Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 07-06-2017 01 Exécuté par KEKEDJ (administrateur) sur PC-DE_KEKEDJ (09-06-2017 13:56:33) Exécuté depuis C:\Users\KEKEDJ\Desktop Profils chargés: KEKEDJ (Profils disponibles: KEKEDJ) Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe (ASUSTeK) C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe () C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\pg_ctl.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (PostgreSQL Global Development Group) C:\Program Files (x86)\PostgreSQL\9.3\bin\postgres.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Panda Security, S.L.) C:\ProgramData\Panda Security\Panda Security Protection\Download\0x04011000\PSP_UPG_4151_16.xx.xx_18.01.00_0.exe (Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\SACpl.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIJBE.EXE () C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe (Synology Inc.) C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-ui.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Synology Inc.) C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-connect.exe (Synology Inc.) C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-daemon.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2464072 2014-11-06] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-10-13] (Conexant Systems, Inc.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728 2015-11-12] (IvoSoft) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc.) HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\ASUSWSLoader.exe [63272 2014-12-04] () HKLM-x32\...\Run: [ROGNB] => C:\Program Files (x86)\ASUS Gaming Mouse\hid.exe [463872 2013-05-15] () HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [318248 2016-01-08] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [54520 2015-10-22] (Panda Security, S.L.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [29246632 2017-05-30] (Dropbox, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [6153128 2017-05-22] (LogMeIn Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672384 2012-04-11] (DT Soft Ltd) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [uTorrent] => C:\Users\KEKEDJ\AppData\Roaming\uTorrent\uTorrent.exe [1980608 2017-05-25] (BitTorrent Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-05-09] (Apple Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2017-05-09] (Apple Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2017-03-16] (Apple Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2017-05-09] (Apple Inc.) HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [Mobile Partner] => C:\Program Files (x86)\Parametres SFR 3G\Parametres SFR 3G HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIJBE.EXE [283232 2012-10-01] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ 01UnsuppModule] -> {AEB16659-2125-4ADA-A4AB-45EE21E86469} => C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\icon-overlay\16\x64\iconOverlay.dll [2016-07-05] (TODO: ) ShellIconOverlayIdentifiers: [ 02SyncingModule] -> {48AB5ADA-36B1-4137-99C9-2BD97F8788AB} => C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\icon-overlay\16\x64\iconOverlay.dll [2016-07-05] (TODO: ) ShellIconOverlayIdentifiers: [ 03SyncedModule] -> {472CE1AD-5D53-4BCF-A1FB-3982A5F55138} => C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\icon-overlay\16\x64\iconOverlay.dll [2016-07-05] (TODO: ) ShellIconOverlayIdentifiers: [ 04ReadOnlyModule] -> {A433C3E0-8B24-40EB-93C3-4B10D9959F58} => C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\icon-overlay\16\x64\iconOverlay.dll [2016-07-05] (TODO: ) ShellIconOverlayIdentifiers: [ 05NoPermModule] -> {C701AD67-3DF0-47C9-89CB-DFA6207BE229} => C:\Users\KEKEDJ\AppData\Local\CloudStation\CloudStation.app\icon-overlay\16\x64\iconOverlay.dll [2016-07-05] (TODO: ) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.15.458\ASUSWSShellExt64.dll [2014-11-18] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.15.458\ASUSWSShellExt64.dll [2014-11-18] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.15.458\ASUSWSShellExt64.dll [2014-11-18] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-05-30] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft) Startup: C:\Users\KEKEDJ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Drive.lnk [2017-06-09] ShortcutTarget: Synology Cloud Station Drive.lnk -> C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe (Synology Inc.) GroupPolicy: Restriction <======= ATTENTION GroupPolicyScripts: Restriction <======= ATTENTION GroupPolicyScripts-x32: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{08D3D399-3D6B-40D4-9ED2-CBC76207F44F}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{2A41CBF6-01D0-4C06-82DB-15D6A118D1DD}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{A08351CE-4417-4099-9E8D-F98777646DFC}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.palikan.com/?f=1&a=plk_ggbg_15_36&cd=2XzuyEtN2Y1L1QzuyD0C0EtD0CyDyD0EtCtBzyzz0B0BtDyBtN0D0Tzu0StCtAtAzztN1L2XzutAtFtCtBtFyDtFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SzytCzyyCtC0AtBtAtG0FtBtCyEtGyEyCzy0FtG0B0D0A0EtG0E0F0F0EzyyC0CtCtAtDtAyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szz0EyBzyyB0E0ByCtGtCyDyByBtGyEyDtDyEtGzy0D0C0AtGzyzyyEzztCtA0E0B0AyCyBtA2QtN0A0LzuyE&cr=900513535&ir= HKU\S-1-5-21-1589035381-3018108610-2984778886-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB SearchScopes: HKU\.DEFAULT -> {6586d803-df30-46d3-a89a-4136c8571d45} URL = SearchScopes: HKU\S-1-5-21-1589035381-3018108610-2984778886-1001 -> {6586d803-df30-46d3-a89a-4136c8571d45} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-05-26] (Microsoft Corporation) BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-05-26] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-11-12] (IvoSoft) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-05-15] (Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-01-29] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-05-15] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-11-12] (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-11-12] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-11-12] (IvoSoft) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-05-26] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-05-26] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-05-26] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-05-26] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\KEKEDJ\AppData\Roaming\Mozilla\Firefox\Profiles\otgs3em7.default [2017-06-09] FF Extension: (Adblock Plus) - C:\Users\KEKEDJ\AppData\Roaming\Mozilla\Firefox\Profiles\otgs3em7.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-07] FF Extension: (Follow-on Search Telemetry) - C:\Users\KEKEDJ\AppData\Roaming\Mozilla\Firefox\Profiles\otgs3em7.default\features\{90ca6aaf-1bc1-4432-9d8d-5c5db3c42e72}\followonsearch@mozilla.com.xpi [2017-06-06] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-09] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-09] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-05-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-05-15] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-26] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default [2017-05-02] CHR Extension: (Google Slides) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-07] CHR Extension: (Google Docs) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-07] CHR Extension: (Google Drive) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-07] CHR Extension: (YouTube) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-07] CHR Extension: (iFB - Invite all to Events and Pages v4) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\djllchijmdodbcjlgdjjmomeechmolfc [2017-04-17] CHR Extension: (Google Sheets) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-07] CHR Extension: (Google Docs hors connexion) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-10] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-04-10] CHR Extension: (Gmail) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-07] CHR Extension: (Chrome Media Router) - C:\Users\KEKEDJ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-10] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe [71168 2014-12-04] (ASUS Cloud Corporation) [Fichier non signé] R2 AsusGameFirstService; C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe [347960 2014-10-27] (ASUSTeK) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3971264 2017-05-14] (Microsoft Corporation) R2 Cloud Station Drive VSS Service x64; C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe [287240 2016-03-16] () [Fichier non signé] R2 CloudAvUpdaterFU; C:\Windows\SysWOW64\GroupPolicy\Machine\Scripts\Shutdown\Pan53C.tmp\setup.exe [1116000 2017-04-06] (Panda Security, S.L.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-09] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-09] (Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [48944 2017-05-30] (Dropbox, Inc.) R2 DriverMFTService; C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe [9728 2014-10-29] (ASUSTek Computer Inc.) [Fichier non signé] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-11-06] (NVIDIA Corporation) R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3760040 2017-05-22] (LogMeIn Inc.) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2013-02-06] () S2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [125168 2014-11-04] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-10-08] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-10-29] () S2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [142072 2015-10-18] (Panda Security, S.L.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-11-06] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848 2014-11-06] (NVIDIA Corporation) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [73176 2016-02-22] (Panda Security, S.L.) R2 postgresql-9.3; C:\Program Files (x86)\PostgreSQL\9.3\bin\pg_ctl.exe [76800 2014-10-20] (PostgreSQL Global Development Group) [Fichier non signé] S2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2015-10-22] (Panda Security, S.L.) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3818704 2014-10-29] (Intel® Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [73512 2014-12-16] (ASUS Corporation) S3 BrSerIf; C:\Windows\system32\DRIVERS\BrSerIf.sys [97280 2006-12-12] (Brother Industries Ltd.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2015-09-02] (DT Soft Ltd) S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2017-05-22] (LogMeIn Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [225008 2014-11-04] (Intel Corporation) R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [79528 2014-10-16] (Intel Corporation) R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( ) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3482600 2014-11-17] (Intel Corporation) R1 NFC_Driver; C:\Windows\System32\drivers\NFC_Driver.sys [48336 2014-03-27] (Titan ARC Corp.) S1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [94456 2015-07-09] (Panda Security, S.L.) S1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [201976 2015-07-09] (Panda Security, S.L.) S1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [110840 2015-07-09] (Panda Security, S.L.) S1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [110840 2015-07-09] (Panda Security, S.L.) S1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [58616 2015-06-19] (Panda Security, S.L.) S1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [103160 2015-07-09] (Panda Security, S.L.) S1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [89472 2015-09-01] (Panda Security, S.L.) S1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [124152 2015-07-09] (Panda Security, S.L.) S1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [300280 2015-07-09] (Panda Security, S.L.) S1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [170232 2015-07-09] (Panda Security, S.L.) S1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [113400 2015-07-09] (Panda Security, S.L.) S1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [257784 2015-07-09] (Panda Security, S.L.) S1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106232 2015-07-09] (Panda Security, S.L.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19784 2014-11-06] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38216 2014-10-03] (NVIDIA Corporation) S2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [164088 2015-07-19] (Panda Security, S.L.) S2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121592 2015-07-19] (Panda Security, S.L.) S1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [197880 2015-07-19] (Panda Security, S.L.) S2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124152 2015-07-19] (Panda Security, S.L.) S2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [134392 2015-07-19] (Panda Security, S.L.) S2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107768 2015-07-19] (Panda Security, S.L.) R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [61712 2015-05-22] (Panda Security, S.L.) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [508120 2014-08-15] (Realsil Semiconductor Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) S3 dbx; system32\DRIVERS\dbx.sys [X] U0 msahci; system32\drivers\msahci.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-06-09 13:57 - 2017-06-09 13:57 - 00000074 _____ C:\Windows\RAVTC.TMP 2017-06-09 13:48 - 2017-06-09 14:10 - 00035612 _____ C:\Users\KEKEDJ\Desktop\FRST.txt 2017-06-09 13:47 - 2017-06-09 13:48 - 00000000 ____D C:\FRST 2017-06-09 13:47 - 2017-06-09 13:47 - 02435072 _____ (Farbar) C:\Users\KEKEDJ\Desktop\FRST64.exe 2017-06-09 08:58 - 2017-06-09 08:58 - 00035984 _____ C:\Users\KEKEDJ\Downloads\2017100402064.pdf 2017-06-09 08:58 - 2017-06-09 08:58 - 00032646 _____ C:\Users\KEKEDJ\Downloads\2017104576383.pdf 2017-06-08 12:16 - 2017-06-08 12:16 - 00326581 _____ C:\Users\KEKEDJ\Desktop\Recap Visuel Menuiseries.pdf 2017-06-08 09:10 - 2017-06-08 12:19 - 00114809 _____ C:\Users\KEKEDJ\Desktop\Impression.pdf 2017-06-08 09:08 - 2017-06-08 09:08 - 00000000 ____D C:\Users\KEKEDJ\AppData\LocalLow\uTorrent 2017-06-08 07:46 - 2017-06-08 07:46 - 00169059 _____ C:\Users\KEKEDJ\Desktop\(PROV185).pdf 2017-06-06 12:45 - 2017-06-06 12:45 - 01730679 _____ C:\Users\KEKEDJ\Downloads\CR DR Barbier001.pdf 2017-06-06 12:45 - 2017-06-06 12:45 - 01291462 _____ C:\Users\KEKEDJ\Downloads\Contrat Lampiris-Emmanuelle__ Corne-CTR-250-2017-1154221.pdf 2017-06-06 12:45 - 2017-06-06 12:45 - 01291462 _____ C:\Users\KEKEDJ\Downloads\Contrat Lampiris-Emmanuelle__ Corne-CTR-250-2017-1154221(1).pdf 2017-06-05 12:01 - 2017-06-09 13:50 - 00003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1 2017-06-02 18:43 - 2017-06-06 12:27 - 02040851 _____ C:\Users\KEKEDJ\Desktop\carte.avery 2017-06-02 18:33 - 2017-06-02 18:33 - 00000000 ____D C:\Users\KEKEDJ\AppData\Roaming\DesktopDPO 2017-06-02 18:31 - 2017-06-02 18:31 - 00002036 _____ C:\Users\Public\Desktop\Design&Print.lnk 2017-06-02 18:31 - 2017-06-02 18:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avery 2017-06-02 18:30 - 2017-06-02 18:31 - 00000000 ____D C:\Program Files (x86)\Design&Print 2017-06-02 18:13 - 2017-06-02 18:23 - 460165368 _____ (Avery Products Corp.) C:\Users\KEKEDJ\Downloads\DesignPrintFR-4.0.0.exe 2017-06-02 11:33 - 2017-06-02 11:33 - 00617687 _____ C:\Users\KEKEDJ\Downloads\notice-c-miniwash-cloud-night(1).pdf 2017-06-01 18:20 - 2017-06-01 18:20 - 00617687 _____ C:\Users\KEKEDJ\Downloads\notice-c-miniwash-cloud-night.pdf 2017-06-01 18:18 - 2017-06-01 18:18 - 00749156 _____ C:\Users\KEKEDJ\Downloads\product19602.pdf 2017-05-31 20:24 - 2017-05-31 20:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-05-31 17:54 - 2017-05-31 17:54 - 00030025 _____ C:\Users\KEKEDJ\Downloads\5778BAD40DE8354CF6A89A2D1F3A8FD6.server2.pdf 2017-05-31 11:16 - 2017-05-31 11:16 - 00160761 _____ C:\Users\KEKEDJ\Downloads\boi_tva_taux_reduit_locaux_concernes_2014.pdf 2017-05-31 11:15 - 2017-05-31 11:15 - 00212705 _____ C:\Users\KEKEDJ\Downloads\1693224296.pdf 2017-05-31 10:32 - 2017-05-31 10:32 - 00175541 _____ C:\Users\KEKEDJ\Downloads\PR1705-0095.pdf 2017-05-31 10:31 - 2017-05-31 10:31 - 00173826 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070(5).pdf 2017-05-31 10:31 - 2017-05-31 10:31 - 00171364 _____ C:\Users\KEKEDJ\Downloads\PR1611-0072.pdf 2017-05-31 08:10 - 2017-05-31 08:10 - 00173233 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070(4).pdf 2017-05-30 12:46 - 2017-05-30 12:46 - 00173233 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070(3).pdf 2017-05-30 12:22 - 2017-05-30 12:22 - 00048944 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2017-05-30 11:39 - 2017-05-30 11:39 - 00173231 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070(2).pdf 2017-05-30 10:39 - 2017-05-30 10:39 - 00173239 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070(1).pdf 2017-05-30 10:13 - 2017-05-30 10:13 - 00173243 _____ C:\Users\KEKEDJ\Downloads\PR1610-0070.pdf 2017-05-29 12:47 - 2017-05-29 12:48 - 07991074 _____ C:\Users\KEKEDJ\Downloads\03_Plafonds.pdf 2017-05-29 12:41 - 2017-05-29 12:42 - 07827114 _____ C:\Users\KEKEDJ\Downloads\plafonds.pdf 2017-05-29 12:31 - 2017-05-29 12:31 - 00746003 _____ C:\Users\KEKEDJ\Downloads\AE_-_Faux_plafonds_19-07-12.pdf 2017-05-29 08:33 - 2017-05-29 08:33 - 00268136 _____ C:\Users\KEKEDJ\Downloads\resultats provisoires 5km avec temps reels.pdf 2017-05-29 08:12 - 2017-05-29 08:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2017-05-29 08:12 - 2017-05-29 08:12 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2017-05-29 08:11 - 2017-05-29 08:13 - 00000176 _____ C:\Users\Default\BullseyeCoverageError.txt 2017-05-26 12:57 - 2017-05-26 12:57 - 00046215 _____ C:\Users\KEKEDJ\Downloads\(CORNE EMMANUELLE) Votre inscription à COURIR LA JULES VERNE.pdf 2017-05-26 11:37 - 2017-05-26 11:37 - 01024019 _____ C:\Users\KEKEDJ\Downloads\sd800_yourte_plan.pdf 2017-05-26 11:22 - 2017-05-26 11:22 - 02066039 _____ C:\Users\KEKEDJ\Downloads\STD00-SOLAR2.pdf 2017-05-25 20:00 - 2017-05-25 20:00 - 00037462 _____ C:\Users\KEKEDJ\Downloads\westworld-s01e03-french-hdtv.torrent 2017-05-25 19:32 - 2017-05-25 19:33 - 00227530 _____ C:\Users\KEKEDJ\Downloads\nova_metres_et_menuiseries.pdf 2017-05-25 19:32 - 2017-05-25 19:32 - 01468742 _____ C:\Users\KEKEDJ\Downloads\std03-nova2.pdf 2017-05-22 16:12 - 2017-05-22 16:12 - 00045680 ____H (LogMeIn Inc.) C:\Windows\system32\Drivers\Hamdrv.sys 2017-05-21 21:02 - 2017-05-21 21:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-05-21 21:01 - 2017-05-21 21:01 - 00000000 ____D C:\Program Files\iTunes 2017-05-21 21:01 - 2017-05-21 21:01 - 00000000 ____D C:\Program Files\iPod 2017-05-21 20:47 - 2017-05-21 20:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2017-05-18 13:34 - 2017-05-18 13:34 - 00045119 _____ C:\Users\KEKEDJ\Downloads\Total_Fuel_Card_20170515_FACPE924002328(1).zip 2017-05-18 13:30 - 2017-05-18 13:30 - 00045119 _____ C:\Users\KEKEDJ\Downloads\Total_Fuel_Card_20170515_FACPE924002328.zip 2017-05-18 09:25 - 2017-05-18 09:25 - 00046427 _____ C:\Users\KEKEDJ\Downloads\Total_Fuel_Card_20170430_FACPE905001176.zip 2017-05-16 12:32 - 2017-05-16 12:32 - 00179098 _____ C:\Users\KEKEDJ\Downloads\getPDF 2017-05-15 14:19 - 2017-05-15 14:19 - 00000000 ____D C:\Users\KEKEDJ\AppData\LocalLow\Adobe 2017-05-15 14:19 - 2017-05-15 14:19 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\CEF 2017-05-15 11:26 - 2017-05-16 17:13 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2017-05-15 11:26 - 2017-05-15 11:26 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-05-15 11:07 - 2017-05-15 11:07 - 00300922 _____ C:\Users\KEKEDJ\Downloads\cerfa_13905_modification_cessation(1).pdf 2017-05-15 11:07 - 2017-05-15 11:07 - 00030025 _____ C:\Users\KEKEDJ\Downloads\77AF6CAF65E3B025B72142E7EC5D873B.server1(2).pdf 2017-05-15 11:06 - 2017-05-15 11:06 - 00030025 _____ C:\Users\KEKEDJ\Downloads\77AF6CAF65E3B025B72142E7EC5D873B.server1.pdf 2017-05-15 11:06 - 2017-05-15 11:06 - 00030025 _____ C:\Users\KEKEDJ\Downloads\77AF6CAF65E3B025B72142E7EC5D873B.server1(1).pdf 2017-05-15 11:04 - 2017-05-15 11:04 - 00030025 _____ C:\Users\KEKEDJ\Downloads\ABEEF9189E2726C19BA4D341C9AA2280.server2(3).pdf 2017-05-15 11:03 - 2017-05-15 11:03 - 00030025 _____ C:\Users\KEKEDJ\Downloads\ABEEF9189E2726C19BA4D341C9AA2280.server2(2).pdf 2017-05-15 11:03 - 2017-05-15 11:03 - 00030025 _____ C:\Users\KEKEDJ\Downloads\ABEEF9189E2726C19BA4D341C9AA2280.server2(1).pdf 2017-05-15 11:03 - 2017-05-15 11:03 - 00000000 ____D C:\Users\KEKEDJ\AppData\Roaming\AdobeUM 2017-05-15 11:02 - 2017-05-15 11:02 - 00030025 _____ C:\Users\KEKEDJ\Downloads\ABEEF9189E2726C19BA4D341C9AA2280.server2.pdf 2017-05-15 11:00 - 2017-05-15 11:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-05-15 11:00 - 2017-05-15 10:59 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2017-05-15 10:58 - 2017-05-15 11:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2017-05-15 10:57 - 2017-05-15 10:59 - 00000000 ____D C:\Program Files (x86)\Java 2017-05-15 10:55 - 2017-05-15 10:55 - 00000000 ____D C:\Users\KEKEDJ\AppData\LocalLow\Oracle 2017-05-15 10:48 - 2017-05-15 10:55 - 200512056 _____ (Oracle Corporation) C:\Users\KEKEDJ\Downloads\jdk-8u131-windows-i586.exe 2017-05-15 10:46 - 2017-05-15 10:46 - 00300922 _____ C:\Users\KEKEDJ\Downloads\cerfa_13905_modification_cessation.pdf 2017-05-15 10:44 - 2017-05-15 14:20 - 00000000 ____D C:\ProgramData\Adobe 2017-05-15 10:42 - 2017-05-15 11:26 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-05-15 10:40 - 2017-05-15 10:41 - 22606384 _____ (Netopsystems AG ) C:\Users\KEKEDJ\Downloads\AdbeRdr70_fra_full.exe 2017-05-15 10:20 - 2017-05-15 10:20 - 00030025 _____ C:\Users\KEKEDJ\Downloads\73A99EC77EF666BA8D8675A40D400BCA.server2.pdf 2017-05-12 16:03 - 2017-05-12 16:03 - 00507136 _____ C:\Users\KEKEDJ\Downloads\ASUE200HAFD0042T.pdf 2017-05-12 12:15 - 2017-05-12 12:15 - 00027452 _____ C:\Users\KEKEDJ\Downloads\invoice_1853391.pdf 2017-05-10 15:10 - 2017-05-10 15:10 - 00105865 _____ C:\Users\KEKEDJ\Downloads\FA1604-0011.pdf ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-06-09 14:02 - 2015-04-11 14:12 - 00817846 _____ C:\Windows\system32\perfh00C.dat 2017-06-09 14:02 - 2015-04-11 14:12 - 00161376 _____ C:\Windows\system32\perfc00C.dat 2017-06-09 14:02 - 2014-11-22 03:01 - 01839270 _____ C:\Windows\system32\PerfStringBackup.INI 2017-06-09 14:02 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2017-06-09 13:56 - 2017-03-09 16:29 - 00001208 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2017-06-09 13:56 - 2016-11-18 07:25 - 00000000 ____D C:\Users\KEKEDJ\AppData\LocalLow\Mozilla 2017-06-09 13:56 - 2016-06-08 12:35 - 00000000 ___RD C:\Users\KEKEDJ\iCloudDrive 2017-06-09 13:56 - 2015-11-10 12:05 - 00000000 ___RD C:\Users\KEKEDJ\CloudStation 2017-06-09 13:56 - 2015-11-10 12:04 - 00000000 ___RD C:\Users\KEKEDJ\Desktop\ABB_client 2017-06-09 13:56 - 2015-11-10 11:58 - 00000000 ___RD C:\Users\KEKEDJ\Desktop\Synchro_ABB Batiment 2017-06-09 13:56 - 2015-09-01 01:47 - 00000290 __RSH C:\ProgramData\ntuser.pol 2017-06-09 13:56 - 2015-08-31 23:17 - 00000165 _____ C:\Users\KEKEDJ\AppData\Roaming\sp_data.sys 2017-06-09 13:56 - 2015-08-31 23:17 - 00000000 ____D C:\Users\KEKEDJ 2017-06-09 13:55 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-06-09 13:52 - 2015-09-02 23:28 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\ClassicShell 2017-06-09 13:50 - 2015-11-05 10:36 - 00003956 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{7B6A0822-B59F-45B5-8D4E-D56B68F14F08} 2017-06-09 13:50 - 2015-09-01 01:41 - 00003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2 2017-06-09 09:55 - 2015-11-10 11:32 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\CloudStation 2017-06-09 08:34 - 2017-03-09 16:29 - 00001212 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2017-06-09 06:06 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2017-06-09 06:04 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps 2017-06-08 22:46 - 2015-09-02 23:33 - 00000000 ____D C:\Users\KEKEDJ\Desktop\installation 2017-06-08 22:45 - 2017-03-09 16:32 - 00000000 ___RD C:\Users\KEKEDJ\Dropbox 2017-06-08 17:30 - 2015-09-18 15:49 - 00000584 _____ C:\Windows\Tasks\elcia_sav_elcia_base_locale160116.job 2017-06-08 11:44 - 2017-04-11 12:26 - 00007605 _____ C:\Users\KEKEDJ\AppData\Local\resmon.resmoncfg 2017-06-08 11:39 - 2015-12-20 19:24 - 00000000 ____D C:\Users\KEKEDJ\AppData\Roaming\uTorrent 2017-06-07 15:36 - 2015-08-31 23:17 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\Packages 2017-06-05 12:03 - 2015-11-06 20:34 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1589035381-3018108610-2984778886-1001 2017-06-05 10:55 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-05-31 20:25 - 2017-03-09 16:28 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\Dropbox 2017-05-31 20:24 - 2017-03-09 16:28 - 00000000 ____D C:\Program Files (x86)\Dropbox 2017-05-30 09:40 - 2015-09-02 23:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-05-30 09:40 - 2015-09-02 23:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-05-29 08:15 - 2016-07-26 08:46 - 00000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi 2017-05-29 08:15 - 2016-07-26 08:46 - 00000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi 2017-05-26 11:45 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-05-26 11:39 - 2015-10-13 13:00 - 00002380 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2017-05-26 11:39 - 2015-10-01 19:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-05-21 22:59 - 2016-06-08 12:35 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\42E9A08F-6FB2-48FC-AA33-616AD6D855B9.aplzod 2017-05-21 21:06 - 2016-12-23 14:38 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software 2017-05-21 20:48 - 2017-03-29 12:53 - 01860808 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-05-16 02:17 - 2017-04-10 20:51 - 00002175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-05-15 14:22 - 2015-09-04 16:44 - 00000000 ____D C:\Users\KEKEDJ\AppData\Local\Adobe 2017-05-15 14:19 - 2015-08-31 23:17 - 00000000 ____D C:\Users\KEKEDJ\AppData\Roaming\Adobe ==================== Fichiers à la racine de certains dossiers ======= 2015-08-31 23:17 - 2017-06-09 13:56 - 0000165 _____ () C:\Users\KEKEDJ\AppData\Roaming\sp_data.sys 2017-04-11 12:26 - 2017-06-08 11:44 - 0007605 _____ () C:\Users\KEKEDJ\AppData\Local\resmon.resmoncfg 2016-01-29 12:33 - 2016-01-29 12:33 - 0000016 _____ () C:\ProgramData\mntemp 2015-04-11 06:36 - 2014-06-19 11:41 - 0000042 _____ () C:\ProgramData\SetStretch.cmd 2015-04-11 06:36 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe 2015-04-11 06:36 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS 2015-07-14 22:10 - 2014-06-19 09:45 - 0104544 _____ (ASUSTek Computer INC.) C:\ProgramData\SetWallpaperPlus.exe Fichiers à déplacer ou supprimer: ==================== C:\ProgramData\SetWallpaperPlus.exe Certains fichiers dans TEMP: ==================== 2017-02-13 08:59 - 2017-02-13 08:59 - 0237568 _____ () C:\Users\KEKEDJ\AppData\Local\Temp\infozip2.exe 2017-04-18 20:55 - 2017-04-18 20:55 - 0739904 _____ (Oracle Corporation) C:\Users\KEKEDJ\AppData\Local\Temp\jre-8u131-windows-au.exe 2014-08-06 17:48 - 2014-09-30 22:35 - 0377097 _____ () C:\Users\KEKEDJ\AppData\Local\Temp\Quarantine.exe 2016-06-06 10:29 - 2016-07-05 12:13 - 3923032 _____ () C:\Users\KEKEDJ\AppData\Local\Temp\Synology-Cloud-Station-Drive-Upgrader.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-05-31 09:45 ==================== Fin de FRST.txt ============================