Advertisement
Guest User

FRST.txt

a guest
Jan 7th, 2019
323
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 29.11 KB | None | 0 0
  1. Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 06-01-2019
  2. Exécuté par pc (administrateur) sur PC-PC (07-01-2019 16:38:13)
  3. Exécuté depuis C:\Users\pc\Downloads
  4. Profils chargés: pc (Profils disponibles: pc)
  5. Platform: Microsoft Windows 7 Édition Intégrale Service Pack 1 (X86) Langue: Français (France)
  6. Internet Explorer Version 11 (Navigateur par défaut: FF)
  7. Mode d'amorçage: Normal
  8. Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Processus (Avec liste blanche) =================
  11.  
  12. (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
  13.  
  14. (AMD) C:\Windows\System32\atiesrxx.exe
  15. (AMD) C:\Windows\System32\atieclxx.exe
  16. (DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\27_ssconn\conn\ss_conn_service.exe
  17. (IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
  18. (wj32) C:\Program Files\Process Hacker 2\ProcessHacker.exe
  19. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  20. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  21. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  22. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  23. (Facebook) C:\Users\pc\AppData\Local\Facebook\Games\FacebookGameroom.exe
  24. (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
  25. (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
  26. (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
  27. (The CefSharp Authors) C:\Users\pc\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe
  28. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  29. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  30. (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
  31.  
  32. ==================== Registre (Avec liste blanche) ===========================
  33.  
  34. (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
  35.  
  36. HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
  37. HKLM\...\Drivers32: [msacm.l3acm] => C:\Windows\System32\l3codecp.acm [220672 2009-07-14] (Fraunhofer Institut Integrierte Schaltungen IIS)
  38. HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\system32\vorbis.acm [1554944 2015-03-11] (HMS hxxp://hp.vector.co.jp/authors/VA012897/)
  39. HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-14] (Google Inc.)
  40. HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
  41.  
  42. ==================== Internet (Avec liste blanche) ====================
  43.  
  44. (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
  45.  
  46. Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
  47. Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
  48. Tcpip\..\Interfaces\{41A3E2AA-2C0B-45A5-8C5B-EC55F77DCF58}: [NameServer] 8.8.8.8,8.8.4.4,192.168.1.1
  49. Tcpip\..\Interfaces\{41A3E2AA-2C0B-45A5-8C5B-EC55F77DCF58}: [DhcpNameServer] 192.168.1.1 0.0.0.0
  50. Tcpip\..\Interfaces\{6E38CCF0-B61E-44BA-9BAF-2B001D49AD85}: [NameServer] 8.8.8.8,8.8.4.4
  51.  
  52. Internet Explorer:
  53. ==================
  54. HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
  55. HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
  56. SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  57. SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  58. SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  59. SearchScopes: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL =
  60. SearchScopes: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> {D516DF1A-05FF-4D1B-A3DB-C6F65812E189} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11433
  61. BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files\Internet Download Manager\IDMIECC.dll [2013-01-29] (Internet Download Manager, Tonec Inc.)
  62. BHO: Pas de nom -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> Pas de fichier
  63. BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit)
  64. BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [2018-10-19] (Oracle Corporation)
  65. BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-19] (Oracle Corporation)
  66. Toolbar: HKLM - Pas de nom - {52CDBF5C-B469-4F4C-9B9F-245F4D073265} - Pas de fichier
  67. Toolbar: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> Pas de nom - {BFED18C6-049A-4E2E-858B-044349E1CAA1} - Pas de fichier
  68. Toolbar: HKU\S-1-5-21-3292056028-545877900-3420571958-1000 -> Pas de nom - {52CDBF5C-B469-4F4C-9B9F-245F4D073265} - Pas de fichier
  69.  
  70. FireFox:
  71. ========
  72. FF DefaultProfile: 7by1jtw8.default
  73. FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\7by1jtw8.default [2019-01-07]
  74. FF Homepage: Mozilla\Firefox\Profiles\7by1jtw8.default -> hxxps://www.youtube.com/
  75. FF Extension: (To Google Translate) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\7by1jtw8.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2018-11-04]
  76. FF Extension: (Alerte Bons Plans eBuyClub) - C:\Program Files\Mozilla Firefox\browser\extensions\ebctb@plebicom.xul.xpi [2017-10-18]
  77. FF Extension: (United States English Spellchecker) - C:\Program Files\Mozilla Firefox\browser\extensions\en-US@dictionaries.addons.mozilla.org [2017-12-30] [Legacy]
  78. FF Extension: (Tampermonkey) - C:\Program Files\Mozilla Firefox\browser\extensions\firefox@tampermonkey.net.xpi [2017-12-16]
  79. FF Extension: (Поиск Mail.Ru) - C:\Program Files\Mozilla Firefox\browser\extensions\search@mail.ru.xpi [2017-12-21]
  80. FF Extension: (Google Translator for Firefox) - C:\Program Files\Mozilla Firefox\browser\extensions\translator@zoli.bod.xpi [2017-12-11]
  81. FF Extension: (uBlock Origin) - C:\Program Files\Mozilla Firefox\browser\extensions\uBlock0@raymondhill.net.xpi [2017-12-14]
  82. FF Extension: (Adblock Plus) - C:\Program Files\Mozilla Firefox\browser\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-12]
  83. FF Extension: (YouTube to MP3 Button) - C:\Program Files\Mozilla Firefox\browser\extensions\{ec791a2e-1b4f-4bcc-a4d0-5e795de557dc}.xpi [2017-11-29]
  84. FF Extension: (Open With Photoshop) - C:\Program Files\Mozilla Firefox\browser\extensions\{f3f219f9-cbce-467e-b8fe-6e076d29665c}.xpi [2017-12-23]
  85. FF Extension: (Pas de nom) - C:\Program Files\Mozilla Firefox\browser\features\{bf6ce0ec-f600-4aec-a4ad-3039f1ebf56a} [2017-12-30] [non signé]
  86. FF Extension: (Pas de nom) - C:\Program Files\Mozilla Firefox\browser\features\{caff0a07-2588-4ca1-8cda-534cee4e36f0} [2017-12-30] [non signé]
  87. FF HKU\S-1-5-21-3292056028-545877900-3420571958-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5
  88. FF Extension: (IDM CC) - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5 [2016-01-18] [Legacy] [non signé]
  89. FF HKU\S-1-5-21-3292056028-545877900-3420571958-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\pc\AppData\Roaming\IDM\idmmzcc5
  90. FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-06] ()
  91. FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.)
  92. FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-19] (Oracle Corporation)
  93. FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-19] (Oracle Corporation)
  94. FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-14] (Google Inc.)
  95. FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-14] (Google Inc.)
  96. FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
  97. FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
  98. FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
  99. FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)
  100. FF Plugin HKU\S-1-5-21-3292056028-545877900-3420571958-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\pc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-05-08] (Unity Technologies ApS)
  101.  
  102. Chrome:
  103. =======
  104. CHR HomePage: Default -> hxxp://mail.ru/cnt/10445?gp=811141
  105. CHR StartupUrls: Default -> "hxxp://mail.ru/cnt/10445?gp=811141"
  106. CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default [2019-01-06]
  107. CHR Extension: (Slides) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
  108. CHR Extension: (Docs) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
  109. CHR Extension: (Google Drive) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-23]
  110. CHR Extension: (YouTube) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-23]
  111. CHR Extension: (iMacros for Chrome) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2018-12-24]
  112. CHR Extension: (Tampermonkey) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-12-24]
  113. CHR Extension: (Sheets) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
  114. CHR Extension: (Tables) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2017-12-01]
  115. CHR Extension: (Google Docs Offline) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-17]
  116. CHR Extension: (MyJSCript) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpabpfikknflecblchhfkpkcpilbkfcd [2018-12-24]
  117. CHR Extension: (IDM Integration) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm [2017-08-23]
  118. CHR Extension: (Skype) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-31]
  119. CHR Extension: (Chrome Web Store Payments) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-06]
  120. CHR Extension: (Gmail) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-23]
  121. CHR Extension: (Chrome Media Router) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-24]
  122. CHR HKLM\...\Chrome\Extension: [bhjhnafpiilpffhglajcaepjbnbjemci] - hxxps://clients2.google.com/service/update2/crx
  123. CHR HKLM\...\Chrome\Extension: [hcadgijmedbfgciegjomfpjcdchlhnif] - hxxps://clients2.google.com/service/update2/crx
  124. CHR HKLM\...\Chrome\Extension: [jmolcgpienlcieaajfkkdamlngancncm] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-01-29]
  125. CHR HKLM\...\Chrome\Extension: [lhemechcanjmilllmccjbjldonmnnjjj] - hxxps://clients2.google.com/service/update2/crx
  126. CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
  127. CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files\Internet Download Manager\IDMGCExt.crx [2013-01-29]
  128.  
  129. Opera:
  130. =======
  131. OPR Extension: (Tampermonkey) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-12-24]
  132. OPR Extension: (Tables) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\egafjhhpbipcmpoiomegbckljbbbphoj [2017-12-01]
  133. OPR Extension: (MyJSCript) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\gpabpfikknflecblchhfkpkcpilbkfcd [2018-12-24]
  134.  
  135. ==================== Services (Avec liste blanche) ====================
  136.  
  137. (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
  138.  
  139. S4 BEService; C:\Program Files\Common Files\BattlEye\BEService.exe [1288712 2017-08-29] ()
  140. S3 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [437880 2015-10-08] (BlueStack Systems, Inc.)
  141. S3 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [417400 2015-10-08] (BlueStack Systems, Inc.)
  142. S3 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [855672 2015-10-08] (BlueStack Systems, Inc.)
  143. S4 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
  144. S4 hshld; C:\Program Files\Hotspot Shield\bin\cmw_srv.exe [2610808 2017-06-15] (AnchorFree Inc.)
  145. S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Fichier non signé]
  146. S4 IObitUnSvr; C:\Program Files\IObit\IObit Uninstaller\IUService.exe [149776 2018-06-28] (IObit)
  147. S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
  148. S2 QMEmulatorService; C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [342776 2018-12-21] (Tencent)
  149. R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
  150. S4 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-09-10] (TeamViewer GmbH)
  151. S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
  152.  
  153. ===================== Pilotes (Avec liste blanche) ======================
  154.  
  155. (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
  156.  
  157. S3 AFTrafMgr1.2; C:\Program Files\Hotspot Shield\bin\TrafMgr_1_2_32.sys [49080 2017-05-08] (AnchorFree Inc.)
  158. R2 aow_drv; C:\Program Files\TxGameAssistant\UI\aow_drv.sys [597040 2018-06-09] (Tencent)
  159. R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [132216 2015-10-08] (BlueStack Systems)
  160. S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [25016 2015-06-30] (Disc Soft Ltd)
  161. S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [27040 2017-03-02] (LogMeIn, Inc.)
  162. R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2016-03-27] (REALiX(tm))
  163. R3 IUProcessFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win7_x86\IUProcessFilter.sys [17264 2018-05-12] (IObit)
  164. R3 IURegistryFilter; C:\Program Files\IObit\IObit Uninstaller\drivers\win7_x86\IURegistryFilter.sys [23440 2018-05-15] (IObit)
  165. R3 KProcessHacker3; C:\Program Files\Process Hacker 2\kprocesshacker.sys [41624 2016-03-29] (wj32)
  166. S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv.sys [30488 2014-12-29] (Visicom Media Inc.)
  167. R3 mpfilt; C:\Windows\system32\drivers\mpfilt.sys [7680 2014-01-24] (Alcor Micro, Corp.) [Fichier non signé]
  168. R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114304 2015-06-08] (Power Software Ltd)
  169. S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [49856 2016-03-28] (Screaming Bee Inc)
  170. S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [23040 2017-04-20] (The OpenVPN Project)
  171. R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [36944 2016-05-27] (Anchorfree Inc.)
  172. R3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [173216 2017-10-18] (Oracle Corporation)
  173. R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [181584 2017-10-18] (Oracle Corporation)
  174. R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [27440 2016-01-25] (Windows (R) Win 7 DDK provider)
  175. R2 WtfEngineDrv; C:\Windows\system32WtfEngineDrv.sys [32752 2016-12-16] (AAA Internet Publishing, Inc.)
  176. S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
  177. S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
  178. S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
  179. S3 VGPU; System32\drivers\rdvgkmd.sys [X]
  180.  
  181. ==================== NetSvcs (Avec liste blanche) ===================
  182.  
  183. (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
  184.  
  185.  
  186. ==================== Un mois - Créés - fichiers et dossiers ========
  187.  
  188. (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
  189.  
  190. 2019-01-07 00:31 - 2019-01-07 11:52 - 000006360 _____ C:\Windows\system32\PerfStringBackup.TMP
  191. 2019-01-07 00:24 - 2019-01-07 00:26 - 000445696 _____ C:\Windows\system32\FNTCACHE.DAT
  192. 2019-01-07 00:23 - 2019-01-07 00:23 - 000009130 _____ C:\Users\pc\Downloads\Fixlog.txt
  193. 2019-01-06 23:05 - 2019-01-06 23:08 - 000060936 _____ C:\Users\pc\Downloads\Addition.txt
  194. 2019-01-06 23:02 - 2019-01-07 16:40 - 000017492 _____ C:\Users\pc\Downloads\FRST.txt
  195. 2019-01-06 23:02 - 2019-01-07 16:38 - 000000000 ____D C:\FRST
  196. 2019-01-06 23:02 - 2019-01-06 23:02 - 001784320 _____ (Farbar) C:\Users\pc\Downloads\FRST.exe
  197. 2019-01-06 22:59 - 2019-01-06 23:13 - 081227760 _____ (Malwarebytes ) C:\Users\pc\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.508-1.0.8211.exe
  198. 2019-01-06 20:07 - 2019-01-06 20:07 - 000000009 _____ C:\Users\pc\rstr2.ini
  199. 2019-01-05 13:46 - 2019-01-05 13:46 - 000985389 _____ C:\Users\pc\Documents\Kết quả chẩn đoán của Tencent Gaming Buddy.zip
  200. 2019-01-05 13:46 - 2019-01-05 13:46 - 000000000 ____D C:\Users\pc\Documents\MobileGamePC
  201. 2019-01-05 13:34 - 2019-01-05 13:34 - 003751769 _____ C:\Users\pc\Downloads\PVPUBGMOBILE VIP(1).rar
  202. 2019-01-05 11:12 - 2019-01-05 11:13 - 003751769 _____ C:\Users\pc\Downloads\PVPUBGMOBILE VIP.rar
  203. 2019-01-03 21:11 - 2019-01-03 21:11 - 000000000 _____ C:\Windows\paopaologin.ppa
  204. 2018-12-27 17:05 - 2018-12-27 17:05 - 000000000 _____ C:\Users\pc\Desktop\Nouveau document texte.txt
  205. 2018-12-27 16:47 - 2018-12-27 16:47 - 000000000 ____D C:\Users\pc\AppData\Local\TeamViewer
  206. 2018-12-27 16:13 - 2018-12-27 16:45 - 062128263 _____ C:\Users\pc\Desktop\UI.zip
  207. 2018-12-27 16:13 - 2018-12-27 16:19 - 062128263 _____ C:\Users\pc\Downloads\UI.zip
  208. 2018-12-27 14:43 - 2019-01-05 11:18 - 000000000 ____D C:\Users\pc\AppData\Roaming\Tencent
  209. 2018-12-27 14:33 - 2018-12-27 14:49 - 000000000 ____D C:\ProgramData\Tencent
  210. 2018-12-27 14:27 - 2018-12-27 14:29 - 007320272 _____ (Malwarebytes) C:\Users\pc\Downloads\adwcleaner_7.2.6.0.exe
  211. 2018-12-27 11:04 - 2018-12-27 11:04 - 006430346 _____ C:\Users\pc\Downloads\hackPUBGm.com v2.1.zip
  212. 2018-12-27 00:14 - 2018-12-27 00:14 - 000409976 _____ C:\Users\pc\Downloads\Fix Black Screen new.rar
  213. 2018-12-26 23:59 - 2018-12-26 23:59 - 000721097 _____ C:\Users\pc\Downloads\ntdll.zip
  214. 2018-12-26 21:42 - 2018-12-26 21:43 - 000752418 _____ C:\Users\pc\Downloads\Locale.Emulator.2.4.0.0(1).zip
  215. 2018-12-26 21:08 - 2018-12-26 21:09 - 000000000 ____D C:\Users\pc\Downloads\Full Driver
  216. 2018-12-26 20:59 - 2018-12-26 21:00 - 006375753 _____ C:\Users\pc\Downloads\esp+aimbot 0.10.1.rar
  217. 2018-12-26 20:14 - 2018-12-26 20:33 - 153715262 _____ C:\Users\pc\Downloads\Full Driver.zip
  218. 2018-12-26 16:57 - 2018-12-26 16:58 - 004718949 _____ C:\Users\pc\Downloads\hackpubgm esp aimbot.rar
  219. 2018-12-26 16:11 - 2018-12-26 16:13 - 002334478 _____ C:\Users\pc\Downloads\new_hack_26-12-2018.rar
  220. 2018-12-26 15:45 - 2018-12-26 15:45 - 002662400 __RSH (泡泡) C:\Users\pc\Desktop\Temp.dat
  221. 2018-12-26 15:39 - 2018-12-26 15:39 - 003048197 _____ C:\Users\pc\Downloads\[hackpubgm.com] v2.1 full crack vip.zip
  222. 2018-12-26 00:44 - 2018-12-26 00:48 - 045099266 _____ C:\Users\pc\Downloads\DirectX_11_Technology_Update_US.zip
  223. 2018-12-26 00:15 - 2018-12-26 00:15 - 000752418 _____ C:\Users\pc\Downloads\Locale.Emulator.2.4.0.0.zip
  224. 2018-12-25 23:20 - 2018-12-25 23:20 - 004985180 _____ C:\Users\pc\Downloads\ESP_CHEAT hackpubgm updated2.zip
  225. 2018-12-25 23:13 - 2018-12-25 23:23 - 068742112 _____ (Microsoft Corporation) C:\Users\pc\Downloads\NDP471-KB4033342-x86-x64-AllOS-ENU.exe
  226. 2018-12-25 22:28 - 2018-12-25 23:01 - 000000000 ____D C:\1
  227. 2018-12-25 22:28 - 2018-12-25 22:28 - 000000040 _____ C:\colour.dat
  228. 2018-12-25 22:28 - 2018-12-25 22:28 - 000000016 _____ C:\colour.conf
  229. 2018-12-25 22:27 - 2018-12-25 22:27 - 001371341 _____ C:\Users\pc\Downloads\wall new.rar
  230. 2018-12-25 21:45 - 2018-12-25 21:45 - 000001139 _____ C:\Users\pc\Desktop\腾讯手游助手.lnk
  231. 2018-12-25 16:59 - 2018-12-26 01:08 - 000000272 _____ C:\Users\pc\gcg.txt
  232. 2018-12-25 16:59 - 2018-12-26 01:08 - 000000036 _____ C:\Users\pc\Documents\XGtz.ini
  233. 2018-12-25 15:21 - 2018-12-25 15:21 - 001420505 _____ C:\Users\pc\Downloads\hackpubgm v1.9.rar
  234. 2018-12-24 22:59 - 2018-12-24 23:00 - 004983477 _____ C:\Users\pc\Downloads\ESP v2.0 hackpubgm.com.zip
  235. 2018-12-24 21:39 - 2018-12-24 21:47 - 060990661 _____ C:\Users\pc\Downloads\8BP_LongLineMOD(4.2.0 Official Latest).apk
  236. 2018-12-24 10:17 - 2019-01-05 16:00 - 000000002 _____ C:\Users\pc\AppData\Local\imw.ini
  237. 2018-12-24 00:19 - 2018-12-27 17:10 - 000000000 ____D C:\Users\pc\Desktop\pubg
  238. 2018-12-24 00:14 - 2018-12-24 00:14 - 001299688 ____R ( ) C:\Users\pc\Downloads\PUBG_Hack_Tencent_Buddy_Full_ESP__AIMBOT_21.11.2018_PQWSTB.exe
  239. 2018-12-21 20:02 - 2018-12-21 20:03 - 003897773 _____ C:\Users\pc\Downloads\48960846_1925053877590105_4922360734026825728_n.mp4
  240.  
  241. ==================== Un mois - Modifiés - fichiers et dossiers ========
  242.  
  243. (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
  244.  
  245. 2019-01-07 16:37 - 2015-06-30 05:02 - 000000000 ____D C:\Users\pc\Downloads\Need For Speed Underground 2
  246. 2019-01-07 12:01 - 2009-07-14 05:34 - 000016816 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  247. 2019-01-07 12:01 - 2009-07-14 05:34 - 000016816 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  248. 2019-01-07 11:52 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf
  249. 2019-01-07 11:51 - 2018-10-05 14:36 - 003144088 _____ C:\Windows\ntbtlog.txt
  250. 2019-01-07 11:50 - 2016-11-18 14:29 - 000000000 ____D C:\Users\pc\AppData\LocalLow\Mozilla
  251. 2019-01-07 11:46 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
  252. 2019-01-07 00:26 - 2015-12-25 18:31 - 000000008 __RSH C:\ProgramData\ntuser.pol
  253. 2019-01-07 00:25 - 2017-11-28 19:55 - 000000438 _____ C:\Windows\Tasks\UCBrowserUpdater.job
  254. 2019-01-07 00:23 - 2009-07-14 03:37 - 000000000 ___HD C:\Windows\system32\GroupPolicy
  255. 2019-01-07 00:12 - 2018-11-04 15:56 - 000000000 ____D C:\Program Files\SSTEAM
  256. 2019-01-06 21:21 - 2016-04-16 01:09 - 000000000 ____D C:\Program Files\Valve
  257. 2019-01-06 21:20 - 2013-04-15 09:51 - 000000000 ____D C:\Users\pc
  258. 2019-01-06 21:18 - 2016-04-06 10:53 - 000000000 ____D C:\Windows\pss
  259. 2019-01-06 21:12 - 2015-07-05 21:38 - 000000000 ____D C:\Users\pc\AppData\Roaming\vlc
  260. 2019-01-06 21:10 - 2017-10-20 13:10 - 000000000 ____D C:\Program Files\TeamViewer
  261. 2019-01-06 12:26 - 2015-06-04 00:28 - 000000000 ____D C:\Windows\system32\Macromed
  262. 2019-01-05 16:03 - 2018-12-05 21:14 - 000000000 ____D C:\Users\pc\AppData\Roaming\CC
  263. 2019-01-05 16:01 - 2015-06-03 21:24 - 000000000 ____D C:\Users\pc\AppData\Roaming\DMCache
  264. 2019-01-05 16:00 - 2015-06-12 02:07 - 000000000 ____D C:\Users\pc\AppData\Roaming\uTorrent
  265. 2019-01-05 16:00 - 2015-06-03 21:24 - 000000000 ____D C:\Users\pc\Downloads\Compressed
  266. 2019-01-05 14:00 - 2013-04-15 09:52 - 000126680 _____ C:\Users\pc\AppData\Local\GDIPFONTCACHEV1.DAT
  267. 2019-01-04 10:13 - 2017-04-14 03:22 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
  268. 2019-01-03 21:45 - 2018-08-19 17:13 - 000000000 ____D C:\Program Files\TxGameAssistant
  269. 2019-01-03 19:16 - 2015-07-07 06:06 - 000000000 ____D C:\ProgramData\ProductData
  270. 2018-12-27 17:19 - 2018-08-30 15:40 - 000000929 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 13.lnk
  271. 2018-12-27 16:35 - 2015-06-05 21:16 - 000000000 ____D C:\Users\pc\Desktop\Nouveau dossier
  272. 2018-12-27 14:31 - 2015-07-30 17:19 - 000000000 ____D C:\Program Files\Common Files\IObit
  273. 2018-12-27 14:31 - 2015-07-07 06:25 - 000000000 ____D C:\AdwCleaner
  274. 2018-12-27 14:31 - 2015-07-07 06:06 - 000000000 ____D C:\Users\pc\AppData\Roaming\IObit
  275. 2018-12-27 14:31 - 2015-07-07 06:06 - 000000000 ____D C:\ProgramData\IObit
  276. 2018-12-27 14:31 - 2015-06-13 23:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
  277. 2018-12-27 14:16 - 2009-07-14 05:53 - 000032482 _____ C:\Windows\Tasks\SCHEDLGU.TXT
  278. 2018-12-26 23:24 - 2015-06-04 00:37 - 000000000 ____D C:\Users\pc\AppData\Local\ElevatedDiagnostics
  279. 2018-12-25 23:26 - 2015-07-18 08:37 - 000000000 ____D C:\Users\pc\AppData\LocalLow\Adobe
  280. 2018-12-25 23:25 - 2015-06-04 00:26 - 000000000 ____D C:\Users\pc\AppData\Local\Adobe
  281. 2018-12-25 18:47 - 2018-11-04 23:35 - 000000000 ____D C:\Users\pc\AppData\Roaming\TeaTV
  282. 2018-12-23 16:46 - 2015-07-18 07:44 - 000000000 ____D C:\Program Files\Common Files\Adobe
  283. 2018-12-23 16:46 - 2015-06-04 00:29 - 000000000 ____D C:\Users\pc\AppData\Roaming\Adobe
  284. 2018-12-21 12:05 - 2017-01-09 21:54 - 000000000 ____D C:\Users\pc\Desktop\illustrator cc x64 portable
  285. 2018-12-19 13:08 - 2018-11-12 18:58 - 000000000 ____D C:\Users\pc\Desktop\scan
  286. 2018-12-14 11:57 - 2017-10-13 14:53 - 000002168 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  287. 2018-12-13 09:08 - 2017-08-23 23:37 - 000000000 ____D C:\Program Files\Google
  288. 2018-12-13 09:07 - 2016-12-14 18:37 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
  289. 2018-12-12 18:22 - 2017-10-29 17:51 - 000000000 ____D C:\Program Files\Mozilla Firefox
  290.  
  291. ==================== Fichiers à la racine de certains dossiers =======
  292.  
  293. 2015-07-07 06:11 - 2015-07-07 06:11 - 000000000 ____D () C:\ProgramData\StartMenuReviver.exe
  294. 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\OyiSI.exe
  295. 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\uIvUuaPqa.exe
  296. 2009-07-14 02:14 - 2009-07-14 02:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files\Common Files\AOhdaSxawwXh.exe
  297. 2009-07-14 02:14 - 2009-07-14 02:14 - 000186368 ____N (Microsoft Corporation) C:\Program Files\Common Files\Lhoruqp.exe
  298. 2016-01-14 21:00 - 2016-01-14 21:22 - 000000132 _____ () C:\Users\pc\AppData\Roaming\Adobe BMP Format CS6 Prefs
  299. 2015-06-08 17:05 - 2017-03-28 01:10 - 000000600 _____ () C:\Users\pc\AppData\Roaming\winscp.rnd
  300. 2015-07-18 08:53 - 2018-06-24 20:46 - 000001456 _____ () C:\Users\pc\AppData\Local\Adobe Enregistrer pour le Web 12.0 Prefs
  301. 2015-09-18 19:02 - 2017-10-04 12:21 - 000001456 _____ () C:\Users\pc\AppData\Local\Adobe Save for Web 13.0 Prefs
  302. 2018-12-24 10:17 - 2019-01-05 16:00 - 000000002 _____ () C:\Users\pc\AppData\Local\imw.ini
  303. 2015-12-25 22:28 - 2015-12-25 22:28 - 000000001 _____ () C:\Users\pc\AppData\Local\llftool.4.40.agreement
  304. 2015-07-30 17:29 - 2018-09-17 01:04 - 000007606 _____ () C:\Users\pc\AppData\Local\Resmon.ResmonCfg
  305. 2017-04-17 21:12 - 2017-04-17 21:12 - 000000003 _____ () C:\Users\pc\AppData\Local\updater.log
  306. 2017-04-17 21:12 - 2017-05-07 13:21 - 000000413 _____ () C:\Users\pc\AppData\Local\UserProducts.xml
  307. 2017-12-01 20:25 - 2017-12-01 20:25 - 000000001 _____ () C:\Users\pc\AppData\Local\WMI.ini
  308.  
  309. Certains fichiers dans TEMP:
  310. ====================
  311. 2018-10-19 19:19 - 2018-10-19 19:19 - 001892728 _____ (Oracle Corporation) C:\Users\pc\AppData\Local\Temp\jre-8u191-windows-au.exe
  312. 2019-01-06 20:07 - 2019-01-06 21:29 - 000000000 ____D () C:\Users\pc\AppData\Local\Temp\JSCore.dll
  313.  
  314. ==================== Bamital & volsnap ======================
  315.  
  316. (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
  317.  
  318. C:\Windows\explorer.exe => Le fichier est signé numériquement
  319. C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
  320. C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
  321. C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
  322. C:\Windows\system32\services.exe => Le fichier est signé numériquement
  323. C:\Windows\system32\User32.dll => Le fichier est signé numériquement
  324. C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
  325. C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
  326. C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
  327. C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
  328.  
  329. LastRegBack: 2019-01-04 00:24
  330.  
  331. ==================== Fin de FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement