Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12.02.2018 Exécuté par Marie-Laure (administrateur) sur DESKTOP-CFM2UPN (13-02-2018 20:12:46) Exécuté depuis C:\Users\Marie-Laure\Desktop Profils chargés: Marie-Laure (Profils disponibles: defaultuser0 & Marie-Laure) Platform: Windows 10 Home Version 1709 16299.192 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Performix LLC) C:\Program Files (x86)\Adguard\AdguardSvc.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe (Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (BitTorrent Inc.) C:\Users\Marie-Laure\AppData\Roaming\uTorrent\uTorrent.exe (Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe (Spotify Ltd) C:\Users\Marie-Laure\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Marie-Laure\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Performix LLC) C:\Program Files (x86)\Adguard\Adguard.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (BitTorrent Inc.) C:\Users\Marie-Laure\AppData\Roaming\uTorrent\updates\3.5.1_44332\utorrentie.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (BitTorrent Inc.) C:\Users\Marie-Laure\AppData\Roaming\uTorrent\updates\3.5.1_44332\utorrentie.exe (Spotify Ltd) C:\Users\Marie-Laure\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Marie-Laure\AppData\Roaming\Spotify\Spotify.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Spotify Ltd) C:\Users\Marie-Laure\AppData\Roaming\Spotify\Spotify.exe () C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe (Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe (Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Photoshop.exe () C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\Plug-ins\Spaces\Adobe Spaces Helper.exe () C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\Plug-ins\Spaces\Adobe Spaces Helper.exe () C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\Plug-ins\Spaces\Adobe Spaces Helper.exe (Node.js) C:\Program Files\Adobe\Adobe Photoshop CC 2018\node.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2018\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Marie-Laure\Desktop\FRST64 (2).exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39101.16720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1795912 2015-07-23] (NVIDIA Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2409944 2018-01-30] (Adobe Systems Incorporated) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [571928 2015-09-03] (Vimicro) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9288408 2016-12-06] (Piriform Ltd) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [uTorrent] => C:\Users\Marie-Laure\AppData\Roaming\uTorrent\uTorrent.exe [1981624 2017-12-28] (BitTorrent Inc.) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2102112 2017-11-09] (Sony) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [Spotify] => C:\Users\Marie-Laure\AppData\Roaming\Spotify\Spotify.exe [21091728 2018-02-01] (Spotify Ltd) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [Adobe Acrobat Synchronizer] => "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe" HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [Spotify Web Helper] => C:\Users\Marie-Laure\AppData\Roaming\Spotify\SpotifyWebHelper.exe [780688 2018-02-01] (Spotify Ltd) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\Run: [Adguard] => C:\Program Files (x86)\Adguard\Adguard.exe [5715728 2017-11-21] (Performix LLC) HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\...\RunOnce: [Application Restart #6] => C:\Program Files (x86)\Tuto.com\Tuto.com.exe [1146368 2017-11-23] (The NWJS Community) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{1b30ed7c-b11e-4c2e-b266-65716de32393}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{7717a512-adcf-4f6e-a5fc-98a326ac552b}: [DhcpNameServer] 212.27.40.240 212.27.40.241 Tcpip\..\Interfaces\{fb2a4134-333d-450e-afbc-e592eac13eef}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/ HKU\S-1-5-21-2934732522-1501798252-4208115967-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2016-12-26] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2016-12-26] (AO Kaspersky Lab) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: v9wwd7dc.default-1515590725443 FF ProfilePath: C:\Users\Marie-Laure\AppData\Roaming\Mozilla\Firefox\Profiles\v9wwd7dc.default-1515590725443 [2018-02-13] FF HKLM\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-10-15] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_28_0_0_161.dll [2018-02-08] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-01-30] (Adobe Systems) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-02-08] () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [Pas de fichier] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-01-30] (Adobe Systems) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] Chrome: ======= CHR Profile: C:\Users\Marie-Laure\AppData\Local\Google\Chrome\User Data\Default [2018-02-13] CHR Extension: (wanteeed) - C:\Users\Marie-Laure\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2018-02-07] CHR Extension: (iGraal) - C:\Users\Marie-Laure\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm [2018-02-07] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Marie-Laure\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-02-07] CHR Extension: (Chrome Media Router) - C:\Users\Marie-Laure\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-02-07] CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib CHR HKLM-x32\...\Chrome\Extension: [ccjleegmemocfpghkhpjmiccjcacackp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [dgjepfldodmdfmdidhhgamnklbdibndi] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [129296 2017-11-21] (Performix LLC) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-01-30] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated) R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab) R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [2297104 2015-10-12] (Broadcom Corporation.) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [359848 2015-09-09] (Intel Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] () S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab) R2 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [249032 2015-06-03] (Synaptics Incorporated) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [1764296 2017-12-13] (Wacom Technology, Corp.) R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2201440 2017-11-09] (Sony) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [81000 2017-03-27] () R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [227144 2015-10-12] (Broadcom Corporation.) R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [7585280 2017-09-29] (Broadcom Corporation) R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab) R0 IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [88256 2015-06-09] (Intel Corporation) R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab) R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-07] (AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab) R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [78216 2016-05-31] (AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab) R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [197344 2017-10-16] (AO Kaspersky Lab) R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [520152 2017-07-25] (AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys [190832 2018-02-11] (AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1021656 2017-10-16] (AO Kaspersky Lab) R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57424 2016-12-26] (AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [45488 2016-05-31] (AO Kaspersky Lab) R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [230280 2018-01-31] (AO Kaspersky Lab) R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2018-02-05] (AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [253200 2018-01-31] (AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [107680 2018-01-31] (AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [173664 2018-02-01] (AO Kaspersky Lab) R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab) R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [136416 2017-03-17] (AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [199640 2017-07-25] (AO Kaspersky Lab) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2018-02-10] (Malwarebytes) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-06-03] (Synaptics Incorporated) R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [648872 2015-09-03] (Vimicro Corporation) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [115192 2017-11-21] (Wacom Technology, Corp.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-13 20:12 - 2018-02-13 20:13 - 000023318 _____ C:\Users\Marie-Laure\Desktop\FRST.txt 2018-02-13 19:05 - 2018-02-13 19:05 - 002405376 _____ (Farbar) C:\Users\Marie-Laure\Desktop\FRST64 (2).exe 2018-02-13 19:02 - 2018-02-13 19:04 - 000044169 _____ C:\Users\Marie-Laure\Downloads\Addition.txt 2018-02-13 19:00 - 2018-02-13 19:00 - 002405376 _____ (Farbar) C:\Users\Marie-Laure\Downloads\FRST64 (1).exe 2018-02-13 17:38 - 2018-02-13 17:38 - 033045367 _____ C:\Users\Marie-Laure\Downloads\49773.zip 2018-02-13 15:40 - 2018-02-13 15:40 - 001321783 _____ C:\Users\Marie-Laure\Downloads\151853283684279247.pdf 2018-02-13 11:28 - 2018-02-13 11:28 - 000001060 _____ C:\Users\Marie-Laure\Desktop\Lightroom CC.lnk 2018-02-13 11:28 - 2018-02-13 11:28 - 000001060 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom CC.lnk 2018-02-13 11:07 - 2018-02-13 11:07 - 000001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2018.lnk 2018-02-13 10:43 - 2018-02-13 10:43 - 000043940 _____ C:\Users\Marie-Laure\Downloads\MonReleveDeCarriere (1).pdf 2018-02-13 10:42 - 2018-02-13 10:42 - 000043940 _____ C:\Users\Marie-Laure\Downloads\MonReleveDeCarriere.pdf 2018-02-13 09:53 - 2018-02-13 11:20 - 000000000 ____D C:\Users\Marie-Laure\Documents\suppression entreprise 2018-02-13 09:38 - 2018-02-13 15:22 - 000000000 ____D C:\Users\Marie-Laure\AppData\LocalLow\uTorrent 2018-02-12 11:43 - 2018-02-12 11:43 - 002762327 _____ C:\Users\Marie-Laure\Downloads\60451.zip 2018-02-10 18:13 - 2018-02-10 18:13 - 000147424 _____ C:\Users\Marie-Laure\Desktop\ZHPDiag.txt 2018-02-10 18:09 - 2018-02-10 18:09 - 000000871 _____ C:\Users\Marie-Laure\Desktop\ZHPDiag.lnk 2018-02-10 18:08 - 2018-02-10 18:08 - 002989952 _____ C:\Users\Marie-Laure\Downloads\ZHPDiag3.exe 2018-02-08 16:52 - 2018-02-08 16:54 - 106056165 _____ C:\Users\Marie-Laure\Downloads\77891.zip 2018-02-07 16:59 - 2018-02-07 16:59 - 003056000 _____ C:\Users\Marie-Laure\ZHPCleaner.exe 2018-02-05 16:25 - 2018-02-05 16:26 - 000000000 ____D C:\Users\Marie-Laure\Documents\brush photoshop 2018-02-05 16:12 - 2018-02-07 17:25 - 000001991 _____ C:\Users\Marie-Laure\Desktop\ZHPCleaner.txt 2018-02-05 15:59 - 2018-02-05 15:59 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-02-05 15:59 - 2018-02-05 15:59 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-02-05 15:54 - 2018-02-05 15:54 - 001622528 _____ C:\Users\Marie-Laure\Downloads\ResetBrowser.exe 2018-02-05 15:53 - 2018-02-07 16:59 - 000000744 _____ C:\Users\Marie-Laure\Desktop\ZHPCleaner.lnk 2018-02-05 15:51 - 2018-02-05 15:51 - 003055488 _____ C:\Users\Marie-Laure\Downloads\ZHPCleaner.exe 2018-02-05 15:49 - 2018-02-05 15:49 - 000073318 _____ C:\Users\Marie-Laure\Downloads\curling_brushes-504f21174b55d.zip 2018-02-05 15:49 - 2012-09-10 08:46 - 000061377 _____ C:\Users\Marie-Laure\Desktop\CurlingBrushes.abr 2018-02-05 15:47 - 2012-10-20 12:11 - 000256631 _____ C:\Users\Marie-Laure\Desktop\abr_210.abr 2018-02-05 15:46 - 2018-02-05 15:46 - 000176237 _____ C:\Users\Marie-Laure\Downloads\handmade_brushes-50eea39c129cf.rar 2018-02-05 11:00 - 2018-02-05 11:00 - 000087584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2018-02-04 11:25 - 2017-03-27 07:01 - 000081000 _____ () C:\WINDOWS\system32\Drivers\adgnetworkwfpdrv.sys 2018-02-04 11:24 - 2018-02-13 20:13 - 000000000 ____D C:\ProgramData\Adguard 2018-02-04 11:24 - 2018-02-04 11:24 - 000001002 _____ C:\Users\Public\Desktop\Adguard.lnk 2018-02-04 11:24 - 2018-02-04 11:24 - 000000283 _____ C:\WINDOWS\SysWOW64\Drivers\vwifikerneldrv.sys 2018-02-04 11:24 - 2018-02-04 11:24 - 000000283 _____ C:\WINDOWS\SysWOW64\d3dx9_11.dll.tmp 2018-02-04 11:24 - 2018-02-04 11:24 - 000000283 _____ C:\ProgramData\fontcacheev1.dat 2018-02-04 11:24 - 2018-02-04 11:24 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\Performix LLC 2018-02-04 11:24 - 2018-02-04 11:24 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Performix_LLC 2018-02-04 11:23 - 2018-02-13 09:40 - 000000000 ____D C:\Program Files (x86)\Adguard 2018-02-04 11:23 - 2018-02-04 11:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adguard 2018-02-04 11:16 - 2018-02-04 11:16 - 000173328 _____ C:\Users\Marie-Laure\Downloads\adguardInstaller.exe 2018-02-04 11:08 - 2018-02-04 11:08 - 000001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2018-02-04 11:08 - 2018-02-04 11:08 - 000001290 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2018-02-03 10:49 - 2018-02-03 10:49 - 000114145 _____ C:\Users\Marie-Laure\Downloads\E-Relev_s PEL Annuel (03_01_2018)_1259582534.pdf 2018-02-03 10:49 - 2018-02-03 10:49 - 000113333 _____ C:\Users\Marie-Laure\Downloads\Relev_ de Facturation - 2017(09_01_2018)_1260155215.pdf 2018-02-01 18:33 - 2018-02-01 18:34 - 036963331 _____ C:\Users\Marie-Laure\Downloads\54791.zip 2018-02-01 16:43 - 2018-02-01 16:43 - 000520997 _____ C:\Users\Marie-Laure\Desktop\preference wacm.wacomprefs 2018-02-01 15:29 - 2018-02-01 15:29 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablette Wacom 2018-02-01 15:26 - 2018-02-01 15:26 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Wacom 2018-02-01 15:26 - 2018-02-01 15:26 - 000000000 ____D C:\Users\Marie-Laure\.android 2018-02-01 14:58 - 2018-02-01 14:58 - 007079610 _____ C:\Users\Marie-Laure\Downloads\72481.zip 2018-01-31 18:48 - 2018-01-31 20:05 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\com.adobe.AdobeMuseCC.2018.0 2018-01-31 18:48 - 2018-01-31 18:48 - 000001021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Muse CC 2018.lnk 2018-01-31 18:29 - 2018-01-31 18:29 - 000001109 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2018.lnk 2018-01-31 11:15 - 2018-02-01 14:25 - 000173664 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys 2018-01-31 11:15 - 2018-01-31 11:15 - 000253200 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys 2018-01-31 11:15 - 2018-01-31 11:15 - 000230280 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys 2018-01-31 11:15 - 2018-01-31 11:15 - 000107680 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys 2018-01-30 10:43 - 2018-01-30 10:43 - 001155257 _____ C:\Users\Marie-Laure\Downloads\41945.zip 2018-01-29 15:10 - 2018-01-29 15:10 - 000658107 _____ C:\Users\Marie-Laure\Downloads\63331.zip 2018-01-29 11:34 - 2018-01-29 11:34 - 000003612 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-CFM2UPN-Marie-Laure 2018-01-29 10:21 - 2018-01-29 10:21 - 000001296 _____ C:\Users\Marie-Laure\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tuto.com.lnk 2018-01-26 21:34 - 2018-01-26 21:34 - 000208383 _____ C:\Users\Marie-Laure\Downloads\63631.zip 2018-01-26 16:15 - 2018-01-26 16:15 - 000579062 _____ C:\Users\Marie-Laure\Downloads\67121.zip 2018-01-23 17:01 - 2018-01-23 17:01 - 000014168 _____ C:\Users\Marie-Laure\Downloads\SCI DU VAL DE L'AISNE - SALAIRE 10 2017 Bulletin de paie (1).pdf 2018-01-23 15:18 - 2018-01-23 15:19 - 000014168 _____ C:\Users\Marie-Laure\Downloads\SCI DU VAL DE L'AISNE - SALAIRE 10 2017 Bulletin de paie.pdf 2018-01-23 15:11 - 2011-02-21 14:47 - 000000000 ____D C:\Users\Marie-Laure\Desktop\__MACOSX 2018-01-23 15:11 - 2011-02-21 14:42 - 000004509 _____ C:\Users\Marie-Laure\Desktop\Satellite_License.txt 2018-01-23 15:11 - 2011-02-21 14:31 - 000032652 _____ C:\Users\Marie-Laure\Desktop\Satellite-Oblique.otf 2018-01-23 15:11 - 2011-02-21 14:28 - 000030676 _____ C:\Users\Marie-Laure\Desktop\Satellite.otf 2018-01-23 15:09 - 2018-01-23 15:10 - 000037939 _____ C:\Users\Marie-Laure\Downloads\Satellite.zip 2018-01-23 10:47 - 2018-01-23 10:47 - 037501506 _____ C:\Users\Marie-Laure\Downloads\31432.zip 2018-01-22 20:47 - 2018-01-22 20:49 - 063483904 _____ C:\Users\Marie-Laure\Downloads\calibre-3.15.0.msi 2018-01-22 19:54 - 2018-01-22 19:55 - 029519552 _____ (Icecream Apps ) C:\Users\Marie-Laure\Downloads\ebook_reader_setup (1).exe 2018-01-22 19:40 - 2018-01-22 19:41 - 000000000 ____D C:\Users\Marie-Laure\Documents\My Digital Editions 2018-01-22 19:40 - 2018-01-22 19:40 - 000002036 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Digital Editions 4.5.lnk 2018-01-22 19:40 - 2018-01-22 19:40 - 000002006 _____ C:\Users\Public\Desktop\Adobe Digital Editions 4.5.lnk 2018-01-22 19:40 - 2018-01-22 19:40 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Adobe_Systems_Incorporate 2018-01-22 19:40 - 2018-01-22 19:40 - 000000000 ____D C:\Users\Marie-Laure\Adobe Digital Editions 4.5 2018-01-22 19:40 - 2018-01-22 19:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2018-01-22 19:39 - 2018-02-08 16:19 - 000004774 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-01-22 19:39 - 2018-01-22 19:39 - 008903376 _____ (Adobe Systems Incorporated) C:\Users\Marie-Laure\Downloads\ADE_4.5_Installer.exe 2018-01-22 16:57 - 2018-01-22 16:58 - 020788184 _____ (Adobe Systems Incorporated) C:\Users\Marie-Laure\Downloads\install_flash_player.exe 2018-01-15 18:19 - 2018-01-15 18:19 - 000045916 _____ C:\Users\Marie-Laure\Downloads\Snippet_3106D73B0.idms ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-13 20:13 - 2017-01-28 11:16 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\uTorrent 2018-02-13 20:12 - 2017-12-01 12:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-02-13 20:12 - 2017-10-05 16:46 - 000000000 ____D C:\FRST 2018-02-13 19:34 - 2017-01-16 09:39 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\Spotify 2018-02-13 19:04 - 2017-10-05 16:46 - 000039766 _____ C:\Users\Marie-Laure\Downloads\FRST.txt 2018-02-13 17:48 - 2017-01-15 10:59 - 000000033 _____ C:\Users\Marie-Laure\AppData\Roaming\AdobeWLCMCache.dat 2018-02-13 17:20 - 2017-01-12 14:23 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2018-02-13 15:26 - 2017-01-14 10:46 - 000000000 ___RD C:\Users\Marie-Laure\Creative Cloud Files 2018-02-13 15:26 - 2017-01-14 10:00 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Adobe 2018-02-13 15:25 - 2017-01-16 09:40 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Spotify 2018-02-13 15:21 - 2017-01-14 09:26 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\WTablet 2018-02-13 15:21 - 2016-12-28 22:10 - 000000000 __SHD C:\Users\Marie-Laure\IntelGraphicsProfiles 2018-02-13 15:20 - 2016-12-28 21:29 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2018-02-13 11:28 - 2017-01-14 10:25 - 000000000 ____D C:\Program Files\Adobe 2018-02-13 11:09 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-02-13 11:09 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-02-13 11:07 - 2017-01-14 10:43 - 000000000 ____D C:\Users\Marie-Laure\Documents\Adobe 2018-02-13 11:07 - 2016-12-28 20:40 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\Adobe 2018-02-13 11:02 - 2017-01-14 10:27 - 000000000 ____D C:\Program Files\Common Files\Adobe 2018-02-13 11:02 - 2017-01-14 10:17 - 000000000 ____D C:\ProgramData\Adobe 2018-02-13 10:22 - 2017-01-14 09:42 - 000000000 ____D C:\ProgramData\CanonIJPLM 2018-02-13 09:47 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-02-12 11:43 - 2017-10-30 17:21 - 000000000 ____D C:\Users\Marie-Laure\Documents\tuto.com 2018-02-11 16:06 - 2017-12-01 12:48 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-02-11 16:06 - 2016-12-28 22:06 - 000000000 ____D C:\ProgramData\NVIDIA 2018-02-10 18:10 - 2017-10-05 15:59 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\ZHP 2018-02-10 18:09 - 2017-10-05 15:59 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\ZHP 2018-02-10 16:26 - 2017-12-12 11:46 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2018-02-08 16:19 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-02-08 16:19 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-02-07 16:59 - 2017-12-01 12:29 - 000000000 ____D C:\Users\Marie-Laure 2018-02-07 10:57 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-02-06 17:21 - 2017-12-20 10:20 - 000007528 _____ C:\Users\Marie-Laure\Documents\MuseLog.txt 2018-02-06 03:49 - 2017-12-14 20:27 - 000835576 _____ C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-02-06 03:49 - 2017-12-14 20:27 - 000177648 _____ C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-02-05 16:34 - 2017-10-06 19:46 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2018-02-05 15:59 - 2016-12-28 22:19 - 000000000 ____D C:\Program Files (x86)\Google 2018-02-05 15:56 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2018-02-04 11:22 - 2016-12-28 21:52 - 000000000 ____D C:\ProgramData\Package Cache 2018-02-04 11:08 - 2017-01-14 10:17 - 000000000 ____D C:\Program Files (x86)\Adobe 2018-02-03 10:45 - 2017-02-03 09:55 - 000000000 ____D C:\Users\Marie-Laure\Documents\caf 2018-02-03 10:39 - 2017-01-31 13:14 - 000000000 ____D C:\Users\Marie-Laure\Documents\horaires MR lefevre 2018-02-01 15:32 - 2017-12-01 12:22 - 000413448 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-02-01 15:31 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-02-01 15:29 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF 2018-02-01 15:29 - 2017-01-14 09:26 - 000000000 ____D C:\Program Files\Tablet 2018-01-31 11:36 - 2017-11-30 09:21 - 000000000 ___DC C:\WINDOWS\Panther 2018-01-31 11:36 - 2017-10-05 15:25 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\CrashDumps 2018-01-31 11:36 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-01-31 10:37 - 2017-12-01 12:48 - 000003390 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2934732522-1501798252-4208115967-1001 2018-01-31 10:37 - 2016-12-28 20:43 - 000002429 _____ C:\Users\Marie-Laure\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-01-31 10:37 - 2016-12-28 20:43 - 000000000 ___RD C:\Users\Marie-Laure\OneDrive 2018-01-26 16:07 - 2017-01-28 22:07 - 000000000 ____D C:\Users\Marie-Laure\AppData\Roaming\vlc 2018-01-22 17:00 - 2016-07-16 12:47 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2018-01-20 16:52 - 2017-12-01 12:30 - 000000000 ____D C:\Users\Marie-Laure\AppData\Local\Packages 2018-01-19 17:54 - 2017-12-01 12:48 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task ==================== Fichiers à la racine de certains dossiers ======= 2018-02-04 11:24 - 2018-02-04 11:24 - 000000283 _____ () C:\ProgramData\fontcacheev1.dat 2018-02-07 16:59 - 2018-02-07 16:59 - 003056000 _____ () C:\Users\Marie-Laure\ZHPCleaner.exe 2017-09-29 18:54 - 2017-09-29 18:54 - 000003820 _____ () C:\Program Files\Common Files\csdkConfiguratorLog.txt 2017-01-15 10:59 - 2018-02-13 17:48 - 000000033 _____ () C:\Users\Marie-Laure\AppData\Roaming\AdobeWLCMCache.dat 2017-11-12 20:32 - 2017-11-12 20:34 - 049979264 _____ (Sony) C:\Users\Marie-Laure\AppData\Local\pcc.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2018-02-05 11:45 ==================== Fin de FRST.txt ============================