Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 13-03-2017 Exécuté par Yoann (administrateur) sur YOANN-PC (13-03-2017 20:56:42) Exécuté depuis C:\Users\Yoann\Downloads Profils chargés: Yoann (Profils disponibles: Yoann) Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe () C:\Windows\SysWOW64\PnkBstrA.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Yoann\AppData\Roaming\Spotify\SpotifyWebHelper.exe (AutoIt Team) C:\Users\Yoann\qfvyOHztDsbEuhGx\IPHY.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegSvcs.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (@ByELDI) D:\KMSpico\Service_KMS.exe (DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TorrentsTime) C:\Program Files (x86)\TorrentsTime Media Player\bin\TTService.exe (Popcorn Time) C:\Program Files (x86)\Popcorn Time\Updater.exe () C:\Program Files (x86)\Windscribe\WindscribeService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [157696 2015-10-13] (Saitek) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [16293496 2016-09-29] (Logitech Inc.) HKLM\...\Run: [Malwarebytes TrayApp] => D:\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [61944 2017-02-22] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [909744 2017-03-02] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-422913066-3166120646-1668499104-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9363672 2017-02-08] (Piriform Ltd) HKU\S-1-5-21-422913066-3166120646-1668499104-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27427808 2017-02-08] (Skype Technologies S.A.) HKU\S-1-5-21-422913066-3166120646-1668499104-1000\...\Run: [Spotify Web Helper] => C:\Users\Yoann\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000 2017-03-11] (Spotify Ltd) HKU\S-1-5-21-422913066-3166120646-1668499104-1000\...\MountPoints2: F - F:\setup.exe HKU\S-1-5-21-422913066-3166120646-1668499104-1000\...\MountPoints2: {33a05884-735c-11e5-b061-7824af33cfd7} - F:\setup.exe HKU\S-1-5-18\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) Startup: C:\Users\Yoann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\bHBZTFMFMJGc.lnk [2017-03-03] ShortcutTarget: bHBZTFMFMJGc.lnk -> C:\Users\Yoann\qfvyOHztDsbEuhGx\IPHY.exe (AutoIt Team) BootExecute: autocheck autochk * sdnclean64.exe GroupPolicy: Restriction - Windows Defender <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{A4B4CF82-CA5A-4E82-84AE-97C1FDAA3590}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{D8FF644D-383A-4EC4-8420-F5E84A127F8A}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-422913066-3166120646-1668499104-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2016-12-13] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-02] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-02] (Oracle Corporation) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Yoann\AppData\Roaming\Mozilla\Firefox\Profiles\dnfiylcn.default-1487524888057 [2017-03-13] FF Extension: (colorPicker) - C:\Users\Yoann\AppData\Roaming\Mozilla\Firefox\Profiles\dnfiylcn.default-1487524888057\Extensions\colorPicker@colorPicker.xpi [2017-03-04] FF Extension: (uBlock Origin) - C:\Users\Yoann\AppData\Roaming\Mozilla\Firefox\Profiles\dnfiylcn.default-1487524888057\Extensions\uBlock0@raymondhill.net.xpi [2017-03-03] FF Extension: (Greasemonkey) - C:\Users\Yoann\AppData\Roaming\Mozilla\Firefox\Profiles\dnfiylcn.default-1487524888057\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2017-02-23] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1224194.dll [2016-02-19] (Adobe Systems, Inc.) FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-02] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-02] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-09-19] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-23] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-23] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-30] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-30] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> D:\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> D:\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin HKU\S-1-5-21-422913066-3166120646-1668499104-1000: torrents-time.com/TTPlugin -> C:\Program Files (x86)\TorrentsTime Media Player\bin\npTTPlugin.dll [2017-01-17] (Torrents Time) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-09-19] (Microsoft Corporation) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\firefox.js [2016-11-12] Chrome: ======= CHR Profile: C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default [2017-03-12] CHR Extension: (Google Docs) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-30] CHR Extension: (Google Drive) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-30] CHR Extension: (YouTube) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-30] CHR Extension: (Google Docs hors connexion) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-30] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-12] CHR Extension: (Gmail) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-30] CHR Extension: (Chrome Media Router) - C:\Users\Yoann\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-12] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1115552 2017-03-02] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [487424 2017-03-02] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [487424 2017-03-02] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1519144 2017-03-02] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [349048 2017-02-22] (Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1486344 2017-02-02] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-12-22] (BitRaider, LLC) S3 Disc Soft Lite Bus Service; D:\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193656 2016-09-29] (Logitech Inc.) S2 MBAMService; D:\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2017-02-23] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-23] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2017-02-23] (NVIDIA Corporation) S3 Origin Client Service; D:\Origin\OriginClientService.exe [2122248 2016-09-01] (Electronic Arts) S3 OverwolfUpdater; D:\Overwolf\OverwolfUpdater.exe [1325384 2017-03-05] (Overwolf LTD) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2016-05-18] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 Service KMSELDI; D:\KMSpico\Service_KMS.exe [739520 2015-09-27] (@ByELDI) [Fichier non signé] R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (DEVGURU Co., LTD.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) R2 TTService; C:\Program Files (x86)\TorrentsTime Media Player\bin\TTService.exe [3278336 2017-01-27] (TorrentsTime) [Fichier non signé] R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [339968 2016-08-26] (Popcorn Time) [Fichier non signé] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [53352 2016-11-23] () ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [176968 2017-03-02] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [148104 2017-03-02] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [35328 2017-03-02] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [78600 2017-03-02] (Avira Operations GmbH & Co. KG) S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2015-12-23] (BitRaider) S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-10-15] (Disc Soft Ltd) S3 hmatap; C:\Windows\System32\DRIVERS\hmatap.sys [45312 2016-11-09] (The OpenVPN Project) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [67736 2016-09-29] (Logitech Inc.) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2017-02-23] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47672 2017-01-06] (NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation) R3 SaiK1107; C:\Windows\System32\DRIVERS\SaiK1107.sys [180896 2015-10-13] (Saitek) S3 SaiK1709; C:\Windows\System32\DRIVERS\SaiK1709.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek) R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [51488 2015-10-13] (Saitek) S3 SaiU1709; C:\Windows\System32\DRIVERS\SaiU1709.sys [47168 2012-09-20] (Saitek) S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42064 2016-10-13] (Anchorfree Inc.) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2014-06-02] (Texas Instruments) R1 VBoxUSBMon; C:\Windows\System32\DRIVERS\VBoxUSBMon.sys [127432 2017-02-16] (BigNox Corporation) R1 XQHDrv; C:\Windows\System32\DRIVERS\XQHDrv.sys [253384 2017-02-16] (BigNox Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-13 20:56 - 2017-03-13 20:56 - 00020642 _____ C:\Users\Yoann\Downloads\FRST.txt 2017-03-13 20:56 - 2017-03-13 20:56 - 00000000 ____D C:\FRST 2017-03-13 20:55 - 2017-03-13 20:55 - 02424832 _____ (Farbar) C:\Users\Yoann\Downloads\FRST64.exe 2017-03-12 23:13 - 2017-03-13 17:53 - 00251840 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-03-12 23:13 - 2017-03-12 23:13 - 00186304 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys 2017-03-12 23:13 - 2017-03-12 23:13 - 00111544 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2017-03-12 23:13 - 2017-03-12 23:13 - 00082208 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2017-03-12 23:13 - 2017-03-12 23:13 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2017-03-12 23:13 - 2017-03-12 23:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-03-12 23:13 - 2017-02-24 06:23 - 00077408 _____ C:\Windows\system32\Drivers\mbae64.sys 2017-03-11 23:32 - 2017-03-11 23:32 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2017-03-11 23:32 - 2017-02-23 09:17 - 00136064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2017-03-11 23:32 - 2017-01-26 01:13 - 00103936 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2017-03-11 23:32 - 2017-01-26 01:12 - 00326656 _____ C:\Windows\SysWOW64\vulkan-1.dll 2017-03-11 23:32 - 2017-01-26 01:09 - 00322560 _____ C:\Windows\system32\vulkan-1.dll 2017-03-11 23:32 - 2017-01-26 01:09 - 00118272 _____ C:\Windows\system32\vulkaninfo.exe 2017-03-11 23:30 - 2017-02-23 23:56 - 00217528 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2017-03-11 23:30 - 2017-02-23 23:56 - 00047664 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 40192056 _____ C:\Windows\system32\nvcompiler.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 35272760 _____ C:\Windows\SysWOW64\nvcompiler.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 34950592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 28223544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 19007344 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 16399408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 14674712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 14429240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2017-03-11 23:30 - 2017-02-23 11:34 - 11122912 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 11019888 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 09306312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 08990256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 03625408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 03185600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 01985080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437878.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437878.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 01051584 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00989120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00959424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00912440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00687408 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00611384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00576008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00503920 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00500792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00425288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00408272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00170360 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00153184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2017-03-11 23:30 - 2017-02-23 11:34 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2017-03-11 19:48 - 2017-03-11 19:48 - 00000000 ____D C:\Users\Yoann\AppData\Local\Logitech 2017-03-11 19:48 - 2017-03-11 19:48 - 00000000 ____D C:\ProgramData\LogiShrd 2017-03-11 19:47 - 2017-03-11 19:47 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Logitech 2017-03-11 19:47 - 2017-03-11 19:47 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Logishrd 2017-03-11 19:47 - 2017-03-11 19:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2017-03-11 19:47 - 2017-03-11 19:47 - 00000000 ____D C:\Program Files\Logitech Gaming Software 2017-03-07 23:54 - 2017-03-07 23:54 - 00007285 _____ C:\Users\Yoann\AppData\Local\recently-used.xbel 2017-03-05 20:35 - 2017-03-05 20:35 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Learnpulse 2017-03-05 20:35 - 2017-03-05 20:35 - 00000000 ____D C:\Users\Yoann\AppData\Local\Learnpulse 2017-03-05 17:58 - 2011-03-02 11:43 - 00175616 _____ C:\Windows\SysWOW64\unrar.dll 2017-03-05 17:58 - 2004-03-09 16:45 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Comdlg32.ocx 2017-03-05 17:58 - 1998-05-21 10:00 - 01081616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2017-03-05 17:42 - 2017-03-05 17:42 - 00000000 ____D C:\Users\Yoann\AppData\Local\4kdownload.com 2017-03-05 17:41 - 2017-03-05 18:06 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Boilsoft 2017-03-03 15:06 - 2017-03-03 15:06 - 03312354 _____ C:\Users\Yoann\AppData\Roaming\CdYfD 2017-03-03 14:58 - 2017-03-03 14:58 - 00000000 __SHD C:\Users\Yoann\qfvyOHztDsbEuhGx 2017-03-02 21:39 - 2017-02-19 21:53 - 00000002 _____ C:\Windows\system32\Drivers\etc\hosts.20170302-213925.backup 2017-02-28 01:46 - 2017-02-28 20:19 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\VEGAS 2017-02-28 01:46 - 2017-02-28 01:46 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\VEGAS Pro 2017-02-28 01:46 - 2017-02-28 01:46 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\MAGIX 2017-02-28 01:46 - 2017-02-28 01:46 - 00000000 ____D C:\Users\Yoann\AppData\Local\VEGAS Pro 2017-02-28 01:46 - 2017-02-28 01:46 - 00000000 ____D C:\ProgramData\VEGAS Pro 2017-02-28 01:46 - 2017-02-28 01:46 - 00000000 ____D C:\ProgramData\MAGIX 2017-02-28 01:45 - 2017-02-28 01:45 - 00000000 ____D C:\Users\Yoann\AppData\Local\VEGAS 2017-02-28 01:45 - 2017-02-28 01:45 - 00000000 ____D C:\ProgramData\VEGAS 2017-02-28 01:45 - 2017-02-28 01:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS 2017-02-28 01:45 - 2017-02-28 01:45 - 00000000 ____D C:\Program Files (x86)\VEGAS 2017-02-28 01:28 - 2017-02-28 01:28 - 00000000 ____D C:\ProgramData\Apowersoft 2017-02-28 01:22 - 2017-02-28 01:23 - 00000000 ____D C:\Users\Yoann\AppData\Local\Apowersoft 2017-02-28 01:09 - 2017-02-28 01:09 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\ScreenToGif 2017-02-25 01:14 - 2017-02-25 01:14 - 00000000 ____D C:\Users\Yoann\AppData\Local\BANDAI NAMCO Entertainment 2017-02-22 11:21 - 2017-02-22 11:21 - 00000000 ____D C:\Users\Yoann\ansel 2017-02-22 01:01 - 2017-02-23 11:34 - 17281112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2017-02-22 01:01 - 2017-02-10 01:52 - 01983424 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437866.dll 2017-02-22 01:01 - 2017-02-10 01:52 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437866.dll 2017-02-22 00:58 - 2017-01-31 02:27 - 01591352 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437857.dll 2017-02-22 00:58 - 2017-01-31 02:26 - 01983424 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437857.dll 2017-02-19 22:12 - 2017-02-19 22:12 - 00000000 ____D C:\Program Files\Malwarebytes 2017-02-16 17:30 - 2017-03-12 14:31 - 00000000 ____D C:\Users\Yoann\.BigNox 2017-02-16 17:30 - 2017-02-16 17:30 - 00253384 _____ (BigNox Corporation) C:\Windows\system32\Drivers\XQHDrv.sys 2017-02-16 17:30 - 2017-02-16 17:30 - 00127432 _____ (BigNox Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2017-02-16 17:30 - 2017-02-16 17:30 - 00000045 _____ C:\Users\Yoann\nuuid.ini 2017-02-16 17:30 - 2017-02-16 17:30 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Microsoft\Windows\Start Menu\Nox 2017-02-16 17:30 - 2017-02-16 17:30 - 00000000 ____D C:\Program Files (x86)\Bignox 2017-02-12 23:00 - 2017-02-12 23:00 - 00000000 ____D C:\Users\Yoann\BrawlhallaReplays 2017-02-12 22:24 - 2017-02-12 22:24 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\BrawlhallaAir ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-13 20:56 - 2016-11-18 23:04 - 00000000 ____D C:\Users\Yoann\AppData\LocalLow\Mozilla 2017-03-13 20:56 - 2015-10-08 20:08 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Skype 2017-03-13 20:50 - 2015-11-14 21:48 - 00000000 ____D C:\Users\Yoann\AppData\Local\Spotify 2017-03-13 20:50 - 2015-11-14 21:46 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Spotify 2017-03-13 20:03 - 2015-10-08 21:31 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2017-03-13 20:00 - 2016-04-30 18:20 - 00000388 _____ C:\Windows\Tasks\update-sys.job 2017-03-13 19:17 - 2016-04-30 18:20 - 00000388 _____ C:\Windows\Tasks\update-S-1-5-21-422913066-3166120646-1668499104-1000.job 2017-03-13 19:10 - 2015-10-08 20:46 - 00000000 ____D C:\Users\Yoann\Desktop\Logiciels 2017-03-13 18:36 - 2016-11-18 22:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-03-13 18:36 - 2015-10-08 18:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-03-13 18:08 - 2009-07-14 05:45 - 00022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-03-13 18:08 - 2009-07-14 05:45 - 00022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-03-13 18:04 - 2015-10-08 19:12 - 00000000 ____D C:\ProgramData\NVIDIA 2017-03-13 18:01 - 2015-10-13 23:10 - 00003936 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{55F5AFA5-500D-42ED-8E49-F66BAA618B3F} 2017-03-13 17:59 - 2011-04-12 10:16 - 00750430 _____ C:\Windows\system32\perfh00C.dat 2017-03-13 17:59 - 2011-04-12 10:16 - 00151188 _____ C:\Windows\system32\perfc00C.dat 2017-03-13 17:59 - 2009-07-14 06:13 - 01677618 _____ C:\Windows\system32\PerfStringBackup.INI 2017-03-13 17:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-03-13 17:53 - 2015-10-15 19:24 - 00003758 _____ C:\Windows\System32\Tasks\AutoKMS 2017-03-13 17:53 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-03-12 23:13 - 2016-11-12 23:12 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-03-12 22:18 - 2015-10-08 20:47 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\vlc 2017-03-12 18:08 - 2015-10-29 18:58 - 00001098 _____ C:\Windows\SysWOW64\nativelog.txt 2017-03-12 17:02 - 2016-08-07 16:36 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\.minecraft 2017-03-12 17:02 - 2015-12-28 02:33 - 00000000 ____D C:\Users\Yoann\AppData\Local\CrashDumps 2017-03-12 16:17 - 2017-01-28 16:38 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\TeamViewer 2017-03-12 14:53 - 2016-07-18 21:18 - 00000000 ____D C:\Users\Yoann\AppData\Local\Nox 2017-03-12 14:31 - 2016-07-18 21:19 - 00000000 ____D C:\Users\Yoann\vmlogs 2017-03-12 14:31 - 2015-11-22 13:37 - 00000000 ____D C:\Users\Yoann\.android 2017-03-11 23:32 - 2015-10-08 19:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-03-11 23:32 - 2015-10-08 19:03 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-03-10 22:32 - 2015-10-08 19:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2017-03-10 22:32 - 2015-10-08 19:15 - 00000000 ____D C:\ProgramData\Package Cache 2017-03-09 16:30 - 2009-07-14 06:08 - 00032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2017-03-07 23:54 - 2016-06-01 20:31 - 00000000 ____D C:\Users\Yoann\AppData\Local\gtk-2.0 2017-03-07 23:54 - 2016-06-01 20:30 - 00000000 ____D C:\Users\Yoann\.gimp-2.8 2017-03-05 22:31 - 2009-07-14 05:45 - 00541504 _____ C:\Windows\system32\FNTCACHE.DAT 2017-03-05 19:07 - 2016-08-09 15:19 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\discord 2017-03-05 18:48 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2017-03-05 18:47 - 2016-07-18 21:14 - 00000000 ____D C:\Users\Yoann\AppData\Local\BlueStacks 2017-03-05 18:47 - 2015-10-08 19:17 - 00129960 _____ C:\Users\Yoann\AppData\Local\GDIPFONTCACHEV1.DAT 2017-03-05 18:19 - 2015-10-08 19:08 - 00000000 ____D C:\Users\Yoann\AppData\Local\NVIDIA Corporation 2017-03-05 18:18 - 2016-12-18 22:24 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-20 19:29 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-13 21:52 - 00003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-13 21:52 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-13 21:52 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-13 21:52 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2016-09-13 21:52 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-03-05 18:18 - 2015-10-08 19:05 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-03-05 18:18 - 2015-10-08 19:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-03-05 18:17 - 2016-11-13 13:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TI Tools 2017-03-05 18:17 - 2016-11-13 13:03 - 00000000 ____D C:\Program Files (x86)\TI Education 2017-03-05 01:53 - 2015-11-21 18:42 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\uTorrent 2017-03-05 00:14 - 2016-11-12 23:33 - 00000000 ____D C:\Users\Yoann\AppData\Local\Battle.net 2017-03-05 00:14 - 2016-11-12 23:02 - 00000000 ____D C:\Program Files (x86)\Battle.net 2017-03-05 00:14 - 2015-10-23 13:18 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2017-03-03 23:35 - 2015-10-14 22:18 - 00000000 ____D C:\Users\Yoann\Downloads\Fichiers 2017-03-03 14:58 - 2015-10-08 18:27 - 00000000 ____D C:\Users\Yoann 2017-03-02 23:12 - 2016-10-14 11:51 - 00051248 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys 2017-03-02 23:12 - 2015-10-08 20:16 - 00176968 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2017-03-02 23:12 - 2015-10-08 20:16 - 00148104 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2017-03-02 23:12 - 2015-10-08 20:16 - 00078600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2017-03-02 23:12 - 2015-10-08 20:16 - 00035328 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2017-02-28 20:21 - 2016-02-02 17:37 - 00061952 ___SH C:\Users\Yoann\Documents\Thumbs.db 2017-02-28 01:46 - 2016-02-01 21:20 - 00000000 ____D C:\Users\Yoann\AppData\Local\Sony 2017-02-28 01:45 - 2016-02-01 21:19 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Sony 2017-02-28 01:28 - 2015-11-22 13:36 - 00000000 ____D C:\Users\Yoann\Documents\Apowersoft 2017-02-28 01:28 - 2015-11-22 13:36 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Apowersoft 2017-02-26 00:41 - 2015-10-14 22:18 - 00000000 ____D C:\Users\Yoann\Downloads\Dossiers 2017-02-25 02:00 - 2015-10-08 20:46 - 00000000 ____D C:\Users\Yoann\Desktop\Jeux 2017-02-23 23:56 - 2016-08-02 11:07 - 01600056 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2017-02-23 19:35 - 2016-09-13 21:52 - 01880512 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2017-02-23 19:35 - 2016-09-13 21:52 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2017-02-23 19:35 - 2016-09-13 21:52 - 01468864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2017-02-23 19:35 - 2016-09-13 21:52 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2017-02-23 19:35 - 2016-09-13 21:52 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll 2017-02-23 15:30 - 2016-12-18 22:24 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2017-02-23 11:34 - 2016-10-31 19:19 - 00492744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2017-02-23 11:34 - 2015-10-08 19:11 - 19883088 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2017-02-23 11:34 - 2015-10-08 19:11 - 13377072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2017-02-23 11:34 - 2015-10-08 19:11 - 04064088 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2017-02-23 11:34 - 2015-10-08 19:11 - 03583744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2017-02-23 11:34 - 2015-10-08 19:11 - 00042616 _____ C:\Windows\system32\nvinfo.pb 2017-02-23 09:43 - 2016-09-13 21:52 - 00001951 _____ C:\Windows\NvContainerRecovery.bat 2017-02-23 09:33 - 2015-10-08 23:18 - 00000000 ____D C:\Windows\system32\MRT 2017-02-23 09:32 - 2015-10-08 23:18 - 138020592 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-02-23 09:28 - 2015-12-27 17:14 - 00548288 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2017-02-23 09:28 - 2015-12-27 17:14 - 00083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2017-02-23 09:28 - 2015-10-08 19:11 - 06401984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2017-02-23 09:28 - 2015-10-08 19:11 - 02479160 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2017-02-23 09:28 - 2015-10-08 19:11 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2017-02-23 09:28 - 2015-10-08 19:11 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2017-02-23 09:28 - 2015-10-08 19:11 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2017-02-23 07:38 - 2015-10-08 19:11 - 07807027 _____ C:\Windows\system32\nvcoproc.bin 2017-02-22 16:55 - 2015-11-17 19:05 - 00000000 ____D C:\Users\Yoann\Documents\DayZ 2017-02-20 11:35 - 2015-10-28 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft 2017-02-19 12:26 - 2017-01-07 15:30 - 00000570 _____ C:\Users\Yoann\AppData\Local\TroubleshooterConfig.json 2017-02-18 18:39 - 2015-12-02 15:36 - 00195110 _____ C:\Users\Yoann\AppData\Localtransition_375021f366a8cc6ad68737141d9091fd.ini 2017-02-18 12:05 - 2009-07-14 03:38 - 00000000 ____D C:\C 2017-02-18 11:41 - 2016-11-18 22:03 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2017-02-16 17:30 - 2017-01-07 14:42 - 00000000 ____D C:\Program Files (x86)\Nox 2017-02-16 17:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Registration 2017-02-16 17:09 - 2016-12-19 13:33 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-02-16 17:09 - 2015-10-08 20:08 - 00000000 ____D C:\ProgramData\Skype 2017-02-15 21:10 - 2015-10-08 18:30 - 00000000 ____D C:\Users\Yoann\AppData\Local\ElevatedDiagnostics 2017-02-14 21:04 - 2015-10-08 21:31 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-02-14 21:03 - 2015-10-08 21:31 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-02-14 21:03 - 2015-10-08 21:31 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-02-14 21:03 - 2015-10-08 21:31 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-02-14 21:03 - 2015-10-08 21:31 - 00000000 ____D C:\Windows\system32\Macromed 2017-02-12 22:18 - 2015-12-02 18:50 - 00000121 _____ C:\Users\Yoann\AppData\Roaming\D2Info0 2017-02-12 22:18 - 2015-12-02 18:50 - 00000008 _____ C:\Users\Yoann\AppData\Roaming\DofusAppId0_1 2017-02-12 22:18 - 2015-12-02 18:50 - 00000000 ____D C:\Users\Yoann\AppData\Roaming\Dofus 2017-02-11 15:38 - 2017-02-08 19:50 - 00000000 ____D C:\Users\Yoann\Desktop\Cours HTML & CSS ==================== Fichiers à la racine de certains dossiers ======= 2017-03-03 15:06 - 2017-03-03 15:06 - 3312354 _____ () C:\Users\Yoann\AppData\Roaming\CdYfD 2015-12-02 18:50 - 2017-02-12 22:18 - 0000121 _____ () C:\Users\Yoann\AppData\Roaming\D2Info0 2015-12-02 18:50 - 2017-02-12 22:18 - 0000008 _____ () C:\Users\Yoann\AppData\Roaming\DofusAppId0_1 2015-12-02 19:11 - 2016-11-29 20:48 - 0000008 _____ () C:\Users\Yoann\AppData\Roaming\DofusAppId0_2 2015-12-02 21:02 - 2016-11-29 20:48 - 0000008 _____ () C:\Users\Yoann\AppData\Roaming\DofusAppId0_3 2015-12-05 18:17 - 2016-11-27 15:54 - 0000008 _____ () C:\Users\Yoann\AppData\Roaming\DofusAppId0_4 2016-11-27 15:24 - 2016-11-27 15:47 - 0000008 _____ () C:\Users\Yoann\AppData\Roaming\DofusAppId0_5 2015-12-16 16:36 - 2015-12-16 16:36 - 0000036 _____ () C:\Users\Yoann\AppData\Roaming\SuYZkvrV.tmp 2017-03-07 23:54 - 2017-03-07 23:54 - 0007285 _____ () C:\Users\Yoann\AppData\Local\recently-used.xbel 2017-01-07 15:30 - 2017-02-19 12:26 - 0000570 _____ () C:\Users\Yoann\AppData\Local\TroubleshooterConfig.json 2016-04-30 18:20 - 2016-04-30 18:20 - 0000003 _____ () C:\Users\Yoann\AppData\Local\updater.log 2016-04-30 18:20 - 2016-09-21 18:20 - 0000059 _____ () C:\Users\Yoann\AppData\Local\UserProducts.xml 2015-11-07 00:32 - 2015-11-07 17:14 - 0000906 _____ () C:\Users\Yoann\AppData\Local\_settings.ini 2016-01-09 21:52 - 2016-01-09 21:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2016-08-29 13:40 - 2016-08-29 13:40 - 0000078 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc 2016-12-18 22:24 - 2017-01-15 11:38 - 0005307 _____ () C:\ProgramData\NvTelemetryContainer.log 2016-12-18 22:24 - 2017-01-15 00:48 - 0005307 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1 Certains fichiers dans TEMP: ==================== 2017-03-11 23:30 - 2017-02-09 23:39 - 0352704 _____ (NVIDIA Corporation) C:\Users\Yoann\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-03-06 20:34 ==================== Fin de FRST.txt ============================