Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017 Exécuté par Yurop (administrateur) sur DESKTOP-B0Q7CB5 (18-03-2017 20:46:04) Exécuté depuis C:\Users\Neo\Desktop Profils chargés: Yurop (Profils disponibles: Yurop) Platform: Windows 10 Home Version 1607 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\PixelMaster Video HDR\DriverMFTService.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGiftBoxDesktop.exe (ASUSTeK) C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe () C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe (Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe () C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (ESET) C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe () C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.214.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17012.10311.0_x64__8wekyb3d8bbwe\Music.UI.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2017-01-19] (Apple Inc.) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-30] (Microsoft Corporation) HKLM-x32\...\Run: [ROGNB] => C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe [463872 2013-05-15] () HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-02-28] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [27308304 2017-03-06] (Dropbox, Inc.) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-13] (Valve Corporation) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [Discord] => C:\Users\Neo\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9288408 2016-12-06] (Piriform Ltd) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [Gaijin.Net Agent] => C:\Users\Neo\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2011656 2017-03-16] () HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [World of Warships] => D:\WARSHIP\WargamingGameUpdater.exe [3134216 2017-03-09] (Wargaming.net) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048 2017-03-14] (Skype Technologies S.A.) HKU\S-1-5-21-424624162-1739013723-2537851195-1001\...\Policies\Explorer: [NoInternetOpenWith] 1 ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-02-28] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-02-28] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.) Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2017-03-18] ShortcutTarget: Twitch.lnk -> C:\Users\Neo\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{4e34bc53-37d0-496c-8743-6831b12cb116}: [NameServer] 77.234.40.79 Tcpip\..\Interfaces\{7ec386ec-7c70-431f-875b-b9c951b04d61}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/ HKU\S-1-5-21-424624162-1739013723-2537851195-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus15.msn.com/?pc=ASTE HKU\S-1-5-21-424624162-1739013723-2537851195-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {d4fee3d1-1014-4db8-a824-573bf9ab51c7} URL = hxxp://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-44a76390&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-424624162-1739013723-2537851195-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-24] (Oracle Corporation) FireFox: ======== FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-10-16] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-10-16] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-24] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-17] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] () Chrome: ======= CHR Profile: C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default [2017-03-18] CHR Extension: (Google Slides) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-03-18] CHR Extension: (Google Docs) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-03-18] CHR Extension: (Google Drive) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-03-18] CHR Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2017-03-18] CHR Extension: (YouTube) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-18] CHR Extension: (Adblock Plus) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-18] CHR Extension: (Avast SafePrice) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-03-18] CHR Extension: (Google Sheets) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-03-18] CHR Extension: (Google Docs hors connexion) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-03-18] CHR Extension: (History Eraser) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjieilkfnnjoihjjonajndjldjoagffm [2017-03-18] CHR Extension: (Avast Online Security) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-03-18] CHR Extension: (Nouvelle fenêtre incognito) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfjgnhdleafdmakapfmfjfepmpobpnap [2017-03-18] CHR Extension: (Skype) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-03-18] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-18] CHR Extension: (Gmail) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-03-18] CHR Extension: (Chrome Media Router) - C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-18] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R2 AsusGameFirstService; C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe [356664 2015-02-02] (ASUSTeK) R2 ASUSGiftBoxDekstop; C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGIFTBOXDesktop.exe [315704 2015-07-20] (ASUS) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-02-28] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-02-28] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [278784 2017-02-28] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1494024 2017-02-10] () S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-04] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-04] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46408 2017-01-21] (Dropbox, Inc.) R2 DriverMFTService; C:\Program Files (x86)\Asus\PixelMaster Video HDR\DriverMFTService.exe [20992 2015-05-19] (ASUSTek Computer Inc.) [Fichier non signé] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312 2015-04-14] (WildTangent) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation) R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [135496 2017-01-31] (SurfRight B.V.) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373728 2016-11-30] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-22] (Intel Corporation) S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.4947\wtoolex\wpsupdatesvr.exe [133480 2015-08-18] (Zhuhai Kingsoft Office Software Co.,Ltd) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2124296 2017-03-13] (Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2185232 2017-03-13] (Electronic Arts) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] () R2 SAService; C:\Windows\system32\SAsrv.exe [427224 2015-04-17] (Conexant Systems, Inc.) R2 TunnelBearMaintenance; C:\Program Files (x86)\TunnelBear\TBear.Maintenance.exe [41984 2016-09-26] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [309272 2017-02-28] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [189768 2017-02-28] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334600 2017-02-28] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [48528 2017-02-28] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-02-28] (AVAST Software) R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32088 2017-02-28] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [126600 2017-02-28] (AVAST Software) R1 aswNetSec; C:\WINDOWS\system32\drivers\aswNetSec.sys [461640 2017-02-28] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [100640 2017-02-28] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-02-28] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [993608 2017-02-28] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [548928 2017-03-10] (AVAST Software) S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [162528 2017-02-28] (AVAST Software) S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [44640 2016-10-16] (The OpenVPN Project) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [337592 2017-03-15] (AVAST Software) R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [101368 2015-12-14] (ASUS Corporation) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-10-26] (Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-10-26] (Disc Soft Ltd) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation) R0 IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [88256 2015-06-26] (Intel Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [251840 2017-03-18] (Malwarebytes) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation) R1 NFC_Driver; C:\WINDOWS\System32\drivers\NFC_Driver.sys [53440 2015-01-05] (Titan ARC Corp.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvamwu.inf_amd64_d4715679184092a8\nvlddmkm.sys [13754936 2016-09-12] (NVIDIA Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46768 2015-05-19] (NVIDIA Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [887552 2015-07-15] (Realtek ) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [753368 2015-06-15] (Realsil Semiconductor Corporation) R3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2016-09-21] (The OpenVPN Project) S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (The OpenVPN Project) [Fichier non signé] S3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2016-09-30] (Anchorfree Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 dbx; system32\DRIVERS\dbx.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-18 20:46 - 2017-03-18 20:46 - 00028481 _____ C:\Users\Neo\Desktop\FRST.txt 2017-03-18 20:45 - 2017-03-18 20:46 - 00000000 ____D C:\FRST 2017-03-18 20:45 - 2017-03-18 20:45 - 02424832 _____ (Farbar) C:\Users\Neo\Desktop\FRST64.exe 2017-03-18 20:44 - 2017-03-18 20:45 - 02424832 _____ (Farbar) C:\Users\Neo\Downloads\FRST64.exe 2017-03-18 20:11 - 2017-03-18 20:11 - 00001040 _____ C:\Users\Neo\Desktop\Twitch.lnk 2017-03-18 20:11 - 2017-03-18 20:11 - 00001026 _____ C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk 2017-03-18 20:11 - 2017-03-18 20:11 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Twitch Setup 2017-03-18 20:11 - 2017-03-18 20:11 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Twitch 2017-03-18 19:07 - 2017-03-18 20:11 - 83330272 _____ (Twitch Interactive, Inc.) C:\Users\Neo\Downloads\TwitchSetup.exe 2017-03-18 18:59 - 2017-03-18 18:59 - 02870984 _____ (ESET) C:\Users\Neo\Downloads\esetsmartinstaller_fra.exe 2017-03-18 18:59 - 2017-03-18 18:59 - 02870984 _____ (ESET) C:\Users\Neo\Desktop\esetsmartinstaller_fra.exe 2017-03-18 18:59 - 2017-03-18 18:59 - 00000000 ____D C:\Program Files (x86)\ESET 2017-03-18 18:58 - 2017-03-18 18:58 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-03-18 18:57 - 2017-03-18 18:57 - 01764947 _____ C:\Users\Neo\Desktop\zoek.txt 2017-03-18 18:55 - 2017-03-18 18:29 - 00024064 _____ C:\WINDOWS\zoek-delete.exe 2017-03-18 18:31 - 2017-03-18 18:31 - 00000095 _____ C:\Users\Neo\Desktop\issou.txt 2017-03-18 18:30 - 2017-03-18 18:30 - 00000337 _____ C:\Users\Neo\Downloads\Zoek_2_Analyse.txt 2017-03-18 18:29 - 2017-03-18 18:45 - 00000000 ____D C:\zoek_backup 2017-03-18 18:29 - 2017-03-18 18:29 - 01309184 _____ C:\Users\Neo\Downloads\zoek.exe 2017-03-18 17:03 - 2017-03-18 19:52 - 00000000 ____D C:\Program Files (x86)\Steam 2017-03-18 17:03 - 2017-03-18 17:03 - 01446792 _____ C:\Users\Neo\Downloads\SteamSetup.exe 2017-03-18 17:03 - 2017-03-18 17:03 - 00001034 _____ C:\Users\Public\Desktop\Steam.lnk 2017-03-18 01:43 - 2017-03-18 01:43 - 00000000 ____D C:\Users\Neo\dumps 2017-03-18 01:40 - 2017-03-18 01:42 - 00000000 ____D C:\Program Files (x86)\Steam2 2017-03-17 22:00 - 2017-03-17 22:05 - 00003586 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-03-17 22:00 - 2017-03-17 22:05 - 00003462 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-03-17 22:00 - 2017-03-17 22:00 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-03-17 22:00 - 2017-03-17 22:00 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-03-17 21:59 - 2017-03-17 21:59 - 01622528 _____ C:\Users\Neo\Downloads\ResetBrowser.exe 2017-03-17 19:24 - 2017-03-17 19:38 - 441970304 _____ C:\Users\Neo\Downloads\Breizh Full Medieval 0.95.zip 2017-03-17 19:17 - 2017-03-17 19:17 - 00001342 _____ C:\Users\Public\Desktop\Bretagne Total War 3.0.lnk 2017-03-17 19:17 - 2017-03-17 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bretagne Total War 3.0 2017-03-17 19:16 - 2017-03-17 19:17 - 12582095 _____ (Amàndil ) C:\Users\Neo\Downloads\setup BTW 3.0 pour Kingdoms.exe 2017-03-17 18:51 - 2017-03-17 18:51 - 00002193 _____ C:\Users\Public\Desktop\Medieval II Total War.lnk 2017-03-17 18:51 - 2017-03-17 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA 2017-03-17 18:36 - 2017-03-17 18:36 - 00000000 ____D C:\Program Files (x86)\SEGA 2017-03-17 18:14 - 2017-03-17 18:15 - 10549067 _____ (Pierre Nelz-Moreau ) C:\Users\Neo\Downloads\InstallateurBretagneMod.exe 2017-03-17 17:19 - 2017-03-17 17:19 - 00001773 _____ C:\Users\Neo\Documents\AdwCleaner[C3].txt 2017-03-17 17:14 - 2017-03-17 17:16 - 04031440 _____ C:\Users\Neo\Desktop\adwcleaner.exe 2017-03-17 17:14 - 2017-03-17 17:14 - 04031440 _____ C:\Users\Neo\Downloads\adwcleaner_6.044 (1).exe 2017-03-17 17:02 - 2017-03-17 17:03 - 02749952 _____ C:\Users\Neo\Downloads\ZHPCleaner.exe 2017-03-16 15:51 - 2017-03-16 15:51 - 03521617 _____ (Nicolas Coolman ) C:\Users\Neo\Downloads\ZHPFix.exe 2017-03-16 15:51 - 2017-03-16 15:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2017-03-16 15:51 - 2017-03-16 15:51 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2017-03-16 15:41 - 2017-03-16 15:41 - 02709504 _____ C:\Users\Neo\Downloads\ZHPDiag3 (1).exe 2017-03-16 15:25 - 2017-03-17 17:17 - 00000000 ____D C:\AdwCleaner 2017-03-16 15:25 - 2017-03-16 15:25 - 04031440 _____ C:\Users\Neo\Downloads\adwcleaner_6.044.exe 2017-03-16 00:12 - 2017-03-16 00:12 - 01677133 _____ C:\Users\Neo\Downloads\VisuelsCouvTW.zip 2017-03-15 18:45 - 2017-03-15 18:45 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-03-15 18:45 - 2017-03-15 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-03-12 23:49 - 2017-03-12 23:49 - 09239149 _____ C:\Users\Neo\Downloads\awp_gentleman_5.rar 2017-03-12 23:45 - 2017-03-13 00:04 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Unkn0wns Skin Installation Tool 2017-03-12 23:43 - 2017-03-12 23:43 - 00792842 _____ C:\Users\Neo\Downloads\CSGO-Skin-Installer.rar 2017-03-12 22:03 - 2017-03-12 22:07 - 89822592 _____ C:\Users\Neo\Downloads\Mix and Tracklist (1).zip 2017-03-12 16:14 - 2017-03-12 16:14 - 00236752 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-03-11 21:23 - 2017-03-11 21:24 - 64282631 _____ C:\Users\Neo\Downloads\Ravenfield_B5_1_Windows (3).zip 2017-03-10 21:57 - 2017-03-10 21:57 - 00237568 _____ (Big Fish Games) C:\Users\Neo\Downloads\1912-titanic-mystery_s5_l4_gF5240T1L4_d2704101211.exe 2017-03-09 22:13 - 2017-03-09 22:14 - 02105344 _____ C:\Users\Neo\Downloads\ZHPDiag3.exe 2017-03-09 20:34 - 2017-03-09 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-03-07 22:32 - 2017-03-07 22:32 - 02191084 _____ C:\Users\Neo\Downloads\cemu_1.7.2.zip 2017-03-06 22:42 - 2017-03-06 22:42 - 00001428 _____ C:\Users\Neo\Desktop\Cortana.lnk 2017-03-06 21:50 - 2017-03-06 21:50 - 00046184 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2017-03-06 18:19 - 2017-03-06 18:19 - 00002166 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lecture à distance PS4.lnk 2017-03-06 18:19 - 2017-03-06 18:19 - 00002154 _____ C:\Users\Public\Desktop\Lecture à distance PS4.lnk 2017-03-06 18:19 - 2017-03-06 18:19 - 00000000 ____D C:\Users\Neo\AppData\Local\Sony Corporation 2017-03-06 18:19 - 2017-03-06 18:19 - 00000000 ____D C:\Program Files (x86)\Sony 2017-03-06 18:18 - 2017-03-06 18:19 - 17732240 _____ (Sony Interactive Entertainment Inc.) C:\Users\Neo\Downloads\RemotePlayInstaller.exe 2017-03-06 15:09 - 2017-03-06 15:09 - 00281370 _____ C:\Users\Neo\Downloads\Chap 9 - Cours (3).pdf 2017-03-06 15:09 - 2017-03-06 15:09 - 00281370 _____ C:\Users\Neo\Downloads\Chap 9 - Cours (2).pdf 2017-03-05 20:02 - 2017-03-05 20:02 - 00000000 ____D C:\WINDOWS\Panther 2017-03-05 13:48 - 2017-02-13 21:47 - 05980720 _____ (Gaijin Entertainment) C:\Users\Neo\Desktop\War Thunder.exe 2017-03-04 21:19 - 2017-03-04 21:19 - 00237361 _____ C:\Users\Neo\Downloads\SLAM_v1.4.0.zip 2017-03-04 21:18 - 2017-03-04 21:18 - 00303807 _____ C:\Users\Neo\Downloads\NAudio-1.8.0-Release.zip 2017-03-04 20:15 - 2017-03-16 15:31 - 00000000 ___RD C:\Users\Neo\Dropbox 2017-03-04 20:15 - 2017-03-04 20:15 - 00001301 _____ C:\Users\Neo\Desktop\Dropbox.lnk 2017-03-04 20:11 - 2017-03-04 20:11 - 00690080 _____ (Dropbox, Inc.) C:\Users\Neo\Downloads\DropboxInstaller.exe 2017-03-04 20:06 - 2017-03-10 17:16 - 00000000 ____D C:\Users\Neo\AppData\Local\Dropbox 2017-03-04 20:06 - 2017-03-05 20:02 - 00001212 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2017-03-04 20:06 - 2017-03-05 20:02 - 00001208 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2017-03-04 20:06 - 2017-03-04 20:11 - 00004272 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA 2017-03-04 20:06 - 2017-03-04 20:11 - 00004040 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore 2017-03-04 20:06 - 2017-03-04 20:06 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Dropbox 2017-03-04 20:06 - 2017-03-04 20:06 - 00000000 ____D C:\ProgramData\Dropbox 2017-03-02 20:51 - 2017-03-02 20:51 - 00281370 _____ C:\Users\Neo\Downloads\Chap 9 - Cours (1).pdf 2017-03-02 20:49 - 2017-03-02 20:49 - 00281370 _____ C:\Users\Neo\Downloads\Chap 9 - Cours.pdf 2017-02-28 19:11 - 2017-02-28 19:12 - 00000000 ____D C:\Users\Neo\AppData\Roaming\WindSolutions 2017-02-28 19:11 - 2017-02-28 19:12 - 00000000 ____D C:\ProgramData\WindSolutions 2017-02-28 19:11 - 2017-02-28 19:11 - 00001465 _____ C:\Users\Neo\Desktop\CopyTrans Control Center.lnk 2017-02-28 19:11 - 2017-02-28 19:11 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center 2017-02-28 19:09 - 2017-02-28 19:10 - 06791528 _____ (WindSolutions) C:\Users\Neo\Downloads\Install_CopyTransControlCenter.exe 2017-02-28 19:08 - 2017-02-28 19:08 - 00001981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium.lnk 2017-02-28 19:08 - 2017-02-28 19:08 - 00001969 _____ C:\Users\Public\Desktop\Avast Premium.lnk 2017-02-28 19:07 - 2017-02-28 19:07 - 00398408 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-02-28 16:36 - 2017-02-28 16:36 - 03699739 _____ C:\Users\Neo\Downloads\wallpaper_5_ans.zip 2017-02-25 15:04 - 2017-02-25 15:04 - 89822592 _____ C:\Users\Neo\Downloads\Mix and Tracklist.zip 2017-02-25 14:47 - 2017-02-25 14:51 - 724105721 _____ C:\Users\Neo\Downloads\Watchmen-les gardiens-www.LibertyLand.tv_rsCHWKGw6g.rar 2017-02-23 21:13 - 2017-02-23 21:13 - 00000594 _____ C:\Users\Neo\Desktop\World of Warships.lnk 2017-02-23 21:13 - 2017-02-23 21:13 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Warships 2017-02-23 21:12 - 2017-02-23 21:12 - 06001536 _____ (Wargaming.net ) C:\Users\Neo\Downloads\WoWS_internet_install_eu.exe 2017-02-23 16:54 - 2017-02-23 16:54 - 00000000 ____D C:\Users\Neo\AppData\Roaming\EasyAntiCheat 2017-02-23 12:19 - 2017-02-23 12:19 - 01461935 _____ C:\Users\Neo\Downloads\video-1487842589.mp4 2017-02-22 19:24 - 2017-03-03 07:53 - 00065698 ____H C:\Users\Neo\AppData\Local\IconCache.db.backup 2017-02-22 19:17 - 2017-02-25 14:58 - 00000000 ____D C:\Users\Neo\AppData\Local\Ubisoft Game Launcher 2017-02-22 19:17 - 2017-02-22 19:27 - 00000893 _____ C:\Users\Neo\Desktop\Uplay.lnk 2017-02-22 19:17 - 2017-02-22 19:17 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2017-02-22 19:16 - 2017-02-22 19:17 - 63264576 _____ (Ubisoft) C:\Users\Neo\Downloads\UplayInstaller.exe 2017-02-22 18:10 - 2017-02-22 18:10 - 00000000 ____D C:\Users\Neo\AppData\LocalLow\Ankama 2017-02-22 17:37 - 2017-02-22 17:37 - 00001156 _____ C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Krosmaga.lnk 2017-02-22 17:37 - 2017-02-22 17:37 - 00001154 _____ C:\Users\Neo\Desktop\Krosmaga.lnk 2017-02-22 17:35 - 2017-02-22 17:35 - 00000000 ___HD C:\$AV_ASW 2017-02-22 17:33 - 2017-02-22 17:34 - 18100528 _____ (Ankama Studio) C:\Users\Neo\Downloads\krosmaga (1).exe 2017-02-22 17:32 - 2017-02-22 17:32 - 18100528 _____ (Ankama Studio) C:\Users\Neo\Downloads\krosmaga.exe 2017-02-22 15:27 - 2017-02-22 15:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2017-02-22 15:27 - 2017-02-22 15:27 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2017-02-22 15:18 - 2017-02-22 15:18 - 00001824 _____ C:\Users\Public\Desktop\iTunes.lnk 2017-02-22 15:18 - 2017-02-22 15:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-02-22 15:18 - 2017-02-22 15:18 - 00000000 ____D C:\Program Files\iTunes 2017-02-22 15:18 - 2017-02-22 15:18 - 00000000 ____D C:\Program Files\iPod 2017-02-22 15:04 - 2017-02-28 19:08 - 00003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-02-22 15:04 - 2017-02-28 19:07 - 00334600 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-02-22 15:04 - 2017-02-28 19:07 - 00309272 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-02-22 15:04 - 2017-02-28 19:07 - 00189768 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-02-22 15:04 - 2017-02-28 19:07 - 00048528 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-02-21 15:27 - 2017-02-21 15:27 - 00112228 _____ C:\Users\Neo\Downloads\JVCSticker++.user.js 2017-02-21 13:43 - 2017-02-21 13:43 - 00076689 _____ C:\Users\Neo\Downloads\ecosia_die_suchmaschine_die_baume_pflanzt-3.0.4-fx.xpi 2017-02-17 17:43 - 2017-02-17 17:43 - 00000221 _____ C:\Users\Neo\Desktop\COD - Modern Warfare 2.url 2017-02-16 16:04 - 2017-02-16 16:05 - 31876824 _____ (Riot Games) C:\Users\Neo\Downloads\LeagueofLegends_EUW_Installer_2016_11_10 (1).exe 2017-02-16 14:07 - 2017-02-16 14:07 - 00000000 ____D C:\Users\Neo\Documents\League of Legends 2017-02-16 13:57 - 2017-02-16 13:57 - 00000000 ____D C:\ProgramData\Riot Games 2017-02-16 13:55 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2017-02-16 13:55 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2017-02-16 13:55 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2017-02-16 13:54 - 2017-02-16 16:05 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Riot Games 2017-02-16 13:54 - 2017-02-16 13:54 - 31876824 _____ (Riot Games) C:\Users\Neo\Downloads\LeagueofLegends_EUW_Installer_2016_11_10.exe ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-03-18 20:35 - 2016-03-05 13:43 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Skype 2017-03-18 20:11 - 2016-03-05 13:41 - 01388432 _____ C:\Users\Public\VOIP.dat 2017-03-18 19:08 - 2016-09-30 16:13 - 00000000 ____D C:\Users\Neo 2017-03-18 19:08 - 2016-03-05 13:35 - 00000165 _____ C:\Users\Neo\AppData\Roaming\sp_data.sys 2017-03-18 19:04 - 2016-07-16 23:40 - 02118580 _____ C:\WINDOWS\system32\perfh00C.dat 2017-03-18 19:04 - 2016-07-16 23:40 - 00548262 _____ C:\WINDOWS\system32\perfc00C.dat 2017-03-18 19:04 - 2015-08-18 06:20 - 04447722 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-03-18 18:57 - 2016-10-24 12:13 - 00251840 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-03-18 18:57 - 2016-09-30 16:11 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-03-18 18:57 - 2016-03-05 13:35 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture 2017-03-18 18:56 - 2016-09-30 16:19 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-03-18 18:56 - 2016-07-16 07:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI 2017-03-18 18:56 - 2016-03-05 13:38 - 00000008 __RSH C:\ProgramData\ntuser.pol 2017-03-18 18:45 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2017-03-18 18:28 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-03-18 18:28 - 2016-04-01 20:21 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-03-18 17:55 - 2017-01-04 19:01 - 00000220 _____ C:\Users\Neo\Desktop\Sid Meier's Civilization V.url 2017-03-18 17:55 - 2016-04-23 12:25 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2017-03-18 17:38 - 2016-09-30 16:10 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-03-18 17:06 - 2016-12-02 18:09 - 00000219 _____ C:\Users\Neo\Desktop\Counter-Strike Global Offensive.url 2017-03-18 16:59 - 2016-04-12 22:17 - 00000000 ___RD C:\Users\Neo\Desktop\Liens Internet & Cie 2017-03-18 16:08 - 2016-11-16 21:59 - 00000000 ____D C:\Users\Neo\AppData\Roaming\ZHP 2017-03-18 14:14 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2017-03-18 14:13 - 2016-12-14 03:41 - 00003550 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1 2017-03-18 14:13 - 2016-09-30 16:19 - 00003540 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2 2017-03-18 09:57 - 2016-11-12 02:20 - 00000000 ___RD C:\Users\Neo\Desktop\JVC meme 2017-03-17 22:00 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2017-03-17 22:00 - 2016-03-05 13:38 - 00000000 ____D C:\Program Files (x86)\Google 2017-03-17 20:02 - 2016-01-13 11:25 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-03-17 17:38 - 2016-12-31 02:05 - 00000000 ____D C:\Users\Neo\Desktop\SLAM 2017-03-16 19:32 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-03-16 16:29 - 2016-03-05 15:53 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-03-16 16:28 - 2016-03-05 15:53 - 138634176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-03-16 15:33 - 2016-12-19 10:32 - 00000000 ____D C:\Program Files\CCleaner 2017-03-15 18:46 - 2016-03-05 13:43 - 00000000 ____D C:\ProgramData\Skype 2017-03-15 18:45 - 2016-03-05 13:43 - 00002640 _____ C:\Users\Public\Desktop\Skype.lnk 2017-03-15 15:36 - 2016-10-16 18:51 - 00337592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys 2017-03-14 17:55 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2017-03-13 22:50 - 2017-01-06 16:32 - 00000000 ____D C:\Users\Neo\AppData\Roaming\Origin 2017-03-13 17:39 - 2017-01-06 16:08 - 00000000 ____D C:\ProgramData\Origin 2017-03-13 17:38 - 2017-01-06 16:10 - 00000000 ____D C:\Program Files (x86)\Origin 2017-03-13 16:38 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2017-03-12 13:47 - 2016-09-30 22:56 - 00000000 ____D C:\WINDOWS\Minidump 2017-03-11 09:38 - 2016-12-23 12:29 - 00077408 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-03-10 18:02 - 2016-10-16 18:53 - 00004048 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1476640404 2017-03-10 18:02 - 2016-10-16 18:53 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-03-10 17:54 - 2016-10-16 18:51 - 00548928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2017-03-10 06:17 - 2017-01-14 15:11 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-03-10 06:17 - 2017-01-14 15:11 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-09 20:34 - 2015-08-18 06:29 - 00000000 ____D C:\Program Files (x86)\Dropbox 2017-03-06 22:41 - 2016-01-13 11:15 - 00000000 ___HD C:\Intel 2017-03-06 15:02 - 2016-03-05 13:35 - 00000000 __SHD C:\Users\Neo\IntelGraphicsProfiles 2017-03-04 21:19 - 2016-12-31 01:55 - 00000000 ____D C:\Users\Neo\AppData\Local\SLAM 2017-03-04 20:07 - 2016-03-06 11:58 - 00000000 ____D C:\Users\Neo\AppData\Roaming\DropboxOEM 2017-02-28 19:07 - 2016-10-16 18:53 - 00032088 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00993608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00461640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00162528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00126600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00100640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-02-28 19:07 - 2016-10-16 18:51 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-02-28 17:19 - 2016-12-15 17:00 - 00003286 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-02-28 17:19 - 2016-03-05 13:36 - 00002403 _____ C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-02-28 17:19 - 2016-03-05 13:36 - 00000000 ___RD C:\Users\Neo\OneDrive 2017-02-26 11:16 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-02-25 22:07 - 2016-03-10 22:28 - 00000000 ____D C:\Program Files\Recuva 2017-02-23 19:17 - 2017-01-09 16:38 - 00560168 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys 2017-02-23 17:15 - 2016-10-16 18:50 - 00000000 ____D C:\ProgramData\AVAST Software 2017-02-23 16:54 - 2016-06-20 12:07 - 00000000 ____D C:\Users\Neo\Documents\My Games 2017-02-22 17:37 - 2016-05-11 19:48 - 00000000 ____D C:\Users\Neo\AppData\Local\Ankama 2017-02-22 16:54 - 2016-03-05 13:56 - 00000000 ____D C:\Users\Neo\AppData\Roaming\.minecraft 2017-02-22 15:18 - 2016-03-31 21:50 - 00000000 ____D C:\Program Files\Common Files\Apple 2017-02-22 15:05 - 2016-10-14 19:50 - 00000000 ____D C:\Program Files (x86)\TunnelBear 2017-02-22 15:04 - 2016-10-16 18:51 - 00337080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys.148777225882804 ==================== Fichiers à la racine de certains dossiers ======= 2016-03-05 13:35 - 2017-03-18 19:08 - 0000165 _____ () C:\Users\Neo\AppData\Roaming\sp_data.sys 2016-03-05 14:39 - 2016-05-27 22:39 - 0000220 _____ () C:\Users\Neo\AppData\Roaming\WB.CFG Fichiers à déplacer ou supprimer: ==================== C:\Users\Public\VOIP.dat ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-03-12 21:28 ==================== Fin de FRST.txt ============================