Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11-03-2017 01
- Exécuté par Jean-Michel Crapaud (administrateur) sur BERNARD (11-03-2017 17:35:53)
- Exécuté depuis C:\Users\Bernard\Desktop
- Profils chargés: Jean-Michel Crapaud (Profils disponibles: Jean-Michel Crapaud)
- Platform: Windows 10 Home Version 1607 (X64) Langue: French (France)
- Internet Explorer Version 11 (Navigateur par défaut: FF)
- Mode d'amorçage: Normal
- Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processus (Avec liste blanche) =================
- (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
- (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (IEC) C:\Program Files (x86)\BikaQRss\BikaQ.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
- (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
- (Intel Corporation) C:\Windows\System32\ibtsiva.exe
- (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
- (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
- (ASUS) C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGiftBoxDesktop.exe
- (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
- (Locktime Software) C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe
- () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
- (TorrentsTime) C:\Program Files (x86)\TorrentsTime Media Player\bin\TTService.exe
- (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
- (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
- (Copyright 2017.) D:\Programs\Zemana AntiMalware\ZAM.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
- (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
- (Intel Corporation) C:\Windows\System32\igfxEM.exe
- (Intel Corporation) C:\Windows\System32\igfxHK.exe
- () C:\Windows\System32\igfxTray.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
- (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
- (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
- (Apple Inc.) D:\Programs\Itunes\iTunesHelper.exe
- (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
- (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- (hxxp://www.amuleall.org/) C:\Program Files (x86)\amulell\ed2k.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.11.110.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.214.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
- () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8004.42017.0_x64__8wekyb3d8bbwe\HxMail.exe
- (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8004.42017.0_x64__8wekyb3d8bbwe\HxTsr.exe
- (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
- (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- ==================== Registre (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
- HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation)
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
- HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-10-01] (Microsoft Corporation)
- HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
- HKLM\...\Run: [iTunesHelper] => D:\Programs\Itunes\iTunesHelper.exe [176440 2017-01-19] (Apple Inc.)
- HKLM\...\Run: [ZAM] => D:\Programs\Zemana AntiMalware\ZAM.exe [14471408 2017-03-06] (Copyright 2017.)
- HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
- HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
- HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [27308304 2017-03-06] (Dropbox, Inc.)
- HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
- HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29500544 2016-07-13] (Skype Technologies S.A.)
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd)
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\RunOnce: [Uninstall C:\Users\Bernard\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Bernard\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\RunOnce: [Uninstall C:\Users\Bernard\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Bernard\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\amd64"
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\Policies\Explorer: []
- HKU\S-1-5-21-2792659385-62999317-2928674910-1001\...\MountPoints2: {a460b90a-2572-11e6-8f67-7c5cf849ee99} - "F:\BioPrint.exe"
- HKLM\...\Providers\l5g3jx5f: C:\Program Files (x86)\Qertochreewile Server\local64spl.dll
- ShellExecuteHooks: Pas de nom - {39BE6DD8-FFDC-11E6-B0D9-64006A5CFC23} - C:\Users\Bernard\AppData\Roaming\Coabesedapy\Pedotion.dll -> Pas de fichier
- ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier
- ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier
- ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier
- ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier
- ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier
- ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-03-06] (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier
- ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier
- ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier
- ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier
- ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier
- ==================== Internet (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
- Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{6294c69e-c4d6-4c59-9dfd-1b863750bd2e}: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{f7a7a659-660b-4bc5-8879-07c85ed745e0}: [DhcpNameServer] 62.197.111.140 109.88.203.3
- Internet Explorer:
- ==================
- SearchScopes: HKLM -> DefaultScope la valeur est absente
- SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
- SearchScopes: HKU\S-1-5-21-2792659385-62999317-2928674910-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
- SearchScopes: HKU\S-1-5-21-2792659385-62999317-2928674910-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
- BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-01-21] (Oracle Corporation)
- BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
- BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-21] (Oracle Corporation)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-21] (Oracle Corporation)
- BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
- BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
- BHO-x32: Microsoft Web Test Recorder 14.0 Helper -> {b924f0b4-0b3c-49c0-bab2-213fb9ebd1d3} -> D:\Programs\VisualStudio\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2015-07-06] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-21] (Oracle Corporation)
- FireFox:
- ========
- FF ProfilePath: C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\qarxcnrs.default-1489000847466 [2017-03-11]
- FF Homepage: Mozilla\Firefox\Profiles\qarxcnrs.default-1489000847466 -> about:home
- FF Extension: (uBlock Origin) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\qarxcnrs.default-1489000847466\Extensions\uBlock0@raymondhill.net.xpi [2017-03-08]
- FF Extension: (iMacros for Firefox) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\qarxcnrs.default-1489000847466\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi [2017-03-08]
- FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-16] ()
- FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-21] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-21] (Oracle Corporation)
- FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-16] ()
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
- FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-21] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-21] (Oracle Corporation)
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
- FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
- FF Plugin HKU\S-1-5-21-2792659385-62999317-2928674910-1001: torrents-time.com/TTPlugin -> C:\Program Files (x86)\TorrentsTime Media Player\bin\npTTPlugin.dll [2017-01-17] (Torrents Time)
- FF Plugin HKU\S-1-5-21-2792659385-62999317-2928674910-1001: vasco.com/VascoCardReaderPlugin -> C:\Users\Bernard\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin.dll [2014-10-27] (VASCO Data Security)
- FF Plugin HKU\S-1-5-21-2792659385-62999317-2928674910-1001: vasco.com/VascoCardReaderPlugin64 -> C:\Users\Bernard\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin64.dll [2014-10-27] (VASCO Data Security)
- ==================== Services (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
- R2 ASUSGiftBoxDekstop; C:\Program Files (x86)\ASUS\ASUS GIFTBOX Desktop\ASUSGIFTBOXDesktop.exe [315704 2015-07-20] (ASUS)
- S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-28] (Dropbox, Inc.)
- S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-04-28] (Dropbox, Inc.)
- R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46408 2017-01-21] (Dropbox, Inc.)
- R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [384512 2016-06-27] (Digital Wave Ltd.) [Fichier non signé]
- S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd)
- R2 ed2kidle; C:\Program Files (x86)\amulell\ed2k.exe [214528 2017-03-10] (hxxp://www.amuleall.org/) [Fichier non signé]
- S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [104448 2016-11-16] (Freemake) [Fichier non signé]
- S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-19] (Microsoft Corporation) [Fichier non signé]
- R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373728 2016-11-30] (Intel Corporation)
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
- S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé]
- R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé]
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-08-07] (Intel Corporation)
- S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-02-08] ()
- R2 nlsvc; C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe [323824 2016-03-16] (Locktime Software)
- R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-10-25] (NVIDIA Corporation)
- R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation)
- R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation)
- R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
- S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé]
- S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Fichier non signé]
- R2 TTService; C:\Program Files (x86)\TorrentsTime Media Player\bin\TTService.exe [3278336 2017-01-27] (TorrentsTime) [Fichier non signé]
- S3 VSStandardCollectorService140; D:\Programs\VisualStudio\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56552 2016-03-22] (Microsoft Corporation)
- R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
- R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
- R2 ZAMSvc; D:\Programs\Zemana AntiMalware\ZAM.exe [14471408 2017-03-06] (Copyright 2017.)
- R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3833248 2016-02-08] (Intel® Corporation)
- R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
- S2 WinSnare; C:\Users\Bernard\AppData\Roaming\WinSnare\WinSnare.dll [X] <==== ATTENTION
- ===================== Pilotes (Avec liste blanche) ======================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [100776 2015-08-23] (ASUS Corporation)
- S3 blackberryncm; C:\WINDOWS\System32\drivers\blackberryncm6_AMD64.sys [36360 2016-04-24] (BlackBerry)
- S3 BrSerIf; C:\WINDOWS\system32\DRIVERS\BrSerIf.sys [97280 2006-12-12] (Brother Industries Ltd.)
- S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
- R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-04-23] (Disc Soft Ltd)
- R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-04-23] (Disc Soft Ltd)
- R1 HWiNFO32; C:\WINDOWS\SysWoW64\drivers\HWiNFO64A.SYS [27552 2017-03-07] (REALiX(tm))
- R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [349960 2016-07-12] (Intel Corporation)
- R0 IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [88256 2015-06-26] (Intel Corporation)
- R1 MpKsl0fd65496; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{815841BA-2D14-4B2D-97F5-9DBC1880799F}\MpKsl0fd65496.sys [44928 2017-03-11] (Microsoft Corporation)
- R1 MpKsl20cba032; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{40638DE0-2257-4B7A-9202-E1FF844A8269}\MpKsl20cba032.sys [44928 2017-03-10] (Microsoft Corporation)
- S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
- R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3515664 2016-01-29] (Intel Corporation)
- R2 nldrv; C:\Program Files\Locktime Software\NetLimiter 4\nldrv.sys [128328 2016-03-16] (Locktime Software)
- R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_09482e89528c3434\nvlddmkm.sys [14159928 2016-10-26] (NVIDIA Corporation)
- R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
- S3 RimUsb; C:\WINDOWS\System32\Drivers\RimUsb_AMD64.sys [27520 2016-04-24] (Research In Motion Limited)
- R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [888064 2015-07-28] (Realtek )
- R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [753368 2015-06-15] (Realsil Semiconductor Corporation)
- R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation)
- R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [21360 2016-03-22] (IObit)
- S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [221824 2016-04-24] (Samsung Electronics Co., Ltd.)
- S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-11-05] (Apple, Inc.) [Fichier non signé]
- R1 veracrypt; C:\WINDOWS\System32\drivers\veracrypt.sys [437160 2016-09-11] (IDRIX)
- S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
- R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
- R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2017-03-08] (Zemana Ltd.)
- R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2017-03-08] (Zemana Ltd.)
- S3 dbx; system32\DRIVERS\dbx.sys [X]
- ==================== NetSvcs (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- ==================== Un mois - Créés - fichiers et dossiers ========
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2017-03-11 17:35 - 2017-03-11 17:36 - 00028454 _____ C:\Users\Bernard\Desktop\FRST.txt
- 2017-03-11 17:35 - 2017-03-11 17:35 - 02424320 _____ (Farbar) C:\Users\Bernard\Desktop\FRST64.exe
- 2017-03-11 17:35 - 2017-03-11 17:35 - 00000000 ____D C:\Users\Bernard\Desktop\FRST-OlderVersion
- 2017-03-11 17:35 - 2017-03-11 17:35 - 00000000 ____D C:\FRST
- 2017-03-11 17:14 - 2017-03-11 17:34 - 00000000 ____D C:\Users\Bernard\Desktop\Log Collection
- 2017-03-11 17:14 - 2017-03-11 17:14 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
- 2017-03-11 17:13 - 2017-03-11 17:34 - 00000000 ____D C:\ProgramData\RogueKiller
- 2017-03-11 17:13 - 2017-03-11 17:13 - 00000901 _____ C:\Users\Public\Desktop\RogueKiller.lnk
- 2017-03-11 17:13 - 2017-03-11 17:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
- 2017-03-11 17:13 - 2017-03-11 17:13 - 00000000 ____D C:\Program Files\RogueKiller
- 2017-03-11 16:53 - 2017-03-11 16:37 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
- 2017-03-11 16:37 - 2017-03-11 16:50 - 00000000 ____D C:\zoek_backup
- 2017-03-11 16:34 - 2017-03-11 16:34 - 00000063 _____ C:\Users\Bernard\Desktop\New Text Document.txt
- 2017-03-11 16:33 - 2017-03-11 16:33 - 04186040 _____ C:\Users\Bernard\Desktop\zoek.zip
- 2017-03-11 16:33 - 2017-03-11 16:33 - 00000000 ____D C:\Users\Bernard\Desktop\zoek
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00003326 _____ C:\WINDOWS\System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\amuleC
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\aMule
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BikaQ
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\Program Files (x86)\WinSnare(4.2.8)
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\Program Files (x86)\BikaQRss
- 2017-03-11 14:40 - 2017-03-11 14:40 - 00000000 ____D C:\Program Files (x86)\amulell
- 2017-03-11 14:37 - 2017-03-11 14:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
- 2017-03-11 14:35 - 2017-03-11 15:56 - 00007603 _____ C:\Users\Bernard\AppData\Local\Resmon.ResmonCfg
- 2017-03-10 15:47 - 2017-03-10 15:47 - 00000000 _____ C:\WINDOWS\SysWOW64\4
- 2017-03-10 15:47 - 2017-03-10 15:47 - 00000000 _____ C:\WINDOWS\SysWOW64\3
- 2017-03-10 15:46 - 2017-03-10 15:46 - 00000388 _____ C:\WINDOWS\SysWOW64\data.bin
- 2017-03-10 13:35 - 2017-03-10 13:35 - 00000000 _____ C:\WINDOWS\SysWOW64\1
- 2017-03-09 10:15 - 2017-03-10 13:34 - 00034328 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
- 2017-03-09 10:15 - 2017-03-09 10:15 - 00000000 ____D C:\Program Files (x86)\l5g3jx5f
- 2017-03-08 20:25 - 2017-03-08 20:25 - 00000000 ____D C:\Program Files (x86)\Secunia
- 2017-03-08 20:18 - 2017-03-08 20:18 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe
- 2017-03-08 20:15 - 2017-03-08 20:15 - 00054736 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys
- 2017-03-08 20:14 - 2017-03-08 20:18 - 00000000 ____D C:\ProgramData\HitmanPro
- 2017-03-08 20:06 - 2017-03-11 17:35 - 00085263 _____ C:\WINDOWS\ZAM.krnl.trace
- 2017-03-08 20:06 - 2017-03-11 17:35 - 00040854 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
- 2017-03-08 20:06 - 2017-03-08 20:06 - 00203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys
- 2017-03-08 20:06 - 2017-03-08 20:06 - 00203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam64.sys
- 2017-03-08 20:06 - 2017-03-08 20:06 - 00000000 ____D C:\Users\Bernard\AppData\Local\Zemana
- 2017-03-08 20:06 - 2017-03-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
- 2017-03-08 19:05 - 2017-03-08 19:05 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\subinacl.exe
- 2017-03-08 18:46 - 2017-03-11 17:09 - 00000000 ____D C:\Program Files (x86)\Drjother
- 2017-03-08 18:46 - 2017-03-08 20:12 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Coabesedapy
- 2017-03-08 18:46 - 2017-03-08 18:46 - 00006102 _____ C:\WINDOWS\System32\Tasks\Qertochreewile Server
- 2017-03-08 18:45 - 2017-03-08 18:48 - 00000000 ____D C:\Users\Bernard\AppData\Local\FindIp
- 2017-03-08 13:55 - 2017-03-08 13:55 - 00000000 ____D C:\Users\Bernard\AppData\Local\Steam
- 2017-03-08 08:58 - 2017-03-11 17:09 - 00000008 __RSH C:\Users\Bernard\ntuser.pol
- 2017-03-08 00:00 - 2017-03-08 00:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7GIF
- 2017-03-07 18:45 - 2017-03-11 17:09 - 00000008 __RSH C:\ProgramData\ntuser.pol
- 2017-03-07 18:45 - 2017-03-08 20:09 - 00000000 ___HD C:\ProgramData\9143B8360B8160r2323
- 2017-03-07 18:45 - 2017-03-07 18:45 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
- 2017-03-07 18:45 - 2017-03-07 18:45 - 00000000 ____D C:\WINDOWS\IObit
- 2017-03-07 16:16 - 2017-03-07 16:23 - 00000944 _____ C:\Users\Bernard\Desktop\Spartiti - Shortcut.lnk
- 2017-03-07 16:16 - 2017-03-07 16:23 - 00000898 _____ C:\Users\Bernard\Desktop\Work - Shortcut.lnk
- 2017-03-07 16:15 - 2017-03-07 16:24 - 00000923 _____ C:\Users\Bernard\Desktop\Paperasse - Shortcut.lnk
- 2017-03-07 16:15 - 2017-03-07 16:22 - 00000914 _____ C:\Users\Bernard\Desktop\Prog - Shortcut.lnk
- 2017-03-07 16:15 - 2017-03-07 16:18 - 00001668 _____ C:\Users\Bernard\Desktop\BATs - Shortcut.lnk
- 2017-03-07 16:15 - 2017-03-07 16:17 - 00001675 _____ C:\Users\Bernard\Desktop\Notes - Shortcut.lnk
- 2017-03-07 16:15 - 2017-03-07 16:17 - 00000972 _____ C:\Users\Bernard\Desktop\Graphic Design - Shortcut.lnk
- 2017-03-07 10:56 - 2017-03-07 18:45 - 00000000 ____D C:\ProgramData\IObit
- 2017-03-07 10:56 - 2017-03-07 10:56 - 00003110 _____ C:\WINDOWS\System32\Tasks\IObitSelfCheckTask
- 2017-03-07 10:56 - 2017-03-07 10:56 - 00003106 _____ C:\WINDOWS\System32\Tasks\SmartDefrag_Update
- 2017-03-07 10:56 - 2016-03-25 14:33 - 00128288 _____ (IObit) C:\WINDOWS\system32\IObitSmartDefragExtension.dll
- 2017-03-07 10:56 - 2016-03-22 11:02 - 00036824 _____ (IObit) C:\WINDOWS\system32\SmartDefragBootTime.exe
- 2017-03-07 10:56 - 2016-03-22 11:02 - 00021360 _____ (IObit) C:\WINDOWS\system32\Drivers\SmartDefragDriver.sys
- 2017-03-07 10:55 - 2017-03-07 10:56 - 00000000 ____D C:\Users\Bernard\AppData\LocalLow\IObit
- 2017-03-07 10:55 - 2017-03-07 10:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag
- 2017-03-07 10:54 - 2017-03-07 18:45 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\IObit
- 2017-03-07 09:48 - 2017-03-07 09:48 - 00000000 ____D C:\Users\Bernard\Documents\Amanote
- 2017-03-07 09:46 - 2017-03-07 09:46 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amaplex Software
- 2017-03-07 09:46 - 2017-03-07 09:46 - 00000000 ____D C:\Users\Bernard\AppData\Local\Amanote
- 2017-03-06 21:50 - 2017-03-06 21:50 - 00046184 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
- 2017-03-06 15:55 - 2017-03-06 15:55 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\WildTangent
- 2017-02-26 15:41 - 2017-03-06 15:49 - 00000000 ____D C:\Users\Bernard\AppData\Local\LOOT
- 2017-02-25 15:33 - 2017-02-28 11:25 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Bioshock
- 2017-02-25 15:33 - 2017-02-25 15:56 - 00000000 ____D C:\Users\Bernard\Documents\Bioshock
- 2017-02-25 13:06 - 2017-02-25 13:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bioshock
- 2017-02-15 21:46 - 2017-02-15 21:46 - 00000000 ____D C:\Users\Bernard\Documents\League of Legends
- 2017-02-14 22:58 - 2017-02-14 22:58 - 00001307 _____ C:\Users\Bernard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bnet.lnk
- 2017-02-14 09:11 - 2017-02-14 20:31 - 00038448 _____ C:\Users\Bernard\Documents\Drawing1.dwg
- 2017-02-14 08:55 - 2017-02-14 09:11 - 00000000 ____D C:\Users\Bernard\Documents\AutoCAD Sheet Sets
- 2017-02-13 22:38 - 2017-02-13 22:38 - 00000000 ____D C:\ProgramData\FLEXnet
- 2017-02-13 22:36 - 2017-02-13 22:36 - 00000000 ____D C:\Users\Bernard\Documents\Autodesk Application Manager
- 2017-02-13 22:35 - 2017-02-14 08:54 - 00000000 ____D C:\Users\Bernard\AppData\Local\Autodesk
- 2017-02-13 22:35 - 2017-02-13 22:35 - 00000000 ____D C:\Users\Bernard\Documents\Inventor Server SDK ACAD 2016
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
- 2017-02-13 22:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
- 2017-02-13 22:33 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
- 2017-02-13 22:33 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
- 2017-02-13 22:33 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
- 2017-02-13 22:33 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
- 2017-02-13 22:33 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
- 2017-02-13 22:33 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
- 2017-02-13 22:33 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
- 2017-02-13 22:33 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
- 2017-02-13 22:33 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
- 2017-02-13 22:33 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
- 2017-02-13 22:33 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
- 2017-02-13 22:33 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
- 2017-02-13 22:31 - 2017-03-06 15:52 - 00000000 ____D C:\ProgramData\Autodesk
- 2017-02-13 22:31 - 2017-03-06 15:50 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Autodesk
- 2017-02-10 19:42 - 2017-02-10 19:42 - 00045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
- 2017-02-10 19:42 - 2017-02-10 19:42 - 00045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
- 2017-02-09 11:23 - 2017-03-11 16:35 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Racket
- 2017-02-09 11:10 - 2017-02-09 11:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Racket
- ==================== Un mois - Modifiés - fichiers et dossiers ========
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2017-03-11 17:35 - 2016-11-18 22:12 - 00000000 ____D C:\Users\Bernard\AppData\LocalLow\Mozilla
- 2017-03-11 17:34 - 2016-10-01 13:00 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
- 2017-03-11 17:32 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
- 2017-03-11 17:24 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
- 2017-03-11 17:16 - 2016-10-01 13:02 - 01053092 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2017-03-11 17:16 - 2016-07-16 23:40 - 00576614 _____ C:\WINDOWS\system32\perfh00C.dat
- 2017-03-11 17:16 - 2016-07-16 23:40 - 00139876 _____ C:\WINDOWS\system32\perfc00C.dat
- 2017-03-11 17:09 - 2016-11-12 10:41 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture
- 2017-03-11 17:09 - 2016-10-01 13:16 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2017-03-11 17:09 - 2016-10-01 13:02 - 00000000 ____D C:\Users\Bernard
- 2017-03-11 17:09 - 2016-10-01 13:01 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
- 2017-03-11 17:09 - 2016-10-01 13:01 - 00000000 ____D C:\ProgramData\NVIDIA
- 2017-03-11 17:09 - 2016-07-16 07:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI
- 2017-03-11 17:09 - 2016-04-20 18:25 - 00000165 _____ C:\Users\Bernard\AppData\Roaming\sp_data.sys
- 2017-03-11 16:39 - 2016-05-03 03:51 - 00000000 ____D C:\Users\Bernard\AppData\Local\CrashDumps
- 2017-03-11 14:37 - 2015-08-18 06:29 - 00000000 ____D C:\Program Files (x86)\Dropbox
- 2017-03-11 12:00 - 2016-10-01 13:16 - 00003550 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
- 2017-03-11 12:00 - 2016-10-01 13:16 - 00003540 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
- 2017-03-11 10:09 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
- 2017-03-10 15:52 - 2016-04-25 10:06 - 00001054 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
- 2017-03-10 15:07 - 2016-07-16 12:43 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe
- 2017-03-10 15:07 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
- 2017-03-10 06:35 - 2016-04-20 19:35 - 00000000 ____D C:\Users\Bernard\AppData\Local\Battle.net
- 2017-03-10 06:31 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
- 2017-03-09 14:00 - 2016-04-30 13:37 - 00000000 ____D C:\Users\Bernard\Documents\Visual Studio 2015
- 2017-03-08 22:00 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
- 2017-03-08 21:57 - 2016-04-20 19:56 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\vlc
- 2017-03-08 20:12 - 2016-04-20 19:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2017-03-08 20:09 - 2016-04-20 18:25 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Adobe
- 2017-03-08 19:20 - 2016-11-18 21:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
- 2017-03-07 16:15 - 2016-04-23 11:47 - 00000000 ____D C:\Users\Bernard\AppData\LocalLow\Adobe
- 2017-03-07 16:15 - 2016-04-23 11:46 - 00000000 ____D C:\Users\Bernard\AppData\Local\Adobe
- 2017-03-07 16:15 - 2016-04-23 11:46 - 00000000 ____D C:\ProgramData\Adobe
- 2017-03-07 09:46 - 2016-05-23 10:21 - 00000000 ____D C:\Users\Bernard\AppData\Local\SquirrelTemp
- 2017-03-06 15:58 - 2016-04-20 18:27 - 00000000 ___RD C:\Users\Bernard\OneDrive
- 2017-03-06 15:55 - 2015-08-18 06:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2017-03-06 15:55 - 2015-08-18 06:28 - 00000000 ____D C:\ProgramData\WildTangent
- 2017-03-06 15:54 - 2016-10-01 13:00 - 04854040 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2017-03-06 15:51 - 2016-07-16 12:47 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
- 2017-03-06 15:48 - 2016-10-21 12:43 - 00000000 ____D C:\Users\Bernard\Documents\My Games
- 2017-03-06 14:19 - 2017-01-27 11:41 - 00003302 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
- 2017-03-01 00:41 - 2016-06-01 01:13 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\tixati
- 2017-02-28 16:24 - 2016-05-05 12:51 - 00000000 ____D C:\Users\Bernard\AppData\Local\Eclipse
- 2017-02-28 16:24 - 2016-05-03 13:30 - 00000000 ____D C:\Users\Bernard\.p2
- 2017-02-26 20:07 - 2016-04-30 14:58 - 00000000 ____D C:\Users\Bernard\Documents\Nexus Mod Manager
- 2017-02-25 16:03 - 2016-04-24 22:19 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
- 2017-02-25 13:07 - 2016-10-13 22:39 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
- 2017-02-24 10:19 - 2016-04-20 19:34 - 00000000 ____D C:\WINDOWS\system32\MRT
- 2017-02-24 10:18 - 2016-04-20 19:34 - 138020592 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2017-02-23 10:51 - 2016-04-23 11:47 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- 2017-02-17 14:40 - 2016-10-17 13:19 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Audacity
- 2017-02-16 01:13 - 2016-10-01 13:16 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
- 2017-02-16 01:13 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2017-02-16 01:13 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\Macromed
- 2017-02-15 19:32 - 2016-04-21 09:23 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Riot Games
- 2017-02-13 19:44 - 2016-04-21 10:43 - 00000000 ____D C:\Users\Bernard\AppData\Local\ElevatedDiagnostics
- 2017-02-12 22:56 - 2016-04-22 20:01 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Skype
- 2017-02-11 04:47 - 2016-08-27 18:03 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\WebTorrent
- 2017-02-11 04:47 - 2016-08-27 18:03 - 00000000 ____D C:\Users\Bernard\AppData\Local\WebTorrent
- 2017-02-11 02:59 - 2016-08-27 18:03 - 00000000 ____D C:\Users\Bernard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WebTorrent
- ==================== Fichiers à la racine de certains dossiers =======
- 2016-08-26 20:34 - 2016-08-26 20:34 - 0000132 _____ () C:\Users\Bernard\AppData\Roaming\Adobe IllExport Filter CS6 Prefs
- 2016-07-06 00:15 - 2017-01-30 19:14 - 0000132 _____ () C:\Users\Bernard\AppData\Roaming\Adobe PNG Format CS6 Prefs
- 2016-04-23 17:13 - 2017-01-28 09:45 - 0000034 _____ () C:\Users\Bernard\AppData\Roaming\AdobeWLCMCache.dat
- 2016-10-16 14:25 - 2016-10-16 15:16 - 0000490 _____ () C:\Users\Bernard\AppData\Roaming\CascView.ini
- 2016-04-20 18:25 - 2017-03-11 17:09 - 0000165 _____ () C:\Users\Bernard\AppData\Roaming\sp_data.sys
- 2016-06-01 01:18 - 2016-06-01 01:20 - 0010991 _____ () C:\Users\Bernard\AppData\Roaming\tribler.exe.log
- 2016-10-06 18:22 - 2016-10-06 18:22 - 305520897 _____ () C:\Users\Bernard\AppData\Local\ACCCx3_8_0_310.zip.aamdownload
- 2016-10-06 18:22 - 2016-10-06 18:22 - 0003413 _____ () C:\Users\Bernard\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd
- 2016-08-26 20:29 - 2017-01-28 09:50 - 0001456 _____ () C:\Users\Bernard\AppData\Local\Adobe Save for Web 13.0 Prefs
- 2016-11-03 17:49 - 2016-11-03 17:49 - 0002450 _____ () C:\Users\Bernard\AppData\Local\recently-used.xbel
- 2017-03-11 14:35 - 2017-03-11 15:56 - 0007603 _____ () C:\Users\Bernard\AppData\Local\Resmon.ResmonCfg
- 2016-10-01 13:01 - 2016-10-01 13:01 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
- Certains fichiers dans TEMP:
- ====================
- 2017-03-11 17:13 - 2016-11-11 11:13 - 1886344 _____ (Microsoft Corporation) C:\Users\Bernard\AppData\Local\Temp\dllnt_dump.dll
- ==================== Bamital & volsnap ======================
- (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
- C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
- C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
- C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
- C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
- C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
- C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
- C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
- C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
- C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
- C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
- C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
- C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
- C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
- C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
- C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
- LastRegBack: 2017-03-08 16:15
- ==================== Fin de FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement