Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 10.10.2018 Exécuté par alain (administrateur) sur ALAIN-HP (24-10-2018 11:21:04) Exécuté depuis C:\Users\alain\Desktop Profils chargés: alain (Profils disponibles: alain & DefaultAppPool) Platform: Windows 10 Home Version 1809 17763.55 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Program Files\Windows Live\Mesh\wlcrasvc.exe (Microsoft Corporation) C:\Windows\System32\snmp.exe () C:\Program Files\Serviio\bin\ServiioService.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\MsMpEng.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe () C:\Program Files\Serviio\bin\ServiioService.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Orange) C:\Program Files (x86)\Orange\ma Livebox\maLivebox.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.10311.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe (Greenshot) C:\Program Files\Greenshot\Greenshot.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\NisSrv.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe () C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Orange) C:\Program Files (x86)\Orange\ma Livebox\dist\ST2.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\consent.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\WINDOWS\system32\SecurityHealthSystray.exe [83968 2018-09-15] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1813128 2015-12-10] (NVIDIA Corporation) HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [50416 2016-11-20] (Hewlett-Packard ) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163800 2016-07-30] (IvoSoft) HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Greenshot) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [421768 2016-04-25] (Acronis International GmbH) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [7390424 2017-06-23] () HKLM\...\Winlogon: [Userinit] c:\windows\system32\userinit.exe,c:\program files\soluto\soluto.exe /userinit, HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2018-09-15] (Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2018-09-15] (Microsoft Corporation) HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Run: [Rainlendar2] => C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe [3043328 2018-05-25] () HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Run: [Speech Recognition] => C:\WINDOWS\Speech\Common\sapisvr.exe [45056 2018-09-15] (Microsoft Corporation) HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Run: [HP ENVY 5640 series (NET)] => C:\Program Files\HP\HP ENVY 5640 series\Bin\ScanToPCActivationApp.exe [3769992 2017-05-23] (HP Inc.) HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-08-24] (Piriform Ltd) HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\MountPoints2: {943da202-5468-11e8-a05e-a0b3ccfdc886} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\MountPoints2: {a93ddf9e-d055-11e8-a109-a0b3ccfdc886} - "G:\HiSuiteDownLoader.exe" ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{633ba8a6-7f3a-408c-bd0b-08a760356df2}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{71dffe2c-ca69-48e3-905a-627becb24093}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-1408632651-1069037516-1255020646-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2016-07-30] (IvoSoft) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2016-07-30] (IvoSoft) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2015-08-05] (Belarc, Inc.) Edge: ====== Edge Extension: (BookReader) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [2018-09-15] Edge Extension: (AdBlock) -> EdgeExtension_BetaFishAdBlock_c1wakc4j0nefm => C:\Program Files\WindowsApps\BetaFish.AdBlock_2.4.0.0_neutral__c1wakc4j0nefm [2018-01-11] Edge Extension: (Translator pour Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.48.0_neutral__8wekyb3d8bbwe [2018-07-21] Edge Extension: (PinJSAPI) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [2018-09-15] FireFox: ======== FF DefaultProfile: a.bachellerie0175@orange.fr FF ProfilePath: C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default [2018-09-24] FF Homepage: Mozilla\Firefox\Profiles\b95686if.default -> hxxp://www.netvibes.com/privatepage/4#Actu_multi_sports FF Extension: (Menu contextuel Orange) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\Extensions\menu_contextuel_orange@orange.fr [2014-06-24] [Legacy] [non signé] FF Extension: (Google Translator for Firefox) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\Extensions\translator@zoli.bod.xpi [2017-12-11] FF Extension: (Page Captures d'écran Web - Fireshot) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}.xpi [2017-11-26] FF Extension: (Adblock Plus) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-13] FF Extension: (Pas de nom) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [non trouvé(e)] FF Extension: (Pas de nom) - C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\extensions\iobitascsurfingprotection@iobit.com [non trouvé(e)] FF Extension: (Pas de nom) - C:\ProgramData\KeepVid\KeepVid Pro\KVAllmytube@KeepVid.com_xpi\ [non trouvé(e)] FF SearchPlugin: C:\Users\alain\AppData\Roaming\Mozilla\Firefox\Profiles\b95686if.default\searchplugins\orange.xml [2012-11-16] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-11-15] [Legacy] [non signé] FF HKU\S-1-5-21-1408632651-1069037516-1255020646-1000\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll [2014-11-15] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.5.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems) FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [Pas de fichier] FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2011-04-05] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-19] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-19] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Pas de fichier] FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [Pas de fichier] FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] FF Plugin HKU\S-1-5-21-1408632651-1069037516-1255020646-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\alain\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-03-12] (RocketLife, LLP) FF Plugin HKU\S-1-5-21-1408632651-1069037516-1255020646-1000: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [Pas de fichier] Chrome: ======= CHR HomePage: Default -> hxxp://www.netvibes.com/privatepage/4#Actu_multi_sports CHR StartupUrls: Default -> "hxxps://www.netvibes.com/dashboard/1?#Actualite_%3E_Actualites_(FR)" CHR Profile: C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default [2018-10-24] CHR Extension: (Slides) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-23] CHR Extension: (Meteo en France) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\anakpfpojdnocblgejmienjaaggfgbdj [2018-10-23] CHR Extension: (Docs) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-23] CHR Extension: (Google Drive) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-23] CHR Extension: (YouTube) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-23] CHR Extension: (Adblock Plus) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-10-23] CHR Extension: (Sheets) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-23] CHR Extension: (Google Docs hors connexion) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-23] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-23] CHR Extension: (Gmail) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-10-23] CHR Extension: (Chrome Media Router) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-10-23] CHR Profile: C:\Users\alain\AppData\Local\Google\Chrome\User Data\System Profile [2018-09-06] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1244408 2016-10-14] () S2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [4463592 2018-09-04] () R2 BrokerInfrastructure; C:\WINDOWS\System32\psmsrv.dll [241664 2018-09-15] (Microsoft Corporation) S3 cbdhsvc; C:\WINDOWS\System32\cbdhsvc.dll [961024 2018-09-15] (Microsoft Corporation) S3 ConsentUxUserSvc; C:\WINDOWS\System32\ConsentUxClient.dll [157696 2018-09-15] (Microsoft Corporation) S4 Dedicarz Service; C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe [1970544 2014-09-15] () [Fichier non signé] S3 DisplayEnhancementService; C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [914944 2018-09-15] (Microsoft Corporation) R2 EpsonScanSvc; C:\windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG) [Fichier non signé] S4 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [Fichier non signé] S3 FoxitReaderService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659456 2017-12-12] (Foxit Software Inc.) S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [Fichier non signé] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc.) S2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis) S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Fichier non signé] S4 Orange update Core Service; C:\Program Files (x86)\Orange\OrangeUpdate\Service\OUCore.exe [734488 2016-08-29] (Orange SA) [Fichier non signé] S3 perceptionsimulation; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [78848 2018-09-15] (Microsoft Corporation) S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Fichier non signé] R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2018-04-30] () [Fichier non signé] R2 SNMP; C:\WINDOWS\System32\snmp.exe [53248 2018-10-03] (Microsoft Corporation) S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] () S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé] R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [9698296 2016-04-16] () R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-10-23] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-10-23] (Microsoft Corporation) S3 WManSvc; C:\WINDOWS\system32\Windows.Management.Service.dll [370176 2018-09-15] (Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [90560 2018-01-20] (Alcorlink Corp.) R1 BasicDisplay; C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [68096 2018-09-15] (Microsoft Corporation) R1 BasicRender; C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [37376 2018-09-15] (Microsoft Corporation) S3 BthMini; C:\WINDOWS\System32\drivers\BTHMINI.sys [34816 2018-09-15] (Microsoft Corporation) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [366432 2018-09-04] (Acronis International GmbH) S3 hidspi; C:\WINDOWS\System32\drivers\hidspi.sys [60928 2018-09-15] (Microsoft Corporation) R1 HWiNFO32; C:\windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-28] (REALiX(tm)) S3 iaLPSS2i_GPIO2_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2018-09-15] (Intel Corporation) S3 iaLPSS2i_GPIO2_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2018-09-15] (Intel Corporation) S3 LcUvcUpper; C:\WINDOWS\system32\DRIVERS\LcUvcUpper.sys [37912 2015-09-30] (Microsoft Corporation) R3 LifeCamTrueColor; C:\WINDOWS\system32\DRIVERS\LifeCamTrueColor.sys [37928 2016-07-27] (Microsoft Corporation) S3 MbbCx; C:\WINDOWS\System32\drivers\MbbCx.sys [290816 2018-09-15] (Microsoft Corporation) S3 Microsoft_Bluetooth_AvrcpTransport; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760 2018-09-15] (Microsoft Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdc.inf_amd64_2707c70d42c54b4e\nvlddmkm.sys [17036560 2018-02-01] (NVIDIA Corporation) S3 PktMon; C:\WINDOWS\System32\drivers\PktMon.sys [85504 2018-09-15] (Microsoft Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1010648 2018-01-20] (Realtek ) R3 Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfswin7.sys [767648 2014-10-08] (Microsoft Corporation) R3 Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaywin7.sys [273576 2014-10-08] (Microsoft Corporation) R3 Sftredir; C:\WINDOWS\System32\DRIVERS\Sftredirwin7.sys [29864 2014-10-08] (Microsoft Corporation) R3 Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvolwin7.sys [23208 2014-10-08] (Microsoft Corporation) S0 SmartSAMD; C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960 2018-09-15] (Microsemi Corportation) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [55464 2018-01-09] (Synaptics Incorporated) R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [561672 2016-11-20] (Tempo Semiconductor Inc.) R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1267552 2018-09-04] (Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [193376 2018-09-04] (Acronis International GmbH) R3 tilfilter; C:\WINDOWS\System32\drivers\TIxHCIlfilter.sys [34424 2016-08-20] (Texas Instruments, Inc.) R3 tiufilter; C:\WINDOWS\System32\drivers\TIxHCIufilter.sys [39032 2016-08-20] (Texas Instruments, Inc.) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [601432 2018-09-04] (Acronis International GmbH) S3 UcmUcsiAcpiClient; C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [31232 2018-09-15] (Microsoft Corporation) S3 UcmUcsiCx0101; C:\WINDOWS\System32\Drivers\UcmUcsiCx.sys [99840 2018-09-15] (Microsoft Corporation) R1 UimBus; C:\WINDOWS\System32\drivers\UimBus.sys [102664 2014-07-09] () R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uim_devim.sys [25992 2014-07-09] () R1 Uim_IM; C:\WINDOWS\System32\drivers\uim_im.sys [700296 2014-07-09] () R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [279392 2016-04-24] (Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46184 2018-10-23] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [328696 2018-10-23] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60408 2018-10-23] (Microsoft Corporation) R3 WinQuic; C:\WINDOWS\System32\drivers\winquic.sys [156984 2018-09-15] (Microsoft Corporation) S3 WiseRegNotify; C:\WINDOWS\WiseRegNotify.sys [29616 2016-07-03] (WiseCleaner.com) [Fichier non signé] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-10-24 11:21 - 2018-10-24 11:22 - 000028451 _____ C:\Users\alain\Desktop\FRST.txt 2018-10-24 11:19 - 2018-10-24 11:21 - 000000000 ___DC C:\FRST 2018-10-24 11:18 - 2018-10-24 11:18 - 002414592 _____ (Farbar) C:\Users\alain\Desktop\FRST64.exe 2018-10-24 10:39 - 2018-10-24 10:39 - 000000000 _SHDC C:\found.000 2018-10-24 09:39 - 2018-10-24 09:39 - 000000080 ___SH C:\bootTel.dat 2018-10-23 14:01 - 2018-10-23 14:09 - 000736996 _____ C:\WINDOWS\Minidump\102318-27312-01.dmp 2018-10-23 14:01 - 2018-10-23 14:01 - 463143269 _____ C:\WINDOWS\MEMORY.DMP 2018-10-23 14:01 - 2018-10-23 14:01 - 000000000 ____D C:\WINDOWS\Minidump 2018-10-21 19:05 - 2018-10-21 19:05 - 000000000 _____ C:\WINDOWS\SysWOW64\sho3CC7.tmp 2018-10-19 17:10 - 2018-10-19 17:10 - 000004016 _____ C:\WINDOWS\System32\Tasks\WpsExternal_alain_20181019171026 2018-10-19 17:10 - 2018-10-19 17:10 - 000003742 _____ C:\WINDOWS\System32\Tasks\WpsUpdateTask_alain 2018-10-19 17:10 - 2018-10-19 17:10 - 000000000 ____D C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WPS Office 2018-10-17 16:12 - 2018-10-17 16:12 - 000381764 _____ C:\Users\alain\Downloads\simulateur_ta_2018.ods 2018-10-17 16:11 - 2018-10-17 16:11 - 001279238 _____ C:\Users\alain\Downloads\outil_de_recherche_des_taux_2018.ods 2018-10-16 10:20 - 2018-10-16 10:20 - 000234884 _____ C:\Users\alain\Downloads\le_FRELON_ASIATIQUE11111.pdf 2018-10-15 15:51 - 2018-09-10 18:58 - 000012178 _____ C:\Users\alain\AppData\Local\recently-used.xbel 2018-10-13 15:42 - 2018-10-13 15:42 - 000003370 _____ C:\WINDOWS\System32\Tasks\RunAsStdUser Task 2018-10-13 15:41 - 2018-10-13 15:41 - 002785352 _____ (InPixio) C:\Users\alain\Downloads\InPixio_PhotoClip_DT.exe 2018-10-10 14:25 - 2018-10-10 14:25 - 026805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 023440384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 022112072 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 020809216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 019024384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 012857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 012151296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 011744256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 009951744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 007861248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 006543224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 006062592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 005584056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 005440016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 004588032 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2018-10-10 14:25 - 2018-10-10 14:25 - 002927096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-10-10 14:25 - 2018-10-10 14:25 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 002625552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-10-10 14:25 - 2018-10-10 14:25 - 002469648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 002323904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001863168 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001672072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001590288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001466992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 001360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-10-10 14:25 - 2018-10-10 14:25 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2018-10-10 14:25 - 2018-10-10 14:25 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll 2018-10-10 14:25 - 2018-10-10 14:25 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll 2018-10-10 14:24 - 2018-10-10 14:25 - 009696768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-10-10 14:24 - 2018-10-10 14:24 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 003981312 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 003662336 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 003556864 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 003380736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 003378176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 002721280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 002488320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 002435488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 002186752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 002020560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 001830912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 001797128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 001520208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 001255952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-10-10 14:24 - 2018-10-10 14:24 - 001050640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-10-10 14:24 - 2018-10-10 14:24 - 000918496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000863752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 000850960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000582248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2018-10-10 14:24 - 2018-10-10 14:24 - 000402376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-10-10 14:24 - 2018-10-10 14:24 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-10-03 19:24 - 2018-10-03 19:24 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2018-10-03 19:20 - 2018-10-03 19:20 - 000000020 ___SH C:\Users\alain\ntuser.ini 2018-10-03 19:17 - 2018-10-24 09:48 - 000002988 _____ C:\WINDOWS\System32\Tasks\maLivebox 2018-10-03 19:17 - 2018-10-24 09:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-10-03 19:17 - 2018-10-19 18:41 - 000003242 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForalain 2018-10-03 19:17 - 2018-10-19 10:26 - 000003364 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1408632651-1069037516-1255020646-1000 2018-10-03 19:17 - 2018-10-16 11:24 - 000003272 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForALAIN-HP$ 2018-10-03 19:17 - 2018-10-03 19:18 - 000003516 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-10-03 19:17 - 2018-10-03 19:18 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-10-03 19:17 - 2018-10-03 19:18 - 000003282 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2018-10-03 19:17 - 2018-10-03 19:18 - 000002632 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP ENVY 5640 series 2018-10-03 19:17 - 2018-10-03 19:18 - 000002302 _____ C:\WINDOWS\System32\Tasks\{44F5B2B9-3B64-4284-B4AE-AFD2001583B3} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002300 _____ C:\WINDOWS\System32\Tasks\{49F76F05-1B59-4DB7-B28A-F6826FE7CCE3} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002292 _____ C:\WINDOWS\System32\Tasks\{11E5C65C-5E29-4EA3-B966-0C786144EC3F} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002278 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (alain) 2018-10-03 19:17 - 2018-10-03 19:18 - 000002274 _____ C:\WINDOWS\System32\Tasks\{1EDF0D78-CD81-4C85-9B9B-113418676E84} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002260 _____ C:\WINDOWS\System32\Tasks\{8DEF53BB-0881-43B7-A692-2D2ACB724484} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002226 _____ C:\WINDOWS\System32\Tasks\{21E1EE18-A493-438E-AD93-EDF20E4DDB35} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002220 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-10-03 19:17 - 2018-10-03 19:18 - 000002092 _____ C:\WINDOWS\System32\Tasks\{6875FAF4-2575-48BF-8F8F-13AD72566975} 2018-10-03 19:17 - 2018-10-03 19:18 - 000002038 _____ C:\WINDOWS\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance 2018-10-03 19:17 - 2018-10-03 19:17 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Sync 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard 2018-10-03 19:17 - 2018-10-03 19:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software 2018-10-03 19:16 - 2018-10-03 19:17 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2018-10-03 19:16 - 2018-10-03 19:17 - 000011433 _____ C:\WINDOWS\diagerr.xml 2018-10-03 19:08 - 2018-10-11 10:03 - 002005798 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-10-03 18:58 - 2018-10-03 18:58 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2018-10-03 18:54 - 2018-10-03 18:54 - 000000000 ____D C:\ProgramData\USOShared 2018-10-03 18:54 - 2018-10-03 18:54 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-10-03 18:54 - 2017-12-19 04:51 - 000137200 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2018-10-03 18:54 - 2017-09-14 01:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2018-10-03 18:54 - 2017-09-14 01:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2018-10-03 18:54 - 2017-09-14 01:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll 2018-10-03 18:54 - 2017-09-14 01:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe 2018-10-03 18:53 - 2018-09-15 09:28 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2018-10-03 18:53 - 2018-02-01 14:16 - 000541456 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2018-10-03 18:53 - 2018-02-01 14:16 - 000447248 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2018-10-03 18:49 - 2018-10-24 10:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-10-03 18:49 - 2018-10-11 09:59 - 005113976 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-10-03 14:24 - 2018-10-03 19:47 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2018-10-03 14:24 - 2018-10-03 14:24 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2018-10-03 14:21 - 2018-10-19 10:26 - 000002453 _____ C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-10-03 14:21 - 2018-10-15 15:52 - 000000000 ____D C:\Users\alain 2018-10-03 14:21 - 2018-10-03 19:06 - 000000000 ____D C:\Users\DefaultAppPool 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Modèles 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Mes documents 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes vidéos 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes images 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Ma musique 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Voisinage réseau 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Voisinage d'impression 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Modèles 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Mes documents 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Menu Démarrer 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Documents\Mes vidéos 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Documents\Mes images 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\Documents\Ma musique 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2018-10-03 14:21 - 2018-10-03 14:21 - 000000000 _SHDL C:\Users\alain\AppData\Local\Historique 2018-10-03 14:21 - 2018-09-15 09:29 - 000001105 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-10-03 14:20 - 2018-10-03 14:24 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2018-10-03 14:18 - 2018-10-21 10:52 - 000000000 ____D C:\WINDOWS\system32\msmq 2018-10-03 14:18 - 2018-10-03 14:18 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2018-10-03 14:18 - 2018-10-03 14:18 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2018-10-03 14:18 - 2018-10-03 14:18 - 000000000 ____D C:\inetpub 2018-10-03 14:17 - 2018-10-03 14:17 - 006347776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2018-10-03 14:17 - 2018-10-03 14:17 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2018-10-03 14:17 - 2018-10-03 14:17 - 005489664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2018-10-03 14:17 - 2018-10-03 14:17 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2018-10-03 14:16 - 2018-10-03 14:16 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-10-03 14:16 - 2018-10-03 14:16 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2018-10-03 14:16 - 2018-10-03 14:16 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2018-10-03 14:16 - 2018-10-03 14:16 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll 2018-10-03 14:16 - 2018-10-03 14:16 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll 2018-10-03 14:16 - 2018-10-03 14:16 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll 2018-10-03 14:16 - 2018-10-03 14:16 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2018-10-03 14:16 - 2018-10-03 14:16 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2018-10-03 14:15 - 2018-10-03 14:15 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpsnap.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntwin.exe 2018-10-03 14:15 - 2018-10-03 14:15 - 000107882 _____ C:\WINDOWS\system32\mib_ii.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntagnt.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmp.exe 2018-10-03 14:15 - 2018-10-03 14:15 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hostmib.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000048593 _____ C:\WINDOWS\system32\hostmib.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmmib2.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000034317 _____ C:\WINDOWS\system32\msiprip2.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000030448 _____ C:\WINDOWS\system32\mcastmib.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\evntcmd.exe 2018-10-03 14:15 - 2018-10-03 14:15 - 000026236 _____ C:\WINDOWS\system32\wins.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000026100 _____ C:\WINDOWS\system32\lmmib2.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000022462 _____ C:\WINDOWS\system32\rfc2571.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000021271 _____ C:\WINDOWS\system32\http.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64mib.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000015799 _____ C:\WINDOWS\system32\ipforwd.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000015032 _____ C:\WINDOWS\system32\authserv.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000014032 _____ C:\WINDOWS\system32\accserv.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000013767 _____ C:\WINDOWS\system32\msipbtp.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpmib.dll 2018-10-03 14:15 - 2018-10-03 14:15 - 000006179 _____ C:\WINDOWS\system32\ftp.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000004597 _____ C:\WINDOWS\system32\dhcp.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000004411 _____ C:\WINDOWS\system32\smi.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000000698 _____ C:\WINDOWS\system32\inetsrv.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000000581 _____ C:\WINDOWS\system32\msft.mib 2018-10-03 14:15 - 2018-10-03 14:15 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2018-10-03 14:15 - 2018-10-03 14:15 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-10-03 14:15 - 2018-10-03 14:15 - 000000000 ____D C:\Program Files\MSBuild 2018-10-03 14:15 - 2018-10-03 14:15 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-10-03 14:15 - 2018-10-03 14:15 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-10-03 14:13 - 2018-10-03 14:13 - 001167960 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2018-10-03 14:13 - 2018-10-03 14:13 - 000780376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2018-10-03 14:13 - 2018-10-03 14:13 - 000126064 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2018-10-03 14:13 - 2018-10-03 14:13 - 000104560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-10-03 14:13 - 2018-10-03 14:13 - 000036896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2018-10-03 14:13 - 2018-10-03 14:13 - 000035440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2018-10-03 14:07 - 2018-10-03 14:07 - 000000000 ___HC C:\$WINRE_BACKUP_PARTITION.MARKER 2018-10-03 13:55 - 2018-10-03 13:55 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2018-10-03 11:44 - 2018-10-03 19:20 - 000000000 ___DC C:\WINDOWS\Panther 2018-09-27 14:14 - 2018-09-27 14:14 - 000019010 _____ C:\Users\alain\Downloads\Notification_20180927_103228.pdf 2018-09-24 15:09 - 2018-09-24 15:09 - 000637440 _____ (Borland Software Corporation) C:\Users\alain\Downloads\rtl60.bpl ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-10-24 10:48 - 2012-11-13 17:01 - 000000000 ___RD C:\Users\alain\Documents\CORRESPONDANTS WEB 2018-10-24 10:41 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-10-24 10:00 - 2012-11-13 18:47 - 000000000 ____D C:\Users\alain\.rainlendar2 2018-10-24 09:39 - 2016-08-13 20:30 - 000000000 ____D C:\ProgramData\NVIDIA 2018-10-24 09:38 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-10-23 19:20 - 2018-02-07 19:45 - 000000000 ____D C:\Users\alain\Documents\SAUNIER DUVAL 2018-10-23 14:17 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps 2018-10-23 14:17 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-10-23 14:10 - 2018-03-01 15:07 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-10-23 14:09 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF 2018-10-22 14:03 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-10-21 10:24 - 2015-08-14 15:16 - 000000000 ____D C:\Users\alain\AppData\Local\ClassicShell 2018-10-20 11:24 - 2017-09-14 11:29 - 000000350 _____ C:\WINDOWS\Tasks\HPCeeScheduleForalain.job 2018-10-19 17:10 - 2017-10-16 11:17 - 000002544 _____ C:\Users\alain\Desktop\WPS Writer.lnk 2018-10-19 10:38 - 2014-11-21 16:31 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-10-19 10:26 - 2015-08-11 19:30 - 000000000 ___RD C:\Users\alain\OneDrive 2018-10-18 17:25 - 2012-11-18 17:55 - 000000000 ___RD C:\Users\alain\Documents\MEDIATHEQUE 2018-10-17 13:42 - 2012-11-23 12:27 - 000000368 _____ C:\WINDOWS\Tasks\HPCeeScheduleForALAIN-HP$.job 2018-10-16 10:26 - 2010-11-21 05:27 - 000559880 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-10-15 15:52 - 2013-07-23 18:05 - 000000000 ____D C:\Users\alain\AppData\Local\gtk-2.0 2018-10-13 16:02 - 2018-05-11 16:08 - 000000000 ____D C:\Users\alain\AppData\Local\babl-0.1 2018-10-12 15:02 - 2016-05-03 16:49 - 000000000 ____D C:\Users\alain\Documents\Mut. Générale+Ameli 2018-10-12 10:27 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\servicing 2018-10-11 10:03 - 2018-09-15 18:39 - 000865668 _____ C:\WINDOWS\system32\perfh00C.dat 2018-10-11 10:03 - 2018-09-15 18:39 - 000177920 _____ C:\WINDOWS\system32\perfc00C.dat 2018-10-11 10:01 - 2015-08-20 19:20 - 000000000 ___RD C:\Users\alain\3D Objects 2018-10-11 10:01 - 2015-08-11 19:24 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-10-10 18:43 - 2018-09-15 18:40 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2018-10-10 18:43 - 2018-09-15 18:40 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2018-10-10 18:43 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-10-10 18:43 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr 2018-10-10 14:21 - 2018-09-15 09:36 - 000835152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-10-10 14:21 - 2018-09-15 09:36 - 000179792 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-10-10 14:21 - 2013-08-14 19:16 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-10-10 14:17 - 2012-11-19 13:00 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-10-09 14:56 - 2016-05-29 15:25 - 000000000 ____D C:\ProgramData\Malwarebytes 2018-10-07 09:56 - 2012-11-13 17:13 - 000000000 ___RD C:\Users\alain\Documents\SANTE 2018-10-04 14:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ServiceState 2018-10-04 14:04 - 2017-12-20 19:48 - 000000000 ____D C:\Users\alain\AppData\Local\Packages 2018-10-04 14:00 - 2018-07-31 14:20 - 000000000 ____D C:\ProgramData\Packages 2018-10-04 13:50 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\appcompat 2018-10-03 19:48 - 2018-09-15 09:31 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2018-10-03 19:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2018-10-03 19:47 - 2018-09-17 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TV 3L PC 2018-10-03 19:47 - 2018-09-15 18:39 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\spool 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\IME 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\schemas 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Help 2018-10-03 19:47 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-10-03 19:47 - 2018-08-30 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serviio 2018-10-03 19:47 - 2018-07-24 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2018-10-03 19:47 - 2018-02-16 17:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VLC VideoLAN 2018-10-03 19:47 - 2018-02-02 11:57 - 000000000 ____D C:\WINDOWS\en 2018-10-03 19:47 - 2018-02-02 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker 2018-10-03 19:47 - 2018-01-23 13:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2018-10-03 19:47 - 2017-12-29 15:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2018-10-03 19:47 - 2017-10-11 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot 2018-10-03 19:47 - 2017-04-11 17:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2018-10-03 19:47 - 2017-04-06 20:00 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-10-03 19:47 - 2016-11-22 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neat Image v8 Standalone 2018-10-03 19:47 - 2016-09-17 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-10-03 19:47 - 2016-02-12 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainlendar2 2018-10-03 19:47 - 2015-11-20 12:47 - 000000000 ___RD C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C} 2018-10-03 19:47 - 2015-09-26 18:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2018-10-03 19:47 - 2015-06-12 10:49 - 000000000 ____D C:\WINDOWS\SysWOW64\syncdb 2018-10-03 19:47 - 2014-12-23 15:17 - 000000000 ____D C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Boo-Ree MCU USB Driver 2018-10-03 19:47 - 2014-11-20 18:42 - 000000000 ____D C:\WINDOWS\SysWOW64\APIAppSchema 2018-10-03 19:47 - 2013-05-14 15:29 - 000000000 ____D C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-10-03 19:47 - 2013-05-14 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-10-03 19:47 - 2013-03-13 19:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2018-10-03 19:47 - 2013-03-04 11:36 - 000000000 ____D C:\WINDOWS\SysWOW64\BIBLIOTHEQUES 2018-10-03 19:47 - 2012-12-09 18:46 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2018-10-03 19:47 - 2012-11-13 11:35 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services 2018-10-03 19:47 - 2012-08-02 17:09 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2018-10-03 19:47 - 2012-08-02 17:09 - 000000000 ____D C:\WINDOWS\fr 2018-10-03 19:47 - 2012-08-02 17:06 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat 2018-10-03 19:47 - 2012-08-02 16:56 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2018-10-03 19:47 - 2012-08-02 16:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2018-10-03 19:47 - 2012-08-02 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2018-10-03 19:21 - 2017-04-06 21:01 - 000002336 _____ C:\Users\alain\Desktop\Google Chrome.lnk 2018-10-03 19:20 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Registration 2018-10-03 19:20 - 2016-08-13 21:14 - 000000000 ____D C:\Users\alain\AppData\Local\ConnectedDevicesPlatform 2018-10-03 19:19 - 2018-09-15 08:09 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2018-10-03 19:18 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\windows nt 2018-10-03 19:18 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Windows Defender 2018-10-03 19:11 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\PrintDialog 2018-10-03 19:10 - 2018-09-15 09:33 - 000000000 __RSD C:\WINDOWS\media 2018-10-03 19:10 - 2015-08-11 19:12 - 000023208 _____ C:\WINDOWS\system32\emptyregdb.dat 2018-10-03 18:55 - 2017-04-06 20:01 - 000000000 ____D C:\WINDOWS\SysWOW64\LifeCamTrueColor 2018-10-03 18:55 - 2017-04-06 20:01 - 000000000 ____D C:\WINDOWS\system32\LifeCamTrueColor 2018-10-03 18:54 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\USOPrivate 2018-10-03 18:54 - 2017-04-06 20:01 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-10-03 18:54 - 2016-11-20 16:30 - 000000000 ____D C:\ProgramData\SoundResearch 2018-10-03 18:54 - 2016-05-09 10:10 - 000000000 ___DC C:\TEMP 2018-10-03 18:54 - 2012-08-02 16:48 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos 2018-10-03 18:53 - 2017-04-06 20:00 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-10-03 14:44 - 2018-09-15 09:36 - 000000000 ____D C:\WINDOWS\Setup 2018-10-03 14:32 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\InfusedApps 2018-10-03 14:31 - 2018-09-15 09:33 - 000000000 __RHD C:\Users\Public\Libraries 2018-10-03 14:26 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2018-10-03 14:26 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-10-03 14:26 - 2017-04-06 20:00 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2018-10-03 14:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2018-10-03 14:24 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Resources 2018-10-03 14:24 - 2013-07-12 13:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX 2018-10-03 14:24 - 2012-11-15 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2018-10-03 14:23 - 2013-11-25 16:11 - 000000000 ____D C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orange 2018-10-03 14:23 - 2013-05-10 14:00 - 000000000 ____D C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wikango 2018-10-03 14:16 - 2018-09-15 18:40 - 000000000 ____D C:\WINDOWS\OCR 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\et-EE 2018-10-03 14:16 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\es-MX 2018-10-03 14:15 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-10-03 14:15 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-10-03 11:28 - 2012-11-14 12:04 - 000000000 ____D C:\Users\alain\AppData\Roaming\HpUpdate 2018-10-03 11:22 - 2012-11-24 15:50 - 000000000 ____D C:\Users\alain\AppData\Local\CrashDumps 2018-09-28 18:58 - 2012-11-13 17:01 - 000000000 ___RD C:\Users\alain\Documents\NESPRESSO ==================== Fichiers à la racine de certains dossiers ======= 2015-02-09 12:26 - 2015-10-12 16:42 - 053078632 _____ (Foxit Software Inc. ) C:\Users\alain\FoxitReader708.1216_prom_L10N_Setup.exe 2014-11-22 20:06 - 2015-11-29 17:10 - 092658088 _____ (Oracle Corporation) C:\Users\alain\jre-8u25-windows-x64.exe 2015-02-24 11:45 - 2015-02-24 11:45 - 084383632 _____ () C:\Users\alain\serviio_1-5-1_fr_406356.exe 2005-10-31 13:02 - 2005-10-31 13:05 - 000004096 ____C () C:\Program Files (x86)\Categories.DB 2005-10-31 13:02 - 2005-10-31 13:05 - 000004096 ____C () C:\Program Files (x86)\Categories.PX 2005-10-31 13:02 - 2003-06-14 17:07 - 000004096 ____C () C:\Program Files (x86)\Champs.db 2005-10-31 13:02 - 2003-06-14 17:07 - 000000423 ____C () C:\Program Files (x86)\Champs.FAM 2005-10-31 13:02 - 2003-06-14 17:07 - 000004096 ____C () C:\Program Files (x86)\Champs.PX 2005-10-31 13:02 - 2003-06-14 17:07 - 000000800 ____C () C:\Program Files (x86)\Champs.TV 2005-10-31 13:02 - 2003-06-14 17:14 - 000006630 ____C () C:\Program Files (x86)\DeIsL2.isu 2005-10-31 13:02 - 2003-06-14 17:27 - 000006630 ____C () C:\Program Files (x86)\DeIsL3.isu 2005-10-31 13:02 - 2003-06-14 17:29 - 000006686 ____C () C:\Program Files (x86)\DeIsL4.isu 2005-10-31 13:02 - 2003-06-22 22:25 - 000006744 ____C () C:\Program Files (x86)\DeIsL5.isu 2005-10-31 13:02 - 2005-10-31 13:05 - 000124928 ____C () C:\Program Files (x86)\Fiches.DB 2005-10-31 13:02 - 2005-10-31 13:05 - 000008192 ____C () C:\Program Files (x86)\Fiches.MB 2005-10-31 13:02 - 2005-10-31 13:05 - 000063488 ____C () C:\Program Files (x86)\Fiches.PX 2005-10-31 13:02 - 2005-10-31 13:04 - 000000005 ____C () C:\Program Files (x86)\Options.dat 2006-02-10 22:54 - 2001-06-13 09:00 - 000637440 ____C (Borland Software Corporation) C:\Program Files (x86)\rtl60.bpl 2006-02-10 22:54 - 2001-06-13 09:00 - 001324032 ____C (Borland Software Corporation) C:\Program Files (x86)\vcl60.bpl 2015-09-17 19:35 - 2015-09-17 20:25 - 000000609 _____ () C:\Users\alain\AppData\Roaming\burnaware.ini 2014-09-01 10:18 - 2014-09-01 10:18 - 000002086 _____ () C:\Users\alain\AppData\Roaming\NYV 2014-09-01 10:18 - 2014-09-01 10:18 - 000001248 _____ () C:\Users\alain\AppData\Roaming\SASC 2014-09-01 10:18 - 2014-09-01 10:18 - 000002086 _____ () C:\Users\alain\AppData\Roaming\WG 2014-09-01 10:18 - 2014-09-01 10:18 - 000001248 _____ () C:\Users\alain\AppData\Roaming\WREVO 2014-08-11 15:48 - 2014-08-11 16:14 - 000000129 _____ () C:\Users\alain\AppData\Local\27fd3af50b732d7c6485fd11629e5116 2015-06-05 16:12 - 2015-06-05 16:12 - 182572124 _____ () C:\Users\alain\AppData\Local\ACCCx3_0_1_88.zip.aamdownload 2015-06-05 16:12 - 2015-06-05 16:12 - 000002109 _____ () C:\Users\alain\AppData\Local\ACCCx3_0_1_88.zip.aamdownload.aamd 2017-04-30 08:56 - 2017-04-30 09:10 - 503005056 _____ () C:\Users\alain\AppData\Local\AcronisTrueImage2016_6589.exe 2017-07-23 15:07 - 2017-07-23 15:21 - 503043688 _____ () C:\Users\alain\AppData\Local\AcronisTrueImage2016_6595.exe 2013-02-01 18:13 - 2013-02-01 18:13 - 000001456 _____ () C:\Users\alain\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2014-10-02 21:02 - 2014-11-11 17:48 - 000005632 _____ () C:\Users\alain\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-10-21 17:58 - 2013-10-21 17:58 - 000000058 _____ () C:\Users\alain\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat 2012-11-16 17:05 - 2013-04-19 08:17 - 000000089 _____ () C:\Users\alain\AppData\Local\msmathematics.qat.alain 2018-10-15 15:51 - 2018-09-10 18:58 - 000012178 _____ () C:\Users\alain\AppData\Local\recently-used.xbel 2015-06-29 14:27 - 2015-06-29 14:29 - 000007609 _____ () C:\Users\alain\AppData\Local\resmon.resmoncfg 2017-11-28 12:29 - 2017-11-28 12:33 - 000000727 _____ () C:\Users\alain\AppData\Local\Snip.txt ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ==================== Fin de FRST.txt ============================