Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 13-05.2019 01
Exécuté par Jacques (administrateur) sur LUCILE-HURET (LENOVO 20DSS04500) (14-05-2019 12:08:18)
Exécuté depuis C:\Users\ORDI\Downloads\defender
Profils chargés: Jacques (Profils disponibles: Jacques)
Platform: Windows 10 Pro Version 1809 17763.475 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(CHENGDU AOMEI Tech Co., Ltd. -> AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Lenovo -> Lenovo.) C:\Windows\System32\LPlatSvc.exe
(Lenovo -> Lenovo.) C:\Windows\System32\LPlatSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ORDI\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(pdfforge GmbH -> © pdfforge GmbH.) C:\Program Files (x86)\PDF Architect 6 Manager\PDF Architect 6\Architect Manager.exe
(pdfforge GmbH -> pdfforge GmbH) C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\RunOnce: [UnKIS] => wscript.exe //b C:\Users\ORDI\AppData\Local\Temp\UnKIS.vbs <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-809161018-497939312-3737899808-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-809161018-497939312-3737899808-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\MARINE~1.SCR [6938624 2012-02-08] (SereneScreen) [Fichier non signé]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.131\Installer\chrmstp.exe [2019-05-06] (Google LLC -> Google Inc.)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {141FE8DD-FD9A-4378-92FF-B62ADD4A5053} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1494000 2017-06-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {3081D889-AC7A-40C2-B538-155CCF0A3758} - System32\Tasks\RtsCM => C:\WINDOWS\RtsCM64.exe [232216 2016-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
Task: {45AA81EB-FC12-4AB4-960B-1771CC8C13D4} - System32\Tasks\Opera scheduled Autoupdate 1549646213 => C:\Users\Lucile\AppData\Local\Programs\Opera\launcher.exe [1245784 2019-01-30] (Opera Software AS -> Opera Software)
Task: {782A7126-E58C-4F03-8781-6FC1CF8F7B80} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8782F2A3-F121-467C-A549-E254A90F1D8D} - System32\Tasks\Lenovo Power Management Driver PnP Task => C:\WINDOWS\System32\ibmpmsvc.exe [855968 2018-05-23] (Lenovo -> Lenovo.)
Task: {9105C305-2C0D-450E-B5A1-6F010ACAF04D} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1494000 2017-06-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {A70069AC-EB72-4E1E-9487-0B90A7D59586} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BFC8BBC8-84A7-45D6-961D-23FCEE56670D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-13] (Google Inc -> Google Inc.)
Task: {C7D7BAC0-B382-4334-9F2C-7520C87B6BD0} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1494000 2017-06-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {C8D5B777-9CA0-4834-954B-DA702C094520} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-13] (Google Inc -> Google Inc.)
Task: {D35B3564-9384-4B4A-82CF-31C0C11BF9D9} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [112312 2019-02-12] (Lenovo -> Lenovo)
Task: {E007F038-665B-4C81-90E5-38CC8DC8310D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {F77B61BE-A877-4928-B7EB-7472288C910D} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgrInst.exe [58552 2019-02-12] (Lenovo -> )

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\..\Interfaces\{6d7ab315-0a1f-4d3e-a40f-9637dd1e2d2a}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{c51850e1-78c8-4bc1-a30b-7ed9ed553639}: [NameServer] 185.61.146.1,185.61.147.1

Internet Explorer:
==================
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-04-20] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: PDF Architect 6 Helper -> {9FD094B1-A4BF-415A-82AE-8C2845D0B769} -> C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-helper.dll [2018-06-27] (pdfforge GmbH -> pdfforge GmbH)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-04-20] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM-x32 - PDF Architect 6 Toolbar - {E8536605-CA24-4DFF-B1BC-316EE27F6DF7} - C:\Program Files (x86)\PDF Architect 6\creator\plugins\IEAddin\creator-ie-plugin.dll [2018-06-27] (pdfforge GmbH -> pdfforge GmbH)
Toolbar: HKU\S-1-5-21-809161018-497939312-3737899808-1001 -> Pas de nom - {C500C267-63BF-451F-8797-4D720C9A2ED9} - Pas de fichier

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-809161018-497939312-3737899808-1001 -> hxxp://www.meteofrance.com/previsions-meteo-france/sainte-genevieve-des-bois/91700
Edge Extension: (uBlock Origin) -> EdgeExtension_37833NikRollsuBlockOrigin_f8jsg5mm64m62 => C:\Program Files\WindowsApps\37833NikRolls.uBlockOrigin_1.15.24.0_neutral__f8jsg5mm64m62 [2019-04-24]
Edge Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) -> EdgeExtension_GhosteryGhostery_kzkqe0pn505dg => C:\Program Files\WindowsApps\Ghostery.Ghostery_8.3.2.0_neutral__kzkqe0pn505dg [non trouvé(e)]

FireFox:
========
FF DefaultProfile: l8jttwvg.default
FF ProfilePath: C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default [2019-05-14]
FF Homepage: Mozilla\Firefox\Profiles\l8jttwvg.default -> hxxp://www.meteofrance.com/previsions-meteo-france/sainte-genevieve-des-bois/91700
FF Extension: (Signal Spam) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\@addonsignalspam.xpi [2019-02-10]
FF Extension: (AmIUnique) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\@amiunique-extension.xpi [2019-02-10]
FF Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\firefox@ghostery.com.xpi [2019-05-10]
FF Extension: (uBlock Origin) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\uBlock0@raymondhill.net.xpi [2019-05-14]
FF Extension: (Google Analytics Opt-out) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\{2f182d41-fd03-4a6d-938d-081419586c37}.xpi [2019-04-24]
FF Extension: (QueChoisir - Oqif) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\{7b259f2a-2c8f-4f65-a9d3-ee2b090f4f73}.xpi [2019-04-15]
FF Extension: (Video DownloadHelper) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-02-10]
FF Extension: (Baidu Search Update) - C:\Users\ORDI\AppData\Roaming\Mozilla\Firefox\Profiles\l8jttwvg.default\features\{5488a6d7-586b-42f6-a5ff-8b99cc794f63}\baidu-code-update@mozillaonline.com.xpi [2019-05-10]
FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-04-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-04-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-27] (Google Inc -> Google LLC)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 6 -> C:\Program Files (x86)\PDF Architect 6\np-previewer.dll [2018-06-27] (pdfforge GmbH -> pdfforge GmbH)

Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.meteofrance.com/previsions-meteo-france/sainte-genevieve-des-bois/91700
CHR StartupUrls: Default -> "hxxp://www.meteofrance.com/previsions-meteo-france/sainte-genevieve-des-bois/91700"
CHR Profile: C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default [2019-05-01]
CHR Extension: (Kaspersky Protection) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\amkpcclbbgegoafihnpgomddadjhcadd [2019-02-09]
CHR Extension: (Google Drive) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-09]
CHR Extension: (uBlock Origin) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-04-24]
CHR Extension: (QueChoisir - Oqif) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\efbibldnjenfgnpiabghamemilpbkegn [2019-04-24]
CHR Extension: (Désactivation de Google Analytics) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2019-04-24]
CHR Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2019-04-24]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-09]
CHR Extension: (Signal Spam) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\npkncdihipibabapnailakhpajlglbfk [2019-04-24]
CHR Extension: (Gmail) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-02-09]
CHR Extension: (Chrome Media Router) - C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-24]
CHR Profile: C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-05-01]
CHR Profile: C:\Users\ORDI\AppData\Local\Google\Chrome\User Data\System Profile [2019-05-01]

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [483184 2019-03-29] (CHENGDU AOMEI Tech Co., Ltd. -> AOMEI Tech Co., Ltd.)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [190216 2016-10-15] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373704 2017-02-17] (Intel(R) pGFX -> Intel Corporation)
R2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [774040 2018-05-23] (Lenovo -> Lenovo.)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes Corporation -> Malwarebytes)
S3 PDF Architect 6; C:\Program Files\PDF Architect 6\ws.exe [2837168 2018-06-27] (pdfforge GmbH -> pdfforge GmbH)
R2 PDF Architect 6 Creator; C:\Program Files\PDF Architect 6\creator\common\creator-ws.exe [874680 2018-06-27] (pdfforge GmbH -> pdfforge GmbH)
R2 PDF Architect 6 Manager; C:\Program Files (x86)\PDF Architect 6 Manager\PDF Architect 6\Architect Manager.exe [999200 2018-04-20] (pdfforge GmbH -> © pdfforge GmbH.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [277144 2018-11-19] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830128 2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2017-09-01] (CHENGDU AOMEI Tech Co., Ltd. -> )
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [250624 2016-10-15] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R0 IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [88256 2015-06-09] (Intel(R) Software -> Intel Corporation)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253664 2019-05-01] (Malwarebytes Corporation -> Malwarebytes)
R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7708160 2018-09-15] (Microsoft Windows -> Intel Corporation)
R0 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [44232 2018-05-23] (Lenovo -> Lenovo.)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [761600 2015-06-15] (Realtek Semiconductor Corp -> Realsil Semiconductor Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3127576 2016-08-29] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [54928 2018-11-19] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-05-14 12:08 - 2019-05-14 12:08 - 000000000 ____D C:\FRST
2019-05-14 12:06 - 2019-05-14 12:06 - 000000000 ___HD C:\kleaner.tmp
2019-05-14 12:03 - 2019-05-14 12:03 - 000000000 ___HD C:\OneDriveTemp
2019-05-14 11:53 - 2019-05-14 12:06 - 000000000 ____D C:\Users\ORDI\Downloads\karpersky
2019-05-14 11:50 - 2019-05-14 12:08 - 000000000 ____D C:\Users\ORDI\Downloads\defender
2019-05-14 11:27 - 2019-05-14 11:27 - 000000085 _____ C:\WINDOWS\wininit.ini
2019-05-09 21:44 - 2019-05-14 12:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2019-05-09 21:35 - 2019-05-09 21:35 - 000000989 _____ C:\Users\ORDI\AppData\Roaming\Network Meter_Settings.ini
2019-05-09 21:35 - 2019-05-09 21:35 - 000000014 _____ C:\Users\ORDI\AppData\Roaming\Network Meter_Usage.ini
2019-05-09 21:33 - 2019-05-09 21:34 - 000000093 _____ C:\Users\ORDI\IP_Log_Data.js
2019-05-04 19:47 - 2019-05-04 19:47 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 012140032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 002393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 002205184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000109568 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-05-04 19:47 - 2019-05-04 19:47 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-05-04 19:46 - 2019-05-04 19:47 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 026810880 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 023441920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 012844032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 009683472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 007645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 006544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 005296640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-05-04 19:46 - 2019-05-04 19:46 - 003426816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 003406848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002995712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002701512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-05-04 19:46 - 2019-05-04 19:46 - 002275888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001697960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-05-04 19:46 - 2019-05-04 19:46 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001653760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001469168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 001467552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 001054928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000780632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000757664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000725696 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2019-05-04 19:46 - 2019-05-04 19:46 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000649064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000638376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2019-05-04 19:46 - 2019-05-04 19:46 - 000553656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-05-04 19:46 - 2019-05-04 19:46 - 000540720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000514632 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000454160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-05-04 19:46 - 2019-05-04 19:46 - 000451080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000280592 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000254464 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000122680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2019-05-04 19:46 - 2019-05-04 19:46 - 000086960 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnosticsTool.exe
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-05-04 19:46 - 2019-05-04 19:46 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-05-04 19:45 - 2019-05-04 19:45 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 002720256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-05-04 19:45 - 2019-05-04 19:45 - 001253904 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-05-04 19:45 - 2019-05-04 19:45 - 001219640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 001044520 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-05-04 19:45 - 2019-05-04 19:45 - 000999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000806600 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-05-04 19:45 - 2019-05-04 19:45 - 000806600 _____ C:\WINDOWS\system32\locale.nls
2019-05-04 19:45 - 2019-05-04 19:45 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000676256 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000651576 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-05-04 19:45 - 2019-05-04 19:45 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000421392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-05-04 19:45 - 2019-05-04 19:45 - 000366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000157200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2019-05-04 19:45 - 2019-05-04 19:45 - 000090640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-05-01 12:54 - 2019-05-01 12:54 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\326102C8.sys
2019-04-28 21:25 - 2019-04-28 21:26 - 000000000 ____D C:\Users\ORDI\Documents\My Digital Editions
2019-04-28 21:25 - 2019-04-28 21:25 - 000000000 ____D C:\Users\ORDI\AppData\Local\Adobe_Systems_Incorporate
2019-04-18 19:22 - 2019-04-18 19:22 - 000000000 ____D C:\Users\ORDI\AppData\LocalLow\Sun

==================== Un mois (modifiés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-05-14 12:07 - 2018-12-12 16:13 - 001771406 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-05-14 12:07 - 2018-09-15 18:37 - 000793010 _____ C:\WINDOWS\system32\perfh00C.dat
2019-05-14 12:07 - 2018-09-15 18:37 - 000150042 _____ C:\WINDOWS\system32\perfc00C.dat
2019-05-14 12:07 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-05-14 12:03 - 2018-07-11 11:18 - 000000000 ___RD C:\Users\ORDI\OneDrive
2019-05-14 12:02 - 2019-04-01 10:25 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper
2019-05-14 12:02 - 2018-12-07 18:56 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-05-14 12:02 - 2018-10-01 10:02 - 000000312 _____ C:\WINDOWS\SysWOW64\AbBakConfig.dat
2019-05-14 12:02 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-14 12:02 - 2018-07-13 15:49 - 000000150 _____ C:\WINDOWS\SysWOW64\winsevr.dat
2019-05-14 12:02 - 2018-07-11 16:55 - 000000000 ____D C:\Users\ORDI\AppData\LocalLow\Mozilla
2019-05-14 12:01 - 2018-12-12 16:18 - 000003700 _____ C:\WINDOWS\System32\Tasks\Lenovo Power Management Driver PnP Task
2019-05-14 12:01 - 2018-12-12 16:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-05-14 12:01 - 2018-07-13 11:58 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2019-05-14 12:01 - 2018-07-11 16:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-05-14 12:00 - 2018-09-15 08:09 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2019-05-14 11:59 - 2018-09-15 08:09 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
2019-05-14 11:59 - 2018-07-12 17:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2019-05-14 11:59 - 2018-07-12 16:30 - 000000000 ____D C:\Program Files\Common Files\AV
2019-05-14 11:44 - 2018-12-12 15:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-14 11:30 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-14 11:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-05-14 11:27 - 2018-07-13 11:58 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2019-05-12 19:39 - 2019-02-22 20:26 - 000000000 ____D C:\Users\ORDI\AppData\Roaming\Scratch Desktop
2019-05-10 21:14 - 2018-07-11 16:51 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-05-09 21:33 - 2018-12-12 16:02 - 000000000 ____D C:\Users\ORDI
2019-05-09 21:28 - 2018-07-11 11:16 - 000000000 ____D C:\Users\ORDI\AppData\Local\Packages
2019-05-09 21:25 - 2018-12-12 16:18 - 000003374 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-809161018-497939312-3737899808-1001
2019-05-09 21:25 - 2018-12-12 16:02 - 000002398 _____ C:\Users\ORDI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-06 18:15 - 2019-02-08 19:15 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-06 18:08 - 2018-12-12 15:58 - 000290384 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-05-04 19:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\TextInput
2019-05-04 19:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-05-04 19:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-05-04 19:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-05-04 19:50 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-05-03 18:57 - 2018-12-12 16:18 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-05-01 13:19 - 2019-04-04 16:31 - 000253664 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-05-01 13:18 - 2018-09-07 16:20 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2019-05-01 12:54 - 2018-09-07 16:20 - 000192952 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2019-05-01 12:14 - 2019-03-06 22:20 - 000000000 ____D C:\Users\ORDI\Documents\sauvegarde registre CCleaner
2019-04-24 20:28 - 2018-07-11 11:18 - 000000000 ____D C:\Users\ORDI\AppData\Local\PlaceholderTileLogoFolder
2019-04-20 16:40 - 2018-10-08 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-04-20 16:40 - 2018-10-08 11:27 - 000000000 ____D C:\Program Files (x86)\Java
2019-04-20 16:39 - 2018-10-08 11:28 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll

==================== Fichiers à la racine de certains dossiers =======

2019-05-09 21:33 - 2019-05-09 21:34 - 000000093 _____ () C:\Users\ORDI\IP_Log_Data.js
2019-05-09 21:35 - 2019-05-09 21:35 - 000000989 _____ () C:\Users\ORDI\AppData\Roaming\Network Meter_Settings.ini
2019-05-09 21:35 - 2019-05-09 21:35 - 000000014 _____ () C:\Users\ORDI\AppData\Roaming\Network Meter_Usage.ini
2018-07-13 14:17 - 2018-08-01 14:02 - 000001293 _____ () C:\Users\ORDI\AppData\Local\Temp1.html
2018-07-13 14:17 - 2018-08-01 14:02 - 000003111 _____ () C:\Users\ORDI\AppData\Local\Temp6.html

==================== SigCheck ===============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ============================