Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16.01.2019 01 Exécuté par bedek_000 (administrateur) sur PCBORIS (16-01-2019 23:12:18) Exécuté depuis C:\Users\bedek_000\Downloads Profils chargés: bedek_000 (Profils disponibles: bedek_000 & UpdatusUser) Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ABBYY) C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Privax Limited) C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (pdfforge GmbH) C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe (© pdfforge GmbH.) C:\Program Files (x86)\PDF Architect 6 Manager\PDF Architect 6\Architect Manager.exe (Realtek) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtlService.exe () C:\Windows\runSW.exe () C:\Program Files (x86)\Photodex\ProShow Producer\scsiaccess.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Realtek) C:\Windows\SwUSB.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtWLan.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Qualcomm®Atheros®) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (pCloud AG) C:\Program Files (x86)\pCloud Drive\pCloud.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Mega Limited) C:\Users\bedek_000\AppData\Local\MEGAsync\MEGAsync.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (The Qt Company Ltd) C:\Program Files (x86)\Dropbox\Client\QtWebEngineProcess.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe (PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1466\DSAPI.exe (PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1466\pcdrwi.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\nvapiw.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe () C:\Program Files\Everything\Everything.exe () C:\Program Files\Everything\Everything.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\calc.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Farbar) C:\Users\bedek_000\Downloads\FRST64(1).exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Fences] => C:\Program Files (x86)\Stardock\Fences\Fences.exe [3992208 2014-10-03] (Stardock Corporation) HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1084328 2015-04-13] (The Eraser Project) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2199656 2018-02-09] () HKLM-x32\...\Run: [AdobeCEPServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039248 2013-03-13] (Adobe Systems Incorporated) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.1 Home Edition\bin\EpmNews.exe [2086984 2012-11-29] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [Bonus.SSR.FR11] => C:\Program Files (x86)\ABBYY FineReader 11\Bonus.ScreenshotReader.exe [925960 2013-09-04] (ABBYY.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [4050752 2019-01-08] (Dropbox, Inc.) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [132736 2013-07-30] (Qualcomm®Atheros®) HKU\S-1-5-21-12757784-459020866-4234059014-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\Office15\lync.exe [28178512 2018-12-25] (Microsoft Corporation) HKU\S-1-5-21-12757784-459020866-4234059014-1001\...\Run: [uTorrent] => C:\Users\bedek_000\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED HKU\S-1-5-21-12757784-459020866-4234059014-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [18385368 2018-06-24] (Piriform Ltd) HKU\S-1-5-21-12757784-459020866-4234059014-1001\...\Run: [pCloud] => C:\Program Files (x86)\pCloud Drive\pCloud.exe [4349568 2018-11-14] (pCloud AG) HKU\S-1-5-21-12757784-459020866-4234059014-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] False HKU\S-1-5-21-12757784-459020866-4234059014-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\logon.scr HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-07-30] (Qualcomm®Atheros®) HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-07-30] (Qualcomm®Atheros®) SSODL: EldosMountNotificator-cbfs6 - {DCD40617-6107-4359-858F-6DEABE9BE7B1} - C:\WINDOWS\system32\cbfsMntNtf6.dll (/n software, Inc.) ShellServiceObjects: Virtual Storage Mount Notification -> {DCD40617-6107-4359-858F-6DEABE9BE7B1} => C:\WINDOWS\system32\cbfsMntNtf6.dll [2016-09-09] (/n software, Inc.) ShellServiceObjects-x32: Virtual Storage Mount Notification -> {DCD40617-6107-4359-858F-6DEABE9BE7B1} => C:\WINDOWS\SysWOW64\cbfsMntNtf6.dll [2016-09-09] (/n software, Inc.) SSODL-x32: EldosMountNotificator-cbfs6 - {DCD40617-6107-4359-858F-6DEABE9BE7B1} - C:\WINDOWS\SysWOW64\cbfsMntNtf6.dll (/n software, Inc.) Startup: C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-01-02] ShortcutTarget: MEGAsync.lnk -> C:\Users\bedek_000\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1CEC571F-2A70-4BF8-A1E5-F9E7058ABBDD}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3570FED0-888D-4AC7-B417-BB85B6A3E2EB}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4D68A1B2-1B61-473B-B6AE-E92D7C22091D}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7F04BB47-2308-4E7E-9D78-59C9C558D12D}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2018-12-25] (Microsoft Corporation) BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2013-07-30] (Qualcomm®Atheros®) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-08-24] (Microsoft Corporation) BHO-x32: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-03-12] (pdfforge GmbH) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation) Toolbar: HKLM-x32 - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-03-12] (pdfforge GmbH) DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxps://qtinstall.apple.com/qtactivex/qtplugin.cab DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: 9yu900a0.default-1531890323402 FF ProfilePath: C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402 [2019-01-16] FF Homepage: Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402 -> google.fr FF NewTabOverride: Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402 -> Disabled: {66E978CD-981F-47DF-AC42-E3CF417C1467} FF Extension: (FoxyTab) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\foxytab@eros.man.xpi [2018-11-17] FF Extension: (Disable WebRTC) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\jid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2018-07-18] FF Extension: (Screengrab!) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{02450914-cdd9-410f-b1da-db004e18c671}.xpi [2018-10-13] FF Extension: (View image) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{287dcf75-bec6-4eec-b4f6-71948a2eea29}.xpi [2019-01-01] FF Extension: (New Tab Homepage) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi [2018-07-18] FF Extension: (Flash and Video Download) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{adeadebb-fedc-4180-a7f4-cfdd87496551}.xpi [2019-01-07] FF Extension: (Video DownloadHelper) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-08-03] FF Extension: (Adblock Plus) - C:\Users\bedek_000\AppData\Roaming\Mozilla\Firefox\Profiles\9yu900a0.default-1531890323402\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-12-05] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2018-05-21] [Legacy] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_114.dll [2019-01-08] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2013-03-21] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-08] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-09] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-09] (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-07-11] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-27] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-27] (NVIDIA Corporation) FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2017-11-10] ( ) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-03-21] (Adobe Systems) StartMenuInternet: FIREFOX.EXE - C:\Firefox50.0\firefox.exe ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ABBYY.Licensing.FineReader.Professional.11.0; C:\Program Files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe [819976 2011-10-19] (ABBYY) R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-30] (Windows (R) Win 7 DDK provider) [Fichier non signé] S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-19] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-19] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2019-01-08] (Dropbox, Inc.) R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2018-10-22] (Dell Inc.) R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3347440 2018-10-22] (Dell Inc.) R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2018-10-22] (Dell Inc.) R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1466\DSAPI.exe [1035072 2018-12-17] (PC-Doctor, Inc.) R2 HmaProVpn; C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe [4404064 2019-01-09] (Privax Limited) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-09] (Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes) S3 PDF Architect 6; C:\Program Files\PDF Architect 6\ws.exe [2836664 2018-03-12] (pdfforge GmbH) R2 PDF Architect 6 Creator; C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe [874680 2018-03-12] (pdfforge GmbH) R2 PDF Architect 6 Manager; C:\Program Files (x86)\PDF Architect 6 Manager\PDF Architect 6\Architect Manager.exe [999200 2018-04-20] (© pdfforge GmbH.) R2 RealtekWlanU; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtlService.exe [48856 2014-10-09] (Realtek) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor) S2 RTLDHCPService; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe [262360 2014-10-09] (Realtek) R2 RunSwUSB; C:\Windows\runSW.exe [59232 2018-12-31] () R2 ScsiAccess; C:\Program Files (x86)\Photodex\ProShow Producer\ScsiAccess.exe [186760 2017-11-10] () R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39384 2018-12-12] (Dell Inc.) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 athr; C:\WINDOWS\system32\DRIVERS\athwbx.sys [3837440 2013-07-15] (Qualcomm Atheros Communications, Inc.) R3 BTATH_LWFLT; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [77464 2013-07-30] (Qualcomm Atheros) R1 cbfs6; C:\WINDOWS\system32\drivers\cbfs6.sys [460992 2016-09-09] (/n software, Inc.) R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [41608 2018-05-08] (Dell Inc.) R3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Dell Computer Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [17480 2012-12-21] () [Fichier non signé] S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [14920 2012-12-21] () [Fichier non signé] S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [9800 2012-12-21] () [Fichier non signé] S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [9160 2012-12-21] () [Fichier non signé] R3 hmatap; C:\WINDOWS\system32\DRIVERS\hmatap.sys [45312 2016-12-02] (The OpenVPN Project) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [261032 2019-01-16] (Malwarebytes) R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-09] (Intel Corporation) S3 netr28ux; C:\WINDOWS\system32\DRIVERS\netr28ux.sys [2269592 2017-12-24] (MediaTek Inc.) S3 pmxdrv; C:\WINDOWS\system32\drivers\pmxdrv.sys [31152 2018-08-03] () S3 RtlWlanu; C:\WINDOWS\system32\DRIVERS\rtwlanu.sys [8272208 2018-08-20] (Realtek Semiconductor Corporation ) R0 Si3531; C:\WINDOWS\System32\DRIVERS\Si3531.sys [333864 2009-02-09] (Silicon Image, Inc) R0 SiFilter; C:\WINDOWS\System32\DRIVERS\SiWinAcc.sys [22568 2009-02-09] (Silicon Image, Inc.) R0 SiRemFil; C:\WINDOWS\System32\DRIVERS\SiRemFil.sys [16936 2009-02-09] (Silicon Image, Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S3 UHSfiltv; C:\WINDOWS\system32\drivers\UHSfiltv.sys [23552 2014-12-22] (Creative Technology Ltd.) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () R3 vpnpbus; C:\WINDOWS\System32\drivers\vpnpbus.sys [18624 2016-09-09] (/n software, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-01-16 23:12 - 2019-01-16 23:12 - 000023511 _____ C:\Users\bedek_000\Downloads\FRST.txt 2019-01-16 23:11 - 2019-01-16 23:11 - 002427904 _____ (Farbar) C:\Users\bedek_000\Downloads\FRST64(1).exe 2019-01-16 23:09 - 2019-01-16 23:09 - 000003018 _____ C:\WINDOWS\System32\Tasks\RogueKiller Anti-Malware 2019-01-16 23:09 - 2019-01-16 23:09 - 000000878 _____ C:\Users\Public\Desktop\RogueKiller.lnk 2019-01-16 22:53 - 2019-01-16 22:53 - 029181976 _____ (Adlice Software ) C:\Users\bedek_000\Downloads\RogueKiller_setup(1).exe 2019-01-16 22:43 - 2019-01-16 22:43 - 000002364 _____ C:\Users\bedek_000\Desktop\ZHPCleaner.txt 2019-01-16 22:35 - 2019-01-16 22:35 - 000383606 _____ C:\Users\bedek_000\Downloads\zhpdiag.txt 2019-01-16 22:30 - 2019-01-16 22:30 - 000362492 _____ C:\Users\bedek_000\Desktop\ZHPDiag.txt 2019-01-16 22:17 - 2019-01-16 22:17 - 000261032 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2019-01-16 22:17 - 2019-01-16 22:17 - 000000000 ___RD C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2019-01-16 22:14 - 2019-01-16 22:14 - 000001066 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2019-01-16 22:14 - 2019-01-16 22:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2019-01-16 22:14 - 2019-01-16 22:14 - 000000000 ____D C:\Program Files\VS Revo Group 2019-01-16 22:13 - 2019-01-16 22:13 - 007127416 _____ (VS Revo Group ) C:\Users\bedek_000\Downloads\revouninstaller_2-0-6_en_39528.exe 2019-01-16 22:01 - 2019-01-16 22:01 - 007320272 _____ (Malwarebytes) C:\Users\bedek_000\Downloads\adwcleaner_7.2.6.0.exe 2019-01-16 21:57 - 2019-01-16 21:57 - 000000873 _____ C:\Users\bedek_000\Desktop\ZHPDiag.lnk 2019-01-16 21:56 - 2019-01-16 21:57 - 003191680 _____ C:\Users\bedek_000\Downloads\ZHPDiag3.exe 2019-01-16 17:58 - 2019-01-16 17:58 - 000013990 _____ C:\Users\bedek_000\Downloads\Etude-de-la-vidéo-1789-cours-2018-2019.pdf 2019-01-16 16:44 - 2019-01-16 16:44 - 007088451 _____ C:\Users\bedek_000\Downloads\lecon-n-3-la-revolution-francaise-et-l-empire(1).pdf 2019-01-16 15:20 - 2019-01-16 15:20 - 009441984 _____ C:\Users\bedek_000\Downloads\The Raspberry Reich.avi.part 2019-01-16 15:20 - 2019-01-16 15:20 - 000000000 _____ C:\Users\bedek_000\Downloads\The Raspberry Reich.avi 2019-01-16 15:18 - 2019-01-16 16:41 - 3075848417 _____ C:\Users\bedek_000\Downloads\Noi 4 (IT 2014).mkv 2019-01-16 15:18 - 2019-01-16 15:18 - 000081763 _____ C:\Users\bedek_000\Downloads\Noi 4 (IT 2014).English.srt 2019-01-15 22:31 - 2019-01-15 22:38 - 130506992 ____H C:\Users\bedek_000\Downloads\Friends Threeway.mp4 2019-01-15 22:14 - 2019-01-15 22:15 - 188993536 _____ C:\Users\bedek_000\Downloads\Smafuglar.avi 2019-01-15 22:14 - 2019-01-15 22:14 - 000003260 _____ C:\Users\bedek_000\Downloads\Smafuglar.srt 2019-01-15 22:07 - 2019-01-15 22:11 - 733614333 _____ C:\Users\bedek_000\Downloads\Binyag 2008.mkv 2019-01-15 21:39 - 2019-01-15 21:39 - 000022832 _____ C:\Users\bedek_000\Downloads\TPE 18.12 Final.odt 2019-01-15 21:36 - 2019-01-15 21:36 - 000702815 _____ C:\Users\bedek_000\Desktop\TPE CONQUETE SPATIALE relu BDK.odt 2019-01-15 21:17 - 2019-01-15 21:17 - 001879569 _____ C:\Users\bedek_000\Downloads\Pesquet_101017.pdf 2019-01-15 20:58 - 2019-01-15 20:58 - 003922082 _____ C:\Users\bedek_000\Downloads\is_cnesmag_73_fr_web.pdf 2019-01-15 20:57 - 2019-01-15 20:57 - 000041973 _____ C:\Users\bedek_000\Downloads\Liste_experimentations_v9_(2)_496988.pdf 2019-01-15 20:56 - 2019-01-15 20:56 - 003776205 _____ C:\Users\bedek_000\Downloads\prx_fr-proxima-a4-web.pdf 2019-01-14 22:10 - 2019-01-14 22:21 - 2395448838 _____ C:\Users\bedek_000\Downloads\Do.Re.Mi.Fa.2016.720p.WEBRip.x264-iNTENSO.mkv 2019-01-14 22:02 - 2019-01-14 22:09 - 1025390592 _____ C:\Users\bedek_000\Downloads\Maskarada.1971.avi 2019-01-14 22:02 - 2019-01-14 22:02 - 000025186 _____ C:\Users\bedek_000\Downloads\Maskarada.1971.srt 2019-01-14 21:58 - 2019-01-14 22:44 - 957874321 _____ C:\Users\bedek_000\Downloads\LaCorsa.rar 2019-01-14 21:51 - 2019-01-14 22:04 - 2077882476 _____ C:\Users\bedek_000\Downloads\The.Boarding.School.1969.DUBBED.1080p.BluRay.H264.AAC.mp4 2019-01-14 20:23 - 2019-01-14 20:23 - 000184896 _____ C:\Users\bedek_000\Documents\Proposition Programme Grèce 18 avril 2019.pdf 2019-01-14 18:32 - 2019-01-14 18:47 - 125742840 ____H C:\Users\bedek_000\Downloads\Zilv Gudel [hotel Part-1] -.mp4 2019-01-13 22:47 - 2019-01-13 22:47 - 000776668 _____ C:\Users\bedek_000\Downloads\US4384288.pdf 2019-01-13 21:15 - 2019-01-13 21:15 - 029172968 _____ (Adlice Software ) C:\Users\bedek_000\Downloads\RogueKiller_setup.exe 2019-01-13 20:55 - 2019-01-13 20:55 - 003300736 _____ C:\Users\bedek_000\ZHPCleaner.exe 2019-01-13 20:11 - 2019-01-13 20:26 - 117813014 ____H C:\Users\bedek_000\Downloads\Zilv Gudel 2.mp4 2019-01-13 20:10 - 2019-01-13 20:30 - 168253047 ____H C:\Users\bedek_000\Downloads\Zilv Gudel 1.mp4 2019-01-13 19:46 - 2019-01-13 19:46 - 000026090 _____ C:\Users\bedek_000\Downloads\fiche objectifs.pdf 2019-01-13 18:47 - 2019-01-13 18:56 - 048407309 ____H C:\Users\bedek_000\Downloads\Zilv Gudel short compilation.mp4 2019-01-13 18:46 - 2019-01-13 18:46 - 033639864 ____H C:\Users\bedek_000\Downloads\TwinkyBF.mp4 2019-01-13 18:23 - 2019-01-13 18:31 - 1548146107 _____ C:\Users\bedek_000\Downloads\Une.enfance.A.Childhood.2015.mkv 2019-01-12 23:34 - 2019-01-13 00:02 - 231774594 ____H C:\Users\bedek_000\Downloads\Vintage_NLB036.mp4 2019-01-12 23:33 - 2019-01-13 00:06 - 497366971 ____H C:\Users\bedek_000\Downloads\Vintage_NLB023.mp4 2019-01-11 15:11 - 2019-01-11 15:11 - 000561195 _____ C:\Users\bedek_000\Downloads\Cours 2 Fiche de travail n° 2.pdf 2019-01-11 15:10 - 2019-01-11 15:10 - 000569330 _____ C:\Users\bedek_000\Downloads\Cours 1 Fiche de travail n° 1.pdf 2019-01-11 14:58 - 2019-01-11 14:58 - 000000858 _____ C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2019-01-11 14:58 - 2019-01-11 14:58 - 000000810 _____ C:\Users\bedek_000\Desktop\Start Tor Browser.lnk 2019-01-11 14:54 - 2019-01-11 14:54 - 000000000 ____D C:\Users\bedek_000\Desktop\Tor Browser 2019-01-11 09:36 - 2019-01-11 09:36 - 000400789 _____ C:\Users\bedek_000\Downloads\Seq_Chihiro.pdf 2019-01-11 09:31 - 2019-01-11 09:31 - 003648878 _____ C:\Users\bedek_000\Downloads\chihiro.pdf 2019-01-11 08:04 - 2019-01-11 08:17 - 3177374219 _____ C:\Users\bedek_000\Downloads\Rockaway.2017.1080p.WEB-DL.mp4 2019-01-10 22:04 - 2019-01-02 20:05 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-01-10 22:04 - 2019-01-02 20:05 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2019-01-10 00:10 - 2019-01-10 00:10 - 000130110 _____ C:\Users\bedek_000\Downloads\La_Martiniere_Croisires_de_rves_-_9782732445526.pdf 2019-01-09 22:24 - 2019-01-09 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2019-01-09 18:48 - 2019-01-09 19:20 - 246491164 ____H C:\Users\bedek_000\Downloads\Vintage_NLB039 - Pornhub.com.mp4 2019-01-09 15:10 - 2018-12-28 03:12 - 000444368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-01-09 15:10 - 2018-12-28 03:12 - 000178128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-01-09 15:10 - 2018-12-28 01:24 - 000333768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-01-09 15:10 - 2018-12-28 01:01 - 025738240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-01-09 15:10 - 2018-12-28 00:38 - 002902016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-01-09 15:10 - 2018-12-28 00:36 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-01-09 15:10 - 2018-12-28 00:31 - 005778944 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-01-09 15:10 - 2018-12-28 00:25 - 020279808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-01-09 15:10 - 2018-12-28 00:25 - 000790016 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-01-09 15:10 - 2018-12-28 00:17 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2019-01-09 15:10 - 2018-12-28 00:05 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-01-09 15:10 - 2018-12-28 00:02 - 002295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-01-09 15:10 - 2018-12-27 23:56 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2019-01-09 15:10 - 2018-12-27 23:55 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-01-09 15:10 - 2018-12-27 23:50 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2019-01-09 15:10 - 2018-12-27 23:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2019-01-09 15:10 - 2018-12-27 23:48 - 015284224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-01-09 15:10 - 2018-12-27 23:48 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2019-01-09 15:10 - 2018-12-27 23:48 - 000728064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2019-01-09 15:10 - 2018-12-27 23:48 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2019-01-09 15:10 - 2018-12-27 23:47 - 001441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-01-09 15:10 - 2018-12-27 23:45 - 002135552 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2019-01-09 15:10 - 2018-12-27 23:41 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-01-09 15:10 - 2018-12-27 23:34 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2019-01-09 15:10 - 2018-12-27 23:33 - 004860416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2019-01-09 15:10 - 2018-12-27 23:33 - 004494848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-01-09 15:10 - 2018-12-27 23:31 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2019-01-09 15:10 - 2018-12-27 23:29 - 013680640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-01-09 15:10 - 2018-12-27 23:29 - 002060288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2019-01-09 15:10 - 2018-12-27 23:29 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2019-01-09 15:10 - 2018-12-27 23:29 - 000333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2019-01-09 15:10 - 2018-12-27 23:24 - 000780800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-01-09 15:10 - 2018-12-27 23:22 - 001555968 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-01-09 15:10 - 2018-12-27 23:11 - 004386816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2019-01-09 15:10 - 2018-12-27 23:11 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2019-01-09 15:10 - 2018-12-27 23:11 - 000785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2019-01-09 15:10 - 2018-12-27 23:07 - 001329664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-01-09 15:10 - 2018-12-27 23:06 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2019-01-09 15:10 - 2018-12-27 23:05 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2019-01-09 15:10 - 2018-12-08 21:22 - 007371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-01-09 15:10 - 2018-12-08 21:22 - 002014152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-01-09 15:10 - 2018-12-08 20:00 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2019-01-09 15:10 - 2018-12-08 12:23 - 000121272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2019-01-09 15:10 - 2018-12-08 09:13 - 002534664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2019-01-09 15:10 - 2018-12-08 07:25 - 002173040 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-01-09 15:10 - 2018-12-08 06:56 - 001901896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2019-01-09 15:10 - 2018-12-08 06:32 - 001563376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-01-09 15:10 - 2018-12-08 04:49 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-01-09 15:10 - 2018-12-07 15:24 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-01-09 15:10 - 2018-11-28 09:34 - 000323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll 2019-01-09 15:10 - 2018-11-28 09:17 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll 2019-01-09 14:15 - 2019-01-09 14:31 - 3544275615 _____ C:\Users\bedek_000\Downloads\S.03.2018.1080p.WEB-DL.H264.AC3-EVO.mkv 2019-01-08 21:52 - 2019-01-08 21:52 - 000172122 _____ C:\Users\bedek_000\Downloads\2019010821521508_rpp.pdf 2019-01-08 18:37 - 2019-01-08 18:37 - 000484394 _____ C:\Users\bedek_000\Downloads\Mémo Croûte continentale.pdf 2019-01-08 14:07 - 2019-01-08 14:07 - 000051024 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2019-01-08 14:07 - 2019-01-08 14:07 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2019-01-08 14:07 - 2019-01-08 14:07 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2019-01-08 14:07 - 2019-01-08 14:07 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2019-01-07 23:53 - 2019-01-07 23:53 - 000696192 _____ C:\Users\bedek_000\Downloads\TPE CONQUETE SPATIALE.odt 2019-01-07 21:13 - 2019-01-07 21:16 - 000014616 _____ C:\Users\bedek_000\Downloads\Appréciations QUATRIEME F-TRIMESTRE 1.xlsx 2019-01-07 21:11 - 2019-01-07 21:13 - 000035840 _____ C:\Users\bedek_000\Downloads\Les devoirs Classe _ QUATRIEME F-TRIMESTRE 1.xls 2019-01-07 18:43 - 2019-01-07 18:43 - 005834842 _____ C:\Users\bedek_000\Downloads\Marta visite 2016 vdef.5,8Mo-1.pdf 2019-01-07 17:44 - 2019-01-07 17:44 - 000000000 ____D C:\Users\bedek_000\Documents\Bluetooth Folder 2019-01-06 19:52 - 2019-01-06 19:52 - 000132744 _____ C:\Users\bedek_000\Downloads\2019010619520143_rpp.pdf 2019-01-06 19:52 - 2019-01-06 19:52 - 000096817 _____ C:\Users\bedek_000\Downloads\2019010619524818_rpp.pdf 2019-01-06 18:20 - 2019-01-06 18:20 - 000089285 _____ C:\Users\bedek_000\Downloads\T10_Devoir_sur_les_fonctions_trigonometriques_corrige.pdf 2019-01-06 17:57 - 2019-01-06 19:12 - 000000000 ____D C:\Users\bedek_000\Desktop\Nouveau dossier 2019-01-06 17:51 - 2019-01-06 17:52 - 189543365 _____ C:\Users\bedek_000\Downloads\GrosFichiers - marcowitch de VLB.zip 2019-01-06 16:27 - 2019-01-06 16:28 - 000182466 _____ C:\Users\bedek_000\Downloads\Attestation EDF 2019.pdf 2019-01-05 20:02 - 2019-01-05 20:48 - 3922007814 _____ C:\Users\bedek_000\Downloads\Little.Accidents.2014.LIMITED.1080p.BluRay.X264-CADAVER.mkv 2019-01-05 15:20 - 2019-01-05 15:20 - 000028160 _____ C:\Users\bedek_000\Downloads\chambedaze_V2.xls 2019-01-05 13:06 - 2019-01-05 13:06 - 000002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-01-05 09:30 - 2019-01-05 09:57 - 2166612729 _____ C:\Users\bedek_000\Downloads\Beautiful.Boy.2018.1080p.AMZN.WEB-DL.DDP5.1.H.264-NTG.mkv 2019-01-04 11:16 - 2019-01-04 11:25 - 002631350 _____ C:\Users\bedek_000\Desktop\LEQUEUX Astronomie RMN.pdf 2019-01-04 09:26 - 2019-01-04 09:26 - 007135673 _____ C:\Users\bedek_000\Downloads\llb-orphee-livre-19-05-2009-pages1-63_web.pdf 2019-01-03 15:23 - 2019-01-03 15:23 - 006568582 _____ C:\Users\bedek_000\Downloads\agenda21.pdf 2019-01-03 11:44 - 2019-01-03 11:44 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TP-Link 2019-01-03 11:43 - 2019-01-03 11:43 - 000000000 ____D C:\Program Files (x86)\TP-Link 2019-01-03 11:43 - 2017-12-24 23:51 - 000353176 _____ (Mediatek Inc.) C:\WINDOWS\system32\RaCoInstx.dll 2019-01-03 11:43 - 2017-12-24 23:50 - 002269592 _____ (MediaTek Inc.) C:\WINDOWS\system32\netr28ux.sys 2019-01-03 11:43 - 2017-12-24 23:50 - 002269592 _____ (MediaTek Inc.) C:\WINDOWS\system32\Drivers\netr28ux.sys 2019-01-03 11:43 - 2017-12-24 23:50 - 000040505 _____ C:\WINDOWS\system32\netr28ux.cat 2019-01-03 11:43 - 2017-12-24 23:44 - 000079216 _____ C:\WINDOWS\system32\FW_7662.bin 2019-01-03 11:43 - 2017-12-24 23:44 - 000079216 _____ C:\WINDOWS\system32\Drivers\FW_7662.bin 2019-01-03 11:43 - 2017-12-24 23:44 - 000020626 _____ C:\WINDOWS\system32\Patch_7662.bin 2019-01-03 11:43 - 2017-12-24 23:44 - 000020626 _____ C:\WINDOWS\system32\Drivers\Patch_7662.bin 2019-01-03 11:43 - 2017-12-24 23:44 - 000016389 _____ C:\WINDOWS\system32\RaCoInst.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\PwrTable7610FCC.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\PwrTable7610CE.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\PwrTable7610.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\Drivers\PwrTable7610FCC.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\Drivers\PwrTable7610CE.dat 2019-01-03 11:43 - 2017-12-24 23:44 - 000000440 _____ C:\WINDOWS\system32\Drivers\PwrTable7610.dat 2019-01-03 11:42 - 2019-01-03 11:43 - 000000000 ____D C:\Users\bedek_000\AppData\Local\TP-Link 2019-01-03 11:42 - 2019-01-03 11:42 - 000000000 ____D C:\ProgramData\TP-LINK 2019-01-03 10:54 - 2019-01-03 10:54 - 000096817 _____ C:\Users\bedek_000\Downloads\2019010310544755_rpp.pdf 2019-01-03 10:53 - 2019-01-03 10:53 - 000132744 _____ C:\Users\bedek_000\Downloads\2019010310534750_rpp.pdf 2019-01-02 17:36 - 2019-01-02 17:55 - 1336236492 _____ C:\Users\bedek_000\Downloads\Will.S01E10.FiNAL.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-02 17:21 - 2019-01-02 17:21 - 000000022 _____ C:\Users\bedek_000\Downloads\MEGA-RECOVERYKEY.txt 2019-01-02 17:02 - 2019-01-03 11:15 - 000001109 _____ C:\Users\bedek_000\Desktop\MEGAsync.lnk 2019-01-02 17:02 - 2019-01-03 11:15 - 000000000 ____D C:\Users\bedek_000\AppData\Local\MEGAsync 2019-01-02 17:02 - 2019-01-02 17:02 - 000000000 ____D C:\WINDOWS\System32\Tasks\MEGA 2019-01-02 17:02 - 2019-01-02 17:02 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync 2019-01-02 17:02 - 2019-01-02 17:02 - 000000000 ____D C:\Users\bedek_000\AppData\Local\Mega Limited 2019-01-02 16:56 - 2019-01-02 17:13 - 1256981206 _____ C:\Users\bedek_000\Downloads\Will.S01E09.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-02 15:08 - 2019-01-02 15:52 - 035535508 _____ C:\Users\bedek_000\Downloads\34.2017.1080p.AMZN.WEB-DL.DD+5.1.H.264-AJP69.mkv 2019-01-02 15:06 - 2019-01-02 15:24 - 1353292889 _____ C:\Users\bedek_000\Downloads\Will.S01E08.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-02 14:39 - 2019-01-02 14:56 - 1264459576 _____ C:\Users\bedek_000\Downloads\Will.S01E07.VOSTFR.720p.WEB-DL.x264-FDS.WwW.Zone-Telechargement.Ws.mkv 2019-01-02 12:33 - 2019-01-02 12:33 - 000002529 _____ C:\Users\Public\Desktop\pCloud Drive.lnk 2019-01-02 12:33 - 2019-01-02 12:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pCloud 2019-01-02 12:33 - 2019-01-02 12:33 - 000000000 ____D C:\Program Files (x86)\pCloud Drive 2019-01-02 10:19 - 2019-01-02 10:37 - 1357676932 _____ C:\Users\bedek_000\Downloads\Will.S01E06.VOSTFR.720p.WEB-DL.x264-FDS.WwW.Zone-Telechargement.Ws.mkv 2019-01-02 09:54 - 2019-01-02 10:12 - 1344675260 _____ C:\Users\bedek_000\Downloads\Will.S01E05.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-01 21:23 - 2019-01-01 22:10 - 1339547027 _____ C:\Users\bedek_000\Downloads\Will.S01E04.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-01 19:29 - 2019-01-01 20:27 - 1232542337 _____ C:\Users\bedek_000\Downloads\Will.S01E03.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-01 17:57 - 2019-01-01 18:34 - 1230622275 _____ C:\Users\bedek_000\Downloads\Will.S01E02.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-01 16:41 - 2019-01-01 17:05 - 1767222077 _____ C:\Users\bedek_000\Downloads\Will.S01E01.FASTSUB.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement.Ws.mkv 2019-01-01 09:16 - 2019-01-01 10:07 - 4246950888 _____ C:\Users\bedek_000\Downloads\Un.sac.de.billes.2017.FRENCH.1080p.AAC_FRTeam.mp4 2019-01-01 09:15 - 2019-01-01 09:34 - 3555597031 _____ C:\Users\bedek_000\Downloads\Of.Freaks.and.Men.1998.WEB.1080.x264.mkv 2019-01-01 09:15 - 2019-01-01 09:15 - 000031556 _____ C:\Users\bedek_000\Downloads\Of.Freaks.and.Men.1998.WEB.1080.x264.srt 2018-12-31 15:53 - 2018-12-31 16:37 - 2744838345 _____ C:\Users\bedek_000\Downloads\Tschick.2016.1080p.BluRay.x264-NODLABS.mkv 2018-12-31 15:51 - 2018-12-31 15:59 - 1365063186 _____ C:\Users\bedek_000\Downloads\Papa ist auf Dienstreise.avi 2018-12-31 15:13 - 2018-12-31 15:13 - 000002204 _____ C:\Users\Public\Desktop\REALTEK USB Wireless LAN Utility.lnk 2018-12-31 15:13 - 2018-12-31 15:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility 2018-12-31 15:13 - 2018-12-31 15:13 - 000000000 ____D C:\Program Files (x86)\Cisco 2018-12-31 15:13 - 2018-12-31 15:12 - 000509792 _____ (Realtek) C:\WINDOWS\SwUSB.exe 2018-12-31 15:13 - 2018-12-31 15:12 - 000059232 _____ () C:\WINDOWS\runSW.exe 2018-12-31 15:13 - 2018-08-20 13:56 - 008272208 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\rtwlanu.sys 2018-12-31 15:12 - 2018-08-22 03:07 - 001139416 ____R (Realtek Semiconductor Corp. ) C:\WINDOWS\system32\Rtlihvs.dll 2018-12-30 08:05 - 2018-12-30 08:05 - 000997836 _____ C:\Users\bedek_000\Downloads\9782804191603.pdf 2018-12-30 07:55 - 2018-12-30 07:56 - 049135152 _____ C:\Users\bedek_000\Downloads\hatier_geo_seconde_2012.pdf 2018-12-29 18:29 - 2019-01-02 15:00 - 000000028 _____ C:\WINDOWS\OutLog.txt 2018-12-27 21:51 - 2018-12-27 22:15 - 967482142 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E10.FiNAL.FASTSUB.VOSTFR.720p.WEBRip.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:51 - 2018-12-27 22:14 - 808144882 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E09.FASTSUB.VOSTFR.720p.WEBRip.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:50 - 2018-12-27 22:16 - 1087939217 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E08.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:50 - 2018-12-27 22:13 - 794338266 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E07.FASTSUB.VOSTFR.720p.WEBRip.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:49 - 2018-12-27 22:14 - 946832101 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E04.FASTSUB.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:49 - 2018-12-27 22:09 - 920265731 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E05.FASTSUB.VOSTFR.720p.WEB-DL.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:35 - 2018-12-27 21:48 - 781402094 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E06.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:34 - 2018-12-27 21:47 - 792158694 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E02.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:34 - 2018-12-27 21:47 - 741481123 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E01.FASTSUB.VOSTFR.720p.HDTV.x264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 21:33 - 2018-12-27 21:45 - 816349208 _____ C:\Users\bedek_000\Downloads\The.Alienist.S01E03.VOSTFR.720p.AMZN.WEB-DL.DD.5.1.H.264-ZT.WwW.Zone-Telechargement1.com.mkv 2018-12-27 19:16 - 2018-12-27 19:16 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\gtk-2.0 2018-12-27 15:16 - 2018-12-27 15:16 - 001073791 _____ C:\Users\bedek_000\Desktop\DEVIS La parisienne019.pdf 2018-12-27 14:24 - 2018-12-27 14:24 - 000643973 _____ C:\Users\bedek_000\Desktop\Paradoxes conceptuels du développement durable et nouvelles initiatives de coopération Nord-Sud _ le Mécanisme pour un Développement Propre (MDP).pdf 2018-12-27 07:51 - 2018-12-27 07:51 - 005855964 _____ C:\Users\bedek_000\Downloads\2-definir-developpement-durable-lycee-papara (1).pdf 2018-12-26 15:31 - 2018-12-26 15:31 - 012990427 _____ C:\Users\bedek_000\Downloads\[UE5500-XN_ZF]BN68-04055N-01L04-0906.pdf 2018-12-26 15:29 - 2018-12-26 15:29 - 004412849 _____ C:\Users\bedek_000\Downloads\02-XTDVBEUE-FRA-1109.pdf 2018-12-26 11:32 - 2018-12-26 11:32 - 000411720 _____ C:\WINDOWS\Minidump\122618-28531-01.dmp 2018-12-26 11:32 - 2018-12-26 11:32 - 000000000 ____D C:\WINDOWS\Minidump 2018-12-26 07:24 - 2018-12-26 07:24 - 003298176 _____ C:\Users\bedek_000\Downloads\ZHPCleaner(2).exe 2018-12-25 16:34 - 2018-12-26 11:36 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\Deezer 2018-12-25 16:34 - 2018-12-25 16:34 - 000002432 _____ C:\Users\bedek_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Deezer.lnk 2018-12-25 16:34 - 2018-12-25 16:34 - 000002424 _____ C:\Users\bedek_000\Desktop\Deezer.lnk 2018-12-25 16:30 - 2018-12-25 16:30 - 057028944 _____ (Deezer) C:\Users\bedek_000\Downloads\DeezerDesktopSetup_4.0.5.exe 2018-12-25 08:57 - 2018-12-25 09:17 - 3524537399 _____ C:\Users\bedek_000\Downloads\Rejected(1).rar 2018-12-23 08:44 - 2018-12-23 08:53 - 3524537399 _____ C:\Users\bedek_000\Downloads\Rejected.rar 2018-12-21 17:14 - 2018-12-21 17:14 - 000264689 _____ C:\Users\bedek_000\Downloads\MB1819056 Organigramme JA au 7 janvier 2019.pdf 2018-12-19 16:53 - 2018-12-19 16:53 - 000054138 _____ C:\Users\bedek_000\Downloads\a0703857-3bb5-4d21-8239-9ea6374452ab.pdf 2018-12-19 16:52 - 2018-12-19 16:52 - 004431891 _____ C:\Users\bedek_000\Downloads\revolution_4e_retour_exp_ok(2).pdf 2018-12-19 16:38 - 2018-12-19 16:38 - 000187622 _____ C:\Users\bedek_000\Downloads\ahrf_0003-4436_1990_num_280_1_1327.pdf 2018-12-19 15:27 - 2018-12-19 15:27 - 004965149 _____ C:\Users\bedek_000\Downloads\Enseigner_les_temps_forts_de_la_Revolution_par_Talleyra.pptx 2018-12-19 15:19 - 2018-12-19 15:19 - 006519186 _____ C:\Users\bedek_000\Downloads\Stage_Revolution.pdf 2018-12-19 14:51 - 2018-12-19 14:51 - 000927816 _____ C:\Users\bedek_000\Downloads\marion_perrine.pdf 2018-12-17 20:03 - 2018-12-17 20:03 - 000002149 _____ C:\Users\Public\Desktop\SupportAssist.lnk 2018-12-17 20:02 - 2018-12-17 20:02 - 000000000 ____D C:\Users\bedek_000\AppData\Local\Dell Inc ==================== Un mois (modifiés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-01-16 23:12 - 2017-04-11 21:11 - 000000000 ____D C:\FRST 2019-01-16 23:12 - 2016-11-18 18:55 - 000000000 ____D C:\Users\bedek_000\AppData\LocalLow\Mozilla 2019-01-16 23:09 - 2018-05-18 07:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller 2019-01-16 23:09 - 2018-05-18 07:31 - 000000000 ____D C:\Program Files\RogueKiller 2019-01-16 23:04 - 2017-08-21 18:53 - 000003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-12757784-459020866-4234059014-1001 2019-01-16 22:51 - 2018-10-29 10:26 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\Everything 2019-01-16 22:50 - 2018-08-19 09:35 - 000001208 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2019-01-16 22:43 - 2018-02-14 17:11 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\ZHP 2019-01-16 22:24 - 2014-11-20 23:46 - 001830176 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-01-16 22:24 - 2014-11-20 23:03 - 000813044 _____ C:\WINDOWS\system32\perfh00C.dat 2019-01-16 22:24 - 2014-11-20 23:03 - 000160080 _____ C:\WINDOWS\system32\perfc00C.dat 2019-01-16 22:24 - 2013-08-22 14:36 - 000000000 ____D C:\WINDOWS\Inf 2019-01-16 22:21 - 2016-02-04 17:48 - 000000000 __RDO C:\Users\bedek_000\OneDrive 2019-01-16 22:19 - 2018-08-19 09:46 - 000000000 ___RD C:\Users\bedek_000\Dropbox 2019-01-16 22:17 - 2018-08-19 09:35 - 000001204 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2019-01-16 22:17 - 2017-08-21 19:05 - 000000000 ____D C:\ProgramData\NVIDIA 2019-01-16 22:17 - 2013-08-22 15:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-01-16 21:57 - 2018-02-14 17:11 - 000000000 ____D C:\Users\bedek_000\AppData\Local\ZHP 2019-01-16 21:28 - 2018-02-14 17:11 - 000000885 _____ C:\Users\bedek_000\Desktop\ZHPCleaner.lnk 2019-01-16 21:27 - 2017-11-19 18:49 - 000007605 _____ C:\Users\bedek_000\AppData\Local\resmon.resmoncfg 2019-01-16 19:55 - 2018-02-09 18:25 - 020673024 ___SH C:\Users\bedek_000\Downloads\Thumbs.db 2019-01-16 19:36 - 2016-02-02 14:36 - 000000000 ____D C:\Users\bedek_000\AppData\Local\Packages 2019-01-16 18:47 - 2017-08-21 21:19 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\vlc 2019-01-16 14:32 - 2017-08-21 19:35 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-01-16 14:32 - 2017-08-21 19:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-01-15 23:31 - 2018-10-30 00:21 - 000000000 ____D C:\Users\bedek_000\AppData\Local\Everything 2019-01-15 23:31 - 2013-08-22 14:25 - 000262144 ___SH C:\WINDOWS\system32\config\BBI 2019-01-13 20:55 - 2017-08-21 18:37 - 000000000 ____D C:\Users\bedek_000 2019-01-12 22:17 - 2016-02-03 15:19 - 000000000 ____D C:\Users\bedek_000\Desktop\Captvty 2019-01-12 19:21 - 2017-08-21 19:35 - 000000952 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-01-12 09:29 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\rescache 2019-01-10 22:03 - 2017-08-21 23:49 - 000000000 ____D C:\Program Files (x86)\HMA! Pro VPN 2019-01-10 22:03 - 2017-08-21 21:23 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2019-01-09 22:24 - 2018-08-19 09:35 - 000000000 ____D C:\Program Files (x86)\Dropbox 2019-01-09 21:55 - 2017-11-27 21:53 - 000000000 ____D C:\Users\bedek_000\AppData\Local\CrashDumps 2019-01-09 17:24 - 2017-08-24 13:05 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2019-01-09 17:23 - 2013-08-22 16:20 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-01-09 17:22 - 2013-08-22 14:25 - 000000167 _____ C:\WINDOWS\win.ini 2019-01-09 17:18 - 2017-08-21 21:21 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-01-09 17:12 - 2017-08-21 21:21 - 132790320 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-01-08 21:48 - 2018-03-13 19:31 - 000004640 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2019-01-08 21:48 - 2017-10-30 21:57 - 000004496 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2019-01-08 21:48 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2019-01-08 21:48 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\Macromed 2019-01-07 21:13 - 2017-09-04 21:01 - 000000000 ____D C:\Users\bedek_000\AppData\Local\CutePDF Writer 2019-01-06 10:51 - 2018-02-09 18:20 - 000989184 ___SH C:\Users\bedek_000\Desktop\Thumbs.db 2019-01-03 14:25 - 2018-08-03 17:24 - 000000000 ____D C:\Program Files\Recuva 2019-01-03 11:49 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-01-03 11:43 - 2017-08-24 09:00 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2019-01-03 11:43 - 2013-04-12 16:31 - 000000000 ____D C:\Temp 2019-01-02 17:05 - 2017-10-16 19:24 - 000000000 ____D C:\Users\bedek_000\AppData\Roaming\hubiC 2019-01-02 17:05 - 2017-08-22 12:24 - 000000000 ____D C:\ProgramData\Package Cache 2019-01-02 14:40 - 2018-08-19 06:47 - 000000000 ____D C:\Users\bedek_000\AppData\Local\pCloud 2018-12-31 15:13 - 2017-11-15 15:44 - 000000000 ____D C:\Program Files (x86)\Realtek 2018-12-31 09:58 - 2018-06-28 18:23 - 000004158 _____ C:\WINDOWS\System32\Tasks\HMA! Pro VPN Update 2018-12-31 09:57 - 2018-08-29 06:23 - 000004128 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-12-28 06:47 - 2017-08-21 21:02 - 000000000 ____D C:\Users\bedek_000\AppData\Local\Adobe 2018-12-27 18:38 - 2017-08-21 21:23 - 000001221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2018-12-26 11:32 - 2016-12-28 11:10 - 858595210 _____ C:\WINDOWS\MEMORY.DMP 2018-12-24 12:09 - 2018-10-14 16:41 - 005141352 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-12-21 08:46 - 2018-10-12 09:29 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2018-12-20 17:53 - 2017-08-24 09:32 - 000003502 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-12-20 17:53 - 2017-08-24 09:32 - 000003374 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-12-19 14:42 - 2016-03-15 08:47 - 000000000 ____D C:\Users\bedek_000\dwhelper 2018-12-19 14:07 - 2017-11-19 17:40 - 000000000 ____D C:\ProgramData\PCDr 2018-12-17 20:03 - 2017-11-19 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2018-12-17 20:02 - 2017-11-19 17:43 - 000000000 ____D C:\ProgramData\SupportAssist ==================== Fichiers à la racine de certains dossiers ======= 2019-01-13 20:55 - 2019-01-13 20:55 - 003300736 _____ () C:\Users\bedek_000\ZHPCleaner.exe 2018-06-15 16:40 - 2018-09-13 20:25 - 000000132 _____ () C:\Users\bedek_000\AppData\Roaming\Préférences Adobe PNG Format CC 2017-08-21 22:31 - 2017-08-21 22:31 - 000001015 _____ () C:\Users\bedek_000\AppData\Local\recently-used.xbel 2017-11-19 18:49 - 2019-01-16 21:27 - 000007605 _____ () C:\Users\bedek_000\AppData\Local\resmon.resmoncfg 2018-05-12 19:15 - 2018-05-16 09:49 - 000024496 _____ () C:\Users\bedek_000\AppData\Local\ZHPCquarantine.jpg ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2019-01-07 18:02 ==================== Fin de FRST.txt ============================