Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15.07.2018 Exécuté par Meyra (administrateur) sur LAPTOP-PVP49P5Q (15-07-2018 21:45:09) Exécuté depuis C:\Users\meyra\Desktop Profils chargés: defaultuser0 & Meyra (Profils disponibles: defaultuser0 & Meyra) Platform: Windows 10 Home Version 1709 16299.547 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\WINDOWS\System32\atiesrxx.exe (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\tbaseprovisioning.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RtkBtManServ.exe () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe () C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe (HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe (AMD) C:\WINDOWS\System32\atieclxx.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe (HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe (Discord Inc.) C:\Users\meyra\AppData\Local\Discord\app-0.0.301\Discord.exe (Discord Inc.) C:\Users\meyra\AppData\Local\Discord\app-0.0.301\Discord.exe (Discord Inc.) C:\Users\meyra\AppData\Local\Discord\app-0.0.301\Discord.exe (Discord Inc.) C:\Users\meyra\AppData\Local\Discord\app-0.0.301\Discord.exe (Microsoft Corporation) C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe (HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18052.11111.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Microsoft Corporation) C:\WINDOWS\splwow64.exe (Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Corporation) C:\WINDOWS\System32\wlanext.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe (HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe (Microsoft Corporation) C:\WINDOWS\SoftwareDistribution\Download\e6d6e0b5c0395b10e0b7d0c2e422acce\WindowsUpdateBox.exe (Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8903176 2016-10-14] (Realtek Semiconductor) HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [231640 2016-09-20] (Realtek Semiconductor Corporation) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8029064 2016-10-06] (Advanced Micro Devices, Inc.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-06-24] (AVAST Software) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324600 2017-04-25] (HP) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [701984 2017-07-13] (HP Inc.) HKU\S-1-5-21-729230261-3853840910-602469363-1000\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [519680 2017-09-29] (Microsoft Corporation) HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3199776 2018-04-03] (Valve Corporation) HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\Run: [McAfeeSafeConnect] => C:\Program Files (x86)\McAfee Safe Connect\McAfee Safe Connect.exe HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [17074688 2018-03-06] (Piriform Ltd) HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\Run: [Discord] => C:\Users\meyra\AppData\Local\Discord\app-0.0.301\Discord.exe [57816920 2018-04-30] (Discord Inc.) HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\MountPoints2: {1808ace8-2b83-11e8-9483-40b03496dd33} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\MountPoints2: {69d660c5-742a-11e7-946a-3ca067dfe5e8} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-729230261-3853840910-602469363-1001\...\MountPoints2: {e0fb3d50-756f-11e8-9492-40b03496dd33} - "F:\HiSuiteDownLoader.exe" SSODL: EldosMountNotificator-cbfs6 - {F3B52298-939A-4681-A424-23787AD24A29} - C:\windows\system32\cbfsMntNtf6.dll (/n software, Inc.) SSODL-x32: EldosMountNotificator-cbfs6 - {F3B52298-939A-4681-A424-23787AD24A29} - C:\windows\SysWOW64\cbfsMntNtf6.dll (/n software, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-02-07] ShortcutTarget: HP JumpStart Launch.lnk -> c:\WINDOWS\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico () GroupPolicyUsers\S-1-5-21-729230261-3853840910-602469363-1001\User: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5b1dcc8e-05bd-4210-8316-4459989d0e1e}: [DhcpNameServer] 172.22.14.1 Tcpip\..\Interfaces\{e7a45c57-7382-4283-b036-3232b1a2c554}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-729230261-3853840910-602469363-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-729230261-3853840910-602469363-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-07-14] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05] (HP Inc.) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05] (HP Inc.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-06-30] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: stchbakx.default FF ProfilePath: C:\Users\meyra\AppData\Roaming\Mozilla\Firefox\Profiles\stchbakx.default [2018-07-15] FF Extension: (Avast SafePrice) - C:\Users\meyra\AppData\Roaming\Mozilla\Firefox\Profiles\stchbakx.default\Extensions\sp@avast.com.xpi [2018-04-22] FF Extension: (Avast Online Security) - C:\Users\meyra\AppData\Roaming\Mozilla\Firefox\Profiles\stchbakx.default\Extensions\wrc@avast.com.xpi [2018-06-24] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_30_0_0_134.dll [2018-07-10] () FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_134.dll [2018-07-10] () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-03-02] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) Chrome: ======= CHR HomePage: Default -> hxxp://www.google.fr/ CHR StartupUrls: Default -> "hxxp://www.google.fr/","hxxp://search.babylon.com/?affID=115299&babsrc=HP_ss&mntrId=28ff7f1a00000000000068a3c4d7ca95","hxxp://www1.delta-search.com/?affID=121845&babsrc=HP_ss&mntrId=3E33001D6072C12F","hxxp://search.babylon.com/?affID=119943&tt=gc_&babsrc=HP_ss_gin2g&mntrId=3E33001D6072C12F","hxxp://www.delta-search.com/?affID=119943&tt=gc_&babsrc=HP_ss&mntrId=3E33001D6072C12F","hxxp://fr.msn.com/?pc=UP97&ocid=UP97DHP&dt=062413","hxxp://start.mysearchdial.com/?f=1&a=dsites0103&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0CyByCyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=975701884&ir=","hxxp://www.awesomehp.com/?type=hp&ts=1393081797&from=epom2&uid=ST3360320AS_9QF6YCTD","hxxp://start.mysearchdial.com/?f=1&a=aw0202ch&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0CyBzzzytN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=772045884&ir=","hxxp://start.mysearchdial.com/?f=1&a=dnldstr0202ch&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0CyBzzzytN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=772045884&ir=","hxxp://start.mysearchdial.com/?f=1&a=aw0202ch&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0SyBzzzytN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=684519737&ir=","hxxp://start.mysearchdial.com/?f=1&a=tele0202ch&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0SyBzytAtN1L2XzutBtFtCyBtFtDtFtCtN1L1CzutDzytDtCtG1TtN1L1G1B1V1N2Y1L1Qzu2StAtBzztCyEyDyBtCtG0ByB0CtCtGtCtBzz0AtG0ByCzzyDtGtAtDyCyCyC0EyCyB0EyEyDtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyEtC0A0ByCtC0EtG0F0E0CtCtGyCyCtA0AtGtDtDyBtBtGtB0EtA0CtCyE0CyEyDzztD0B2Q&cr=2083662169&ir=","hxxp://fr.msn.com/?pc=UP97&ocid=UP97DHP","hxxp://start.iminent.com/?appId=150947C6-3AF1-401D-B6D0-FEB79A1B5384","hxxp://www.sweet-page.com/?type=hp&ts=1403568055&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1403604513&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1403955566&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1403995720&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404073114&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404246446&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404410554&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404479591&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404515375&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404575537&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404673177&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404833840&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1404981444&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405090055&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405156884&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://start.iminent.com/?appId=FE72740D-0A3F-4B1A-9E09-D52C83077E67","hxxp://www.sweet-page.com/?type=hppp&ts=1405190993&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405191148&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.buenosearch.com/?babsrc=HP_kms&tt=na&mntrId=0ac315046b8eb41ce108430de124deec&affID=128363&tsp=5306","hxxp://www.sweet-page.com/?type=hppp&ts=1405201981&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://start.mysearchdial.com/?f=7&a=tuto_14_18&cd=2XzuyEtN2Y1L1QzutDtDtC0DyCtDyBtB0CtCtB0F0D0E0A0FtN0D0Tzu0SzytByEtN1L2XzutBtFtBtCtFtCtCtFtBtN1L1Czu2Z2Y2Z1F1VtCyE1VtCzztN1L1G1B1V1N2Y1L1Qzu2StDtA0B0E0Dzz0F0FtGyB0DtAtAtG0C0C0BzztGtC0C0FyCtGtC0FtB0DtD0CtCyD0CyDzz0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyEtC0A0ByCtC0EtG0F0E0CtCtGyCyCtA0AtGtDtDyBtBtGtB0EtA0CtCyE0CyEyDzztD0B2Q&cr=1619091147&ir=","hxxp://www.sweet-page.com/?type=hppp&ts=1405245403&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405246217&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405370230&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1405890787&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406077019&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406135515&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406173178&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406294166&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406343965&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406404179&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406545633&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://www.sweet-page.com/?type=hppp&ts=1406707164&from=adks&uid=ST3360320AS_9QF6YCTD","hxxp://isearch.omiga-plus.com/?type=hp&ts=1417614009&from=tugs&uid=ST3360320AS_9QF6YCTD","hxxps://www.google.com/","hxxp://myhome.vi-view.com/?type=hp&ts=1420008733&from=cor&uid=ST3360320AS_9QF6YCTD" CHR Profile: C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default [2018-07-15] CHR Extension: (Slides) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Docs) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Google Drive) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-04-28] CHR Extension: (YouTube) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-04-28] CHR Extension: (Adobe Acrobat) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-01-30] CHR Extension: (Avast SafePrice) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-06-21] CHR Extension: (Sheets) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Google Docs hors connexion) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-04-28] CHR Extension: (AdBlock) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-06-15] CHR Extension: (Avast Online Security) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-04-22] CHR Extension: (HP Network Check Launcher) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2017-04-29] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Gmail) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-04-28] CHR Extension: (Chrome Media Router) - C:\Users\meyra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-15] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2016-10-06] () R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7780400 2018-06-24] (AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [322464 2018-06-24] (AVAST Software) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [125656 2016-09-20] (Realtek Semiconductor Corp.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8765104 2018-06-30] (Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-28] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-04-28] (Dropbox, Inc.) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736 2016-10-05] (HP Inc.) [Fichier non signé] R2 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc.) R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc.) R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-25] (HP Inc.) R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-04-20] () [Fichier non signé] R2 osrss; C:\WINDOWS\system32\osrss.dll [130808 2018-06-08] (Microsoft Corporation) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [317960 2016-10-14] (Realtek Semiconductor) R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [207360 2017-01-22] (Realtek Semiconductor Corp.) S3 SoundBoosterService; C:\Program Files (x86)\Letasoft Sound Booster\SoundBoosterService.exe [153272 2018-01-31] (Letasoft) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated) R2 tbaseprovisioning; C:\WINDOWS\SysWOW64\tbaseprovisioning.exe [51208 2017-01-09] (Advanced Micro Devices, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17613.18039-0\NisSrv.exe [4633248 2018-04-13] (Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17613.18039-0\MsMpEng.exe [104680 2018-04-13] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [672208 2017-04-05] (Wacom Technology, Corp.) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2018-03-06] (The OpenVPN Project) R3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [27376 2016-10-17] (Advanced Micro Devices, INC.) S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [100744 2017-01-09] (Advanced Micro Devices, Inc. ) R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0307840.inf_amd64_2d7ce5e36533f4c7\atikmdag.sys [26565648 2016-10-17] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0307840.inf_amd64_2d7ce5e36533f4c7\atikmpag.sys [527264 2016-10-17] (Advanced Micro Devices, Inc.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [87856 2016-10-17] (Advanced Micro Devices, Inc.) R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [255368 2017-01-09] (Advanced Micro Devices, Inc. ) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [197160 2018-06-24] (AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [229392 2018-06-24] (AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201328 2018-06-24] (AVAST Software) R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346664 2018-06-24] (AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59592 2018-06-24] (AVAST Software) S3 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-06-24] (AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [239680 2018-06-24] (AVAST Software) S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46976 2018-06-24] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [159640 2018-06-24] (AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111872 2018-06-24] (AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85968 2018-06-24] (AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1027728 2018-06-24] (AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [463080 2018-06-24] (AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [211160 2018-06-24] (AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [381584 2018-06-24] (AVAST Software) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [110104 2016-10-17] (Advanced Micro Devices) R1 cbfs6; C:\windows\system32\drivers\cbfs6.sys [460992 2016-09-21] (/n software, Inc.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-04-20] (Huawei Technologies Co., Ltd.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2016-08-26] (Realtek ) R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [723920 2017-07-20] (Realtek Semiconductor Corporation) S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [418784 2016-09-23] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [6895984 2017-08-17] (Realtek Semiconductor Corporation ) R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53848 2017-08-18] (Synaptics Incorporated) R3 vpnpbus; C:\WINDOWS\System32\drivers\vpnpbus.sys [18624 2016-09-21] (/n software, Inc.) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [120976 2017-03-27] (Wacom Technology) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-04-13] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [311848 2018-04-13] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60456 2018-04-13] (Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30368 2017-06-21] (HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-07-15 21:45 - 2018-07-15 21:47 - 000027287 _____ C:\Users\meyra\Desktop\FRST.txt 2018-07-15 21:44 - 2018-07-15 21:45 - 000000000 ____D C:\FRST 2018-07-15 21:40 - 2018-07-15 21:40 - 002412544 _____ (Farbar) C:\Users\meyra\Desktop\FRST64.exe 2018-07-14 19:15 - 2018-07-14 19:15 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2018-07-14 19:15 - 2018-07-14 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2018-07-14 18:54 - 2018-07-15 02:13 - 000003256 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForMeyra 2018-07-14 18:54 - 2018-07-15 02:13 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForMeyra.job 2018-07-12 15:30 - 2018-07-12 15:30 - 000002135 _____ C:\Users\meyra\Downloads\EditionJustificatifs.pdf 2018-07-12 15:25 - 2018-07-12 15:25 - 000000000 ____D C:\Users\meyra\AppData\Local\CrashDumps 2018-07-12 15:16 - 2018-07-12 15:16 - 000079252 _____ C:\Users\meyra\Downloads\attestation_LYO8CQFNGX02.pdf 2018-07-11 02:15 - 2018-06-29 02:46 - 000835064 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-07-11 02:15 - 2018-06-29 02:46 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-07-10 22:57 - 2018-06-29 11:34 - 001953536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-07-10 22:57 - 2018-06-29 11:34 - 000319864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2018-07-10 22:57 - 2018-06-29 11:34 - 000022392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2018-07-10 22:57 - 2018-06-29 11:32 - 001849752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2018-07-10 22:57 - 2018-06-29 11:25 - 000248224 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2018-07-10 22:57 - 2018-06-29 10:53 - 001931248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2018-07-10 22:57 - 2018-06-29 10:53 - 001614144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-07-10 22:57 - 2018-06-29 10:51 - 000596648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2018-07-10 22:57 - 2018-06-29 10:20 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-07-10 22:57 - 2018-06-29 10:19 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2018-07-10 22:57 - 2018-06-29 10:19 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2018-07-10 22:57 - 2018-06-29 10:17 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2018-07-10 22:57 - 2018-06-29 10:17 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadauthhelper.dll 2018-07-10 22:57 - 2018-06-29 10:16 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2018-07-10 22:57 - 2018-06-29 10:15 - 018933760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-07-10 22:57 - 2018-06-29 10:15 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-07-10 22:57 - 2018-06-29 10:13 - 019358720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-07-10 22:57 - 2018-06-29 10:13 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2018-07-10 22:57 - 2018-06-29 10:12 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-07-10 22:57 - 2018-06-29 10:11 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-07-10 22:57 - 2018-06-29 10:09 - 011925504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-07-10 22:57 - 2018-06-29 10:09 - 006018560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-07-10 22:57 - 2018-06-29 10:09 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe 2018-07-10 22:57 - 2018-06-29 10:09 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2018-07-10 22:57 - 2018-06-29 10:09 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-07-10 22:57 - 2018-06-29 10:09 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys 2018-07-10 22:57 - 2018-06-29 10:08 - 003663872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-07-10 22:57 - 2018-06-29 10:08 - 001565696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-07-10 22:57 - 2018-06-29 10:04 - 000816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2018-07-10 22:57 - 2018-06-29 10:04 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2018-07-10 22:57 - 2018-06-29 10:00 - 004724736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-07-10 22:57 - 2018-06-29 09:58 - 001812992 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-07-10 22:57 - 2018-06-29 09:58 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2018-07-10 22:57 - 2018-06-14 00:38 - 005859248 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2018-07-10 22:57 - 2018-06-14 00:36 - 000137624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2018-07-10 22:57 - 2018-06-14 00:31 - 000979864 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2018-07-10 22:57 - 2018-06-14 00:28 - 000555928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2018-07-10 22:57 - 2018-06-14 00:28 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-07-10 22:57 - 2018-06-13 23:46 - 000422592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2018-07-10 22:57 - 2018-06-13 23:44 - 006086960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-07-10 22:57 - 2018-06-13 23:44 - 000747928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2018-07-10 22:57 - 2018-06-13 23:14 - 002464768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-07-10 22:57 - 2018-06-13 23:14 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2018-07-10 22:57 - 2018-06-13 23:14 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2018-07-10 22:57 - 2018-06-13 23:13 - 007812608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2018-07-10 22:57 - 2018-06-13 23:13 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2018-07-10 22:57 - 2018-06-13 23:12 - 002577920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2018-07-10 22:57 - 2018-06-13 23:12 - 002349568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2018-07-10 22:57 - 2018-06-13 23:06 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2018-07-10 22:57 - 2018-06-13 23:04 - 008432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2018-07-10 22:57 - 2018-06-13 23:02 - 003126272 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2018-07-10 22:57 - 2018-06-13 23:01 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2018-07-10 22:57 - 2018-06-13 23:01 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2018-07-10 22:57 - 2018-06-13 23:00 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2018-07-10 22:56 - 2018-06-29 11:38 - 001056160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-07-10 22:56 - 2018-06-29 11:36 - 001206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-07-10 22:56 - 2018-06-29 11:35 - 002868640 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2018-07-10 22:56 - 2018-06-29 11:34 - 008629152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-07-10 22:56 - 2018-06-29 11:34 - 002514936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2018-07-10 22:56 - 2018-06-29 11:34 - 000739184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2018-07-10 22:56 - 2018-06-29 11:34 - 000077208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-07-10 22:56 - 2018-06-29 11:23 - 000677280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-07-10 22:56 - 2018-06-29 11:19 - 002767768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-07-10 22:56 - 2018-06-29 10:25 - 025258496 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-07-10 22:56 - 2018-06-29 10:12 - 003663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-07-10 22:56 - 2018-06-29 10:12 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-07-10 22:56 - 2018-06-29 10:11 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2018-07-10 22:56 - 2018-06-29 10:10 - 012730368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-07-10 22:56 - 2018-06-29 10:09 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadauthhelper.dll 2018-07-10 22:56 - 2018-06-29 10:07 - 000955392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2018-07-10 22:56 - 2018-06-29 10:07 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-07-10 22:56 - 2018-06-29 10:06 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2018-07-10 22:56 - 2018-06-29 10:05 - 000672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-07-10 22:56 - 2018-06-29 10:04 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-07-10 22:56 - 2018-06-29 10:03 - 023680000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-07-10 22:56 - 2018-06-29 10:03 - 000945152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2018-07-10 22:56 - 2018-06-29 10:00 - 013712896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-07-10 22:56 - 2018-06-29 10:00 - 001238016 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2018-07-10 22:56 - 2018-06-29 09:59 - 012832768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-07-10 22:56 - 2018-06-29 09:58 - 008069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-07-10 22:56 - 2018-06-29 09:58 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2018-07-10 22:56 - 2018-06-29 09:53 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll 2018-07-10 22:56 - 2018-06-29 07:11 - 004876800 _____ (Gracenote, Inc.) C:\WINDOWS\system32\gnsdk_fp.dll 2018-07-10 22:56 - 2018-06-29 07:11 - 004171264 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll 2018-07-10 22:56 - 2018-06-14 00:41 - 001093040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-07-10 22:56 - 2018-06-14 00:41 - 000925672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-07-10 22:56 - 2018-06-14 00:38 - 000479920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll 2018-07-10 22:56 - 2018-06-14 00:35 - 002395544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-07-10 22:56 - 2018-06-14 00:35 - 001210784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-07-10 22:56 - 2018-06-14 00:35 - 001002048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2018-07-10 22:56 - 2018-06-14 00:31 - 007671696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-07-10 22:56 - 2018-06-14 00:31 - 000491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2018-07-10 22:56 - 2018-06-14 00:28 - 000688576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2018-07-10 22:56 - 2018-06-14 00:27 - 001779936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2018-07-10 22:56 - 2018-06-13 23:50 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2018-07-10 22:56 - 2018-06-13 23:42 - 000544432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2018-07-10 22:56 - 2018-06-13 23:41 - 001525288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2018-07-10 22:56 - 2018-06-13 23:08 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2018-07-10 22:56 - 2018-06-13 23:07 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-07-10 22:56 - 2018-06-13 23:07 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2018-07-10 22:56 - 2018-06-13 23:04 - 003180544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-07-10 22:56 - 2018-06-13 23:04 - 002212352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-07-10 22:56 - 2018-06-13 23:03 - 003161088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2018-07-10 22:56 - 2018-06-13 23:03 - 002857984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-07-10 22:56 - 2018-06-13 23:02 - 002786304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-07-10 22:56 - 2018-06-13 23:02 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-07-10 22:56 - 2018-06-13 23:02 - 002528768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2018-07-10 22:55 - 2018-06-29 11:39 - 000309656 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2018-07-10 22:55 - 2018-06-29 11:39 - 000144800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2018-07-10 22:55 - 2018-06-29 11:38 - 001610648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2018-07-10 22:55 - 2018-06-29 11:37 - 000689560 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2018-07-10 22:55 - 2018-06-29 11:37 - 000452000 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2018-07-10 22:55 - 2018-06-29 11:37 - 000070040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2018-07-10 22:55 - 2018-06-29 11:36 - 000792472 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2018-07-10 22:55 - 2018-06-29 11:36 - 000612256 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2018-07-10 22:55 - 2018-06-29 11:36 - 000445856 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2018-07-10 22:55 - 2018-06-29 11:35 - 000480664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2018-07-10 22:55 - 2018-06-29 11:35 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2018-07-10 22:55 - 2018-06-29 11:29 - 000540064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2018-07-10 22:55 - 2018-06-29 10:52 - 000367512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2018-07-10 22:55 - 2018-06-29 10:19 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProv2faHelper.dll 2018-07-10 22:55 - 2018-06-29 10:17 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2018-07-10 22:55 - 2018-06-29 10:16 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2018-07-10 22:55 - 2018-06-29 10:14 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2018-07-10 22:55 - 2018-06-29 10:13 - 000346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll 2018-07-10 22:55 - 2018-06-29 10:12 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProv2faHelper.dll 2018-07-10 22:55 - 2018-06-29 10:09 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2018-07-10 22:55 - 2018-06-29 10:09 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2018-07-10 22:55 - 2018-06-29 10:08 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2018-07-10 22:55 - 2018-06-29 10:08 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll 2018-07-10 22:55 - 2018-06-29 10:04 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll 2018-07-10 22:55 - 2018-06-29 09:59 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2018-07-10 22:55 - 2018-06-29 09:53 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2018-07-10 22:55 - 2018-06-29 09:53 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2018-07-10 22:55 - 2018-06-14 00:38 - 001133880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2018-07-10 22:55 - 2018-06-14 00:35 - 001416864 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-07-10 22:55 - 2018-06-14 00:35 - 000453024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys 2018-07-10 22:55 - 2018-06-14 00:32 - 000130600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2018-07-10 22:55 - 2018-06-14 00:31 - 000525728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2018-07-10 22:55 - 2018-06-14 00:29 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2018-07-10 22:55 - 2018-06-14 00:29 - 000671024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2018-07-10 22:55 - 2018-06-14 00:29 - 000225696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ucx01000.sys 2018-07-10 22:55 - 2018-06-14 00:26 - 001084736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2018-07-10 22:55 - 2018-06-14 00:26 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2018-07-10 22:55 - 2018-06-14 00:25 - 000628632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll 2018-07-10 22:55 - 2018-06-14 00:24 - 000057464 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2018-07-10 22:55 - 2018-06-13 23:54 - 001383784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll 2018-07-10 22:55 - 2018-06-13 23:44 - 000592800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2018-07-10 22:55 - 2018-06-13 23:44 - 000550176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2018-07-10 22:55 - 2018-06-13 23:41 - 001033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2018-07-10 22:55 - 2018-06-13 23:39 - 000505160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll 2018-07-10 22:55 - 2018-06-13 23:39 - 000251096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll 2018-07-10 22:55 - 2018-06-13 23:24 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2018-07-10 22:55 - 2018-06-13 23:21 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSOpusDecoder.dll 2018-07-10 22:55 - 2018-06-13 23:19 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll 2018-07-10 22:55 - 2018-06-13 23:17 - 000098304 _____ C:\WINDOWS\system32\runexehelper.exe 2018-07-10 22:55 - 2018-06-13 23:16 - 001314304 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2018-07-10 22:55 - 2018-06-13 23:16 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2018-07-10 22:55 - 2018-06-13 23:15 - 001508864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2018-07-10 22:55 - 2018-06-13 23:12 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll 2018-07-10 22:55 - 2018-06-13 23:12 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll 2018-07-10 22:55 - 2018-06-13 23:12 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSOpusDecoder.dll 2018-07-10 22:55 - 2018-06-13 23:11 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2018-07-10 22:55 - 2018-06-13 23:11 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2018-07-10 22:55 - 2018-06-13 23:10 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2018-07-10 22:55 - 2018-06-13 23:03 - 001607168 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2018-07-10 22:55 - 2018-06-13 23:01 - 001249792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2018-07-10 22:55 - 2018-06-13 23:01 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2018-07-10 22:55 - 2018-06-13 23:01 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2018-07-10 22:55 - 2018-06-13 22:58 - 001570304 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2018-07-10 22:26 - 2018-07-14 18:53 - 000000000 ____D C:\ProgramData\Packages 2018-07-09 09:20 - 2018-07-09 09:20 - 000001705 _____ C:\Users\meyra\Desktop\Courrier.lnk 2018-07-08 16:33 - 2018-07-08 16:33 - 000000000 ____D C:\Users\meyra\AppData\Roaming\HPPSDr 2018-07-08 16:29 - 2018-07-08 16:29 - 000000000 _____ C:\WINDOWS\SysWOW64\last.dump 2018-07-08 11:53 - 2018-06-08 14:09 - 000130808 _____ (Microsoft Corporation) C:\WINDOWS\system32\osrss.dll 2018-07-07 15:09 - 2018-07-07 15:11 - 000000000 ____D C:\Users\meyra\AppData\Local\AVAST Software 2018-07-07 15:09 - 2018-07-07 15:09 - 000002016 _____ C:\Users\meyra\AppData\Roaming\Microsoft\Windows\Start Menu\Avast Passwords.lnk 2018-07-02 20:59 - 2018-07-11 07:05 - 000000000 ____D C:\Users\meyra\AppData\Roaming\discord 2018-07-02 20:59 - 2018-07-02 20:59 - 000002240 _____ C:\Users\meyra\Desktop\Discord.lnk 2018-07-02 20:59 - 2018-07-02 20:59 - 000000000 ____D C:\Users\meyra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2018-07-02 20:58 - 2018-07-02 20:59 - 000000000 ____D C:\Users\meyra\AppData\Local\SquirrelTemp 2018-07-02 20:58 - 2018-07-02 20:59 - 000000000 ____D C:\Users\meyra\AppData\Local\Discord 2018-06-24 20:48 - 2018-06-24 20:46 - 000015360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys 2018-06-24 20:47 - 2018-06-24 20:46 - 000378072 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2018-06-21 18:46 - 2018-06-21 18:46 - 000001067 _____ C:\Users\Public\Desktop\HiSuite.lnk 2018-06-21 18:46 - 2018-06-21 18:46 - 000000000 ____D C:\Users\meyra\Documents\HiSuite 2018-06-21 18:46 - 2018-06-21 18:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite 2018-06-21 18:45 - 2018-06-21 18:48 - 000000000 ____D C:\Users\meyra\AppData\Local\HiSuite 2018-06-21 18:45 - 2018-06-21 18:46 - 000000000 ____D C:\Program Files (x86)\HiSuite 2018-06-21 18:45 - 2018-04-20 08:28 - 002152176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFUpdate_01009.dll 2018-06-21 18:45 - 2018-04-20 08:28 - 001002728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winusbcoinstaller2.dll 2018-06-21 18:45 - 2018-04-20 08:28 - 000287232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbnet.sys 2018-06-21 18:45 - 2018-04-20 08:28 - 000226560 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys 2018-06-21 18:45 - 2018-04-20 08:28 - 000127360 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_cdcacm.sys 2018-06-21 18:45 - 2018-04-20 08:28 - 000116864 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_usbdev.sys 2018-06-21 18:45 - 2018-04-20 08:28 - 000018944 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbccgpfilter.sys ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-07-15 20:31 - 2018-04-12 19:25 - 000000000 ___HD C:\$WINDOWS.~BT 2018-07-15 20:22 - 2017-11-02 11:03 - 000000000 ___DC C:\WINDOWS\Panther 2018-07-15 20:11 - 2017-11-03 23:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-07-15 03:51 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-07-15 02:21 - 2017-11-04 09:13 - 000066678 _____ C:\WINDOWS\diagwrn.xml 2018-07-15 02:21 - 2017-11-04 09:13 - 000066678 _____ C:\WINDOWS\diagerr.xml 2018-07-15 00:50 - 2018-04-22 13:13 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2018-07-14 20:04 - 2017-09-29 10:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2018-07-14 19:35 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\Registration 2018-07-14 19:19 - 2017-09-29 15:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-07-14 19:15 - 2016-10-22 08:30 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2018-07-14 19:15 - 2016-10-22 08:30 - 000002499 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2018-07-14 19:15 - 2016-10-22 08:30 - 000002462 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2018-07-14 19:13 - 2017-09-29 15:44 - 000000000 ____D C:\WINDOWS\INF 2018-07-14 19:13 - 2016-10-22 08:28 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-07-14 18:54 - 2017-09-29 15:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-07-14 18:54 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-07-12 23:21 - 2017-04-28 16:40 - 000000000 ____D C:\Users\meyra\Documents\Autres 2018-07-12 15:24 - 2018-01-30 14:51 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2018-07-12 15:19 - 2018-01-30 14:50 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-07-11 21:46 - 2017-07-16 01:10 - 000000000 ____D C:\Users\meyra\Documents\Documents importants 2018-07-11 02:20 - 2017-11-03 23:43 - 002803354 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-07-11 02:20 - 2017-09-30 16:40 - 001302426 _____ C:\WINDOWS\system32\perfh00C.dat 2018-07-11 02:20 - 2017-09-30 16:40 - 000305960 _____ C:\WINDOWS\system32\perfc00C.dat 2018-07-11 02:11 - 2017-11-04 09:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-07-11 02:11 - 2017-11-03 23:36 - 000428032 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-07-11 02:09 - 2017-09-29 10:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2018-07-11 02:09 - 2017-05-27 15:36 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2018-07-11 02:06 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-07-11 02:06 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\ShellExperiences 2018-07-10 23:48 - 2017-04-28 22:37 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-07-10 23:19 - 2017-09-29 15:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-07-10 23:19 - 2017-04-28 22:37 - 134675576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-07-10 21:54 - 2018-03-16 12:44 - 000004760 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-07-10 21:53 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-07-10 21:53 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-07-10 00:53 - 2018-04-22 13:17 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-07-09 16:47 - 2017-11-03 23:46 - 000000000 ____D C:\Users\meyra\AppData\Local\Packages 2018-07-09 09:17 - 2017-04-28 17:31 - 000000000 ____D C:\Users\meyra\AppData\Local\ConnectedDevicesPlatform 2018-07-08 19:04 - 2017-02-07 15:39 - 000000000 ____D C:\WINDOWS\system32\m32 2018-07-08 16:34 - 2016-10-22 08:24 - 000000000 ____D C:\ProgramData\HP 2018-07-08 16:30 - 2017-04-29 12:10 - 000000000 ____D C:\Users\meyra\AppData\Local\HP 2018-07-08 16:29 - 2017-05-27 15:35 - 000000000 ____D C:\Program Files (x86)\HP 2018-07-07 14:57 - 2017-11-03 23:44 - 000000000 ____D C:\Users\meyra 2018-07-07 14:40 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-07-04 12:51 - 2017-04-28 18:06 - 000000000 ____D C:\Users\meyra\AppData\Local\osu! 2018-06-26 22:17 - 2017-04-28 17:40 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-06-26 22:17 - 2017-04-28 17:40 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-06-24 20:47 - 2018-06-09 17:28 - 000381584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2018-06-24 20:47 - 2018-06-09 17:28 - 000211160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2018-06-24 20:47 - 2017-09-29 15:46 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2018-06-24 20:46 - 2018-06-09 17:28 - 000463080 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2018-06-24 20:46 - 2018-06-09 17:28 - 000197160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2018-06-24 20:46 - 2018-06-09 17:28 - 000159640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2018-06-24 20:46 - 2018-06-09 17:28 - 000111872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2018-06-24 20:46 - 2018-06-09 17:28 - 000085968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2018-06-24 20:46 - 2018-06-09 17:28 - 000046976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2018-06-24 20:44 - 2018-06-09 17:28 - 001027728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2018-06-24 20:44 - 2018-06-09 17:28 - 000346664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbloga.sys 2018-06-24 20:44 - 2018-06-09 17:28 - 000229392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2018-06-24 20:44 - 2018-06-09 17:28 - 000201328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2018-06-24 20:44 - 2018-06-09 17:28 - 000059592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2018-06-24 20:44 - 2018-04-22 13:12 - 000239680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys 2018-06-23 14:43 - 2017-11-04 09:11 - 000003374 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-729230261-3853840910-602469363-1001 2018-06-23 14:43 - 2017-04-28 17:35 - 000000000 ___RD C:\Users\meyra\OneDrive 2018-06-23 14:42 - 2017-09-23 14:44 - 000002414 _____ C:\Users\meyra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-06-21 18:48 - 2017-04-29 02:56 - 000000000 ____D C:\Users\meyra\.android 2018-06-16 14:06 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\rescache 2018-06-15 17:59 - 2017-11-04 09:25 - 000000000 ___RD C:\Users\meyra\3D Objects 2018-06-15 17:59 - 2016-07-29 14:33 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-06-15 17:38 - 2017-09-29 15:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2018-06-15 17:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\TextInput 2018-06-15 17:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2018-06-15 17:36 - 2017-09-29 15:46 - 000000000 ___SD C:\WINDOWS\system32\F12 2018-06-15 17:36 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2018-06-15 17:36 - 2017-09-29 10:45 - 000000000 ____D C:\WINDOWS\system32\Dism ==================== Fichiers à la racine de certains dossiers ======= 2018-04-21 14:58 - 2018-04-19 17:21 - 005800224 _____ (Enigma Software Group USA, LLC.) C:\ProgramData\EsgInstallerResumeAction_0d2666d79ad93f607501154ae4fa303f.exe 2018-02-17 01:56 - 2018-02-17 01:56 - 000000037 ___SH () C:\Users\meyra\AppData\Local\20986331705021ca58edc424.96250074 2017-04-28 17:31 - 2018-07-15 20:12 - 004566161 _____ () C:\Users\meyra\AppData\Local\BTServer.log 2018-05-28 06:34 - 2018-05-28 06:34 - 000001631 _____ () C:\Users\meyra\AppData\Local\recently-used.xbel 2017-04-30 13:29 - 2017-04-30 13:29 - 000000017 _____ () C:\Users\meyra\AppData\Local\resmon.resmoncfg 2018-01-04 18:32 - 2018-01-04 18:32 - 000000000 _____ () C:\Users\meyra\AppData\Local\{4538576E-BB63-44E2-AFC3-2904C16D6A74} ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2018-07-08 11:50 ==================== Fin de FRST.txt ============================