Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-11-2017 03 Exécuté par mélanie (administrateur) sur PORTABLEMEL (13-11-2017 16:48:15) Exécuté depuis C:\Users\mélanie\Desktop Profils chargés: mélanie (Profils disponibles: mélanie) Platform: Windows 10 Home Version 1607 14393.1770 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut non détecté(e)!) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (HP) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Andrea Vacondio) C:\Program Files\PDFsam Enhanced\creator-ws.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe () C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe (Clarus, Inc.) C:\Program Files (x86)\Clarus\Drive Manager\SZDrvSvcM.exe () C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe () C:\Windows\SysWOW64\NMSAccessU.exe (© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe (Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe (DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE (Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mep.exe (Clarus, Inc.) C:\Program Files (x86)\Clarus\Drive Manager\Drive Manager.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (2BrightSparks Pte. Ltd.) C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (ITknowledge24.com) C:\Program Files\ITknowledge24\Windows Defender Status Manager\wdsmgr.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Clarus, Inc.) C:\Program Files (x86)\Clarus\Drive Manager\SZDrvMonM.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Mozilla Corporation) C:\Users\mélanie\Desktop\Tor Browser\Browser\firefox.exe () C:\Users\mélanie\Desktop\Tor Browser\Browser\TorBrowser\Tor\tor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Mozilla Corporation) C:\Users\mélanie\Desktop\Tor Browser\Browser\firefox.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\EXCEL.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1608.2213.0_x64__8wekyb3d8bbwe\Calculator.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8515832 2015-08-19] (Realtek Semiconductor) HKLM\...\Run: [wdsmgr] => C:\Program Files\ITknowledge24\Windows Defender Status Manager\wdsmgr.exe [164352 2016-01-02] (ITknowledge24.com) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-17] (Intel Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [253344 2017-11-10] (AVAST Software) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-28] (Microsoft Corporation) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [490760 2013-08-07] (CyberLink Corp.) HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [430120 2015-08-03] (Hewlett-Packard Company) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation) HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\HP\HP 3D DriveGuard\AccelerometerST.exe [133952 2016-09-28] (HP) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-3735158444-3867349666-2694238293-1002\...\Run: [SmartSwitchPDLR.exe] => C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPDLR.exe [1037984 2017-05-20] (Samsung) HKU\S-1-5-21-3735158444-3867349666-2694238293-1002\...\MountPoints2: {6f62289a-c5e3-11e7-82c0-c48e8f9d68ed} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3735158444-3867349666-2694238293-1002\...\MountPoints2: {6f6228c8-c5e3-11e7-82c0-c48e8f9d68ed} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [] => [X] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Drive Manager Real-Time.lnk [2016-12-15] ShortcutTarget: Drive Manager Real-Time.lnk -> C:\Program Files (x86)\Clarus\Drive Manager\ABRTMonM.exe (Clarus, Inc.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4 Tcpip\..\Interfaces\{6b756a12-2984-4b39-8c5b-92aa24120acc}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{947e4e32-3f2c-4dda-8226-5ce11454d03c}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{a810d36c-0e9a-4fad-9c1a-1213539c1ef7}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131443947474384578&GUID=B63F026A-5312-4D13-A30A-F5467A6C675D HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131443947474424434&GUID=B63F026A-5312-4D13-A30A-F5467A6C675D HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131361382951353802&GUID=B63F026A-5312-4D13-A30A-F5467A6C675D HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/9 HKU\S-1-5-21-3735158444-3867349666-2694238293-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131443947474432068&GUID=B63F026A-5312-4D13-A30A-F5467A6C675D SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxps://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-d3de8007&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxps://www.bing.com/search?FORM=INCOH2&PC=IC05&PTAG=ICO-d3de8007&q={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-21] (HP Inc.) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-12-05] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-05] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.) Handler-x32: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files (x86)\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223 [2017-11-13] FF Keyword.URL: Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223 -> user_pref("keyword.URL", true); FF Extension: (Dictionnaire français) - C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org [2017-10-05] FF Extension: (Grammalecte [fr]) - C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223\Extensions\French-GC@grammalecte.net.xpi [2017-11-11] FF Extension: (Français Language Pack) - C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223\Extensions\langpack-fr@firefox.mozilla.org.xpi [2017-10-05] FF Extension: (Avast SafePrice) - C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223\Extensions\sp@avast.com.xpi [2017-10-14] FF Extension: (Avast Online Security) - C:\Users\mélanie\AppData\Roaming\Mozilla\Firefox\Profiles\vwkjo8ec.default-1492605433223\Extensions\wrc@avast.com.xpi [2017-10-08] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-10-08] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-10-08] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-02-11] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-02-11] (Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-12-05] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-05] (Oracle Corporation) FF Plugin-x32: @logitech.com/HarmonyRemote,version=1.0.0 -> C:\Program Files (x86)\Logitech\Harmony Remote Driver\NprtHarmonyPlugin.dll [2012-09-28] (Logitech Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-07-31] (Adobe Systems Inc.) FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [Pas de fichier] FF Plugin-x32: PDFsam Enhanced -> C:\Program Files (x86)\PDFsam Enhanced\np-previewer.dll [2015-11-11] (Andrea Vacondio) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2017-07-31] (Adobe Systems Inc.) Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [omaonpoimgkmbllpdihbnmgphjoipdhf] - C:\Program Files (x86)\Logitech\Harmony Remote Driver\harmony_chrome.crx [2016-02-26] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928 2017-11-10] (AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416 2017-11-10] (AVAST Software) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [98816 2014-10-11] () [Fichier non signé] R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2016-08-18] () [Fichier non signé] R2 EpsonScanSvc; C:\windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) S3 HotSpotSrv; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [372408 2013-12-10] (Hewlett-Packard Development Company, L.P.) R2 HP Hotkey Service; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe [850144 2015-08-03] (Hewlett-Packard Company) R2 hpsrv; C:\WINDOWS\system32\Hpservice.exe [38728 2016-10-11] (HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192200 2017-07-26] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-17] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [356336 2017-01-30] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation) R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [Fichier non signé] R2 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (Seiko Epson Corporation) R2 NMSAccess; C:\WINDOWS\SysWOW64\NMSAccessU.exe [71096 2009-01-12] () S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH) S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH) R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-01-15] (pdfforge GmbH) R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.) R2 PDF Architect 5 Manager; C:\ProgramData\pdfforge\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe [985904 2017-02-01] (© pdfforge GmbH.) S3 PDFsam Enhanced; C:\Program Files\PDFsam Enhanced\ws.exe [2318912 2015-11-11] (Andrea Vacondio) S3 PDFsam Enhanced CrashHandler; C:\Program Files\PDFsam Enhanced\crash-handler-ws.exe [921664 2015-11-11] (Andrea Vacondio) R2 PDFsam Enhanced Creator; C:\Program Files\PDFsam Enhanced\creator-ws.exe [734272 2015-11-11] (Andrea Vacondio) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312064 2015-08-19] (Realtek Semiconductor) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (DEVGURU Co., LTD.) R2 SynoDrService; C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe [384072 2013-10-09] () R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [256224 2017-09-06] (Synaptics Incorporated) R2 SZDrvSvc_General; C:\Program Files (x86)\Clarus\Drive Manager\SZDrvSvcM.exe [24792 2016-05-12] (Clarus, Inc.) R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248736 2015-05-11] () [Fichier non signé] R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-08-08] (Microsoft Corporation) S2 MicrosoftCRLSrv; C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig617.dll [X] <==== ATTENTION ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [56128 2016-10-11] (HP) R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0312003.inf_amd64_95979589e54c6960\atikmdag.sys [26575368 2017-03-22] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0312003.inf_amd64_95979589e54c6960\atikmpag.sys [529304 2017-03-22] (Advanced Micro Devices, Inc.) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [183584 2017-11-10] (AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [321032 2017-11-10] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [198968 2017-11-10] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343288 2017-11-10] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57728 2017-11-10] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [47008 2017-11-10] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [148288 2017-11-10] (AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110376 2017-11-10] (AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84416 2017-11-10] (AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1026232 2017-11-10] (AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [455384 2017-11-10] (AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [203976 2017-11-10] (AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [364464 2017-11-10] (AVAST Software) R0 B863EECC; C:\WINDOWS\System32\drivers\B863EECC.sys [478392 2017-11-12] (Kaspersky Lab ZAO) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2017-01-16] (Samsung Electronics Co., Ltd.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2017-04-11] (Huawei Technologies Co., Ltd.) R0 hpdskflt; C:\WINDOWS\System32\DRIVERS\hpdskflt.sys [42312 2016-10-11] (HP) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2017-07-26] (Huawei Technologies Co., Ltd.) R3 ikbevent; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] () R3 imsevent; C:\WINDOWS\system32\DRIVERS\imsevent.sys [22728 2014-05-27] () R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD.sys [44744 2014-05-27] () R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [129312 2014-10-10] (Intel Corporation) R1 MpKsleb115124; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{17B242A9-645D-414A-8E50-BC6B3A758887}\MpKsleb115124.sys [58120 2017-11-13] (Microsoft Corporation) R3 mvdM23; C:\Program Files (x86)\Clarus\Drive Manager\mvdM23.sys [100912 2015-12-02] () S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [896768 2016-02-17] (Realtek ) R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [723920 2017-07-20] (Realtek Semiconductor Corporation) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [772336 2015-08-27] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [6804480 2017-05-03] (Realtek Semiconductor Corporation ) R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv64.sys [1063520 2017-02-23] (Sunplus Innovation Technology Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) NETSVCx32: HpSvc -> pas de chemin du fichier. NETSVCx32: WpSvc -> pas de chemin du fichier. ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-13 00:31 - 2017-11-13 00:33 - 000051979 _____ C:\Users\mélanie\Desktop\Addition.txt 2017-11-13 00:30 - 2017-11-13 16:49 - 000026418 _____ C:\Users\mélanie\Desktop\FRST.txt 2017-11-13 00:23 - 2017-11-13 00:23 - 000177662 _____ C:\Users\mélanie\Desktop\ZHPDiag.txt 2017-11-13 00:19 - 2017-11-13 00:29 - 002392576 _____ (Farbar) C:\Users\mélanie\Desktop\FRST64.exe 2017-11-13 00:19 - 2017-11-13 00:21 - 000000000 ____D C:\Users\mélanie\AppData\Roaming\ZHP 2017-11-13 00:19 - 2017-11-13 00:19 - 000000916 _____ C:\Users\mélanie\Desktop\ZHPDiag.lnk 2017-11-13 00:18 - 2017-11-13 00:19 - 002930560 _____ C:\Users\mélanie\Desktop\ZHPDiag3.exe 2017-11-12 22:14 - 2017-11-12 22:14 - 000000000 ____D C:\Users\mélanie\AppData\Local\Clarus 2017-11-12 18:44 - 2017-11-12 20:21 - 000000000 ____D C:\KVRT_Data 2017-11-12 18:44 - 2017-11-12 18:44 - 000478392 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\B863EECC.sys 2017-11-12 18:06 - 2017-11-12 18:06 - 000000000 ____D C:\Users\mélanie\Desktop\Nouveau dossier (2) 2017-11-12 18:01 - 2017-11-12 18:01 - 000000000 ____D C:\ProgramData\SWCUTemp 2017-11-12 17:44 - 2017-11-12 17:50 - 000000000 ____D C:\AdwCleaner 2017-11-12 17:38 - 2017-11-12 17:43 - 008261584 _____ (Malwarebytes) C:\Users\mélanie\Desktop\adwcleaner_7.0.4.0.exe 2017-11-12 17:04 - 2017-11-12 17:04 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\57616F26.sys 2017-11-12 16:59 - 2017-11-12 20:28 - 000000022 _____ C:\WINDOWS\S.dirmngr 2017-11-12 15:35 - 2017-11-12 16:20 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\94660526.sys 2017-11-12 15:34 - 2017-11-12 17:51 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2017-11-12 15:34 - 2017-11-12 17:38 - 000000000 ____D C:\Users\mélanie\Desktop\mbar 2017-11-12 15:34 - 2017-11-12 17:04 - 000192952 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2017-11-12 11:06 - 2017-11-12 11:06 - 000000000 ____D C:\Users\mélanie\Desktop\Quarantine 2017-11-12 06:50 - 2017-11-12 06:50 - 000000000 _____ C:\WINDOWS\system32\last.dump 2017-11-11 21:45 - 2017-11-13 16:48 - 000000000 ____D C:\FRST 2017-11-11 21:20 - 2016-07-16 12:41 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2017-11-11 20:16 - 2017-11-11 20:16 - 000000000 ____D C:\Users\mélanie\AppData\Local\ESET 2017-11-11 18:13 - 2017-11-11 18:13 - 000001071 _____ C:\Users\Public\Desktop\HiSuite.lnk 2017-11-11 18:13 - 2017-11-11 18:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite 2017-11-11 18:13 - 2017-11-11 18:13 - 000000000 ____D C:\Program Files (x86)\HiSuite 2017-11-11 18:09 - 2017-11-11 18:14 - 000000000 ____D C:\Users\mélanie\AppData\Local\Hisuite 2017-11-11 18:09 - 2017-11-11 18:09 - 000000000 ____D C:\Users\mélanie\Documents\HiSuite 2017-11-11 18:09 - 2017-07-26 08:58 - 002152176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFUpdate_01009.dll 2017-11-11 18:09 - 2017-07-26 08:58 - 001721576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll 2017-11-11 18:09 - 2017-07-26 08:58 - 001721576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01009.dll 2017-11-11 18:09 - 2017-07-26 08:58 - 001002728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winusbcoinstaller2.dll 2017-11-11 18:09 - 2017-07-26 08:58 - 000287232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbnet.sys 2017-11-11 18:09 - 2017-07-26 08:58 - 000226560 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys 2017-11-11 18:09 - 2017-07-26 08:58 - 000127360 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_cdcacm.sys 2017-11-11 18:09 - 2017-07-26 08:58 - 000116864 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_usbdev.sys 2017-11-11 18:09 - 2017-04-11 03:17 - 000018944 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbccgpfilter.sys 2017-11-10 08:01 - 2017-11-10 08:01 - 000000000 ____D C:\WINDOWS\Panther 2017-11-10 06:57 - 2017-11-10 06:56 - 000183584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2017-11-10 06:56 - 2017-11-10 06:56 - 000365168 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-11-09 15:39 - 2017-11-12 18:05 - 000000000 ____D C:\Users\mélanie\Desktop\Nouveau dossier 2017-11-09 15:39 - 2017-11-09 15:39 - 000000000 ____D C:\Users\mélanie\Desktop\85 ans Maman 2017-10-31 17:44 - 2017-10-31 17:44 - 000000000 ____D C:\Users\mélanie\Scrivener ScratchPad 2017-10-31 17:14 - 2017-10-31 17:14 - 000000000 ____D C:\Users\mélanie\Documents\tuto scivener Sauvegarde.scriv 2017-10-31 12:58 - 2017-10-31 17:14 - 000000000 ____D C:\Users\mélanie\Documents\tuto scivener.scriv 2017-10-31 10:29 - 2017-10-31 10:29 - 000000000 ____D C:\Users\mélanie\AppData\Local\Scrivener 2017-10-31 10:25 - 2017-10-31 10:25 - 000001704 _____ C:\Users\Public\Desktop\Scrivener.lnk 2017-10-31 10:25 - 2017-10-31 10:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scrivener 2017-10-31 10:24 - 2017-10-31 17:13 - 000000000 ____D C:\Program Files (x86)\Scrivener 2017-10-31 10:17 - 2017-10-31 10:27 - 000000000 ____D C:\Users\mélanie\Desktop\scr 2017-10-29 10:40 - 2017-10-29 10:40 - 000162884 _____ C:\Users\mélanie\Documents\fiche heures LIP.pdf 2017-10-25 02:35 - 2017-10-25 02:35 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple 2017-10-25 02:35 - 2017-10-25 02:35 - 000000000 ____D C:\Program Files (x86)\Apple Software Update 2017-10-19 08:34 - 2017-10-19 08:34 - 000155966 _____ C:\Users\mélanie\Desktop\attestation.pdf 2017-10-15 12:39 - 2017-10-15 12:39 - 000000000 ____D C:\Program Files (x86)\HP 2017-10-15 12:38 - 2017-10-15 12:39 - 000000000 ____D C:\Users\Default\AppData\Roaming\hpqLog 2017-10-15 12:38 - 2017-10-15 12:39 - 000000000 ____D C:\Users\Default User\AppData\Roaming\hpqLog 2017-10-15 12:38 - 2017-10-15 12:38 - 000000000 ____D C:\Users\Default\AppData\Roaming\Hewlett-Packard 2017-10-15 12:38 - 2017-10-15 12:38 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Hewlett-Packard 2017-10-15 12:38 - 2017-10-15 12:38 - 000000000 ____D C:\ProgramData\HP 2017-10-14 05:35 - 2017-11-06 18:28 - 000364912 _____ C:\WINDOWS\system32\FNTCACHE.DAT ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-13 16:46 - 2016-11-16 09:19 - 000000000 ____D C:\Users\mélanie\AppData\LocalLow\Mozilla 2017-11-13 16:46 - 2016-09-03 05:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-11-13 11:43 - 2016-01-02 13:58 - 000000000 ____D C:\Users\mélanie\AppData\Local\Packages 2017-11-13 10:39 - 2016-07-16 12:45 - 000000000 ____D C:\WINDOWS\INF 2017-11-13 09:33 - 2016-09-11 07:44 - 000005332 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for portablemel-mélanie portablemel 2017-11-12 20:33 - 2017-05-12 15:07 - 000000000 ____D C:\Program Files (x86)\ZHPFix 2017-11-12 20:32 - 2016-09-03 05:44 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-11-12 20:32 - 2016-01-02 13:58 - 000000000 __SHD C:\Users\mélanie\IntelGraphicsProfiles 2017-11-12 20:28 - 2017-06-11 20:54 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleFormélanie.job 2017-11-12 20:28 - 2016-09-03 06:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-11-12 18:35 - 2017-06-11 20:54 - 000003264 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleFormélanie 2017-11-12 17:51 - 2016-07-16 07:04 - 003932160 _____ C:\WINDOWS\system32\config\BBI 2017-11-12 16:57 - 2017-05-15 09:45 - 000002117 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-11-12 15:35 - 2017-04-07 12:46 - 000000000 ____D C:\ProgramData\Malwarebytes 2017-11-12 11:26 - 2016-01-02 14:41 - 000000000 ____D C:\Program Files\WinRAR 2017-11-12 10:53 - 2016-12-05 16:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-11-12 10:53 - 2016-12-05 16:10 - 000000000 ____D C:\Program Files (x86)\Java 2017-11-12 07:04 - 2016-10-27 13:03 - 000000000 ____D C:\Program Files\iPod 2017-11-11 21:03 - 2017-05-14 17:38 - 000490861 _____ C:\Users\mélanie\AppData\Local\census.cache 2017-11-11 21:01 - 2017-04-07 15:40 - 000143460 _____ C:\Users\mélanie\AppData\Local\ars.cache 2017-11-11 16:09 - 2016-09-03 05:47 - 003601652 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-11-11 16:09 - 2016-07-16 23:40 - 001627602 _____ C:\WINDOWS\system32\perfh00C.dat 2017-11-11 16:09 - 2016-07-16 23:40 - 000417270 _____ C:\WINDOWS\system32\perfc00C.dat 2017-11-10 07:49 - 2016-09-03 05:48 - 000000000 ____D C:\Users\mélanie 2017-11-10 06:57 - 2017-10-08 07:43 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2017-11-10 06:57 - 2017-10-08 07:42 - 000003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-11-10 06:56 - 2017-10-08 07:42 - 000455384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000364464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000203976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000148288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-11-10 06:56 - 2017-10-08 07:42 - 000047008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-11-10 06:55 - 2017-10-08 07:42 - 001026232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-11-10 06:55 - 2017-10-08 07:42 - 000343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-11-10 06:55 - 2017-10-08 07:42 - 000321032 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-11-10 06:55 - 2017-10-08 07:42 - 000198968 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-11-10 06:55 - 2017-10-08 07:42 - 000057728 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-11-08 05:03 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-11-08 05:01 - 2016-07-16 12:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-11-06 18:28 - 2017-04-07 14:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-11-06 18:28 - 2017-04-07 14:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-11-02 22:31 - 2017-09-28 23:08 - 000000000 ____D C:\Program Files\rempl 2017-11-01 08:45 - 2016-01-03 09:29 - 000000000 ____D C:\Users\mélanie\AppData\Roaming\vlc 2017-10-31 10:23 - 2016-01-04 09:43 - 000000000 ____D C:\Users\mélanie\AppData\Local\Adobe 2017-10-25 19:13 - 2017-07-13 21:41 - 000835568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-10-25 19:13 - 2017-07-13 21:41 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-10-25 02:39 - 2016-11-18 20:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2017-10-25 02:35 - 2016-10-27 13:02 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2017-10-16 21:11 - 2017-04-15 09:37 - 000000000 ____D C:\Users\mélanie\AppData\Local\CloudStation 2017-10-15 12:39 - 2014-12-04 17:36 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2017-10-15 12:38 - 2014-04-02 15:46 - 000000000 ____D C:\ProgramData\Package Cache 2017-10-15 12:37 - 2014-09-27 01:16 - 000000000 ____D C:\SWSETUP 2017-10-15 04:54 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\rescache 2017-10-14 19:27 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2017-10-14 05:39 - 2016-01-02 13:50 - 000000000 __RHD C:\Users\Public\AccountPictures ==================== Fichiers à la racine de certains dossiers ======= 2017-04-07 15:40 - 2017-11-11 21:01 - 000143460 _____ () C:\Users\mélanie\AppData\Local\ars.cache 2017-05-14 17:38 - 2017-11-11 21:03 - 000490861 _____ () C:\Users\mélanie\AppData\Local\census.cache 2017-04-07 14:32 - 2017-04-07 14:32 - 000000036 _____ () C:\Users\mélanie\AppData\Local\housecall.guid.cache 2017-04-15 07:38 - 2017-09-24 09:20 - 000007597 _____ () C:\Users\mélanie\AppData\Local\resmon.resmoncfg 2016-01-02 19:19 - 2016-01-02 19:20 - 000567424 _____ () C:\ProgramData\Hotkey_61_setup.log 2015-03-29 01:15 - 2016-01-02 18:58 - 014499320 _____ () C:\ProgramData\hpcsmmsilogs.log 2015-03-29 01:32 - 2015-03-29 01:32 - 001266054 _____ () C:\ProgramData\hpdam_install_log.txt 2015-03-29 01:32 - 2015-03-29 01:32 - 000574176 _____ () C:\ProgramData\HPFileSanitizer_Install_Log.txt Fichiers à déplacer ou supprimer: ==================== C:\Users\mélanie\ZHPDiag3.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-11-07 22:31 ==================== Fin de FRST.txt ============================