Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-03-2017 Exécuté par patrice.petetot (administrateur) sur PORTABLE-PP-PC (07-03-2017 21:30:32) Exécuté depuis C:\Users\patrice.petetot\Desktop Profils chargés: patrice.petetot (Profils disponibles: Portable LG & patrice.petetot & DefaultAppPool) Platform: Windows 10 Pro Version 1607 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (ESET) C:\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel) C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe (Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Aastra Telecom Schweiz AG) C:\Program Files (x86)\Aastra\Aastra Management Suite\bin\AmsSmartUpdate.exe (iSkySoft) C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8721656 2016-03-09] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1416440 2016-03-09] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3955888 2015-12-21] (Synaptics Incorporated) HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [714672 2015-09-25] (Waves Audio Ltd.) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-10-03] (Microsoft Corporation) HKLM-x32\...\Run: [USB3MON] => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2016-12-17] (Adobe Systems Incorporated) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (iSkySoft) HKLM-x32\...\Run: [DelaypluginInstall] => C:\ProgramData\iSkysoft\Video Converter Ultimate\DelayPluginI.exe [1962944 2016-11-22] () HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) HKU\S-1-5-21-2141602251-3289504655-3765685879-1163\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe HKU\S-1-5-21-2141602251-3289504655-3765685879-1163\...\Run: [X-Lite] => C:\Program Files (x86)\CounterPath\X-Lite\X-Lite.exe [4659080 2016-10-11] (CounterPath) HKU\S-1-5-21-2141602251-3289504655-3765685879-1163\...\MountPoints2: {a012d1c8-97b9-11e5-a63e-806e6f6e6963} - "C:\WINDOWS\system32\RunDLL32.EXE" Shell32.DLL,ShellExec_RunDLL D:\index.html ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Mise à jour du logiciel AMS.lnk [2016-12-27] ShortcutTarget: Mise à jour du logiciel AMS.lnk -> C:\Program Files (x86)\Aastra\Aastra Management Suite\bin\AmsSmartUpdate.exe (Aastra Telecom Schweiz AG) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.254.1.250 Tcpip\..\Interfaces\{a7f358a5-6bc4-4905-b83a-53e8fce3d3e0}: [DhcpNameServer] 192.254.1.250 Tcpip\..\Interfaces\{a9832f82-6c11-49cd-b927-febfa07fb352}: [DhcpNameServer] 10.151.156.82 10.151.156.83 Tcpip\..\Interfaces\{f6d54e7c-f8e4-42e4-86f9-98ce6837dec4}: [DhcpNameServer] 192.168.1.210 192.168.10.10 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-2141602251-3289504655-3765685879-1163\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell13.msn.com/?pc=DCTE HKU\S-1-5-21-2141602251-3289504655-3765685879-1163\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCTE SearchScopes: HKU\S-1-5-21-2141602251-3289504655-3765685879-1163 -> DefaultScope {062B7D47-EA40-4A48-824A-ABC23D695750} URL = SearchScopes: HKU\S-1-5-21-2141602251-3289504655-3765685879-1163 -> {062B7D47-EA40-4A48-824A-ABC23D695750} URL = BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-06] (Oracle Corporation) BHO-x32: iSkysoft iMedia Converter Deluxe 5.1.0 -> {AEAF002F-E6D8-4A21-ABD3-2B309B79A6CE} -> C:\ProgramData\iSkysoft\Video Converter Ultimate\WSBrowserAppMgr.dll [2016-11-22] (Wondershare) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-06] (Oracle Corporation) DPF: HKLM-x32 {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} DPF: HKLM-x32 {45B69029-F3AB-4204-92DE-D5140C3E8E74} C:\Users\PATRIC~1.PET\AppData\Local\Temp\IXP000.TMP\InstallerControl.cab#-1,-1,-1,-1 DPF: HKLM-x32 {E0FF21FA-B857-45C5-8621-F120A0C17FF2} Handler: WSISVCUchrome - {78A543EB-3A61-4ED3 - Pas de fichier FireFox: ======== FF DefaultProfile: wt0uy02a.default FF ProfilePath: C:\Users\patrice.petetot\AppData\Roaming\Mozilla\Firefox\Profiles\wt0uy02a.default [2017-03-07] FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\patrice.petetot\AppData\Roaming\Mozilla\Firefox\Profiles\wt0uy02a.default\features\{01f1dfa5-a7d8-4a2e-937e-99de4e9ca17d}\disableSHA1rollout@mozilla.org.xpi [2017-03-03] FF HKLM-x32\...\Firefox\Extensions: [ISVCU@iSkysoft.com] - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi FF Extension: (iSkysoft iMedia Converter Deluxe) - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi [2016-12-29] FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-06] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-06] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.) FF Plugin-x32: @vmware.com/vmrc,version=5.5.0.00000 -> C:\Program Files (x86)\Common Files\VMware\VMware Remote Console Plug-in 5.5\Firefox\np-vmware-vmrc.dll [2014-06-12] (VMware, Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-12-17] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2141602251-3289504655-3765685879-1163: @citrixonline.com/appdetectorplugin -> C:\Users\patrice.petetot\AppData\Local\Citrix\Plugins\104\npappdetector.dll [2016-11-03] (Citrix Online) FF Plugin HKU\S-1-5-21-2141602251-3289504655-3765685879-1163: @zoom.us/ZoomVideoPlugin -> C:\Users\patrice.petetot\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2017-02-28] (Zoom Video Communications, Inc.) Chrome: ======= CHR Profile: C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default [2017-03-07] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-13] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-13] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-13] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-13] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-13] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-13] CHR Extension: (Chrome Web Store Payments) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-20] CHR Extension: (Pas de nom) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-13] CHR Extension: (Chrome Media Router) - C:\Users\patrice.petetot\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-08] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell) R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-08-27] (Dell Inc.) R2 EraAgentSvc; C:\Program Files\ESET\RemoteAdministrator\Agent\ERAAgent.exe [1693896 2016-01-12] (ESET) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382456 2017-02-28] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 IntelUSBoverIP; C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [394184 2014-10-15] (Intel) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation) R2 MSSQL$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [42884448 2010-04-03] (Microsoft Corporation) S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [16384 2012-03-27] () [Fichier non signé] R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-04-15] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [316152 2016-03-09] (Realtek Semiconductor) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-10-03] (Microsoft Corporation) S4 SQLAgent$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [367456 2010-04-03] (Microsoft Corporation) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [256688 2015-12-21] (Synaptics Incorporated) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [578480 2015-09-25] (Waves Audio Ltd.) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 CLVirtualDrive; C:\WINDOWS\System32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-12-21] (OSR Open Systems Resources, Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation) R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [129312 2014-10-11] (Intel Corporation) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3485696 2016-07-16] (Intel Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [896744 2015-08-13] (Realtek ) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [402960 2015-05-14] (Realsil Semiconductor Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [67248 2015-12-21] (Synaptics Incorporated) R3 usb3Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [213296 2014-10-15] (Windows (R) Win 7 DDK provider) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-07 21:30 - 2017-03-07 21:31 - 00017979 _____ C:\Users\patrice.petetot\Desktop\FRST.txt 2017-03-07 21:28 - 2017-03-07 21:30 - 00000000 ____D C:\FRST 2017-03-07 21:28 - 2017-03-07 21:28 - 00000000 ____D C:\Users\patrice.petetot\Desktop\FRST-OlderVersion 2017-03-07 21:25 - 2017-03-07 21:28 - 02423808 _____ (Farbar) C:\Users\patrice.petetot\Desktop\FRST64.exe 2017-03-07 18:03 - 2017-03-07 18:03 - 00014314 _____ C:\Users\patrice.petetot\Documents\annumcphy.xlsx 2017-03-07 14:23 - 2015-12-03 13:43 - 02770866 _____ C:\Users\patrice.petetot\Desktop\OMP.jar 2017-03-06 20:51 - 2017-03-06 20:51 - 00132002 _____ C:\Users\patrice.petetot\Desktop\Document Unique de Prévention des Risques V0.pptx 2017-03-03 15:27 - 2017-03-03 15:27 - 00611470 _____ C:\Users\patrice.petetot\Desktop\AMT_PTD_PBX_0152_1_0_FR.pdf 2017-03-03 14:09 - 2017-03-03 14:09 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2017-03-03 11:03 - 2017-03-03 11:03 - 00001460 _____ C:\Users\patrice.petetot\Desktop\RCHSCT.txt 2017-03-03 10:04 - 2017-03-03 10:04 - 00000024 _____ C:\Users\patrice.petetot\Desktop\delphine.txt 2017-03-02 17:13 - 2017-03-02 17:13 - 00048172 _____ C:\Users\patrice.petetot\Desktop\SKM_C25817030218140.pdf 2017-03-02 16:58 - 2017-03-02 16:58 - 00600694 _____ C:\Users\patrice.petetot\Desktop\Raquette du 5 Mars 2017.pdf 2017-03-02 16:26 - 2017-03-02 16:34 - 00000045 _____ C:\WINDOWS\SysWOW64\_WKERNEL.SYL 2017-03-02 16:26 - 2017-03-02 16:34 - 00000000 ____D C:\Program Files (x86)\WinUtilities 2017-03-02 16:26 - 2017-03-02 16:26 - 00001103 _____ C:\Users\Public\Desktop\WinUtilities.lnk 2017-03-02 16:26 - 2017-03-02 16:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinUtilities 2017-03-02 16:26 - 2010-07-25 22:23 - 00544768 _____ (Stardock Corporation) C:\WINDOWS\SysWOW64\wbocx.ocx 2017-03-02 16:26 - 2010-07-25 22:23 - 00258352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unicows.dll 2017-03-02 16:26 - 2010-07-25 22:23 - 00056496 _____ (Stardock.Net, Inc) C:\WINDOWS\SysWOW64\wbhelp2.dll 2017-03-02 16:26 - 2010-07-25 22:23 - 00033968 _____ (Neil Banfield) C:\WINDOWS\SysWOW64\anim.dll 2017-03-02 16:26 - 2010-07-25 22:23 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\W95INF32.DLL 2017-03-02 16:26 - 2010-07-25 22:23 - 00002272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\W95INF16.DLL 2017-03-02 16:19 - 2017-03-02 16:24 - 06621344 _____ (YL Computing, Inc ) C:\Users\patrice.petetot\Downloads\wuinstall.exe 2017-03-02 15:14 - 2017-03-02 15:14 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\MitelManagerClient 2017-03-02 15:13 - 2017-03-02 15:14 - 31444200 _____ (Mitel) C:\Users\patrice.petetot\Downloads\Setup.exe 2017-03-02 15:12 - 2017-03-02 15:12 - 00001184 _____ C:\Users\patrice.petetot\Downloads\ca.crt 2017-03-02 15:10 - 2017-03-02 17:23 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\VMware 2017-03-02 15:07 - 2017-03-02 15:07 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\VMware 2017-03-02 15:06 - 2017-03-02 15:16 - 00000000 ____D C:\ProgramData\VMware 2017-03-02 15:06 - 2013-08-05 18:10 - 00052816 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\hcmon.sys 2017-03-02 15:05 - 2017-03-02 15:05 - 00002523 _____ C:\Users\Public\Desktop\VMware vSphere Client.lnk 2017-03-02 15:05 - 2017-03-02 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware 2017-03-02 14:59 - 2017-03-02 14:59 - 00000000 ____D C:\Program Files (x86)\VMware 2017-02-28 19:51 - 2017-03-01 22:29 - 00031744 _____ C:\Users\patrice.petetot\Desktop\MAIRIE DE LA TOUR DU MEIX.xls 2017-02-28 12:54 - 2017-02-28 12:55 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2017-02-28 00:17 - 2017-02-28 00:17 - 40213960 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 35131640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 33775608 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 15630704 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 13607808 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 12798456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 04316136 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 04284872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 02422504 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 01883368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 01841088 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 01838392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00323744 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00308496 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00253016 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00233920 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00215864 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00194336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00193304 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00192160 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00170376 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00170376 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2017-02-28 00:16 - 2017-02-28 00:16 - 00064560 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 29110288 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 19870224 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 13652488 _____ (Intel Corporation) C:\WINDOWS\system32\ig8icd64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 10331152 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig8icd32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 05697552 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 05271560 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 04937232 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 04372496 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 03980304 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 01599504 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 01187344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 01035760 _____ C:\WINDOWS\system32\igfxSDK.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00976880 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00973304 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00713744 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00545264 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00475632 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00457200 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00448008 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00424968 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00398864 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00397328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00358896 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00327184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00310256 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00282120 _____ C:\WINDOWS\system32\igfxCPL.cpl 2017-02-28 00:14 - 2017-02-28 00:14 - 00274952 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00263688 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00245744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00241136 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00240632 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00234000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00201736 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00183792 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2017-02-28 00:14 - 2017-02-28 00:14 - 00182800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00120336 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00112656 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00112136 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00109584 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00108560 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00103952 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00093200 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00061448 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00037904 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00037904 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00036368 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00036368 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00031248 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2017-02-28 00:14 - 2017-02-28 00:14 - 00031240 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2017-02-27 12:21 - 2017-02-27 12:21 - 00000398 _____ C:\Users\patrice.petetot\Desktop\universite de grenoble.txt 2017-02-27 11:47 - 2017-02-27 11:47 - 00000000 ____D C:\Users\patrice.petetot\Desktop\AMALYS 2017-02-20 21:28 - 2017-02-20 21:29 - 00391092 _____ C:\WINDOWS\Minidump\022017-26203-01.dmp 2017-02-20 21:14 - 2017-02-20 21:15 - 03812116 _____ (SOSVirus) C:\Users\patrice.petetot\Downloads\UsbFix_9.027.exe 2017-02-20 14:48 - 2017-02-20 14:48 - 00047338 _____ C:\Users\patrice.petetot\Downloads\Bckp_Sys_000110_0327.zip 2017-02-20 13:58 - 2017-02-20 13:58 - 00413396 _____ C:\WINDOWS\Minidump\022017-28734-01.dmp 2017-02-17 14:33 - 2017-03-07 21:16 - 00000000 ____D C:\Users\patrice.petetot\Desktop\MCPHY 2017-02-17 14:32 - 2017-02-17 14:32 - 00205372 _____ C:\Users\patrice.petetot\Downloads\BCKP_D_01060002C06DCA_20170217143339.sav 2017-02-17 14:04 - 2017-02-17 14:04 - 00001196 _____ C:\Users\patrice.petetot\Downloads\server.crt 2017-02-15 19:43 - 2017-02-15 19:58 - 00000000 ____D C:\Users\patrice.petetot\Desktop\audika brignais 2017-02-13 16:44 - 2017-02-13 16:37 - 00000047 ___SH C:\Users\patrice.petetot\Desktop\AUDICA.txt 2017-02-13 16:44 - 2017-02-13 13:08 - 00000043 ___SH C:\Users\patrice.petetot\Desktop\MAIRIE ST GEORGE.txt 2017-02-13 15:45 - 2017-02-13 15:46 - 00390028 _____ C:\WINDOWS\Minidump\021317-29859-01.dmp 2017-02-13 09:38 - 2017-02-13 09:39 - 00000000 ____D C:\Users\patrice.petetot\Desktop\CLUBVERCORS 2017-02-13 09:19 - 2017-02-15 19:57 - 00000000 ____D C:\Users\patrice.petetot\Desktop\MAIRIESTGEORGE 2017-02-11 09:59 - 2017-03-02 09:31 - 00000000 ____D C:\Users\patrice.petetot\Desktop\HOPITALPORTEDUSUD 2017-02-11 09:56 - 2017-02-11 09:57 - 00389980 _____ C:\WINDOWS\Minidump\021117-31359-01.dmp 2017-02-10 22:05 - 2017-02-10 22:07 - 00392412 _____ C:\WINDOWS\Minidump\021017-27953-01.dmp 2017-02-10 21:52 - 2017-02-10 21:53 - 00392284 _____ C:\WINDOWS\Minidump\021017-24421-01.dmp 2017-02-10 21:44 - 2017-02-10 21:45 - 00386812 _____ C:\WINDOWS\Minidump\021017-25671-01.dmp 2017-02-08 14:34 - 2017-03-01 22:43 - 00031744 _____ C:\Users\patrice.petetot\Desktop\COMMUNE DE CLAIRVAUX LES LACS.XLS 2017-02-07 23:25 - 2017-02-07 23:25 - 00398548 _____ C:\WINDOWS\Minidump\020717-26140-01.dmp 2017-02-07 19:19 - 2017-02-07 19:24 - 574628903 _____ C:\Users\patrice.petetot\Documents\install-windows_440E12_20160417-1510.zip 2017-02-07 16:30 - 2017-02-07 16:30 - 00000262 _____ C:\Users\patrice.petetot\Desktop\response_park_00-30-42-22-72-9C.xml 2017-02-07 16:29 - 2017-02-07 16:29 - 00000252 _____ C:\Users\patrice.petetot\Documents\request_park.xml 2017-02-07 16:25 - 2017-02-07 16:25 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\omp 2017-02-07 16:24 - 2017-03-07 14:23 - 00000000 ____D C:\Users\patrice.petetot\Documents\omp 2017-02-07 11:47 - 2017-02-07 11:47 - 00000000 ____D C:\Users\patrice.petetot\AppData\LocalLow\Adobe 2017-02-07 11:47 - 2017-02-07 11:47 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\Adobe 2017-02-06 19:32 - 2017-02-06 19:33 - 00387636 _____ C:\WINDOWS\Minidump\020617-26171-01.dmp 2017-02-06 17:43 - 2017-02-06 17:43 - 00395836 _____ C:\WINDOWS\Minidump\020617-25984-01.dmp 2017-02-06 17:25 - 2017-02-20 21:28 - 00000000 ____D C:\WINDOWS\Minidump 2017-02-06 17:25 - 2017-02-06 17:26 - 00392676 _____ C:\WINDOWS\Minidump\020617-26390-01.dmp 2017-02-06 10:16 - 2017-02-06 10:16 - 00057344 _____ C:\Users\patrice.petetot\Desktop\Copie de FICHE PREVISITE COMMUNE ST JEAN SUR REYSSOUZE.XLS ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-07 21:28 - 2016-11-30 12:20 - 00000000 ____D C:\Users\patrice.petetot\AppData\LocalLow\Mozilla 2017-03-07 21:09 - 2016-10-03 19:12 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-03-07 21:09 - 2016-05-30 12:11 - 00000000 __SHD C:\Users\patrice.petetot\IntelGraphicsProfiles 2017-03-07 17:27 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2017-03-07 17:27 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-03-07 17:01 - 2016-10-03 19:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-03-07 13:02 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-03-07 12:58 - 2016-11-03 14:30 - 00000736 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-2141602251-3289504655-3765685879-1163.job 2017-03-07 12:58 - 2016-11-03 14:30 - 00000640 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-2141602251-3289504655-3765685879-1163.job 2017-03-07 12:58 - 2016-10-03 19:39 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-03-07 12:57 - 2016-07-16 07:04 - 01048576 _____ C:\WINDOWS\system32\config\BBI 2017-03-07 10:52 - 2016-11-03 14:30 - 00003912 _____ C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-2141602251-3289504655-3765685879-1163 2017-03-07 10:52 - 2016-11-03 14:30 - 00003816 _____ C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-2141602251-3289504655-3765685879-1163 2017-03-03 17:33 - 2015-12-22 14:46 - 00000128 _____ C:\WINDOWS\system32\config\netlogon.ftl 2017-03-03 14:09 - 2016-12-21 13:59 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\Zoom 2017-03-02 15:14 - 2016-12-20 17:22 - 00002458 _____ C:\Users\patrice.petetot\Desktop\MiVoice 5000 Manager Client.lnk 2017-03-02 15:14 - 2016-12-20 17:21 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mitel 2017-03-02 15:14 - 2016-12-20 17:21 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\SquirrelTemp 2017-03-02 15:06 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2017-02-28 12:55 - 2016-10-03 19:12 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2017-02-28 12:37 - 2010-11-21 04:27 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-02-28 01:40 - 2016-10-03 19:18 - 00000000 ____D C:\Users\patrice.petetot 2017-02-28 00:17 - 2016-11-01 23:06 - 39246776 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2017-02-28 00:16 - 2016-11-01 23:06 - 05193384 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2017-02-28 00:16 - 2016-05-27 14:53 - 15982776 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll 2017-02-28 00:16 - 2016-05-27 14:53 - 06763136 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll 2017-02-28 00:14 - 2016-11-01 23:05 - 02150928 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll 2017-02-28 00:14 - 2016-11-01 23:05 - 00765448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll 2017-02-28 00:14 - 2016-11-01 23:05 - 00410608 _____ C:\WINDOWS\system32\igfxTray.exe 2017-02-28 00:14 - 2016-11-01 23:05 - 00407568 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll 2017-02-28 00:14 - 2016-11-01 23:05 - 00363512 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe 2017-02-28 00:14 - 2016-11-01 23:05 - 00277496 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe 2017-02-28 00:14 - 2016-10-03 19:12 - 00108560 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2017-02-28 00:14 - 2016-07-16 23:46 - 00112656 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll 2017-02-28 00:14 - 2016-05-27 14:50 - 07974904 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2017-02-28 00:14 - 2016-05-27 14:50 - 00382456 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe 2017-02-26 13:09 - 2016-05-30 12:11 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\Packages 2017-02-24 16:07 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-02-24 16:06 - 2015-12-22 13:24 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-02-24 16:02 - 2015-12-22 13:24 - 138020592 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-02-24 10:47 - 2016-12-09 08:57 - 00003296 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-02-24 10:47 - 2016-05-30 12:13 - 00002443 _____ C:\Users\patrice.petetot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-02-24 10:47 - 2016-05-30 12:13 - 00000000 ___RD C:\Users\patrice.petetot\OneDrive 2017-02-22 10:03 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ModemLogs 2017-02-20 21:28 - 2016-03-16 14:39 - 1003553868 _____ C:\WINDOWS\MEMORY.DMP 2017-02-20 19:27 - 2016-09-15 10:59 - 00000000 ____D C:\Users\patrice.petetot\AppData\Local\ElevatedDiagnostics 2017-02-14 12:16 - 2015-12-22 14:41 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2017-02-13 13:19 - 2016-09-13 13:35 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\TeamViewer 2017-02-11 02:46 - 2017-01-24 15:07 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\Iterygtuytk 2017-02-07 11:51 - 2015-12-01 08:10 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2017-02-07 11:47 - 2016-05-30 12:11 - 00000000 ____D C:\Users\patrice.petetot\AppData\Roaming\Adobe 2017-02-07 10:14 - 2015-12-22 17:19 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-02-07 10:14 - 2015-12-22 17:19 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-02-06 20:48 - 2016-07-16 12:49 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-02-06 20:48 - 2016-07-16 12:49 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-02-06 19:24 - 2016-10-03 09:26 - 00000000 ____D C:\ProgramData\Oracle 2017-02-06 19:23 - 2016-10-03 09:26 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2017-02-06 19:23 - 2016-10-03 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-02-06 19:23 - 2016-10-03 09:26 - 00000000 ____D C:\Program Files (x86)\Java 2017-02-06 17:20 - 2016-09-13 16:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-02-06 17:20 - 2016-09-13 16:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-02-06 13:55 - 2015-12-01 08:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2017-02-06 13:55 - 2015-12-01 08:06 - 00000000 ____D C:\Program Files\Dell ==================== Fichiers à la racine de certains dossiers ======= 2016-10-03 09:02 - 2016-12-27 14:12 - 0000600 _____ () C:\Users\patrice.petetot\AppData\Roaming\winscp.rnd 2017-01-17 16:46 - 2017-01-17 16:18 - 0922978 ___SH () C:\Users\patrice.petetot\AppData\Local\CSIDL_ 2017-01-17 16:46 - 2017-01-17 16:18 - 0922978 ___SH () C:\Users\patrice.petetot\AppData\Local\CSIDL_X 2016-10-10 16:37 - 2016-12-20 17:21 - 0000600 _____ () C:\Users\patrice.petetot\AppData\Local\PUTTY.RND 2016-10-03 19:13 - 2016-10-03 19:13 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-12-01 07:50 - 2015-12-01 07:50 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2015-12-01 07:44 - 2015-12-01 07:45 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2015-12-01 07:47 - 2015-12-01 07:50 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log 2015-12-01 07:45 - 2015-12-01 07:47 - 0000113 _____ () C:\ProgramData\{E1646825-D391-42A0-93AA-27FA810DA093}.log ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-02-27 12:10 ==================== Fin de FRST.txt ============================