Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017 Exécuté par amine (administrateur) sur PCSERVICE-PC (28-03-2017 01:30:48) Exécuté depuis C:\Users\amine\Downloads Profils chargés: amine (Profils disponibles: pc service & amine & charazad) Platform: Windows 7 Professional Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 8 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (SafeNet Inc.) C:\Windows\System32\hasplms.exe () C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Flux Software LLC) C:\Users\amine\AppData\Local\FluxSoftware\Flux\flux.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATINFE.EXE (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE (SSC Localization Group) C:\Program Files (x86)\SSC Service Utility\ssc_serv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avast Software) C:\Program Files\AVAST Software\SZBrowser\launcher.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [408888 2014-06-27] (Power Software Ltd) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-10] (AVAST Software) HKLM-x32\...\Run: [SSC Service Utility] => C:\Program Files (x86)\SSC Service Utility\ssc_serv.exe [665600 2007-10-09] (SSC Localization Group) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Run: [f.lux] => C:\Users\amine\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC) HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATINFE.EXE [298560 2013-12-16] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3911248 2015-10-21] (Tonec Inc.) HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\MountPoints2: {57b336cf-c895-11e4-aa14-201a06774894} - H:\autorun.exe HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\MountPoints2: {eb696baa-3247-11e6-aadb-201a06774894} - H:\Auto.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-04-22] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-10] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-10] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-02-01] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe (McAfee, Inc.) GroupPolicy: Restriction <======= ATTENTION GroupPolicy\User: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{101DB747-EAC8-4D55-A495-79A6B045A87C}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{C0565058-3330-40CE-ABA2-C3BCB3470A1E}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://fr.msn.com/?ocid=iehp SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKU\S-1-5-21-2781294092-3245488707-3737494371-1003 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-09-28] (Internet Download Manager, Tonec Inc.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2015-01-10] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-03-10] (AVAST Software) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2015-01-10] (Oracle Corporation) BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-09-28] (Internet Download Manager, Tonec Inc.) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-03-08] (Microsoft Corporation) BHO-x32: SSVHelper Class -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.6.0_02\bin\ssv.dll [2007-07-12] (Sun Microsystems, Inc.) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-03-10] (AVAST Software) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) Toolbar: HKU\S-1-5-21-2781294092-3245488707-3737494371-1003 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-20] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-20] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\amine\AppData\Roaming\Mozilla\Firefox\Profiles\7d58v982.default [2017-03-27] FF DefaultSearchEngine: Mozilla\Firefox\Profiles\7d58v982.default -> Google FF DefaultSearchUrl: Mozilla\Firefox\Profiles\7d58v982.default -> hxxps://www.google.com/search/?trackid=sp-006 FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\7d58v982.default -> Google (avast) FF SearchEngineOrder.3: Mozilla\Firefox\Profiles\7d58v982.default -> Bing FF SelectedSearchEngine: Mozilla\Firefox\Profiles\7d58v982.default -> Google (avast) FF Homepage: Mozilla\Firefox\Profiles\7d58v982.default -> hxxps://www.google.fr/ FF Keyword.URL: Mozilla\Firefox\Profiles\7d58v982.default -> hxxps://www.google.com/search/?trackid=sp-006 FF Extension: (Bing Extension) - C:\Users\amine\AppData\Roaming\Mozilla\Firefox\Profiles\7d58v982.default\Extensions\bingsearch.full@microsoft.com [2017-03-27] [non signé] FF SearchPlugin: C:\Users\amine\AppData\Roaming\Mozilla\Firefox\Profiles\7d58v982.default\searchplugins\bing-avast.xml [2014-10-03] FF SearchPlugin: C:\Users\amine\AppData\Roaming\Mozilla\Firefox\Profiles\7d58v982.default\searchplugins\google-avast.xml [2015-09-09] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-03-10] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-03-10] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48 FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 FF HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2015-10-02] FF HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\amine\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\amine\AppData\Roaming\IDM\idmmzcc5 [2017-03-28] [non signé] FF HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll [2017-03-18] () FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2015-01-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2015-01-10] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll [2017-03-18] () FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2781294092-3245488707-3737494371-1003: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\amine\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\35492926.js [2017-03-25] <==== ATTENTION (Pointe vers un fichier *.cfg) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\35492926.cfg [2017-03-25] <==== ATTENTION Chrome: ======= CHR DefaultProfile: Profile 1 CHR HomePage: Profile 1 -> hxxp://www.bing.com/?mkt=en-US&pc=__PARAM__ CHR StartupUrls: Profile 1 -> "hxxps://www.google.fr/","hxxps://www.google.fr/#cns=0" CHR Profile: C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default [2017-03-26] CHR Extension: (Google Docs) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04] CHR Extension: (Google Drive) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-03-25] CHR Extension: (YouTube) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-25] CHR Extension: (Recherche Google) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-28] CHR Extension: (Avast SafePrice) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-25] CHR Extension: (Google Docs hors connexion) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (AdBlock) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-03-25] CHR Extension: (Avast Online Security) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-03-25] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-25] CHR Extension: (Gmail) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28] CHR Extension: (Chrome Media Router) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-25] CHR Profile: C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-03-28] CHR Extension: (Google Docs) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-31] CHR Extension: (Google Drive) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25] CHR Extension: (Adblock Plus) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-21] CHR Extension: (Recherche Google) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27] CHR Extension: (Google Docs hors connexion) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (AdBlock) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-02-25] CHR Extension: (Bookmark Manager) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2017-01-19] CHR Extension: (Avast Online Security) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-03-11] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Gmail) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-31] CHR Extension: (Chrome Media Router) - C:\Users\amine\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-25] CHR Profile: C:\Users\amine\AppData\Local\Google\Chrome\User Data\System Profile [2017-03-26] CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-10-16] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-10-16] CHR HKU\S-1-5-21-2781294092-3245488707-3737494371-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nfedoihopcjdfjihhhojdclnfdgomdho] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx Opera: ======= OPR StartupUrls: "hxxps://www.google.fr/" ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-10] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-10] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [278784 2017-03-10] (AVAST Software) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) R2 hasplms; C:\Windows\system32\hasplms.exe [4889032 2011-12-30] (SafeNet Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.500\McCHSvc.exe [329480 2017-01-19] (McAfee, Inc.) R2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14253 2015-04-08] () [Fichier non signé] S3 wampapache; c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe [22016 2014-05-01] (Apache Software Foundation) [Fichier non signé] S3 wampmysqld; c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [10959360 2014-05-01] () [Fichier non signé] S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [21120 2011-08-03] (SafeNet Inc.) R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-10] (AVAST Software s.r.o.) R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-10] (AVAST Software s.r.o.) R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-03-10] (AVAST Software s.r.o.) R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-10] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-10] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [32088 2017-03-10] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126600 2017-03-10] (AVAST Software) R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [29432 2017-03-10] (AVAST Software) R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [461640 2017-03-10] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-03-10] (AVAST Software) R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-10] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [993608 2017-03-10] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [548928 2017-03-21] (AVAST Software) S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-03-10] (AVAST Software) R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337592 2017-03-14] (AVAST Software) R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [321536 2011-09-28] (SafeNet Inc.) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-12-11] (Intel Corporation) S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [118504 2012-12-19] (Qualcomm Atheros Co., Ltd.) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [50320 2015-01-29] (Panda Security, S.L.) U5 TMUSB; C:\Windows\System32\DRIVERS\TMUSB64.SYS [63096 2016-06-29] (Seiko Epson Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-28 01:30 - 2017-03-28 01:32 - 00023753 _____ C:\Users\amine\Downloads\FRST.txt 2017-03-28 01:30 - 2017-03-28 01:30 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-03-28 01:30 - 2017-03-28 01:30 - 00000000 ____D C:\FRST 2017-03-28 01:29 - 2017-03-28 01:29 - 02424832 _____ (Farbar) C:\Users\amine\Downloads\FRST64.exe 2017-03-28 01:13 - 2017-03-28 01:13 - 00008662 _____ C:\Users\amine\Desktop\ZHPCleaner.txtNY.txt 2017-03-28 01:10 - 2017-03-28 01:12 - 00008659 _____ C:\Users\amine\Desktop\ZHPCleaner.txt 2017-03-28 01:02 - 2017-03-28 01:02 - 00000792 _____ C:\Users\amine\Desktop\ZHPCleaner.lnk 2017-03-28 01:01 - 2017-03-28 01:01 - 02753024 _____ C:\Users\amine\Downloads\ZHPCleaner.exe 2017-03-27 23:08 - 2017-03-27 23:08 - 00001011 _____ C:\Users\Public\Desktop\WicReset.lnk 2017-03-27 23:08 - 2017-03-27 23:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WicReset 2017-03-27 23:08 - 2017-03-27 23:08 - 00000000 ____D C:\Program Files (x86)\WicReset 2017-03-27 18:12 - 2017-03-27 18:15 - 00000000 ____D C:\Users\pc service\AppData\LocalLow\Mozilla 2017-03-27 13:36 - 2017-03-27 13:36 - 00000000 ____D C:\Program Files (x86)\ESET 2017-03-27 02:27 - 2017-03-27 05:23 - 00000000 ____D C:\AdwCleaner 2017-03-27 02:26 - 2017-03-27 02:26 - 04031440 _____ C:\Users\amine\Downloads\adwcleaner_6.044.exe 2017-03-27 01:57 - 2017-03-27 01:58 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\amine\Downloads\rkill.com 2017-03-26 14:38 - 2017-03-26 14:38 - 00156806 _____ C:\Users\amine\Desktop\ZHPDiagraport.txt 2017-03-26 13:47 - 2017-03-28 01:12 - 00000000 ____D C:\Users\amine\AppData\Roaming\ZHP 2017-03-26 13:47 - 2017-03-26 13:47 - 00000782 _____ C:\Users\amine\Desktop\ZHPDiag.lnk 2017-03-26 13:43 - 2017-03-26 13:45 - 02713088 _____ C:\Users\amine\Downloads\ZHPDiag3.exe 2017-03-26 04:42 - 2017-03-26 04:42 - 00001286 _____ C:\Users\Public\Desktop\Panda Cloud Cleaner.lnk 2017-03-26 04:42 - 2015-09-14 13:03 - 00039672 _____ C:\Windows\system32\Drivers\DasPtct.SYS 2017-03-26 04:42 - 2015-01-29 18:21 - 00050320 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2017-03-26 04:41 - 2017-03-26 04:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2017-03-26 04:41 - 2017-03-26 04:41 - 00000000 ____D C:\Program Files (x86)\Panda Security 2017-03-26 03:21 - 2017-03-26 03:21 - 00000017 _____ C:\Users\amine\AppData\Local\resmon.resmoncfg 2017-03-25 21:57 - 2017-03-25 21:57 - 03138688 _____ (ESET) C:\Users\amine\Downloads\eset_smart_security_live_installer (1).exe 2017-03-25 17:07 - 2017-03-25 17:07 - 01301968 _____ (GridinSoft LLC) C:\Users\amine\Downloads\setup-antimalware-914.exe 2017-03-25 15:29 - 2017-03-25 15:29 - 00003170 _____ C:\Windows\System32\Tasks\{BD921309-B5D7-4524-8CD3-E63B843CF265} 2017-03-20 22:43 - 2013-04-17 15:25 - 00000000 ____D C:\Users\amine\Desktop\intranet_big 2017-03-20 22:16 - 2017-03-20 22:16 - 00000589 _____ C:\Users\amine\Desktop\WampServer.lnk 2017-03-20 22:16 - 2017-03-20 22:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer 2017-03-20 22:15 - 2017-03-20 22:17 - 00000000 ____D C:\wamp 2017-03-20 20:17 - 2017-03-20 20:23 - 39917641 _____ (Hervé Leclerc (HeL) ) C:\Users\amine\Downloads\wampserver2.5-Apache-2.4.9-Mysql-5.6.17-php5.5.12-32b.exe 2017-03-20 16:37 - 2016-06-29 15:27 - 00063096 _____ (Seiko Epson Corporation) C:\Windows\system32\Drivers\TMUSB64.sys 2017-03-20 16:36 - 2017-03-20 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EpsonNet 2017-03-20 16:36 - 2017-03-20 16:36 - 00000000 ____D C:\Program Files (x86)\EpsonNet 2017-03-17 14:43 - 2017-03-17 14:43 - 00020454 _____ C:\Users\amine\Desktop\C1PcM3QWgAE7W00.jpg-large 2017-03-15 22:03 - 2017-03-15 22:03 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk 2017-03-15 22:03 - 2017-03-15 22:03 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-03-15 22:03 - 2017-03-15 22:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-03-12 18:12 - 2017-03-12 18:12 - 00000000 ____D C:\Users\pc service\AppData\Roaming\AVAST Software 2017-03-10 23:48 - 2017-03-27 02:39 - 00000964 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-03-10 23:48 - 2017-03-27 02:39 - 00000952 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk 2017-03-10 23:48 - 2017-03-11 15:54 - 00003926 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1489186101 2017-03-10 23:47 - 2017-03-10 23:47 - 00032088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2017-03-10 23:19 - 2017-03-10 23:19 - 00000000 ____D C:\Users\amine\AppData\Roaming\AVAST Software 2017-03-10 23:18 - 2017-03-10 23:18 - 00001882 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk 2017-03-10 23:18 - 2017-03-10 23:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-03-10 23:17 - 2017-03-26 21:39 - 00004172 _____ C:\Windows\System32\Tasks\Avast Emergency Update 2017-03-10 23:17 - 2017-03-21 19:44 - 00548928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2017-03-10 23:17 - 2017-03-14 15:27 - 00337592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2017-03-10 23:17 - 2017-03-10 23:17 - 00000000 ____D C:\Program Files\Common Files\AV 2017-03-10 23:17 - 2017-03-10 23:16 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-03-10 23:17 - 2017-03-10 23:16 - 00126600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-03-10 23:17 - 2017-03-10 23:16 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-03-10 23:17 - 2017-03-10 23:16 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-03-10 23:17 - 2017-03-10 23:16 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-03-10 23:17 - 2017-03-10 23:15 - 00993608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2017-03-10 23:17 - 2017-03-10 23:14 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys 2017-03-10 23:17 - 2017-03-10 23:14 - 00309272 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys 2017-03-10 23:17 - 2017-03-10 23:14 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys 2017-03-10 23:17 - 2017-03-10 23:14 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys 2017-03-10 23:16 - 2017-03-10 23:16 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-03-10 23:16 - 2017-03-10 23:15 - 00461640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys 2017-03-10 23:15 - 2017-03-10 23:15 - 00029432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys 2017-03-10 22:56 - 2017-03-10 23:47 - 00000000 ____D C:\Program Files\AVAST Software 2017-03-10 20:00 - 2017-03-10 20:00 - 00000000 ____D C:\Users\pc service\AppData\Local\ESET 2017-03-08 16:38 - 2017-03-08 16:38 - 00000000 ____D C:\Users\amine\AppData\Roaming\ESET 2017-03-07 17:41 - 2017-03-07 17:41 - 00000000 ____D C:\Windows\pss 2017-03-06 14:51 - 2017-03-06 14:51 - 00000000 ____D C:\Users\amine\AppData\Local\ESET 2017-03-06 14:49 - 2017-03-06 17:25 - 00000034 _____ C:\Windows\AvastEmUpdate.ini ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-28 01:27 - 2014-08-04 08:17 - 00003952 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{2F55F289-AA25-40F2-8D91-3C9D16008BE0} 2017-03-28 01:22 - 2009-07-14 05:45 - 00025216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-03-28 01:22 - 2009-07-14 05:45 - 00025216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-03-28 01:15 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-03-28 01:13 - 2014-09-30 05:14 - 00000000 ____D C:\Users\amine\AppData\Roaming\DMCache 2017-03-28 00:48 - 2015-06-14 21:48 - 00000913 _____ C:\Windows\Tasks\EPSON XP-225 Series Update {F8049651-4D5C-49E6-BC25-230FBE6CE86F}.job 2017-03-28 00:41 - 2014-12-17 00:36 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2781294092-3245488707-3737494371-1003UA.job 2017-03-28 00:41 - 2014-12-17 00:36 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2781294092-3245488707-3737494371-1003Core.job 2017-03-27 22:53 - 2014-05-22 00:23 - 00000000 ____D C:\Users\pc service\AppData\Roaming\DMCache 2017-03-27 22:46 - 2014-10-13 12:41 - 00000948 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2781294092-3245488707-3737494371-1000UA.job 2017-03-27 20:31 - 2015-11-10 20:13 - 00000000 ____D C:\Users\pc service\Downloads\Compressed 2017-03-27 19:22 - 2014-03-24 13:58 - 00000000 ____D C:\Users\pc service\AppData\Roaming\Skype 2017-03-27 13:46 - 2014-10-13 12:41 - 00000926 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2781294092-3245488707-3737494371-1000Core.job 2017-03-27 13:43 - 2015-10-18 00:29 - 00005750 _____ C:\Users\amine\Desktop\WNetWatcher.cfg 2017-03-27 05:24 - 2016-05-15 20:55 - 00000000 ____D C:\Program Files\Google 2017-03-27 05:24 - 2014-05-17 01:31 - 00000000 ____D C:\Program Files (x86)\Google 2017-03-27 04:13 - 2014-07-17 20:56 - 00000000 ____D C:\Users\amine\AppData\Local\Google 2017-03-27 03:59 - 2017-01-30 15:13 - 00000000 ____D C:\Users\amine\AppData\LocalLow\Mozilla 2017-03-27 02:39 - 2015-03-29 21:02 - 00000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2017-03-27 02:39 - 2015-03-29 21:02 - 00000986 _____ C:\Users\Public\Desktop\Opera.lnk 2017-03-27 02:39 - 2014-07-17 20:56 - 00001190 _____ C:\Users\amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2017-03-27 02:39 - 2014-07-17 20:56 - 00000963 _____ C:\Users\amine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2017-03-27 02:39 - 2014-05-17 01:42 - 00001300 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-03-27 02:39 - 2014-05-17 01:42 - 00001288 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-03-27 02:39 - 2014-03-24 14:01 - 00001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-03-27 02:39 - 2014-03-24 14:01 - 00001053 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-03-27 00:06 - 2014-09-30 05:14 - 00000000 ____D C:\Users\amine\Downloads\Compressed 2017-03-26 22:55 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-03-26 22:02 - 2014-06-10 17:37 - 00000000 ____D C:\Program Files (x86)\Opera 2017-03-26 16:42 - 2009-07-14 16:24 - 00760482 _____ C:\Windows\system32\perfh00C.dat 2017-03-26 16:42 - 2009-07-14 16:24 - 00154848 _____ C:\Windows\system32\perfc00C.dat 2017-03-26 16:42 - 2009-07-14 06:13 - 01704084 _____ C:\Windows\system32\PerfStringBackup.INI 2017-03-26 05:19 - 2015-03-03 10:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArgoUML 2017-03-25 16:39 - 2015-06-04 17:49 - 00000000 ____D C:\Program Files (x86)\SSC Service Utility 2017-03-25 00:05 - 2015-10-04 00:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-03-24 21:31 - 2016-06-16 18:03 - 00000000 ____D C:\Users\amine\AppData\Roaming\WicReset 2017-03-21 19:36 - 2015-01-01 02:04 - 00000438 __RSH C:\ProgramData\ntuser.pol 2017-03-21 14:15 - 2014-03-24 14:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-03-20 16:36 - 2015-03-20 19:04 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-03-19 03:08 - 2015-07-18 10:41 - 00000000 ____D C:\Users\amine\Downloads\Video 2017-03-18 04:20 - 2014-09-19 15:52 - 00004484 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-03-18 04:20 - 2014-07-17 09:52 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-03-18 04:20 - 2014-07-17 09:52 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-18 04:19 - 2014-04-23 19:58 - 00000000 ____D C:\Windows\system32\Macromed 2017-03-18 04:19 - 2014-03-24 14:01 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-03-15 22:04 - 2014-03-24 13:57 - 00000000 ____D C:\ProgramData\Skype 2017-03-15 22:02 - 2015-04-17 03:37 - 00000000 ____D C:\ProgramData\Package Cache 2017-03-14 15:19 - 2009-07-14 06:08 - 00032496 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2017-03-11 01:45 - 2014-04-27 00:18 - 00000000 ____D C:\ProgramData\AVAST Software 2017-03-10 20:00 - 2015-06-19 09:02 - 00000664 __RSH C:\Users\pc service\ntuser.pol 2017-03-10 20:00 - 2014-03-24 13:44 - 00000000 ____D C:\Users\pc service 2017-03-07 17:40 - 2015-06-02 10:01 - 00000000 ____D C:\Users\amine\AppData\Local\CrashDumps 2017-03-06 18:23 - 2015-06-18 13:42 - 00000664 __RSH C:\Users\amine\ntuser.pol 2017-03-06 18:23 - 2014-07-17 20:56 - 00000000 ____D C:\Users\amine 2017-03-06 18:22 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2017-03-06 18:20 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2017-03-06 18:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2017-03-06 14:45 - 2014-03-24 14:00 - 00000000 ____D C:\Program Files\CCleaner 2017-03-02 14:01 - 2015-03-29 21:02 - 00003880 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1427659361 ==================== Fichiers à la racine de certains dossiers ======= 2015-06-01 19:27 - 2015-06-01 19:27 - 0000036 _____ () C:\Users\amine\AppData\Local\housecall.guid.cache 2017-03-26 03:21 - 2017-03-26 03:21 - 0000017 _____ () C:\Users\amine\AppData\Local\resmon.resmoncfg ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement testsigning: ==> 'testsigning' est activé. Rechercher un éventuel pilote non signé <===== ATTENTION nointegritychecks: ==> "IntegrityChecks" is disabled. <===== ATTENTION LastRegBack: 2017-02-26 15:47 ==================== Fin de FRST.txt ============================