Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-09-2017 Exécuté par GG (administrateur) sur GEGEPING (13-09-2017 11:03:49) Exécuté depuis C:\Users\GG\Desktop Profils chargés: GG (Profils disponibles: GG) Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: IE) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe () C:\Program Files\Bitdefender\Tools\BDAntiRansomware\BDAntiRansomware.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.15.438\AsusWSWinService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msoia.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe (Intel® Corporation) C:\Program Files\Intel\CAM\bin\CAMService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (O&O Software GmbH) C:\Program Files\OO Software\DiskImage\oodiag.exe (Crystal Dew World) F:\UTILITAIRES\CrystalDiskInfo7_0_0\DiskInfo64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\vdsldr.exe (arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (O&O Software GmbH) C:\Program Files\OO Software\DiskImage\ooditray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AOL Inc.) C:\Program Files (x86)\AOL Desktop 9.7\waol.exe (AOL Inc.) C:\Program Files (x86)\Common Files\AOL\1418046642\ee\aolsoftware.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe () C:\Users\GG\AppData\Roaming\ZHP\ZHPDiag3.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (AOL Inc.) C:\Program Files (x86)\Common Files\AOL\acs\AOLacsd.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (AOL Inc.) C:\Program Files (x86)\AOL Desktop 9.7\shellmon.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13776088 2014-12-11] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1391472 2014-12-11] (Realtek Semiconductor) HKLM\...\Run: [AuditSHD] => C:\windows\system32\oobe\auditshd.exe [30208 2014-10-29] (Microsoft Corporation) HKLM\...\Run: [ACMON] => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe********************************************* [107192 2012-08-24] () HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [4468424 2016-02-15] (O&O Software GmbH) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3111880 2015-07-23] (Logitech, Inc.) HKLM\...\Run: [OODITRAY.EXE] => C:\Program Files\OO Software\DiskImage\ooditray.exe [6363336 2016-04-28] (O&O Software GmbH) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [239856 2017-08-31] (AVAST Software) HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2012-08-17] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ASUS InstantKey] => C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe [20456 2012-02-20] (ASUS) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [78352 2012-05-23] (cyberlink) HKLM-x32\...\Run: [UpdatePSTShortCut] => C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [222504 2012-07-03] (CyberLink Corp.) HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.15.438\ASUSWSLoader.exe [63272 2014-11-07] () HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [HostManager] => C:\Program Files (x86)\Common Files\AOL\1418046642\ee\AOLSoftware.exe [41800 2010-03-08] (AOL Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-1107857910-2696304233-3831506163-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9855192 2017-09-07] (Piriform Ltd) HKU\S-1-5-21-1107857910-2696304233-3831506163-1002\...\Run: [AOL Fast Start] => C:\Program Files (x86)\AOL Desktop 9.7\AOL.EXE [72296 2014-09-16] (AOL Inc.) AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [171384 2017-08-22] (NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [149040 2017-08-22] (NVIDIA Corporation) AppInit_DLLs-x32: , C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [149040 2017-08-22] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk [2013-05-06] ShortcutTarget: AsusVibeLauncher.lnk -> C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe (ASUSTeK Computer Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FAH.lnk [2015-12-03] ShortcutTarget: FAH.lnk -> C:\Program Files\WinZip\FAH\FAHConsole.exe (Nico Mak Computing) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\O&O Defrag Tray.lnk [2016-03-09] ShortcutTarget: O&O Defrag Tray.lnk -> C:\Windows\Installer\{10F2471C-34AD-4C33-9F92-039B8BC44AC0}\app_icon.ico () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Préchargeur.lnk [2015-12-03] ShortcutTarget: WinZip Préchargeur.lnk -> C:\Program Files\WinZip\WzPreloader.exe (WinZip Computing, S.L.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{7DBAE639-E211-423B-BAE9-651FF31E5575}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{F9EB39F5-280E-4FAC-A20A-5320573CD612}: [DhcpNameServer] 192.168.0.254 Internet Explorer: ================== HKU\S-1-5-21-1107857910-2696304233-3831506163-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-1107857910-2696304233-3831506163-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com SearchScopes: HKU\S-1-5-21-1107857910-2696304233-3831506163-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2017-07-11] (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-08-31] (AVAST Software) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-07-23] (Logitech, Inc.) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2017-06-13] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-23] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-08-31] (AVAST Software) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-07-23] (Logitech, Inc.) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-23] (Oracle Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH) IE Session Restore: HKU\S-1-5-21-1107857910-2696304233-3831506163-1002 -> est activé. Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default [2017-09-13] FF Session Restore: Mozilla\Firefox\Profiles\bc2njday.default -> est activé. FF Extension: (about:addons Button) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\aboutaddons@firefox.xpi [2016-05-01] FF Extension: (anonymoX) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\client@anonymox.net.xpi [2017-08-30] FF Extension: (British English Dictionary (Updated)) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\en-gb@flyingtophat.co.uk [2015-01-26] [non signé] FF Extension: (British English Dictionary (Marco Pinto)) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\marcoagpinto@mail.telepac.pt [2017-08-26] FF Extension: (Avast SafePrice) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\sp@avast.com.xpi [2017-08-24] FF Extension: (Avast Online Security) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\wrc@avast.com.xpi [2017-08-17] FF Extension: (Download YouTube Videos as MP4) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2017-02-15] FF Extension: (Video DownloadHelper) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-05-09] FF Extension: (Adblock Plus) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-08] FF Extension: (Click-to-Play staged rollout) - C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\features\{424994d1-c1b5-466d-b572-c702ea944711}\clicktoplay-rollout@mozilla.org.xpi [2017-09-12] FF SearchPlugin: C:\Users\GG\AppData\Roaming\Mozilla\Firefox\Profiles\bc2njday.default\searchplugins\google-avast.xml [2017-02-24] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-09-05] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-13] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-12-02] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-13] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-23] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-23] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2014-12-02] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-08-22] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-08-22] (NVIDIA Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.) ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.15.438\AsusWSWinService.exe [71168 2014-11-07] (ASUS Cloud Corporation) [Fichier non signé] R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7452288 2017-08-31] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [275208 2017-08-31] (AVAST Software) R2 CAMService; C:\Program Files\Intel\CAM\bin\CAMService.exe [1243344 2014-06-18] (Intel® Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042544 2017-03-14] (Microsoft Corporation) S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243728 2012-05-23] (CyberLink) S3 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-06-18] () R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-08-22] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-08-18] (NVIDIA Corporation) R2 OO DiskImage; C:\Program Files\OO Software\DiskImage\oodiag.exe [7878856 2016-04-28] (O&O Software GmbH) S2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3636936 2016-02-15] (O&O Software GmbH) R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-04-17] () R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.) R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [117400 2016-06-08] () R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [302872 2017-08-12] (RaMMicHaeL) S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-06-08] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816656 2014-06-18] (Intel® Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [320528 2017-08-31] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [198976 2017-08-31] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [343296 2017-08-31] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [57736 2017-08-31] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [47016 2017-08-31] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [147784 2017-08-31] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [110376 2017-08-31] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [84416 2017-08-31] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1016384 2017-08-31] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [590880 2017-08-31] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [199312 2017-08-31] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [361336 2017-08-31] (AVAST Software) R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [71952 2014-03-31] (ASUS Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R1 epp; F:\UTILITAIRES\PC CLEANER\SOFT\EEK\bin64\epp.sys [124552 2017-04-28] (Emsisoft Ltd) R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( ) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [253856 2017-09-13] (Malwarebytes) R3 NETwNe64; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [3351520 2014-07-02] (Intel Corporation) R1 nvkflt; C:\WINDOWS\system32\DRIVERS\nvkflt.sys [306112 2017-08-22] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-08-18] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48064 2017-07-26] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation) R0 oodisr; C:\WINDOWS\System32\DRIVERS\oodisr.sys [116888 2016-04-05] (O&O Software GmbH) R0 oodisrh; C:\WINDOWS\System32\DRIVERS\oodisrh.sys [41112 2016-04-05] (O&O Software GmbH) R0 oodivd; C:\WINDOWS\System32\DRIVERS\oodivd.sys [255640 2016-04-05] (O&O Software GmbH) R0 oodivdh; C:\WINDOWS\System32\DRIVERS\oodivdh.sys [44696 2016-04-05] (O&O Software GmbH) S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2015-06-04] () S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 usbrndis6; C:\WINDOWS\system32\DRIVERS\usb80236.sys [20992 2015-04-25] (Microsoft Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-09-13 11:03 - 2017-09-13 11:06 - 000025106 _____ C:\Users\GG\Desktop\FRST.txt 2017-09-13 11:01 - 2017-09-13 11:01 - 000000000 ____D C:\ProgramData\SWCUTemp 2017-09-13 10:55 - 2017-09-13 10:55 - 000012352 _____ C:\Users\GG\Desktop\Fixlog.txt 2017-09-13 10:53 - 2017-09-13 09:18 - 002397184 _____ (Farbar) C:\Users\GG\Desktop\FRST64.exe 2017-09-13 10:42 - 2017-09-13 10:43 - 159254172 _____ C:\Users\GG\Desktop\Celtic-Paris Le 10 minutes - PSG.fr.mp4 2017-09-13 09:34 - 2017-09-13 09:51 - 000000000 ____D C:\Users\GG\Desktop\SOS 2017-09-13 09:18 - 2017-09-13 11:03 - 000000000 ____D C:\FRST 2017-09-13 08:39 - 2017-09-13 08:40 - 001511291 _____ C:\Users\GG\Desktop\Newsletter09.pdf 2017-09-12 10:38 - 2017-09-12 10:39 - 170879285 _____ C:\Users\GG\Desktop\Install_rekordbox_x64_5_0_0.zip 2017-09-09 09:50 - 2017-09-12 22:15 - 000003102 _____ C:\WINDOWS\System32\Tasks\BDAntiCryptoWallTask 2017-09-07 20:58 - 2017-09-07 20:58 - 009766054 _____ C:\Users\GG\Desktop\7c1108c5527f12e79a2f81c88334425e.pdf 2017-09-07 19:54 - 2017-09-07 19:54 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2017-09-07 09:27 - 2017-09-07 13:44 - 000003538 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher 2017-09-07 09:14 - 2017-09-07 09:14 - 000003562 _____ C:\WINDOWS\System32\Tasks\ATK Package 36D18D69AFC3 2017-09-07 09:14 - 2017-09-07 09:14 - 000002790 _____ C:\WINDOWS\System32\Tasks\ATK Package A22126881260 2017-09-03 18:26 - 2017-09-03 18:26 - 000329040 _____ C:\Users\GG\Desktop\Grille-Entrainement-Igny.pdf 2017-09-03 10:16 - 2017-08-02 04:34 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2017-09-03 10:16 - 2017-08-02 03:47 - 000865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2017-09-03 10:16 - 2017-07-22 20:34 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsium.dll 2017-09-03 10:16 - 2017-07-22 19:32 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsium.dll 2017-09-03 10:16 - 2017-07-17 21:53 - 004298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-09-03 10:16 - 2017-07-17 01:55 - 003551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-09-03 10:16 - 2017-07-14 01:03 - 002013528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-09-03 10:16 - 2017-07-12 22:29 - 000420440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll 2017-09-03 10:16 - 2017-07-12 22:29 - 000075440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll 2017-09-03 10:16 - 2017-07-12 22:25 - 000308872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll 2017-09-03 10:16 - 2017-07-12 22:25 - 000066112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll 2017-09-03 10:16 - 2017-07-08 21:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe 2017-09-03 10:16 - 2017-07-08 20:43 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe 2017-09-03 10:16 - 2017-07-08 20:30 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll 2017-09-03 10:16 - 2017-07-08 20:20 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-09-03 10:16 - 2017-07-08 19:25 - 001436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-09-03 10:16 - 2017-07-08 19:00 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-09-03 10:16 - 2017-07-08 05:14 - 000100184 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\disk.sys 2017-09-02 11:47 - 2017-09-02 11:48 - 155168536 _____ (Microsoft Corporation) C:\Users\GG\Desktop\msert.exe 2017-09-01 10:11 - 2017-09-01 10:11 - 000062464 _____ C:\Users\GG\Desktop\calendrier-vacances-2017-2018-semestriel-zone-c.xls 2017-08-31 18:51 - 2017-08-31 18:51 - 000000034 _____ C:\WINDOWS\AvEmUpdate.ini 2017-08-31 18:51 - 2017-08-31 18:51 - 000000000 ____D C:\Users\GG\AppData\Roaming\AVAST Software 2017-08-31 18:51 - 2017-08-31 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-08-31 18:51 - 2017-08-31 18:50 - 001016384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000590880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000361336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000343296 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000320528 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000199312 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000198976 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000147784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000057736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-08-31 18:51 - 2017-08-31 18:50 - 000047016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-08-31 18:50 - 2017-08-31 18:50 - 000401488 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-08-31 18:50 - 2017-08-31 18:50 - 000000000 ____D C:\Program Files\AVAST Software 2017-08-31 18:32 - 2017-08-31 18:34 - 290536200 _____ (AVAST Software) C:\Users\GG\Desktop\avast_free_antivirus_setup_offline.exe 2017-08-31 08:44 - 2017-08-31 08:44 - 000193311 _____ C:\Users\GG\Desktop\2017-2018 Calendrier.pdf 2017-08-29 13:50 - 2017-09-10 14:58 - 002879360 _____ C:\Users\GG\ZHPCleaner.exe 2017-08-29 13:49 - 2017-09-11 09:45 - 002837888 _____ C:\Users\GG\ZHPDiag3.exe 2017-08-29 10:15 - 2017-08-29 10:15 - 004035389 _____ C:\Users\GG\Desktop\Doonuts St Michel.mp4 2017-08-28 08:04 - 2017-08-28 08:04 - 084773869 _____ C:\Users\GG\Desktop\Hommage à Angela, 13 ans, tuée dans une pizzeria par une voi.mp4 2017-08-25 19:53 - 2017-08-25 19:53 - 009112658 _____ C:\Users\GG\Desktop\Comment faire une inclusion avec de la résine de coulée transparente.mp4 2017-08-25 08:55 - 2017-08-25 08:55 - 000006223 _____ C:\Users\GG\Desktop\iban_M_GERALD_LEBRANCHU_00080452440.pdf 2017-08-24 21:43 - 2017-08-24 21:43 - 000000000 ____D C:\WINDOWS\SysWOW64\NV 2017-08-24 21:43 - 2017-08-24 21:43 - 000000000 ____D C:\WINDOWS\system32\NV 2017-08-24 21:43 - 2017-08-22 00:33 - 000135800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2017-08-24 21:40 - 2017-08-22 02:40 - 040240248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 035881592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 035314112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 028985976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 023132184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 021405440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 018849272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 015409088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2017-08-24 21:40 - 2017-08-22 02:40 - 013782904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 012225984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 011692528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 010072768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 003802048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 003354560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 001988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438541.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 001597888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438541.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 001067456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 001005176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000972920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000924280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000690320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000578056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000306112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvkflt.sys 2017-08-24 21:40 - 2017-08-22 02:40 - 000154208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000132072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2017-08-24 21:40 - 2017-08-22 02:40 - 000038520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys 2017-08-24 21:40 - 2017-08-22 02:40 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2017-08-24 21:40 - 2017-08-22 02:40 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json 2017-08-22 07:58 - 2017-08-22 07:58 - 000000000 ___HD C:\$AV_ASW 2017-08-17 12:55 - 2017-08-22 02:40 - 000044190 _____ C:\WINDOWS\system32\nvinfo.pb 2017-08-17 12:55 - 2017-08-10 02:22 - 001988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438528.dll 2017-08-17 12:55 - 2017-08-10 02:22 - 001598072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438528.dll 2017-08-17 12:48 - 2017-07-26 19:09 - 000048064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-09-13 11:03 - 2017-03-26 11:43 - 000000000 ____D C:\Users\GG\AppData\Roaming\ZHP 2017-09-13 10:58 - 2014-12-02 03:39 - 000000000 ____D C:\ProgramData\NVIDIA 2017-09-13 10:56 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-09-13 10:55 - 2017-03-06 09:54 - 000253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-09-13 10:55 - 2015-12-03 16:08 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software 2017-09-13 10:39 - 2014-12-23 08:41 - 000000000 ____D C:\Users\GG\AppData\Local\CrashDumps 2017-09-13 10:19 - 2014-12-08 15:52 - 000004460 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2017-09-13 10:19 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-09-13 10:19 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\Macromed 2017-09-13 08:55 - 2016-08-26 16:38 - 000000000 ____D C:\Users\GG\AppData\LocalLow\Adblock Plus for IE 2017-09-13 08:38 - 2014-12-02 07:58 - 000003924 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1A626FCD-5E86-4461-A130-F4C023019069} 2017-09-13 08:36 - 2017-03-26 11:38 - 000000000 ____D C:\AdwCleaner 2017-09-12 20:20 - 2017-01-31 15:49 - 000000000 ____D C:\Users\GG\AppData\Roaming\PioneerLog 2017-09-12 08:44 - 2017-02-08 07:53 - 000004172 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-09-11 09:45 - 2014-12-02 03:46 - 000000000 ____D C:\Users\GG 2017-09-11 09:28 - 2014-12-22 21:47 - 000000000 ____D C:\Users\GG\AppData\Local\Pinnacle 2017-09-11 09:27 - 2017-03-25 19:14 - 000006736 _____ C:\Users\GG\AppData\Roaming\GEGEPING.MTBF.txt 2017-09-11 09:27 - 2014-12-22 21:49 - 000000349 _____ C:\Users\Public\Documents\PCLECHAL.INI 2017-09-10 20:19 - 2014-11-29 17:45 - 000003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1107857910-2696304233-3831506163-1002 2017-09-10 20:13 - 2014-12-02 03:39 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys 2017-09-10 19:47 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf 2017-09-10 14:58 - 2017-03-06 14:55 - 000000000 ____D C:\ProgramData\Unchecky 2017-09-08 19:24 - 2014-12-14 11:08 - 003632640 ___SH C:\Users\GG\Desktop\Thumbs.db 2017-09-08 19:14 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-09-08 10:29 - 2014-11-29 17:37 - 000000000 ____D C:\Users\GG\AppData\Local\Packages 2017-09-08 09:59 - 2014-09-24 17:26 - 001817064 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-09-08 09:59 - 2014-09-24 16:41 - 000806842 _____ C:\WINDOWS\system32\perfh00C.dat 2017-09-08 09:59 - 2014-09-24 16:41 - 000156662 _____ C:\WINDOWS\system32\perfc00C.dat 2017-09-07 09:27 - 2012-08-17 02:53 - 000000000 ____D C:\Program Files (x86)\ASUS 2017-09-07 09:14 - 2012-08-17 02:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2017-09-07 09:06 - 2016-08-02 06:40 - 000000000 ____D C:\ProgramData\ASUS 2017-09-07 08:36 - 2013-08-22 15:25 - 000262144 ___SH C:\WINDOWS\system32\config\BBI 2017-09-06 19:56 - 2013-05-06 16:59 - 000000000 ____D C:\Program Files\DIFX 2017-09-03 11:55 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\rescache 2017-09-03 10:21 - 2013-08-22 17:36 - 000000000 ___RD C:\WINDOWS\ToastData 2017-09-03 10:19 - 2012-07-26 09:59 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-09-01 08:20 - 2017-04-12 19:33 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-08-31 18:49 - 2014-11-30 22:55 - 000000000 ____D C:\ProgramData\AVAST Software 2017-08-31 18:41 - 2017-05-14 11:51 - 002607448 _____ C:\WINDOWS\ntbtlog.txt 2017-08-29 14:12 - 2017-04-23 08:58 - 000000000 _____ C:\WINDOWS\SysWOW64\last.dump 2017-08-27 07:54 - 2014-11-30 17:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-08-26 14:28 - 2013-08-22 17:36 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2017-08-26 13:46 - 2016-07-12 07:56 - 000028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys 2017-08-26 13:06 - 2014-12-03 07:24 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-08-24 21:43 - 2016-03-30 20:09 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2017-08-24 21:43 - 2014-12-02 03:38 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2017-08-24 21:21 - 2017-05-23 09:57 - 000003814 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:21 - 2016-10-08 12:29 - 000003852 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:21 - 2014-12-02 03:38 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-08-24 21:20 - 2016-12-15 20:45 - 000004146 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:20 - 2014-12-02 03:38 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2017-08-24 21:19 - 2016-10-08 12:28 - 000003738 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:19 - 2016-10-08 12:28 - 000003738 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:19 - 2016-10-08 12:28 - 000003730 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:19 - 2016-10-08 12:28 - 000003554 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-24 21:19 - 2016-10-08 12:28 - 000003494 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-22 02:40 - 2017-07-24 20:55 - 018704744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2017-08-22 02:40 - 2017-05-23 10:09 - 014687256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2017-08-22 02:40 - 2016-10-28 20:28 - 017807096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2017-08-22 02:40 - 2016-10-28 20:28 - 003692216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2017-08-22 02:40 - 2016-10-08 12:42 - 004188872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2017-08-22 02:40 - 2016-10-08 12:42 - 000491720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2017-08-22 02:40 - 2016-10-08 12:42 - 000407064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2017-08-22 02:40 - 2016-10-08 12:42 - 000149040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2017-08-22 02:40 - 2014-11-30 22:03 - 000171384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 006463424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 002479224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 001762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 000549312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 000392312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 000082040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2017-08-22 01:10 - 2016-10-08 12:49 - 000069752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2017-08-22 00:54 - 2016-10-08 12:28 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2017-08-19 09:10 - 2016-10-08 12:49 - 008142301 _____ C:\WINDOWS\system32\nvcoproc.bin 2017-08-18 06:37 - 2016-10-08 12:29 - 001923008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2017-08-18 06:37 - 2016-10-08 12:29 - 001755072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2017-08-18 06:37 - 2016-10-08 12:29 - 001505728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2017-08-18 06:37 - 2016-10-08 12:29 - 001317312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2017-08-18 06:37 - 2016-10-08 12:29 - 000121280 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll 2017-08-18 06:36 - 2017-06-30 08:47 - 000179136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2017-08-18 06:36 - 2017-06-30 08:47 - 000146368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2017-08-17 18:26 - 2017-04-08 09:59 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat ==================== Fichiers à la racine de certains dossiers ======= 2017-03-25 19:14 - 2017-09-11 09:27 - 000006736 _____ () C:\Users\GG\AppData\Roaming\GEGEPING.MTBF.txt 2014-11-29 17:40 - 2014-12-07 20:04 - 000000401 _____ () C:\Users\GG\AppData\Roaming\sp_data.sys 2015-12-26 23:54 - 2015-12-26 23:54 - 000000017 _____ () C:\Users\GG\AppData\Local\resmon.resmoncfg 2017-02-27 15:53 - 2017-04-20 15:14 - 000000188 _____ () C:\Users\GG\AppData\Local\Support.ini 2015-04-06 16:19 - 2015-04-06 16:19 - 000000000 ____H () C:\ProgramData\DP45977C.lfl 2016-12-15 20:45 - 2017-01-24 21:14 - 000007170 _____ () C:\ProgramData\NvTelemetryContainer.log 2016-12-15 20:45 - 2017-01-24 10:25 - 000005110 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1 2012-08-17 02:52 - 2012-07-30 08:03 - 000000217 _____ () C:\ProgramData\SetStretch.cmd 2012-08-17 02:52 - 2009-07-22 12:04 - 000024576 _____ () C:\ProgramData\SetStretch.exe Fichiers à déplacer ou supprimer: ==================== C:\Users\GG\ZHPCleaner.exe C:\Users\GG\ZHPDiag3.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-09-02 10:00 ==================== Fin de FRST.txt ============================