Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2017 Exécuté par Maxime (administrateur) sur MAXIME-LT (20-04-2017 14:21:00) Exécuté depuis C:\Users\Maxime\Desktop\CleanUp\To Clean Profils chargés: Maxime (Profils disponibles: Maxime) Platform: Windows 8 Pro (X64) Langue: Français (France) Internet Explorer Version 10 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () D:\Program Files\Synergy\synergyd.exe (hxxp://tortoisesvn.net) D:\Program Files\TortoiseSVN\bin\TSVNCache.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Apple Inc.) D:\Program Files\iTunes\iTunesHelper.exe (Dropbox, Inc.) C:\Users\Maxime\AppData\Local\Dropbox\Update\DropboxUpdate.exe (FireStarter) D:\Program Files (x86)\PrtScr\PrtScr.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHQA.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Samsung Electronics Co. Ltd.) D:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Maxime\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [FreeFallProtection] => C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe [686704 2010-12-17] () HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-27] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [iTunesHelper] => D:\Program Files\iTunes\iTunesHelper.exe [303928 2017-03-22] (Apple Inc.) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [Google Update] => C:\Users\Maxime\AppData\Local\Google\Update\1.3.33.3\GoogleUpdateCore.exe [599632 2017-04-06] (Google Inc.) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [EPSON6724B0 (Artisan 730)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQA.EXE [283232 2014-01-22] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQA.EXE [283232 2014-01-22] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [Spotify Web Helper] => C:\Users\Maxime\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2025016 2015-09-13] (Spotify Ltd) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [Dropbox Update] => C:\Users\Maxime\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [PrtScr by FireStarter] => D:\Program Files (x86)\PrtScr\PrtScr.exe [1700864 2009-05-16] (FireStarter) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [Spotify] => C:\Users\Maxime\AppData\Roaming\Spotify\Spotify.exe [7590968 2015-09-13] (Spotify Ltd) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [EPLTarget\P0000000000000002] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHQA.EXE [283232 2014-01-22] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23152320 2017-04-03] (Microsoft Corporation) HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-3886903500-381135128-1545093519-1001\...\MountPoints2: {85094ff5-4512-11e3-be6f-ac7289057b47} - "G:\setup.EXE" /AUTORUN AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175880 2015-04-08] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [154256 2015-04-08] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers: [01UnsuppModule] -> {AEB16659-2125-4ADA-A4AB-45EE21E86469} => C:\Users\Maxime\AppData\Local\CloudStation\app\icon-overlay\8\x64\iconOverlay.dll [2014-09-23] (TODO: ) ShellIconOverlayIdentifiers: [02SyncingModule] -> {48AB5ADA-36B1-4137-99C9-2BD97F8788AB} => C:\Users\Maxime\AppData\Local\CloudStation\app\icon-overlay\8\x64\iconOverlay.dll [2014-09-23] (TODO: ) ShellIconOverlayIdentifiers: [03SyncedModule] -> {472CE1AD-5D53-4BCF-A1FB-3982A5F55138} => C:\Users\Maxime\AppData\Local\CloudStation\app\icon-overlay\8\x64\iconOverlay.dll [2014-09-23] (TODO: ) ShellIconOverlayIdentifiers: [04ReadOnlyModule] -> {A433C3E0-8B24-40EB-93C3-4B10D9959F58} => C:\Users\Maxime\AppData\Local\CloudStation\app\icon-overlay\8\x64\iconOverlay.dll [2014-09-23] (TODO: ) ShellIconOverlayIdentifiers: [05NoPermModule] -> {C701AD67-3DF0-47C9-89CB-DFA6207BE229} => C:\Users\Maxime\AppData\Local\CloudStation\app\icon-overlay\8\x64\iconOverlay.dll [2014-09-23] (TODO: ) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt64.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-04-13] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Maxime\AppData\Roaming\Dropbox\bin\DropboxExt.15.0.dll [2017-04-13] (Dropbox, Inc.) Startup: C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2017-04-17] ShortcutTarget: Dropbox.lnk -> C:\Users\Maxime\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) BootExecute: autocheck autochk * PCloudBroom64.exe \systemroot\system32\BroomData.bitPCloudBroom64.exe \systemroot\system32\BroomData.bit GroupPolicy: Restriction <======= ATTENTION GroupPolicy\User: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 Tcpip\Parameters: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{D93495C8-C7E6-43CE-A9FC-0AB1F3502FEF}: [NameServer] 82.163.143.157 82.163.142.159 Tcpip\..\Interfaces\{D93495C8-C7E6-43CE-A9FC-0AB1F3502FEF}: [DhcpNameServer] 82.163.143.157 Tcpip\..\Interfaces\{FA46333D-E3C1-4368-9170-08B64B5DEDFE}: [NameServer] 82.163.143.157 82.163.142.159 Tcpip\..\Interfaces\{FA46333D-E3C1-4368-9170-08B64B5DEDFE}: [DhcpNameServer] 8.8.8.8 ManualProxies: Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKU\S-1-5-21-3886903500-381135128-1545093519-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-ca/?ocid=iehp SearchScopes: HKLM-x32 -> ielnksrch URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqJvjaGwRUnfYzYVPx3lc5nSGoZqrPhqYGcnkfmCfP9EJkhTGloSYlENuKYXE6crbDCKBs1z8R4_-PReFegwB6Wz7O0Esqu19pdKEzYMv1OCT3fit6x7aQo7YL1zFEVScRICMPtc9DD2MTLxbnuOotSuvG42izAAFWyR4DifQ&q={searchTerms} SearchScopes: HKU\S-1-5-21-3886903500-381135128-1545093519-1001 -> {08052326-E49F-4A65-95C6-B61B783CE82E} URL = hxxp://www-searching.com/s.ashx?prd=opensearch&q={searchTerms}&s=H4Gzbcnbl1AU,b86fd379-caf1-4c28-89f0-38d9fba41098, SearchScopes: HKU\S-1-5-21-3886903500-381135128-1545093519-1001 -> {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWqJvjaGwRUnfYzYVPx3lc5nSGoZqrPhqYGcnkfmCfP9EJkhTGloSYlENuKYXE6crbDCKBs1z8R4_-PReFegwB6Wz7O0Esqu19pdKEzYMv1OCT3fit6x7aQo7YL1zFEVScRICMPtc9DD2MTLxbnuOotSuvG42izAAFWyR4DifQ&q={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-04-03] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2017-03-29] (Oracle Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-04-03] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2017-03-29] (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2017-04-02] (Microsoft Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper -> {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} -> D:\Program Files (x86)\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-30] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-04-02] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-02] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-02] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-02] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-04-02] (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Pas de fichier FireFox: ======== FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2017-03-29] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2017-03-29] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-04-02] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-04-02] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-04] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-04] (VideoLAN) FF Plugin HKU\S-1-5-21-3886903500-381135128-1545093519-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Maxime\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-3886903500-381135128-1545093519-1001: @talk.google.com/O1DPlugin -> C:\Users\Maxime\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-3886903500-381135128-1545093519-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Maxime\AppData\Local\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-06] (Google Inc.) FF Plugin HKU\S-1-5-21-3886903500-381135128-1545093519-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Maxime\AppData\Local\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-06] (Google Inc.) FF Plugin HKU\S-1-5-21-3886903500-381135128-1545093519-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Maxime\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [Pas de fichier] FF Plugin ProgramFiles/Appdata: C:\Users\Maxime\AppData\Roaming\mozilla\plugins\npatgpc.dll [2017-03-28] (Cisco WebEx LLC) FF Plugin ProgramFiles/Appdata: C:\Users\Maxime\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Maxime\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> mail.ru/cnt/11956636?rciguc__PARAM__ CHR StartupUrls: Default -> "hxxp://google.ca/" CHR Profile: C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default [2017-04-20] CHR Extension: (Entanglement Web App) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd [2014-06-12] CHR Extension: (Forge of Empires) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\anaphblkfplenhkephgneolhnmjminjg [2015-09-07] CHR Extension: (Google Drive) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-22] CHR Extension: (TV) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2014-06-12] CHR Extension: (YouTube) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-22] CHR Extension: (Adblock Plus) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22] CHR Extension: (Weebly - Website Builder) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnocophcbjfiimmnhlhleaooedeheifb [2014-06-12] CHR Extension: (Recherche Google) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-22] CHR Extension: (AutoCAD 360) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcjeclnkejmbepoibfnamioojinoopln [2014-06-12] CHR Extension: (Google Agenda) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-07] CHR Extension: (A Space Shooter for FREE) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\epbeobdmeddlnkokfiaijkfabecpmifa [2014-06-12] CHR Extension: (Planificateur de logements) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjfkgdpkecnmfcgfpfibpcnkeakahllc [2014-06-12] CHR Extension: (PDF Mergy) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2014-06-12] CHR Extension: (Earth in Space) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiihlpikmpijdopbaegjibndhpgjmjfe [2017-04-20] CHR Extension: (Dropbox) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2015-07-19] CHR Extension: (theHunter) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\jangaedeekciafhlanphhnalogmhefmo [2014-06-12] CHR Extension: (Autodesk Homestyler) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmmkfaghgcicheaimnpffeeekheafkb [2016-08-18] CHR Extension: (Grepolis) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgkognjknhcgbgbeijjondlikfkgnog [2015-02-23] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-13] CHR Extension: (Gmail) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29] CHR Extension: (Chrome Media Router) - C:\Users\Maxime\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-20] CHR HKLM-x32\...\Chrome\Extension: [ccfifbojenkenpkmnbnndeadpfdiffof] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [mjcnhgdodmhnpmndnljbmafpgomahfal] - CHR HKLM-x32\...\Chrome\Extension: [oelpkepjlgmehajehfeicfbjdiobdkfj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [ojlcebdkbpjdpiligkdbbkdkfjmchbfd] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-03-17] (Apple Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3705536 2017-04-03] (Microsoft Corporation) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [Fichier non signé] S3 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-27] (NVIDIA Corporation) S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-27] (NVIDIA Corporation) S3 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-27] (NVIDIA Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé] R2 Synergy; D:\Program Files\Synergy\synergyd.exe [291840 2013-10-22] () [Fichier non signé] S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [Fichier non signé] S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Corporation) S2 QQPCRTP; "D:\Program Files (x86)\Tencent\QQPCMgr\11.8.17919.214\QQPCRtp.exe" -r [X] S2 QQRepairdf; "C:\Program Files (x86)\Tencent\QQPCMGR\QQRepairdf" [X] S2 Recover; C:\Program Files\Fichiers communs\MYJIHNTR9VE15\iqMkhgrDA9.exe [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-10-15] (Motorola Solutions, Inc.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2017-04-20] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation) R1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [299664 2015-04-08] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-27] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation) S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [47632 2013-04-29] (Panda Security, S.L.) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-25] (Microsoft Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 VSPerfDrv110; D:\Program Files (x86)\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-13] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation) S3 mdareDriver_60; \??\C:\Program Files (x86)\Fortinet\FortiClient\mdare64_60.sys [X] S3 mdareDriver_62; \??\C:\Users\Maxime\AppData\Local\Temp\FCPreScan\mdare64_62.sys [X] <==== ATTENTION S1 QMUdisk; \??\D:\Program Files (x86)\Tencent\QQPCMgr\12.3.18489.224\QMUdisk64.sys [X] S1 softaal; \??\D:\Program Files (x86)\Tencent\QQPCMgr\11.8.17919.214\softaal64.sys [X] S1 TsDefenseBt; \??\D:\Program Files (x86)\Tencent\QQPCMgr\11.8.17919.214\TsDefenseBT64.sys [X] S2 tsnethlpx64; \??\D:\Program Files (x86)\Tencent\QQPCMgr\11.8.17919.214\TsNetHlpX64.sys [X] S3 vmci; \SystemRoot\System32\drivers\vmci.sys [X] S3 VMnetAdapter; \SystemRoot\system32\DRIVERS\vmnetadapter.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-04-20 14:20 - 2017-04-20 14:21 - 00000000 ___DC C:\FRST 2017-04-20 12:58 - 2017-04-20 12:58 - 00001234 _____ C:\Users\Maxime\Desktop\Slowin' Killer - Analyse du système (3).lnk 2017-04-20 12:58 - 2017-04-20 12:58 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Google 2017-04-17 22:06 - 2017-04-17 22:06 - 00036344 _____ (Tencent) C:\Windows\SysWOW64\Drivers\TS888x64.sys 2017-04-17 21:44 - 2017-04-20 09:20 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-04-17 21:43 - 2017-04-17 21:57 - 00001096 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2017-04-17 21:43 - 2017-04-17 21:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2017-04-17 21:43 - 2017-04-17 21:43 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-04-17 21:43 - 2017-04-17 21:43 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2017-04-17 21:43 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2017-04-17 21:43 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2017-04-17 21:43 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2017-04-17 21:16 - 2017-04-17 21:19 - 00000000 ____D C:\Program Files (x86)\PcRegBoost 2017-04-17 21:14 - 2017-04-20 13:16 - 00003020 _____ C:\Windows\SysWOW64\BroomData.bit 2017-04-17 21:14 - 2013-04-08 10:30 - 00022752 _____ C:\Windows\system32\PCloudBroom64.exe 2017-04-17 21:04 - 2017-04-17 21:04 - 00003158 _____ C:\Windows\System32\Tasks\{EBBF8EE8-35F9-44CE-B4A0-D00D9CBBCF73} 2017-04-17 20:38 - 2017-04-17 20:38 - 00000000 ____D C:\Windows\SysWOW64\DASBOOT 2017-04-17 20:38 - 2013-04-29 03:17 - 00047632 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2017-04-17 20:36 - 2017-04-17 20:36 - 05055816 _____ C:\Windows\system32\FNTCACHE.DAT 2017-04-16 17:34 - 2017-04-17 21:57 - 00002055 _____ C:\Users\Maxime\Desktop\Slowin' Killer.lnk 2017-04-16 17:33 - 2017-04-16 17:34 - 00000000 ____D C:\Program Files (x86)\Slowin Killer 2017-04-16 17:31 - 2017-04-17 22:05 - 00000000 ____D C:\ProgramData\TXQMPC 2017-04-16 17:31 - 2017-04-17 21:56 - 00000000 ____D C:\ProgramData\Microleaves 2017-04-16 17:31 - 2017-04-16 17:31 - 00000000 ____D C:\Program Files\Common Files\Tencent 2017-04-16 17:30 - 2017-04-17 22:48 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件 2017-04-16 17:30 - 2017-04-17 22:27 - 00096248 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys 2017-04-16 17:28 - 2017-04-16 17:28 - 00003204 _RSHC C:\pagefile.$$$ 2017-04-16 17:28 - 2017-04-16 17:28 - 00000000 ____D C:\Program Files (x86)\Microleaves 2017-04-16 17:27 - 2017-04-20 09:18 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microleaves 2017-04-16 17:27 - 2017-04-16 17:27 - 00000000 ____D C:\Users\Maxime\AppData\Local\AdvinstAnalytics 2017-04-16 17:26 - 2017-04-16 17:26 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-04-16 17:24 - 2017-04-16 17:24 - 00003568 _____ C:\Windows\System32\Tasks\{80566AE9-149D-408E-B15E-BA8C2D5EC3F7} 2017-04-16 17:18 - 2017-04-16 17:18 - 00003088 _____ C:\Windows\System32\Tasks\{0B10B098-F714-4122-BD35-0ECF71C65853} 2017-04-16 17:18 - 2017-04-16 17:18 - 00000000 ____D C:\Users\Maxime\AppData\Local\Chromium 2017-04-16 17:10 - 2017-04-17 21:55 - 00000000 ____D C:\Program Files\CE6RP17YF5 2017-04-16 17:07 - 2017-04-16 17:07 - 00003572 _____ C:\Windows\System32\Tasks\{E45D8B83-9CE1-46E5-A2D3-72F1DAB3FB5F} 2017-04-16 17:01 - 2017-04-20 12:57 - 00000000 ___DC C:\AdwCleaner 2017-04-16 17:01 - 2017-04-17 21:59 - 00000000 ____D C:\Program Files\Common Files\MYJIHNTR9VE15 2017-04-16 16:59 - 2017-04-17 21:49 - 00000000 ____D C:\ProgramData\{21F4A229-965F-1582-6232-ABC382B0ABFF} 2017-04-16 16:59 - 2017-04-16 17:00 - 00003730 _____ C:\Windows\System32\Tasks\{014AD736-FF9C-5E66-39BC-63967D7AE44C} 2017-04-16 16:59 - 2017-04-16 16:59 - 00003820 _____ C:\Windows\System32\Tasks\{1F01B9AE-A8AA-0E05-D3F4-D76877844203} 2017-04-16 16:55 - 2017-04-16 16:56 - 00006034 _____ C:\Windows\System32\Tasks\Himshabing 2017-04-16 16:55 - 2017-04-16 16:55 - 00000000 ____D C:\Users\Maxime\AppData\Local\CrashRpt 2017-04-16 16:54 - 2017-04-16 16:54 - 00000000 ____D C:\ProgramData\Plusdaxs 2017-04-16 16:53 - 2017-04-16 17:00 - 00018432 _____ C:\Users\Maxime\AppData\Roaming\Main.dat 2017-04-16 16:52 - 2017-04-17 21:55 - 00000000 ____D C:\Program Files\USA15QH602 2017-04-16 16:52 - 2017-04-16 16:52 - 00140288 _____ C:\Users\Maxime\AppData\Roaming\Installer.dat 2017-04-16 16:51 - 2017-04-17 21:55 - 00000000 ____D C:\Program Files\NLG2VG61CY 2017-04-16 16:51 - 2017-04-17 21:55 - 00000000 ____D C:\Program Files\7J498T9KSU 2017-04-16 16:48 - 2017-04-16 17:27 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnonymizerGadget 2017-04-13 10:33 - 2017-04-13 10:34 - 00000000 ___DC C:\tmp 2017-04-13 08:44 - 2017-04-13 08:44 - 00000031 _____ C:\Windows\script.txt 2017-04-13 08:42 - 2017-04-17 21:57 - 00001852 _____ C:\Users\Public\Desktop\Data Migration.lnk 2017-04-13 08:42 - 2017-04-13 08:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2017-04-13 08:42 - 2017-04-13 08:42 - 00000000 ____D C:\Program Files (x86)\Samsung 2017-04-13 08:37 - 2017-04-13 08:37 - 00003276 _____ C:\Windows\System32\Tasks\SamsungMagician 2017-04-13 08:37 - 2017-04-13 08:37 - 00000000 ____D C:\ProgramData\Samsung 2017-04-13 08:37 - 2017-04-13 08:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2017-04-12 16:03 - 2017-04-17 21:57 - 00001181 _____ C:\Users\Maxime\Desktop\ContactManager.lnk 2017-04-12 16:03 - 2017-04-17 21:57 - 00001148 _____ C:\Users\Maxime\Desktop\ClaimCenter.lnk 2017-04-12 11:02 - 2017-04-12 11:02 - 00000000 ____D C:\Users\Maxime\Naturalsoft 2017-04-12 10:58 - 2017-04-17 21:57 - 00001765 _____ C:\Users\Public\Desktop\NaturalReader Free.lnk 2017-04-12 10:58 - 2017-04-12 10:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Naturalsoft 2017-04-12 10:57 - 2017-04-16 17:39 - 00000000 ____D C:\Users\Maxime\AppData\Local\Downloaded Installations 2017-04-11 21:29 - 2017-04-17 21:57 - 00002499 _____ C:\Users\Public\Desktop\Smart View.lnk 2017-04-11 21:29 - 2017-04-11 21:29 - 00000000 ____D C:\Users\Maxime\AppData\Local\SmartView2 2017-04-11 21:29 - 2017-04-11 21:29 - 00000000 ____D C:\Program Files (x86)\Smart View 2017-04-07 15:56 - 2017-04-07 15:56 - 30216800 _____ C:\Users\Maxime\Desktop\Impôts 2017.zip 2017-04-07 11:03 - 2017-04-07 11:03 - 00000000 ____D C:\Users\Maxime\Documents\PDF Files 2017-04-07 10:51 - 2017-04-07 11:03 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\PDF Pro 10 9 2017-04-07 10:51 - 2017-04-07 10:51 - 00000000 ____D C:\ProgramData\Avanquest Software 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\Users\Public\Documents\Avanquest Software 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Expert PDF 9 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Pro 10 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\ProgramData\Expert PDF Jobs 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\ProgramData\Expert PDF 9 2017-04-07 10:50 - 2017-04-07 10:50 - 00000000 ____D C:\ProgramData\Avanquest 2017-04-07 10:50 - 2015-06-19 11:36 - 00027080 _____ (Visagesoft) C:\Windows\system32\vsmon1.dll 2017-04-06 20:28 - 2017-04-07 15:54 - 00000000 ____D C:\Users\Maxime\Desktop\Impôts 2017 2017-03-30 15:08 - 2017-04-17 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-03-30 15:07 - 2017-03-30 15:07 - 00000000 ____D C:\Program Files\iPod 2017-03-29 13:56 - 2017-03-29 13:56 - 01093032 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll 2017-03-29 13:56 - 2017-03-29 13:56 - 00972712 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll 2017-03-29 13:56 - 2017-03-29 13:56 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2017-03-29 13:56 - 2017-03-29 13:56 - 00188840 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2017-03-29 13:56 - 2017-03-29 13:56 - 00000000 ____D C:\Program Files\Java 2017-03-29 11:18 - 2017-03-29 11:18 - 00000000 ___DC C:\apache-maven-3.3.9 2017-03-29 11:11 - 2017-04-17 21:57 - 00000713 _____ C:\Users\Public\Desktop\IntelliJ IDEA Community Edition 2017.1 x64.lnk 2017-03-29 11:11 - 2017-03-29 11:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2017-03-29 10:38 - 2017-04-13 11:06 - 00000000 ___DC C:\Guidewire 2017-03-29 09:44 - 2017-03-29 09:44 - 00000000 ____D C:\ProgramData\Dell 2017-03-29 09:42 - 2017-03-29 09:42 - 00464307 _____ C:\Users\Maxime\Desktop\PPTC154.pdf 2017-03-29 09:35 - 2017-03-29 09:35 - 00000000 _____ C:\Windows\system32\RENE78.tmp 2017-03-29 09:35 - 2017-03-29 09:35 - 00000000 _____ C:\Windows\system32\RENE77.tmp 2017-03-29 09:10 - 2010-12-20 13:47 - 00000000 ___DC C:\apache-ant-1.8.2 2017-03-28 16:01 - 2017-03-28 16:01 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Sun 2017-03-28 16:00 - 2017-03-29 13:56 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2017-03-28 16:00 - 2017-03-28 16:00 - 00000000 ____D C:\ProgramData\Oracle 2017-03-28 13:28 - 2017-04-11 16:09 - 00000000 ____D C:\Users\Maxime\AppData\LocalLow\WebEx 2017-03-28 13:28 - 2017-03-28 13:36 - 00000000 ____D C:\Users\Maxime\AppData\Local\WebEx 2017-03-28 13:28 - 2017-03-28 13:30 - 00000000 ____D C:\ProgramData\WebEx 2017-03-27 20:50 - 2017-04-17 21:58 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Users\Maxime\AppData\Local\Apple 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\ProgramData\Apple Computer 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\ProgramData\Apple 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Program Files\Common Files\Apple 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Program Files\Bonjour 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Program Files (x86)\Bonjour 2017-03-27 20:50 - 2017-03-27 20:50 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2017-03-27 10:54 - 2017-04-17 21:58 - 00002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Entreprise 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive Entreprise.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002410 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002408 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002398 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002398 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:58 - 00002348 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2017-03-27 10:54 - 2017-04-17 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2017-03-27 10:51 - 2017-03-27 10:51 - 00000000 ____D C:\Program Files\Microsoft Office 15 2017-03-26 22:24 - 2017-03-28 16:30 - 00003176 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2 ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-04-20 13:34 - 2013-10-25 18:11 - 00000000 ____D C:\Users\Maxime\AppData\Local\Packages 2017-04-20 13:23 - 2012-07-26 06:09 - 00874848 _____ C:\Windows\system32\perfh00C.dat 2017-04-20 13:23 - 2012-07-26 06:09 - 00188148 _____ C:\Windows\system32\perfc00C.dat 2017-04-20 13:23 - 2012-07-26 03:28 - 01994426 _____ C:\Windows\system32\PerfStringBackup.INI 2017-04-20 13:23 - 2012-07-26 01:37 - 00000000 ____D C:\Windows\Inf 2017-04-20 13:22 - 2013-10-26 12:42 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3886903500-381135128-1545093519-1001 2017-04-20 13:17 - 2016-11-11 19:17 - 00000000 ____D C:\Users\Maxime\AppData\Local\TSVNCache 2017-04-20 13:17 - 2012-07-26 04:12 - 00000000 ____D C:\Windows\tracing 2017-04-20 13:17 - 2012-07-26 03:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-04-20 09:26 - 2013-10-26 12:46 - 00002337 _____ C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-04-20 09:20 - 2012-07-26 04:12 - 00000000 ____D C:\Windows\System 2017-04-20 08:50 - 2012-07-26 04:12 - 00000000 ____D C:\Windows\system32\FxsTmp 2017-04-18 08:48 - 2013-11-06 23:49 - 00000000 ____D C:\Windows\Minidump 2017-04-18 04:11 - 2012-07-26 04:12 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-04-18 04:10 - 2017-02-24 23:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-04-17 21:58 - 2016-07-21 19:53 - 00000682 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à niveau de Windows 10.lnk 2017-04-17 21:58 - 2014-05-12 22:38 - 00000976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2017-04-17 21:58 - 2014-01-29 13:47 - 00000910 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk 2017-04-17 21:58 - 2014-01-22 14:22 - 00001291 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CS6 (64 Bit).lnk 2017-04-17 21:58 - 2014-01-22 14:22 - 00000880 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk 2017-04-17 21:58 - 2014-01-22 14:21 - 00001507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk 2017-04-17 21:58 - 2014-01-22 14:21 - 00000985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk 2017-04-17 21:58 - 2014-01-22 14:21 - 00000975 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk 2017-04-17 21:58 - 2014-01-18 13:54 - 00000759 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2017-04-17 21:58 - 2014-01-10 20:40 - 00000681 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synergy.lnk 2017-04-17 21:58 - 2013-11-04 10:44 - 00002092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Web Platform Installer.lnk 2017-04-17 21:58 - 2013-11-01 20:04 - 00001429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KJ_Starter.lnk 2017-04-17 21:57 - 2017-02-25 12:45 - 00000761 _____ C:\Users\Maxime\Desktop\Test.lnk 2017-04-17 21:57 - 2017-02-24 23:29 - 00002334 _____ C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-04-17 21:57 - 2017-02-16 10:28 - 00000793 _____ C:\Users\Public\Desktop\Unity 5.5.1f1 (64-bit).lnk 2017-04-17 21:57 - 2017-02-15 17:55 - 00000749 _____ C:\Users\Maxime\Desktop\WinDirStat.lnk 2017-04-17 21:57 - 2017-02-15 11:48 - 00000762 _____ C:\Users\Public\Desktop\Unity 5.3.4p4 (64-bit).lnk 2017-04-17 21:57 - 2016-11-11 19:01 - 00000762 _____ C:\Users\Public\Desktop\Unity 5.3.4f1 (64-bit).lnk 2017-04-17 21:57 - 2016-07-21 19:53 - 00000682 _____ C:\Users\Maxime\Desktop\Assistant Mise à niveau de Windows 10.lnk 2017-04-17 21:57 - 2016-06-12 13:24 - 00000964 _____ C:\Users\Public\Desktop\DriversCloud.com - Démarrer la détection.lnk 2017-04-17 21:57 - 2015-05-16 09:52 - 00000810 _____ C:\Users\Public\Desktop\Pinball Arcade.lnk 2017-04-17 21:57 - 2015-04-21 22:38 - 00002127 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2017-04-17 21:57 - 2015-01-15 23:34 - 00001811 _____ C:\Users\Maxime\Desktop\Spotify.lnk 2017-04-17 21:57 - 2015-01-15 23:34 - 00001797 _____ C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2017-04-17 21:57 - 2014-05-12 22:38 - 00000976 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2017-04-17 21:57 - 2014-05-06 23:45 - 00000913 _____ C:\Users\Maxime\Desktop\PortFolio.lnk 2017-04-17 21:57 - 2014-02-11 17:07 - 00000855 _____ C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eclipse.lnk 2017-04-17 21:57 - 2013-10-25 18:11 - 00001446 _____ C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2017-04-17 21:56 - 2013-10-25 18:11 - 00000000 ____D C:\Users\Maxime 2017-04-17 21:40 - 2014-01-18 13:53 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Notepad++ 2017-04-17 21:39 - 2015-09-09 22:36 - 00001168 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3886903500-381135128-1545093519-1001Core.job 2017-04-17 21:27 - 2014-03-07 17:22 - 00000000 ____D C:\Users\Maxime\AppData\Local\CrashDumps 2017-04-17 21:18 - 2015-09-09 22:36 - 00003790 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3886903500-381135128-1545093519-1001Core 2017-04-17 21:18 - 2014-03-12 14:51 - 00002776 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2017-04-17 21:18 - 2013-10-26 12:45 - 00003408 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3886903500-381135128-1545093519-1001Core 2017-04-17 21:14 - 2014-03-04 15:51 - 00000000 ____D C:\ProgramData\NVIDIA 2017-04-17 21:01 - 2014-08-30 13:33 - 00000000 ____D C:\Users\Maxime\Documents\Visual Studio 2012 2017-04-16 17:45 - 2016-11-10 23:54 - 00327680 _____ C:\Windows\system32\Ikeext.etl 2017-04-16 17:38 - 2014-02-14 22:29 - 00000000 ____D C:\Users\Maxime\.thumbnails 2017-04-16 17:30 - 2013-10-25 18:11 - 00000000 ____D C:\Users\Maxime\AppData\Local\VirtualStore 2017-04-16 17:28 - 2013-11-11 23:22 - 00455680 ___SH C:\Users\Maxime\Desktop\Thumbs.db 2017-04-16 17:26 - 2013-11-07 00:56 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Dropbox 2017-04-16 17:09 - 2015-04-21 22:38 - 00000000 ____D C:\Windows\SysWOW64\NV 2017-04-16 17:09 - 2015-04-21 22:38 - 00000000 ____D C:\Windows\system32\NV 2017-04-16 17:01 - 2013-11-04 10:45 - 00000000 ____D C:\Program Files\Reference Assemblies 2017-04-16 16:59 - 2014-03-04 15:01 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Mozilla 2017-04-16 16:54 - 2016-11-29 18:27 - 00000432 __RSH C:\ProgramData\ntuser.pol 2017-04-13 15:28 - 2013-11-02 16:48 - 00000000 ____D C:\Users\Maxime\AppData\Local\Deployment 2017-04-13 09:38 - 2012-07-26 04:13 - 00262144 _____ C:\Windows\system32\config\BCD-Template 2017-04-13 08:42 - 2013-11-02 17:08 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-04-13 08:29 - 2012-07-26 01:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-04-12 12:57 - 2013-11-02 16:35 - 00000000 ____D C:\Windows\system32\MRT 2017-04-12 12:53 - 2013-11-02 16:35 - 148601744 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-04-07 18:06 - 2013-11-01 20:10 - 00532136 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2017-04-04 08:48 - 2012-07-26 04:12 - 00000000 ____D C:\Windows\system32\NDF 2017-04-03 08:33 - 2015-01-15 23:33 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Spotify 2017-04-03 08:28 - 2015-01-15 23:34 - 00000000 ____D C:\Users\Maxime\AppData\Local\Spotify 2017-03-31 08:43 - 2015-04-05 12:58 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2017-03-30 15:08 - 2014-03-07 17:19 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Apple Computer 2017-03-29 13:56 - 2013-12-05 13:53 - 00312232 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2017-03-29 10:34 - 2016-11-12 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio 2017-03-29 10:34 - 2014-09-23 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synology 2017-03-29 10:34 - 2014-04-25 20:58 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RuneScape 2017-03-29 10:13 - 2013-11-17 16:24 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\TeamViewer 2017-03-29 09:59 - 2013-12-05 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-03-28 16:30 - 2017-02-24 23:29 - 00000000 ___RD C:\Users\Maxime\OneDrive 2017-03-28 15:39 - 2013-11-02 16:48 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell 2017-03-28 13:29 - 2013-11-11 23:22 - 00000000 ____D C:\Users\Maxime\AppData\LocalLow\Temp 2017-03-28 11:33 - 2012-07-26 04:12 - 00000000 ____D C:\Windows\AUInstallAgent 2017-03-27 20:51 - 2014-03-07 17:19 - 00000000 ____D C:\Users\Maxime\AppData\Local\Apple Computer 2017-03-27 11:05 - 2012-07-26 04:12 - 00000000 ___HD C:\Program Files\WindowsApps 2017-03-27 10:51 - 2012-07-26 04:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-03-27 10:47 - 2017-02-15 09:25 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Slack 2017-03-27 10:47 - 2017-02-15 09:25 - 00000000 ____D C:\Users\Maxime\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies 2017-03-27 10:47 - 2017-02-15 09:25 - 00000000 ____D C:\Users\Maxime\AppData\Local\slack 2017-03-27 10:47 - 2014-01-15 17:21 - 00000000 ____D C:\ProgramData\Skype 2017-03-26 22:24 - 2017-02-24 23:29 - 00002274 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-26 22:24 - 2017-02-24 23:29 - 00002274 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-03-26 22:24 - 2017-02-24 23:29 - 00000000 ____D C:\Program Files (x86)\Microsoft OneDrive ==================== Fichiers à la racine de certains dossiers ======= 2017-04-16 16:52 - 2017-04-16 16:52 - 0140288 _____ () C:\Users\Maxime\AppData\Roaming\Installer.dat 2017-04-16 16:53 - 2017-04-16 17:00 - 0018432 _____ () C:\Users\Maxime\AppData\Roaming\Main.dat 2014-03-11 23:30 - 2014-03-12 00:00 - 0000132 _____ () C:\Users\Maxime\AppData\Roaming\Préfs Format GIF Adobe CS6 2014-02-14 21:28 - 2014-02-21 13:00 - 0000132 _____ () C:\Users\Maxime\AppData\Roaming\Préfs Format PNG Adobe CS6 2014-03-08 22:37 - 2014-03-09 10:40 - 0000132 _____ () C:\Users\Maxime\AppData\Roaming\Préfs Format Targa Adobe CS6 2014-02-14 22:29 - 2014-02-14 22:29 - 0000877 _____ () C:\Users\Maxime\AppData\Local\recently-used.xbel Certains fichiers dans TEMP: ==================== 2017-04-17 22:25 - 2017-04-17 22:27 - 53908408 _____ (Tencent) C:\Users\Maxime\AppData\Local\Temp\PCMgr_Setup_12_3_18489_224.exe 2017-04-17 21:15 - 2017-04-17 21:16 - 55578064 _____ (iNextITNetwork ) C:\Users\Maxime\AppData\Local\Temp\pcregboost.exe 2014-08-06 11:48 - 2014-08-20 16:55 - 0377099 _____ () C:\Users\Maxime\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-04-17 22:38 ==================== Fin de FRST.txt ============================