288C10FB351 C:\Windows\System32\drivers\npsvctrig.sys CBDB4F0871C88DF930FC0E8588CA67FC C:\Windows\System32\drivers\nsiproxy.sys E490B459978CB87779E84C761D22B827 C:\Windows\System32\Drivers\Ntfs.sys 1C80517BE6836A812F6A9B99B8321351 C:\Windows\System32\Drivers\Null.sys EF1B290FC9F0E47CC0B537292BEE5904 C:\Windows\System32\drivers\nvraid.sys BC6B5942AFF25EBAF62DE43C3807EDF8 C:\Windows\System32\drivers\nvstor.sys 1F43ABFFAC3D6CA356851D517392966E C:\Windows\System32\drivers\nv_agp.sys 6934A936A7369DFE37B7DBA93F5E5E49 C:\Windows\System32\drivers\parport.sys 764B1121867B2D9B31C491668AC72B2B C:\Windows\System32\drivers\partmgr.sys EF0C1749C9A8CEE9A457473D433CC00F C:\Windows\System32\drivers\pci.sys 275AFE3FA35E8D78BE97695DF49817C6 C:\Windows\System32\drivers\pciide.sys 346E38FCC6859A727DD28AFAD1F0AFF4 C:\Windows\System32\drivers\pcmcia.sys 4D3BDCC1C7B40C9D7B6AD990E6DEC397 C:\Windows\System32\drivers\pcw.sys BF28771D1436C88BE1D297D3098B0F7D C:\Windows\System32\drivers\pdc.sys B9D968D8E2B0F9C6301CEB39CFC9B9E4 C:\Windows\System32\drivers\peauth.sys 0ECEE590F2E2EF969FB74A6FC583A1E6 C:\Windows\System32\drivers\processr.sys ECD373F9571C745894367CC2635EA44F C:\Windows\system32\DRIVERS\pacer.sys 8528BB05E4D4E25945F78B00B2555FB7 C:\Windows\system32\drivers\qwavedrv.sys 3FB466684609A4329858CF2EBD62E0FD C:\Windows\System32\DRIVERS\rasacd.sys 2C56F0EE27E4EF70CA4B4983D3638905 C:\Windows\system32\DRIVERS\raspppoe.sys 5247F308C4103CDC4FE12AE1D235800A C:\Windows\System32\DRIVERS\rdbss.sys A1A5E79C0D1352AFDC08328A623DA051 C:\Windows\System32\drivers\rdpbus.sys 6B21EBF892CD8CACB71669B35AB5DE32 C:\Windows\System32\drivers\rdpdr.sys 680C1DAE268B6FB67FA21B389A8B79EF C:\Windows\System32\drivers\rdpvideominiport.sys 858776908AF838E3790F3261B799CDA6 C:\Windows\System32\drivers\rdyboost.sys A26AEC49F318FEE141DDDB2C5F99B3E6 C:\Windows\System32\Drivers\ReFS.sys E515A287C8FAE901EB8FB42F168E14F2 C:\Windows\system32\DRIVERS\rfcomm.sys 0527EF6E23B9FAB37DDCBC479C6CFA28 C:\Windows\system32\DRIVERS\rspndr.sys 2D05A5508F4685412F2B89E8C2189ABC C:\Windows\System32\drivers\rtbth.sys 3B7A94926B52D171C5B515EDECC2118E C:\Windows\system32\DRIVERS\Rt630x64.sys CFE738C524F35B6E523A4D0F54840C30 C:\Windows\system32\DRIVERS\RtsPer.sys F95151BE3F9FD74CFE90D1B35CD58062 C:\Windows\System32\drivers\vms3cap.sys 1A063730F221B2746FF00457AE17E4F0 C:\Windows\System32\drivers\sbp2port.sys C624A1B32211C3166EDB3F4AB02A30B7 C:\Windows\System32\DRIVERS\scfilter.sys ABD0237B15DBD2B4695F4B7D734A58F7 C:\Windows\System32\drivers\sdbus.sys FDEC5799BA499D18AFA3A540538866E7 C:\Windows\System32\drivers\sdstor.sys 0B1E929D11A8E358106955603FAC65E8 C:\Windows\System32\Drivers\secdrv.sys ==> Le MD5 est légitime C:\Windows\System32\drivers\SerCx.sys DB2FF24CE0BDD15FE75870AFE312BA89 C:\Windows\System32\drivers\SerCx2.sys 0044B31F93946D5D41982314381FE431 C:\Windows\System32\drivers\serenum.sys 3CD600C089C1251BEEB4CD4CD5164F9E C:\Windows\System32\drivers\serial.sys D864381BC9C725FAB01D94C060660166 C:\Windows\System32\drivers\sermouse.sys 0BD2B65DCE756FDE95A2E5CCCBF7705D C:\Windows\System32\drivers\sfloppy.sys 472B7A5AC181C050888DB454663DD764 C:\Windows\System32\drivers\SiSRaid2.sys 2F518D13DD6F3053837FE606F1A2EA1F C:\Windows\System32\drivers\sisraid4.sys 1AC9A200A9C49C4508F04AAFFCA34A3F C:\Windows\System32\drivers\Smb_driver_AMDASF.sys 6A05EDE953D5F8F106AD5800C3BDAA14 C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys 5C1C621A1936B369EC8548CC57DD47FB C:\Windows\System32\drivers\spaceport.sys 33977549C2CED09936E05BEE7659EAFF C:\Windows\System32\drivers\SpbCx.sys F337BE11071818FC3F5DC2940B6BDE34 C:\Windows\System32\DRIVERS\srv.sys 2B78788A1485F9B99A578A299DF42C02 C:\Windows\System32\DRIVERS\srv2.sys FD163F487CBA9C98AFFEB546C80F49A2 C:\Windows\System32\DRIVERS\srvnet.sys 716059F37BCCB1ABEDE99EBE82E8E362 C:\Windows\System32\drivers\stexstor.sys 366DEA74BBA65B362BCCFC6FC2ADFD8B C:\Windows\system32\DRIVERS\stwrt64.sys 674648106F972128B29D90EF6567629D C:\Windows\System32\drivers\storahci.sys 0ED2E318ABB68C1A35A8B8038BDB4C90 C:\Windows\System32\DRIVERS\vmstorfl.sys 7A08CEE1535F5A448215634C5EA74E50 C:\Windows\System32\drivers\stornvme.sys 6B06E2D11E604BE2B1A406C4CB3B90DE C:\Windows\System32\drivers\storvsc.sys 548759755BC73DAD663250239D7E0B9F C:\Windows\System32\drivers\swenum.sys 84E0F5D41C138C5CC975137A2A98F6D3 C:\Windows\system32\DRIVERS\SynTP.sys 4AC0EDD7CE827590FCC93BD3529A98D6 C:\Windows\System32\drivers\tcpip.sys D7566BE560B040C47F6F35EB980D8377 C:\Windows\system32\DRIVERS\tcpip.sys D7566BE560B040C47F6F35EB980D8377 C:\Windows\System32\drivers\tcpipreg.sys 41CF802064F72E55F50CA0A221FD36D4 C:\Windows\system32\DRIVERS\tdx.sys FFF28F9F6823EB1756C60F1649560BBF C:\Windows\System32\drivers\terminpt.sys 232D185D2337F141311D0CF1983E1431 C:\Windows\system32\drivers\tpm.sys 82F909359600D3603FE852DB7F135626 C:\Windows\System32\drivers\tsusbflt.sys BF8F54CA37E9C9D6582C31C5761F8C93 C:\Windows\System32\drivers\TsUsbGD.sys E0088068DCE2EE82897027DDB8E05254 C:\Windows\system32\DRIVERS\tunnel.sys C8E0E78B5D284C2FF59BDFFDAF997242 C:\Windows\System32\drivers\uagp35.sys F6EEAD052943B5A3104C1405BB856C54 C:\Windows\System32\drivers\uaspstor.sys FE6067B1FD4E63650C667B33D080565B C:\Windows\System32\drivers\ucx01000.sys B034A41891A36457B994307DFA772293 C:\Windows\System32\DRIVERS\udfs.sys 1EC649F112896FAE33250F0B97AC5D0B C:\Windows\System32\drivers\UEFI.sys 9578691F297E1B1F519970FE6D47CB21 C:\Windows\System32\drivers\uliagpkx.sys 5EAB5117DDB24FC4D39E6FFFCF1837B9 C:\Windows\System32\drivers\umbus.sys DA34C39A18E60E7C3FA0630566408034 C:\Windows\System32\drivers\umpass.sys AE8294875E5446E359B1E8035D40C05E C:\Windows\System32\drivers\usbccgp.sys 433ECDE01A52691FA7ACA51C10C09B70 C:\Windows\System32\drivers\usbcir.sys B3D6457D841A0CAEF4C52D88621715F2 C:\Windows\System32\drivers\usbehci.sys CEBBEC3C1F09250206913A1DEF5162E5 C:\Windows\System32\drivers\usbhub.sys 125F59E03C92777F58F74184873A24F6 C:\Windows\System32\drivers\UsbHub3.sys CFC52C49BEFE4D70D87FFA900EAB9777 C:\Windows\System32\drivers\usbohci.sys 3019097FB6C985EF24C058090FF3BDBD C:\Windows\System32\drivers\usbprint.sys 4D655E3B684BE9B0F7FFD8A2935C348C C:\Windows\system32\DRIVERS\usbscan.sys F04D164C4168701A4E7835607722E5F1 C:\Windows\System32\drivers\USBSTOR.SYS EA23453240137F6773174E0D93F61A69 C:\Windows\System32\drivers\usbuhci.sys 6679ACB8A2627176CEBF07BFD3A4738F C:\Windows\System32\Drivers\usbvideo.sys 18F744E8CCEB2670040EBAF7AD77B8C6 C:\Windows\System32\drivers\USBXHCI.SYS 48430B0313FC1CFE3D2400553F1A93CD C:\Windows\System32\drivers\vdrvroot.sys FEB26E3B8345A7E8D62F945C4AE86562 C:\Windows\System32\drivers\VerifierExt.sys A026EDEAA5EECAE0B08E2748B616D4BD C:\Windows\System32\drivers\vhdmp.sys 52E483A3701A5A61A75A06993720347D C:\Windows\System32\drivers\viaide.sys 06D38968028E9AB19DE9B618C7B6D199 C:\Windows\System32\drivers\vmbus.sys C6305BDFC4F7CE51F72BB072C03D4ACE C:\Windows\System32\drivers\VMBusHID.sys DA40BEA0A863CE768C940CA9723BF81F C:\Windows\System32\drivers\volmgr.sys 55D7D963DE85162F1C49721E502F9744 C:\Windows\System32\drivers\volmgrx.sys CCB9E901F7254BF96D28EB1B0E5329B7 C:\Windows\System32\drivers\volsnap.sys 4BB9BC49DEE1A319EC58274A7BBED663 C:\Windows\System32\drivers\vpci.sys 01355C98B5C3ED1EC446743CDA848FCE C:\Windows\System32\drivers\vsmraid.sys 4539F45F9F4C9757A86A56C949421E07 C:\Windows\System32\drivers\vstxraid.sys 0849B7260F26FE05EA56DED0672E2F4B C:\Windows\System32\drivers\vwifibus.sys BE970C369E43B509C1EDA2B8FA7CECB0 C:\Windows\system32\DRIVERS\vwififlt.sys 6B26AD573CCDD5209DF4397438B76354 C:\Windows\system32\DRIVERS\vwifimp.sys 0B48E0DFB44EE475F4FD8A8EE599AF30 C:\Windows\System32\drivers\wacompen.sys 0910AB9ED404C1434E2D0376C2AD5D8B C:\Windows\system32\drivers\WdBoot.sys F5D4FA3E1F4879C361FFF3855259D2C2 C:\Windows\System32\drivers\Wdf01000.sys CB6C63FF8342B467E2EF76E98D5B934D C:\Windows\system32\drivers\WdFilter.sys 019CC610AD95FF47EAD7C08B7A683B96 C:\Windows\System32\Drivers\WdNisDrv.sys 6CC1BB8F6851A262E2E824F0E92D5EEF C:\Windows\System32\DRIVERS\wfplwfs.sys BFBE1C5F57FE7A885673A1962D5532B7 C:\Windows\System32\drivers\wimmount.sys 867BCC69ED9C31C501465EB0E8BA9DFA C:\Windows\System32\drivers\WirelessButtonDriver64.sys 4F2A80D65AE6F845776E2F06AE6782ED C:\Windows\System32\drivers\wmiacpi.sys 2834D9D3B4F554A39C72F00EA3F0E128 C:\Windows\System32\Drivers\Wof.sys 7FC5667DF73D4B04AA457CC3A4180E09 C:\Windows\System32\DRIVERS\wpcfltr.sys C1F564F324685C088ECAB1933576CF91 C:\Windows\System32\drivers\WpdUpFltr.sys 9F2904B55F6CECCD1A8D986B5CE2609A C:\Windows\system32\drivers\ws2ifsl.sys AE072B0339D0A18E455DC21666CAD572 C:\Windows\System32\drivers\WudfPf.sys 2FEAE33E9B2B56104596E1BA444405A9 C:\Windows\System32\drivers\WUDFRd.sys 19240C13F526125554B5370566F21A0A C:\Windows\system32\DRIVERS\WUDFRd.sys 19240C13F526125554B5370566F21A0A C:\Windows\system32\DRIVERS\WUDFRd.sys 19240C13F526125554B5370566F21A0A ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-07 10:47 - 2016-08-07 10:48 - 00039554 _____ C:\Users\apapia8\Desktop\FRST.txt 2016-08-07 10:10 - 2016-08-07 10:11 - 00000000 ____D C:\Users\apapia8\Documents\AHLERS 2016-08-07 10:09 - 2016-08-07 10:13 - 00002780 _____ C:\RannohDecryptor.1.9.1.1_07.08.2016_10.09.59_log.txt 2016-08-07 10:08 - 2016-05-19 21:32 - 00648344 _____ (Kaspersky Lab ZAO) C:\Users\apapia8\Desktop\RannohDecryptor.exe 2016-08-07 10:08 - 2015-10-29 15:12 - 00014351 _____ C:\Users\apapia8\Desktop\eula.txt 2016-08-07 08:53 - 2016-08-07 08:53 - 00000000 ____D C:\Program Files (x86)\ESET 2016-08-07 08:13 - 2016-08-07 08:14 - 00000720 ____N C:\Users\apapia8\Desktop\Fixlog.txt 2016-08-07 07:17 - 2016-08-07 07:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2016-08-07 03:45 - 2016-08-07 03:45 - 01394065 ____N C:\Users\apapia8\Desktop\TeslaDecoder.zip 2016-08-07 02:56 - 2016-08-07 07:52 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-08-07 02:55 - 2016-08-07 07:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-08-07 02:55 - 2016-08-07 02:55 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-08-07 02:55 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-08-07 02:55 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-08-07 02:55 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-08-06 16:39 - 2016-08-07 07:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security 2016-08-06 16:39 - 2016-08-06 16:39 - 00002161 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk 2016-08-06 16:39 - 2013-05-06 08:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll 2016-08-06 16:38 - 2016-08-07 10:09 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2016-08-06 16:38 - 2016-08-07 07:29 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab 2016-08-06 16:38 - 2016-08-06 17:56 - 00933808 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys 2016-08-06 16:38 - 2015-12-08 01:24 - 00181640 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys 2016-08-06 13:31 - 2016-08-06 13:31 - 00000085 _____ C:\Windows\wininit.ini 2016-08-06 13:04 - 2016-08-06 13:04 - 00000268 ____N C:\Users\apapia8\Downloads\SearchReg.txt 2016-08-06 11:48 - 2016-08-06 16:41 - 00000000 ____D C:\Program Files\HitmanPro 2016-08-06 11:47 - 2016-08-06 11:50 - 00000000 ____D C:\ProgramData\HitmanPro 2016-08-06 11:19 - 2016-08-06 09:27 - 02393600 ____N (Farbar) C:\Users\apapia8\Desktop\FRST64.exe 2016-08-06 11:14 - 2016-08-07 07:42 - 00000000 ____D C:\AdwCleaner 2016-08-06 10:36 - 2016-08-06 10:36 - 00000000 ___HD C:\$SysReset 2016-08-06 10:35 - 2016-08-06 10:35 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2016-08-06 09:35 - 2016-08-06 09:35 - 00036706 ____N C:\Users\apapia8\Downloads\Shortcut.txt 2016-08-06 09:34 - 2016-08-06 09:35 - 00023077 ____N C:\Users\apapia8\Downloads\Addition.txt 2016-08-06 09:29 - 2016-08-06 13:05 - 00034955 ____N C:\Users\apapia8\Downloads\FRST.txt 2016-08-06 09:28 - 2016-08-07 10:47 - 00000000 ____D C:\FRST 2016-08-06 09:26 - 2016-08-06 09:27 - 02393600 ____N (Farbar) C:\Users\apapia8\Downloads\FRST64.exe 2016-08-05 17:29 - 2016-08-07 07:30 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2016-08-05 17:29 - 2016-08-07 06:51 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2016-08-05 17:29 - 2016-08-06 09:23 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2016-08-05 16:34 - 2016-08-05 16:34 - 00000000 _____ C:\autoexec.bat 2016-08-05 16:22 - 2016-08-05 16:22 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2016-08-05 15:47 - 2016-08-05 15:47 - 00000000 ____D C:\ProgramData\Intel Security 2016-08-05 15:46 - 2016-08-05 15:46 - 00000000 ____D C:\Program Files\Common Files\Intel Security 2016-08-04 20:16 - 2016-08-07 07:42 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-08-04 20:16 - 2016-08-07 07:30 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-08-04 18:14 - 2016-08-04 18:14 - 03276854 ____N C:\Users\apapia8\README.bmp 2016-08-04 18:14 - 2016-08-04 18:14 - 03276854 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\README.bmp 2016-08-04 18:14 - 2016-08-04 18:14 - 03276854 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\README.bmp 2016-08-04 18:14 - 2016-08-04 18:14 - 00238187 ____N C:\Users\apapia8\README.html 2016-08-04 18:14 - 2016-08-04 18:14 - 00238187 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\README.html 2016-08-04 18:14 - 2016-08-04 18:14 - 00238187 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\README.html 2016-08-04 17:42 - 2016-08-04 19:08 - 00000000 ____D C:\Users\apapia8\Documents\APADOM 2016-08-04 11:15 - 2016-08-04 18:14 - 00146288 ____N C:\Users\apapia8\Documents\Money AH 2016 Homme PG 17 et PG 18 au 04.03.16 Aubin.pdf 2016-08-04 11:12 - 2016-08-04 11:12 - 00000000 ____D C:\Users\apapia8\Documents\COMMANDES AH 16 2016-08-04 09:24 - 2016-08-04 18:08 - 00000000 ____D C:\Users\apapia8\Documents\CHANTELLE 2016-08-04 09:09 - 2016-08-04 09:09 - 00000000 ____D C:\Users\apapia8\AppData\Local\HP 2016-08-04 08:25 - 2016-08-04 09:09 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\HP 2016-08-04 08:25 - 2016-08-04 08:25 - 00000000 ____D C:\ProgramData\WEBREG 2016-08-04 08:23 - 2016-08-04 08:23 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\HpUpdate 2016-08-04 08:21 - 2016-08-05 15:59 - 00000000 ____D C:\Program Files (x86)\HP 2016-08-04 06:48 - 2016-08-05 15:59 - 00000000 ____D C:\ProgramData\HP 2016-08-04 06:01 - 2016-08-04 06:01 - 00000000 ____D C:\Users\apapia8\Documents\HOM 2016-08-04 05:58 - 2016-08-04 05:58 - 00000000 ____D C:\Users\apapia8\Downloads\HOM 2016-08-04 05:44 - 2016-08-04 05:45 - 00000000 ____D C:\Users\apapia8\Documents\COMMANDES 2017 2016-08-04 05:43 - 2016-08-04 05:43 - 00000000 ____D C:\Users\apapia8\Documents\Modèles Office personnalisés 2016-08-04 05:13 - 2016-08-05 17:43 - 00000000 ____D C:\Program Files\Common Files\AV 2016-08-04 04:16 - 2016-08-04 19:08 - 00000000 ___RD C:\Users\apapia8\OneDrive 2016-08-04 04:15 - 2016-08-04 04:15 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-08-04 01:55 - 2016-08-04 01:55 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\hpqlog 2016-08-03 18:37 - 2016-08-03 18:37 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-08-03 18:12 - 2016-08-03 18:12 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\Macromedia 2016-08-03 18:11 - 2016-08-03 18:11 - 00004024 _____ C:\Windows\System32\Tasks\HPGenoobeReminder 2016-08-03 17:57 - 2016-08-07 09:13 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2979582036-1988701110-4070777674-1001 2016-08-03 17:57 - 2016-08-07 07:53 - 00003936 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6F1FE1FB-4BC6-4595-9A96-8677ECF5772D} 2016-08-03 17:57 - 2016-08-03 17:57 - 00000000 __SHD C:\Users\apapia8\AppData\LocalLow\EmieUserList 2016-08-03 17:57 - 2016-08-03 17:57 - 00000000 __SHD C:\Users\apapia8\AppData\LocalLow\EmieSiteList 2016-08-03 17:57 - 2016-08-03 17:57 - 00000000 __SHD C:\Users\apapia8\AppData\Local\EmieUserList 2016-08-03 17:57 - 2016-08-03 17:57 - 00000000 __SHD C:\Users\apapia8\AppData\Local\EmieSiteList 2016-08-03 17:56 - 2016-08-03 18:11 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\Hewlett-Packard 2016-08-03 17:53 - 2016-08-07 07:52 - 00000000 ____D C:\Users\apapia8\Documents\Youcam 2016-08-03 17:53 - 2016-08-05 15:51 - 00000000 ____D C:\Users\apapia8\AppData\Local\Hewlett-Packard 2016-08-03 17:53 - 2016-08-03 17:53 - 00000000 ____D C:\Users\apapia8\AppData\Local\Power2Go8 2016-08-03 17:53 - 2016-08-03 17:53 - 00000000 ____D C:\Users\apapia8\AppData\Local\CyberLink 2016-08-03 17:52 - 2016-08-07 07:34 - 00000000 ____D C:\Users\apapia8\AppData\Local\VirtualStore 2016-08-03 17:52 - 2016-08-05 16:06 - 00000000 ____D C:\Users\apapia8\AppData\Local\Packages 2016-08-03 17:52 - 2016-08-03 17:52 - 00001469 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-08-03 17:52 - 2016-08-03 17:52 - 00000020 ___SH C:\Users\apapia8\ntuser.ini 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Voisinage réseau 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Voisinage d'impression 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Modèles 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Mes documents 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Menu Démarrer 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Documents\Mes vidéos 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Documents\Mes images 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\Documents\Ma musique 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 _SHDL C:\Users\apapia8\AppData\Local\Historique 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\Synaptics 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 ____D C:\Users\apapia8\AppData\Roaming\Adobe 2016-08-03 17:52 - 2016-08-03 17:52 - 00000000 ____D C:\ProgramData\Synaptics 2016-08-03 17:52 - 2014-08-29 00:41 - 00000000 ___HD C:\Users\apapia8\Documents\hp.system.package.metadata 2016-08-03 17:52 - 2014-08-29 00:41 - 00000000 ___HD C:\Users\apapia8\Documents\hp.applications.package.appdata 2016-08-03 17:52 - 2014-03-18 11:54 - 00000369 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2016-08-03 17:52 - 2014-03-18 11:54 - 00000369 ____N C:\Users\apapia8\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2016-08-03 17:51 - 2016-08-07 07:51 - 00000000 ____D C:\Users\apapia8 2016-08-03 17:41 - 2016-08-07 07:43 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Public\Documents\Mes images 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Public\Documents\Ma musique 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Voisinage réseau 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Modèles 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Mes documents 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Menu Démarrer 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Documents\Mes images 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\ProgramData\Modèles 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\ProgramData\Menu Démarrer 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\ProgramData\Bureau 2016-08-03 17:38 - 2016-08-03 17:38 - 00000000 _SHDL C:\Program Files\Fichiers communs ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-08-07 10:48 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2016-08-07 10:30 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-07 10:30 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2016-08-07 08:53 - 2013-08-22 17:36 - 00000000 ___SD C:\Windows\Downloaded Program Files 2016-08-07 07:45 - 2014-03-18 11:38 - 00000000 ____D C:\Program Files\Windows Journal 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\SysWOW64\winrm 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\SysWOW64\slmgr 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\system32\winrm 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\system32\slmgr 2016-08-07 07:45 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ___SD C:\Windows\system32\dsc 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\WinStore 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\en-GB 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\SystemResetPlatform 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\migwiz 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\en-GB 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\PolicyDefinitions 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Help 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-08-07 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2016-08-07 07:45 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-08-07 07:45 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\SysWOW64\oobe 2016-08-07 07:45 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\oobe 2016-08-07 07:45 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\servicing 2016-08-07 07:43 - 2016-01-09 22:26 - 00000000 ____D C:\Users\apapia8\Desktop\TeslaDecoder 2016-08-07 07:43 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries 2016-08-07 07:43 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2016-08-07 07:43 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\IME 2016-08-07 07:43 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2016-08-07 07:42 - 2014-12-31 19:46 - 00000000 ____D C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2016-08-07 07:42 - 2014-04-05 01:45 - 00000000 ___HD C:\SYSTEM.SAV 2016-08-07 07:38 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\registration 2016-08-07 07:37 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\Sysprep 2016-08-07 07:30 - 2014-12-31 19:41 - 00000000 ____D C:\Program Files\mcafee 2016-08-07 07:30 - 2014-12-31 19:41 - 00000000 ____D C:\Program Files\Common Files\mcafee 2016-08-07 07:30 - 2014-12-31 19:41 - 00000000 ____D C:\Program Files (x86)\McAfee 2016-08-07 06:40 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\SysWOW64\WCN 2016-08-07 06:40 - 2014-03-18 11:25 - 00000000 ____D C:\Windows\system32\WCN 2016-08-06 17:56 - 2015-12-08 01:24 - 00087984 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klwfp.sys 2016-08-06 17:56 - 2015-06-11 19:35 - 00049240 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klim6.sys 2016-08-06 17:56 - 2015-06-06 08:51 - 00077728 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\kldisk.sys 2016-08-06 16:46 - 2015-12-08 01:24 - 00238000 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys 2016-08-06 16:39 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2016-08-06 16:36 - 2014-12-31 19:40 - 00000000 ____D C:\ProgramData\McAfee 2016-08-06 12:12 - 2014-08-29 09:49 - 00847512 _____ C:\Windows\system32\perfh00C.dat 2016-08-06 12:12 - 2014-08-29 09:49 - 00175100 _____ C:\Windows\system32\perfc00C.dat 2016-08-06 12:12 - 2014-03-18 11:53 - 01970416 _____ C:\Windows\system32\PerfStringBackup.INI 2016-08-05 18:22 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2016-08-05 16:15 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2016-08-05 16:01 - 2013-08-22 16:44 - 00471912 _____ C:\Windows\system32\FNTCACHE.DAT 2016-08-05 15:59 - 2014-12-31 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2016-08-05 15:59 - 2014-12-31 19:37 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat 2016-08-05 15:59 - 2014-12-31 19:35 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos 2016-08-05 15:59 - 2014-12-31 19:27 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2016-08-05 15:59 - 2014-12-31 19:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2016-08-05 15:59 - 2014-08-29 00:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2016-08-05 15:59 - 2014-08-29 00:43 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2016-08-05 15:49 - 2014-08-29 00:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-08-03 19:28 - 2014-12-31 19:39 - 00000000 ____D C:\Users\Public\CyberLink 2016-08-03 19:26 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-08-03 18:37 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-08-03 17:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2016-08-03 17:38 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2016-08-03 17:37 - 2014-04-03 01:51 - 00000000 ____D C:\Windows\Panther ==================== Fichiers à la racine de certains dossiers ======= 2016-08-04 08:20 - 2016-08-04 08:25 - 0000831 _____ () C:\ProgramData\hpzinstall.log Certains fichiers dans TEMP: ==================== C:\Users\apapia8\AppData\Local\Temp\HitmanPro.exe C:\Users\apapia8\AppData\Local\Temp\libeay32.dll C:\Users\apapia8\AppData\Local\Temp\msvcr120.dll C:\Users\apapia8\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {e3dbce0e-59ef-11e6-8260-806e6f6e6963} {213e033f-5990-11e6-825f-806e6f6e6963} {a5398094-9164-11e4-bf3e-bdfc1d7c72d0} {a5398095-9164-11e4-bf3e-bdfc1d7c72d0} timeout 0 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} integrityservices Enable default {current} resumeobject {a5398098-9164-11e4-bf3e-bdfc1d7c72d0} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {213e033f-5990-11e6-825f-806e6f6e6963} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager Application logicielle (101fffff) -------------------------------- identificateur {47866f9d-917b-11e4-a9c1-806e6f6e6963} description Internal Hard Disk or Solid State Disk Application logicielle (101fffff) -------------------------------- identificateur {a5398094-9164-11e4-bf3e-bdfc1d7c72d0} description USB Drive (UEFI) Application logicielle (101fffff) -------------------------------- identificateur {a5398095-9164-11e4-bf3e-bdfc1d7c72d0} description Internal CD/DVD ROM Drive (UEFI) Application logicielle (101fffff) -------------------------------- identificateur {a5398097-9164-11e4-bf3e-bdfc1d7c72d0} description Internal Hard Disk or Solid State Disk Application logicielle (101fffff) -------------------------------- identificateur {e2963130-9110-11e4-8258-806e6f6e6963} description Internal Hard Disk or Solid State Disk Application logicielle (101fffff) -------------------------------- identificateur {e3dbce0e-59ef-11e6-8260-806e6f6e6963} description Internal Hard Disk or Solid State Disk Chargeur de d‚marrage Windows ----------------------------- identificateur {05215d8c-911f-11e4-825c-acd1b81b2dac} device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{05215d8d-911f-11e4-825c-acd1b81b2dac} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{05215d8d-911f-11e4-825c-acd1b81b2dac} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \Windows\system32\winload.efi description Windows 8.1 locale fr-FR inherit {bootloadersettings} recoverysequence {05215d8c-911f-11e4-825c-acd1b81b2dac} integrityservices Enable recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {a5398098-9164-11e4-bf3e-bdfc1d7c72d0} nx OptIn bootmenupolicy Standard Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {a5398098-9164-11e4-bf3e-bdfc1d7c72d0} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {05215d8c-911f-11e4-825c-acd1b81b2dac} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Windows Memory Diagnostic locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {05215d8d-911f-11e4-825c-acd1b81b2dac} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2014-04-03 00:59 ==================== Fin de FRST.txt ============================