Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 06-01-2019
- Exécuté par pc (administrateur) sur PC-PC (07-01-2019 16:38:13)
- Exécuté depuis C:\Users\pc\Downloads
- Profils chargés: pc (Profils disponibles: pc)
- Platform: Microsoft Windows 7 Édition Intégrale Service Pack 1 (X86) Langue: Français (France)
- Internet Explorer Version 11 (Navigateur par défaut: FF)
- Mode d'amorçage: Normal
- Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processus (Avec liste blanche) =================
- (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
- (AMD) C:\Windows\System32\atiesrxx.exe
- (AMD) C:\Windows\System32\atieclxx.exe
- (DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\27_ssconn\conn\ss_conn_service.exe
- (IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
- (wj32) C:\Program Files\Process Hacker 2\ProcessHacker.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Facebook) C:\Users\pc\AppData\Local\Facebook\Games\FacebookGameroom.exe
- (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
- (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
- (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
- (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- ==================== Registre (Avec liste blanche) ===========================
- (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
- HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
- HKLM\...\Drivers32: [msacm.l3acm] => C:\Windows\System32\l3codecp.acm [220672 2009-07-14] (Fraunhofer Institut Integrierte Schaltungen IIS)
- HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\system32\vorbis.acm [1554944 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-14] (Google Inc.)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
- ==================== Internet (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
- Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
- Tcpip\..\Interfaces\{41A3E2AA-2C0B-45A5-8C5B-EC55F77DCF58}: [NameServer] 8.8.8.8,8.8.4.4,192.168.1.1
- Tcpip\..\Interfaces\{41A3E2AA-2C0B-45A5-8C5B-EC55F77DCF58}: [DhcpNameServer] 192.168.1.1 0.0.0.0
- Tcpip\..\Interfaces\{6E38CCF0-B61E-44BA-9BAF-2B001D49AD85}: [NameServer] 8.8.8.8,8.8.4.4
- Internet Explorer:
- ==================
- HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
- HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
- SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL =
- SearchScopes: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> {D516DF1A-05FF-4D1B-A3DB-C6F65812E189} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11433
- BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2013-01-29] (Internet Download Manager, Tonec Inc.)
- BHO: Pas de nom -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> Pas de fichier
- BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit)
- BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [2018-10-19] (Oracle Corporation)
- BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-19] (Oracle Corporation)
- Toolbar: HKLM - Pas de nom - {52CDBF5C-B469-4F4C-9B9F-245F4D073265} - Pas de fichier
- Toolbar: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> Pas de nom - {BFED18C6-049A-4E2E-858B-044349E1CAA1} - Pas de fichier
- Toolbar: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> Pas de nom - {52CDBF5C-B469-4F4C-9B9F-245F4D073265} - Pas de fichier
- FireFox:
- ========
- FF DefaultProfile: 7by1jtw8.default
- FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\7by1jtw8.default [2019-01-07]
- FF Homepage: Mozilla\Firefox\Profiles\7by1jtw8.default -> hxxps://www.youtube.com/
- FF Extension: (To Google Translate) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\7by1jtw8.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2018-11-04]
- FF Extension: (Alerte Bons Plans eBuyClub) - C:\Program Files\Mozilla Firefox\browser\extensions\ebctb@plebicom.xul.xpi [2017-10-18]
- FF Extension: (United States English Spellchecker) - C:\Program Files\Mozilla Firefox\browser\extensions\en-US@dictionaries.addons.mozilla.org [2017-12-30] [Legacy]
- FF Extension: (Tampermonkey) - C:\Program Files\Mozilla Firefox\browser\extensions\firefox@tampermonkey.net.xpi [2017-12-16]
- FF Extension: (Поиск Mail.Ru) - C:\Program Files\Mozilla Firefox\browser\extensions\search@mail.ru.xpi [2017-12-21]
- FF Extension: (Google Translator for Firefox) - C:\Program Files\Mozilla Firefox\browser\extensions\translator@zoli.bod.xpi [2017-12-11]
- FF Extension: (uBlock Origin) - C:\Program Files\Mozilla Firefox\browser\extensions\uBlock0@raymondhill.net.xpi [2017-12-14]
- FF Extension: (Adblock Plus) - C:\Program Files\Mozilla Firefox\browser\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-12]
- FF Extension: (YouTube to MP3 Button) - C:\Program Files\Mozilla Firefox\browser\extensions\{ec791a2e-1b4f-4bcc-a4d0-5e795de557dc}.xpi [2017-11-29]
- FF Extension: (Open With Photoshop) - C:\Program Files\Mozilla Firefox\browser\extensions\{f3f219f9-cbce-467e-b8fe-6e076d29665c}.xpi [2017-12-23]
- FF Extension: (Pas de nom) - C:\Program Files\Mozilla Firefox\browser\features\{bf6ce0ec-f600-4aec-a4ad-3039f1ebf56a} [2017-12-30] [non signé]
- FF Extension: (Pas de nom) - C:\Program Files\Mozilla Firefox\browser\features\{caff0a07-2588-4ca1-8cda-534cee4e36f0} [2017-12-30] [non signé]
- FF HKU\S-1-5-21-3292056028-545877900-3420571958-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5
- FF Extension: (IDM CC) - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5 [2016-01-18] [Legacy] [non signé]
- FF HKU\S-1-5-21-3292056028-545877900-3420571958-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5
- FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-06] ()
- FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.)
- FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-19] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-19] (Oracle Corporation)
- FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-14] (Google Inc.)
- FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-14] (Google Inc.)
- FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
- FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
- FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
- FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)
- FF Plugin HKU\S-1-5-21-3292056028-545877900-3420571958-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\pc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-05-08] (Unity Technologies ApS)
- Chrome:
- =======
- CHR HomePage: Default -> hxxp://mail.ru/cnt/10445?gp=811141
- CHR StartupUrls: Default -> "hxxp://mail.ru/cnt/10445?gp=811141"
- CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default [2019-01-06]
- CHR Extension: (Slides) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
- CHR Extension: (Docs) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
- CHR Extension: (Google Drive) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-23]
- CHR Extension: (YouTube) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-23]
- CHR Extension: (iMacros for Chrome) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2018-12-24]
- CHR Extension: (Tampermonkey) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-12-24]
- CHR Extension: (Sheets) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
- CHR Extension: (Tables) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2017-12-01]
- CHR Extension: (Google Docs Offline) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-17]
- CHR Extension: (MyJSCript) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpabpfikknflecblchhfkpkcpilbkfcd [2018-12-24]
- CHR Extension: (IDM Integration) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm [2017-08-23]
- CHR Extension: (Skype) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-31]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-06]
- CHR Extension: (Gmail) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-23]
- CHR Extension: (Chrome Media Router) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-24]
- CHR HKLM\...\Chrome\Extension: [bhjhnafpiilpffhglajcaepjbnbjemci] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM\...\Chrome\Extension: [hcadgijmedbfgciegjomfpjcdchlhnif] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM\...\Chrome\Extension: [jmolcgpienlcieaajfkkdamlngancncm] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-01-29]
- CHR HKLM\...\Chrome\Extension: [lhemechcanjmilllmccjbjldonmnnjjj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-01-29]
- Opera:
- =======
- OPR Extension: (Tampermonkey) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-12-24]
- OPR Extension: (Tables) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\egafjhhpbipcmpoiomegbckljbbbphoj [2017-12-01]
- OPR Extension: (MyJSCript) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\gpabpfikknflecblchhfkpkcpilbkfcd [2018-12-24]
- ==================== Services (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- S4 BEService; C:\Program Files\Common Files\BattlEye\BEService.exe [1288712 2017-08-29] ()
- S3 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [437880 2015-10-08] (BlueStack Systems, Inc.)
- S3 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [417400 2015-10-08] (BlueStack Systems, Inc.)
- S3 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [855672 2015-10-08] (BlueStack Systems, Inc.)
- S4 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
- S4 hshld; C:\Program Files\Hotspot Shield\bin\cmw_srv.exe [2610808 2017-06-15] (AnchorFree Inc.)
- S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Fichier non signé]
- S4 IObitUnSvr; C:\Program Files\IObit\IObit Uninstaller\IUService.exe [149776 2018-06-28] (IObit)
- S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
- S2 QMEmulatorService; C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [342776 2018-12-21] (Tencent)
- R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
- S4 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-09-10] (TeamViewer GmbH)
- S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
- ===================== Pilotes (Avec liste blanche) ======================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- S3 AFTrafMgr1.2; C:\Program Files\Hotspot Shield\bin\TrafMgr_1_2_32.sys [49080 2017-05-08] (AnchorFree Inc.)
- R2 aow_drv; C:\Program Files\TxGameAssistant\UI\aow_drv.sys [597040 2018-06-09] (Tencent)
- R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [132216 2015-10-08] (BlueStack Systems)
- S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [25016 2015-06-30] (Disc Soft Ltd)
- S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [27040 2017-03-02] (LogMeIn, Inc.)
- R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2016-03-27] (REALiX(tm))
- R3 IUProcessFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win7_x86\IUProcessFilter.sys [17264 2018-05-12] (IObit)
- R3 IURegistryFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win7_x86\IURegistryFilter.sys [23440 2018-05-15] (IObit)
- R3 KProcessHacker3; C:\Program Files\Process Hacker 2\kprocesshacker.sys [41624 2016-03-29] (wj32)
- S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv.sys [30488 2014-12-29] (Visicom Media Inc.)
- R3 mpfilt; C:\Windows\system32\drivers\mpfilt.sys [7680 2014-01-24] (Alcor Micro, Corp.) [Fichier non signé]
- R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114304 2015-06-08] (Power Software Ltd)
- S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [49856 2016-03-28] (Screaming Bee Inc)
- S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [23040 2017-04-20] (The OpenVPN Project)
- R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [36944 2016-05-27] (Anchorfree Inc.)
- R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [173216 2017-10-18] (Oracle Corporation)
- R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [181584 2017-10-18] (Oracle Corporation)
- R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [27440 2016-01-25] (Windows (R) Win 7 DDK provider)
- R2 WtfEngineDrv; C:\Windows\system32WtfEngineDrv.sys [32752 2016-12-16] (AAA Internet Publishing, Inc.)
- S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
- S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
- S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
- S3 VGPU; System32\drivers\rdvgkmd.sys [X]
- ==================== NetSvcs (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- ==================== Un mois - Créés - fichiers et dossiers ========
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2019-01-07 00:31 - 2019-01-07 11:52 - 000006360 _____ C:\Windows\system32\PerfStringBackup.TMP
- 2019-01-07 00:24 - 2019-01-07 00:26 - 000445696 _____ C:\Windows\system32\FNTCACHE.DAT
- 2019-01-07 00:23 - 2019-01-07 00:23 - 000009130 _____ C:\Users\pc\Downloads\Fixlog.txt
- 2019-01-06 23:05 - 2019-01-06 23:08 - 000060936 _____ C:\Users\pc\Downloads\Addition.txt
- 2019-01-06 23:02 - 2019-01-07 16:40 - 000017492 _____ C:\Users\pc\Downloads\FRST.txt
- 2019-01-06 23:02 - 2019-01-07 16:38 - 000000000 ____D C:\FRST
- 2019-01-06 23:02 - 2019-01-06 23:02 - 001784320 _____ (Farbar) C:\Users\pc\Downloads\FRST.exe
- 2019-01-06 22:59 - 2019-01-06 23:13 - 081227760 _____ (Malwarebytes ) C:\Users\pc\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.508-1.0.8211.exe
- 2019-01-06 20:07 - 2019-01-06 20:07 - 000000009 _____ C:\Users\pc\rstr2.ini
- 2019-01-05 13:46 - 2019-01-05 13:46 - 000985389 _____ C:\Users\pc\Documents\Kết quả chẩn đoán của Tencent Gaming Buddy.zip
- 2019-01-05 13:46 - 2019-01-05 13:46 - 000000000 ____D C:\Users\pc\Documents\MobileGamePC
- 2019-01-05 13:34 - 2019-01-05 13:34 - 003751769 _____ C:\Users\pc\Downloads\PVPUBGMOBILE VIP(1).rar
- 2019-01-05 11:12 - 2019-01-05 11:13 - 003751769 _____ C:\Users\pc\Downloads\PVPUBGMOBILE VIP.rar
- 2019-01-03 21:11 - 2019-01-03 21:11 - 000000000 _____ C:\Windows\paopaologin.ppa
- 2018-12-27 17:05 - 2018-12-27 17:05 - 000000000 _____ C:\Users\pc\Desktop\Nouveau document texte.txt
- 2018-12-27 16:47 - 2018-12-27 16:47 - 000000000 ____D C:\Users\pc\AppData\Local\TeamViewer
- 2018-12-27 16:13 - 2018-12-27 16:45 - 062128263 _____ C:\Users\pc\Desktop\UI.zip
- 2018-12-27 16:13 - 2018-12-27 16:19 - 062128263 _____ C:\Users\pc\Downloads\UI.zip
- 2018-12-27 14:43 - 2019-01-05 11:18 - 000000000 ____D C:\Users\pc\AppData\Roaming\Tencent
- 2018-12-27 14:33 - 2018-12-27 14:49 - 000000000 ____D C:\ProgramData\Tencent
- 2018-12-27 14:27 - 2018-12-27 14:29 - 007320272 _____ (Malwarebytes) C:\Users\pc\Downloads\adwcleaner_7.2.6.0.exe
- 2018-12-27 11:04 - 2018-12-27 11:04 - 006430346 _____ C:\Users\pc\Downloads\hackPUBGm.com v2.1.zip
- 2018-12-27 00:14 - 2018-12-27 00:14 - 000409976 _____ C:\Users\pc\Downloads\Fix Black Screen new.rar
- 2018-12-26 23:59 - 2018-12-26 23:59 - 000721097 _____ C:\Users\pc\Downloads\ntdll.zip
- 2018-12-26 21:42 - 2018-12-26 21:43 - 000752418 _____ C:\Users\pc\Downloads\Locale.Emulator.2.4.0.0(1).zip
- 2018-12-26 21:08 - 2018-12-26 21:09 - 000000000 ____D C:\Users\pc\Downloads\Full Driver
- 2018-12-26 20:59 - 2018-12-26 21:00 - 006375753 _____ C:\Users\pc\Downloads\esp+aimbot 0.10.1.rar
- 2018-12-26 20:14 - 2018-12-26 20:33 - 153715262 _____ C:\Users\pc\Downloads\Full Driver.zip
- 2018-12-26 16:57 - 2018-12-26 16:58 - 004718949 _____ C:\Users\pc\Downloads\hackpubgm esp aimbot.rar
- 2018-12-26 16:11 - 2018-12-26 16:13 - 002334478 _____ C:\Users\pc\Downloads\new_hack_26-12-2018.rar
- 2018-12-26 15:45 - 2018-12-26 15:45 - 002662400 __RSH (泡泡) C:\Users\pc\Desktop\Temp.dat
- 2018-12-26 15:39 - 2018-12-26 15:39 - 003048197 _____ C:\Users\pc\Downloads\[hackpubgm.com] v2.1 full crack vip.zip
- 2018-12-26 00:44 - 2018-12-26 00:48 - 045099266 _____ C:\Users\pc\Downloads\DirectX_11_Technology_Update_US.zip
- 2018-12-26 00:15 - 2018-12-26 00:15 - 000752418 _____ C:\Users\pc\Downloads\Locale.Emulator.2.4.0.0.zip
- 2018-12-25 23:20 - 2018-12-25 23:20 - 004985180 _____ C:\Users\pc\Downloads\ESP_CHEAT hackpubgm updated2.zip
- 2018-12-25 23:13 - 2018-12-25 23:23 - 068742112 _____ (Microsoft Corporation) C:\Users\pc\Downloads\NDP471-KB4033342-x86-x64-AllOS-ENU.exe
- 2018-12-25 22:28 - 2018-12-25 23:01 - 000000000 ____D C:\1
- 2018-12-25 22:28 - 2018-12-25 22:28 - 000000040 _____ C:\colour.dat
- 2018-12-25 22:28 - 2018-12-25 22:28 - 000000016 _____ C:\colour.conf
- 2018-12-25 22:27 - 2018-12-25 22:27 - 001371341 _____ C:\Users\pc\Downloads\wall new.rar
- 2018-12-25 21:45 - 2018-12-25 21:45 - 000001139 _____ C:\Users\pc\Desktop\腾讯手游助手.lnk
- 2018-12-25 16:59 - 2018-12-26 01:08 - 000000272 _____ C:\Users\pc\gcg.txt
- 2018-12-25 16:59 - 2018-12-26 01:08 - 000000036 _____ C:\Users\pc\Documents\XGtz.ini
- 2018-12-25 15:21 - 2018-12-25 15:21 - 001420505 _____ C:\Users\pc\Downloads\hackpubgm v1.9.rar
- 2018-12-24 22:59 - 2018-12-24 23:00 - 004983477 _____ C:\Users\pc\Downloads\ESP v2.0 hackpubgm.com.zip
- 2018-12-24 21:39 - 2018-12-24 21:47 - 060990661 _____ C:\Users\pc\Downloads\8BP_LongLineMOD(4.2.0 Official Latest).apk
- 2018-12-24 10:17 - 2019-01-05 16:00 - 000000002 _____ C:\Users\pc\AppData\Local\imw.ini
- 2018-12-24 00:19 - 2018-12-27 17:10 - 000000000 ____D C:\Users\pc\Desktop\pubg
- 2018-12-24 00:14 - 2018-12-24 00:14 - 001299688 ____R ( ) C:\Users\pc\Downloads\PUBG_Hack_Tencent_Buddy_Full_ESP__AIMBOT_21.11.2018_PQWSTB.exe
- 2018-12-21 20:02 - 2018-12-21 20:03 - 003897773 _____ C:\Users\pc\Downloads\48960846_1925053877590105_4922360734026825728_n.mp4
- ==================== Un mois - Modifiés - fichiers et dossiers ========
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2019-01-07 16:37 - 2015-06-30 05:02 - 000000000 ____D C:\Users\pc\Downloads\Need For Speed Underground 2
- 2019-01-07 12:01 - 2009-07-14 05:34 - 000016816 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2019-01-07 12:01 - 2009-07-14 05:34 - 000016816 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2019-01-07 11:52 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
- 2019-01-07 11:51 - 2018-10-05 14:36 - 003144088 _____ C:\Windows\ntbtlog.txt
- 2019-01-07 11:50 - 2016-11-18 14:29 - 000000000 ____D C:\Users\pc\AppData\LocalLow\Mozilla
- 2019-01-07 11:46 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2019-01-07 00:26 - 2015-12-25 18:31 - 000000008 __RSH C:\ProgramData\ntuser.pol
- 2019-01-07 00:25 - 2017-11-28 19:55 - 000000438 _____ C:\Windows\Tasks\UCBrowserUpdater.job
- 2019-01-07 00:23 - 2009-07-14 03:37 - 000000000 ___HD C:\Windows\system32\GroupPolicy
- 2019-01-07 00:12 - 2018-11-04 15:56 - 000000000 ____D C:\Program Files\SSTEAM
- 2019-01-06 21:21 - 2016-04-16 01:09 - 000000000 ____D C:\Program Files\Valve
- 2019-01-06 21:20 - 2013-04-15 09:51 - 000000000 ____D C:\Users\pc
- 2019-01-06 21:18 - 2016-04-06 10:53 - 000000000 ____D C:\Windows\pss
- 2019-01-06 21:12 - 2015-07-05 21:38 - 000000000 ____D C:\Users\pc\AppData\Roaming\vlc
- 2019-01-06 21:10 - 2017-10-20 13:10 - 000000000 ____D C:\Program Files\TeamViewer
- 2019-01-06 12:26 - 2015-06-04 00:28 - 000000000 ____D C:\Windows\system32\Macromed
- 2019-01-05 16:03 - 2018-12-05 21:14 - 000000000 ____D C:\Users\pc\AppData\Roaming\CC
- 2019-01-05 16:01 - 2015-06-03 21:24 - 000000000 ____D C:\Users\pc\AppData\Roaming\DMCache
- 2019-01-05 16:00 - 2015-06-12 02:07 - 000000000 ____D C:\Users\pc\AppData\Roaming\uTorrent
- 2019-01-05 16:00 - 2015-06-03 21:24 - 000000000 ____D C:\Users\pc\Downloads\Compressed
- 2019-01-05 14:00 - 2013-04-15 09:52 - 000126680 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
- 2019-01-04 10:13 - 2017-04-14 03:22 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- 2019-01-03 21:45 - 2018-08-19 17:13 - 000000000 ____D C:\Program Files\TxGameAssistant
- 2019-01-03 19:16 - 2015-07-07 06:06 - 000000000 ____D C:\ProgramData\ProductData
- 2018-12-27 17:19 - 2018-08-30 15:40 - 000000929 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 13.lnk
- 2018-12-27 16:35 - 2015-06-05 21:16 - 000000000 ____D C:\Users\pc\Desktop\Nouveau dossier
- 2018-12-27 14:31 - 2015-07-30 17:19 - 000000000 ____D C:\Program Files\Common Files\IObit
- 2018-12-27 14:31 - 2015-07-07 06:25 - 000000000 ____D C:\AdwCleaner
- 2018-12-27 14:31 - 2015-07-07 06:06 - 000000000 ____D C:\Users\pc\AppData\Roaming\IObit
- 2018-12-27 14:31 - 2015-07-07 06:06 - 000000000 ____D C:\ProgramData\IObit
- 2018-12-27 14:31 - 2015-06-13 23:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
- 2018-12-27 14:16 - 2009-07-14 05:53 - 000032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
- 2018-12-26 23:24 - 2015-06-04 00:37 - 000000000 ____D C:\Users\pc\AppData\Local\ElevatedDiagnostics
- 2018-12-25 23:26 - 2015-07-18 08:37 - 000000000 ____D C:\Users\pc\AppData\LocalLow\Adobe
- 2018-12-25 23:25 - 2015-06-04 00:26 - 000000000 ____D C:\Users\pc\AppData\Local\Adobe
- 2018-12-25 18:47 - 2018-11-04 23:35 - 000000000 ____D C:\Users\pc\AppData\Roaming\TeaTV
- 2018-12-23 16:46 - 2015-07-18 07:44 - 000000000 ____D C:\Program Files\Common Files\Adobe
- 2018-12-23 16:46 - 2015-06-04 00:29 - 000000000 ____D C:\Users\pc\AppData\Roaming\Adobe
- 2018-12-21 12:05 - 2017-01-09 21:54 - 000000000 ____D C:\Users\pc\Desktop\illustrator cc x64 portable
- 2018-12-19 13:08 - 2018-11-12 18:58 - 000000000 ____D C:\Users\pc\Desktop\scan
- 2018-12-14 11:57 - 2017-10-13 14:53 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-12-13 09:08 - 2017-08-23 23:37 - 000000000 ____D C:\Program Files\Google
- 2018-12-13 09:07 - 2016-12-14 18:37 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
- 2018-12-12 18:22 - 2017-10-29 17:51 - 000000000 ____D C:\Program Files\Mozilla Firefox
- ==================== Fichiers à la racine de certains dossiers =======
- 2015-07-07 06:11 - 2015-07-07 06:11 - 000000000 ____D () C:\ProgramData\StartMenuReviver.exe
- 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\OyiSI.exe
- 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\uIvUuaPqa.exe
- 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\Common Files\AOhdaSxawwXh.exe
- 2009-07-14 02:14 - 2009-07-14 02:14 - 000186368 ____N (Microsoft Corporation) C:\Program Files\Common Files\Lhoruqp.exe
- 2016-01-14 21:00 - 2016-01-14 21:22 - 000000132 _____ () C:\Users\pc\AppData\Roaming\Adobe BMP Format CS6 Prefs
- 2015-06-08 17:05 - 2017-03-28 01:10 - 000000600 _____ () C:\Users\pc\AppData\Roaming\winscp.rnd
- 2015-07-18 08:53 - 2018-06-24 20:46 - 000001456 _____ () C:\Users\pc\AppData\Local\Adobe Enregistrer pour le Web 12.0 Prefs
- 2015-09-18 19:02 - 2017-10-04 12:21 - 000001456 _____ () C:\Users\pc\AppData\Local\Adobe Save for Web 13.0 Prefs
- 2018-12-24 10:17 - 2019-01-05 16:00 - 000000002 _____ () C:\Users\pc\AppData\Local\imw.ini
- 2015-12-25 22:28 - 2015-12-25 22:28 - 000000001 _____ () C:\Users\pc\AppData\Local\llftool.4.40.agreement
- 2015-07-30 17:29 - 2018-09-17 01:04 - 000007606 _____ () C:\Users\pc\AppData\Local\Resmon.ResmonCfg
- 2017-04-17 21:12 - 2017-04-17 21:12 - 000000003 _____ () C:\Users\pc\AppData\Local\updater.log
- 2017-04-17 21:12 - 2017-05-07 13:21 - 000000413 _____ () C:\Users\pc\AppData\Local\UserProducts.xml
- 2017-12-01 20:25 - 2017-12-01 20:25 - 000000001 _____ () C:\Users\pc\AppData\Local\WMI.ini
- Certains fichiers dans TEMP:
- ====================
- 2018-10-19 19:19 - 2018-10-19 19:19 - 001892728 _____ (Oracle Corporation) C:\Users\pc\AppData\Local\Temp\jre-8u191-windows-au.exe
- 2019-01-06 20:07 - 2019-01-06 21:29 - 000000000 ____D () C:\Users\pc\AppData\Local\Temp\JSCore.dll
- ==================== Bamital & volsnap ======================
- (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
- C:\Windows\explorer.exe => Le fichier est signé numériquement
- C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
- C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
- C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
- C:\Windows\system32\services.exe => Le fichier est signé numériquement
- C:\Windows\system32\User32.dll => Le fichier est signé numériquement
- C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
- C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
- C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
- C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
- LastRegBack: 2019-01-04 00:24
- ==================== Fin de FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement