Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03.03.2019 01
Exécuté par fred (administrateur) sur FRED (05-03-2019 09:01:23)
Exécuté depuis C:\Users\fred\Desktop
Profils chargés: fred (Profils disponibles: fred)
Platform: Windows 10 Home Version 1803 17134.590 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_48720fcc117e5841\RstMwService.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe
(Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Birch Grove Software, Inc. -> Birch Grove Software, Inc.) C:\Windows\SysWOW64\svctcom.exe
(GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
(Birch Grove Software, Inc. -> ) C:\Windows\SysWOW64\syschk.exe
(Birch Grove Software, Inc. -> Birch Grove Software, Inc.) C:\Windows\SysWOW64\scthost.exe
(Birch Grove Software -> Birch Grove Software, Inc.) C:\Windows\SysWOW64\trmhost.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GlassWire.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\LAClient\laclient.exe
(Power Software Limited -> Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GWIdlMon.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler64.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [3523848 2018-07-03] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2018-09-07] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [455136 2018-02-28] (Power Software Limited -> Power Software Ltd)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-812116667-556820374-3654873591-1001\...\Run: [GlassWire] => C:\Program Files (x86)\GlassWire\glasswire.exe [5650384 2019-02-15] (GlassWire -> SecureMix LLC)
HKU\S-1-5-21-812116667-556820374-3654873591-1001\...\MountPoints2: D - "D:\setup.exe"
HKU\S-1-5-21-812116667-556820374-3654873591-1001\...\MountPoints2: F - "F:\mSetup.exe"
HKLM\...\Drivers32: [vidc.x264] => x264vfw.dll
HKLM\...\Drivers32: [VIDC.RTV1] => c:\windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [Fichier non signé]
HKLM\...\Drivers32-x32: [vidc.x264] => x264vfw.dll
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\AC3ACM.acm [122880 2012-07-21] (fccHandler) [Fichier non signé]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [Fichier non signé]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-05] (Google LLC -> Google Inc.)
Startup: C:\Users\fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2019-03-03]
GroupPolicy: Restriction ? <==== ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f1c087e8-ae38-49e0-b305-ca8c1a71c201}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-812116667-556820374-3654873591-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-812116667-556820374-3654873591-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
SearchScopes: HKU\S-1-5-21-812116667-556820374-3654873591-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2018-09-07] (Logitech Inc -> Logitech, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-03-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2018-09-07] (Logitech Inc -> Logitech, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-03-05] (Oracle America, Inc. -> Oracle Corporation)

FireFox:
========
FF DefaultProfile: 0nnie0ss.default-1540626257680
FF ProfilePath: C:\Users\fred\AppData\Roaming\Mozilla\Firefox\Profiles\0nnie0ss.default-1540626257680 [2019-03-05]
FF Session Restore: Mozilla\Firefox\Profiles\0nnie0ss.default-1540626257680 -> est activé.
FF Extension: (Hoxx VPN Proxy) - C:\Users\fred\AppData\Roaming\Mozilla\Firefox\Profiles\0nnie0ss.default-1540626257680\Extensions\@hoxx-vpn.xpi [2019-01-13]
FF Extension: (Dashlane) - C:\Users\fred\AppData\Roaming\Mozilla\Firefox\Profiles\0nnie0ss.default-1540626257680\Extensions\jetpack-extension@dashlane.com.xpi [2019-03-04] [UpdateUrl:hxxps://ws1.dashlane.com/5/binaries/query?logins=&platform=firefox&target=ff_web_extension&format=json&version=]
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\fred\AppData\Roaming\Mozilla\Firefox\Profiles\0nnie0ss.default-1540626257680\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-01-23]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2018-11-18] [non signé]
FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-03-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-03-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default [2019-03-05]
CHR Extension: (Slides) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-11-04]
CHR Extension: (Docs) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-11-04]
CHR Extension: (Google Drive) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-11-04]
CHR Extension: (YouTube) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-11-04]
CHR Extension: (Sheets) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-11-04]
CHR Extension: (Protection Web Avira) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2019-01-08]
CHR Extension: (Google Docs hors connexion) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-11-04]
CHR Extension: (AdBlock) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-03-01]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-11-04]
CHR Extension: (Gmail) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-11-04]
CHR Extension: (Chrome Media Router) - C:\Users\fred\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-08]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6758976 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [357304 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2018-10-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 GlassWire; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [4461520 2019-02-15] (GlassWire -> SecureMix LLC)
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [4091112 2017-11-09] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes)
R2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [2241512 2018-10-30] (Plex, Inc -> Plex, Inc.)
R2 RstMwService; C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_48720fcc117e5841\RstMwService.exe [1969168 2018-07-30] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 SophosVirusRemovalTool; C:\Users\fred\Desktop\tron\tron\resources\stage_3_disinfect\sophos_virus_remover\SVRTservice.exe [163680 2017-06-15] (Sophos Limited -> Sophos Limited)
R2 svctcom; C:\Windows\SysWOW64\svctcom.exe [1426888 2019-01-24] (Birch Grove Software, Inc. -> Birch Grove Software, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225680 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196072 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320696 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57960 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-01-04] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167304 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034432 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [474456 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [216784 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [379952 2019-03-03] (AVAST Software s.r.o. -> AVAST Software)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2018-11-19] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 gdrv; C:\Windows\gdrv.sys [25640 2018-11-20] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
R1 gwdrv; C:\Windows\system32\DRIVERS\gwdrv.sys [33152 2015-05-29] (GlassWire -> SecureMix LLC)
R0 iaStorAC; C:\Windows\System32\drivers\iaStorAC.sys [1092112 2018-07-30] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 iaStorAfs; C:\Windows\System32\drivers\iaStorAfs.sys [73232 2018-07-30] (Intel(R) Rapid Storage Technology -> Intel Corporation)
S3 igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [5382856 2017-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e7b3660b4830c245\nvlddmkm.sys [20424640 2018-12-17] (NVIDIA Corporation -> NVIDIA Corporation)
S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [189152 2017-08-08] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider)
S3 PSVolAcc; C:\Windows\System32\Drivers\PSVolAcc.sys [31856 2017-03-23] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1137928 2019-01-20] (Realtek Semiconductor Corp. -> Realtek )
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 URDBus; C:\Windows\System32\drivers\URDBus.sys [20072 2018-11-07] (Microsoft Windows Hardware Compatibility Publisher -> ieungSoft)
R3 URDSCSI; C:\Windows\System32\drivers\URDSCSI.sys [257128 2018-11-07] (Microsoft Windows Hardware Compatibility Publisher -> ieungSoft)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46184 2018-10-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [328696 2018-10-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [60408 2018-10-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-03-05 08:24 - 2019-03-05 08:24 - 000041809 _____ C:\Users\fred\Desktop\Shortcut.txt
2019-03-05 08:21 - 2019-03-05 08:24 - 000065126 _____ C:\Users\fred\Desktop\Addition.txt
2019-03-05 08:20 - 2019-03-05 09:02 - 000019050 _____ C:\Users\fred\Desktop\FRST.txt
2019-03-05 08:13 - 2019-03-05 08:57 - 000008677 _____ C:\Users\fred\Desktop\Fixlog.txt
2019-03-04 18:08 - 2019-03-05 09:01 - 000000000 ____D C:\FRST
2019-03-04 18:06 - 2019-03-04 18:06 - 002434560 _____ (Farbar) C:\Users\fred\Desktop\FRST64.exe
2019-03-03 14:08 - 2018-09-20 05:12 - 001483576 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2019-03-03 14:00 - 2019-03-03 14:01 - 000000000 ____D C:\AdwCleaner
2019-03-03 13:29 - 2019-03-03 13:29 - 000000000 ____H C:\Users\fred\Documents\Default.rdp
2019-03-03 13:27 - 2019-03-03 13:27 - 000000000 ____D C:\ProgramData\Sophos
2019-03-03 13:08 - 2019-03-03 13:08 - 000024576 _____ C:\BCDbak
2019-03-03 12:37 - 2019-03-03 12:39 - 000000000 ____D C:\Users\fred\Desktop\tron
2019-03-03 12:17 - 2019-03-02 20:57 - 001249808 _____ (d7xTech, Inc.) C:\Users\fred\Desktop\BootSafe.exe
2019-03-03 00:05 - 2019-03-03 00:05 - 000002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2019-03-03 00:05 - 2019-03-03 00:05 - 000002076 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2019-03-03 00:04 - 2019-03-03 00:04 - 000362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-03-02 19:35 - 2019-03-02 19:35 - 000000000 ____D C:\Users\fred\AppData\Local\GlassWire
2019-03-02 17:04 - 2019-03-02 17:04 - 000001970 _____ C:\Users\Public\Desktop\GlassWire.lnk
2019-03-02 17:04 - 2019-03-02 17:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GlassWire
2019-03-02 17:04 - 2019-03-02 17:04 - 000000000 ____D C:\ProgramData\GlassWire
2019-03-02 17:04 - 2019-03-02 17:04 - 000000000 ____D C:\Program Files (x86)\GlassWire
2019-03-02 17:04 - 2015-05-29 05:30 - 000008392 _____ C:\Windows\system32\Drivers\gwdrv.cat
2019-03-02 17:04 - 2015-05-29 05:15 - 000033152 _____ (SecureMix LLC) C:\Windows\system32\Drivers\gwdrv.sys
2019-03-02 16:59 - 2019-03-02 17:00 - 000000000 ____D C:\Users\fred\Desktop\Nouveau dossier
2019-03-01 10:40 - 2019-03-01 10:40 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-03-01 10:40 - 2019-03-01 10:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-03-01 10:40 - 2019-02-01 11:20 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2019-03-01 10:40 - 2019-01-08 15:32 - 000153328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2019-02-19 13:25 - 2019-02-19 13:25 - 000000000 ____D C:\Users\fred\AppData\LocalLow\VNGINE
2019-02-19 13:25 - 2019-02-19 13:25 - 000000000 ____D C:\Users\fred\AppData\Local\VNGINE
2019-02-19 13:21 - 2019-02-19 13:21 - 000000000 ____D C:\Users\fred\AppData\Local\Project_6
2019-02-18 14:25 - 2019-02-18 14:26 - 000024837 _____ C:\Users\fred\Documents\cv.ott
2019-02-13 07:32 - 2019-02-06 08:54 - 004527584 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-02-13 07:32 - 2019-02-06 08:53 - 001634704 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-02-13 07:32 - 2019-02-06 08:35 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-02-13 07:32 - 2019-02-06 08:32 - 003648512 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-02-13 07:32 - 2019-02-06 08:30 - 004052992 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-02-13 07:32 - 2019-02-06 08:30 - 001662464 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-02-13 07:32 - 2019-02-06 08:30 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-02-13 07:32 - 2019-02-06 08:11 - 001454648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-02-13 07:32 - 2019-02-06 07:57 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-02-13 07:32 - 2019-02-06 07:52 - 004053504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-02-13 07:32 - 2019-02-06 07:52 - 002891776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-02-13 07:32 - 2019-02-06 07:52 - 001470976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-02-13 07:32 - 2019-02-06 04:01 - 001989040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-02-13 07:32 - 2019-02-06 04:01 - 001221432 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-02-13 07:32 - 2019-02-06 04:01 - 001029944 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-02-13 07:32 - 2019-02-06 04:01 - 000720480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-02-13 07:32 - 2019-02-06 04:01 - 000566568 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-02-13 07:32 - 2019-02-06 04:01 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-02-13 07:32 - 2019-02-06 04:01 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-02-13 07:32 - 2019-02-06 04:01 - 000033576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NtlmShared.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 009084432 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-02-13 07:32 - 2019-02-06 04:00 - 007520112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 006572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 002719760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-02-13 07:32 - 2019-02-06 04:00 - 002465792 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 002421264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-02-13 07:32 - 2019-02-06 04:00 - 001257904 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-02-13 07:32 - 2019-02-06 04:00 - 001140680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-02-13 07:32 - 2019-02-06 04:00 - 001130568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 001098272 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 000945680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2019-02-13 07:32 - 2019-02-06 04:00 - 000899728 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-02-13 07:32 - 2019-02-06 04:00 - 000466960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-02-13 07:32 - 2019-02-06 04:00 - 000376120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-02-13 07:32 - 2019-02-06 04:00 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2019-02-13 07:32 - 2019-02-06 04:00 - 000038792 _____ (Microsoft Corporation) C:\Windows\system32\NtlmShared.dll
2019-02-13 07:32 - 2019-02-06 03:59 - 001922064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2019-02-13 07:32 - 2019-02-06 03:59 - 001457248 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-02-13 07:32 - 2019-02-06 03:59 - 000983128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-02-13 07:32 - 2019-02-06 03:59 - 000144288 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-02-13 07:32 - 2019-02-06 03:52 - 022014464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-02-13 07:32 - 2019-02-06 03:45 - 019404288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-02-13 07:32 - 2019-02-06 03:42 - 003711488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-02-13 07:32 - 2019-02-06 03:41 - 025853952 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-02-13 07:32 - 2019-02-06 03:41 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2019-02-13 07:32 - 2019-02-06 03:40 - 005792256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-02-13 07:32 - 2019-02-06 03:40 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2019-02-13 07:32 - 2019-02-06 03:38 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-02-13 07:32 - 2019-02-06 03:38 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-02-13 07:32 - 2019-02-06 03:37 - 004515840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-02-13 07:32 - 2019-02-06 03:37 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-02-13 07:32 - 2019-02-06 03:33 - 022714880 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-02-13 07:32 - 2019-02-06 03:29 - 004865536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-02-13 07:32 - 2019-02-06 03:28 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\hidparse.sys
2019-02-13 07:32 - 2019-02-06 03:28 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-02-13 07:32 - 2019-02-06 03:28 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2019-02-13 07:32 - 2019-02-06 03:27 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-02-13 07:32 - 2019-02-06 03:27 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-02-13 07:32 - 2019-02-06 03:27 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-02-13 07:32 - 2019-02-06 03:27 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-02-13 07:32 - 2019-02-06 03:26 - 007599616 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-02-13 07:32 - 2019-02-06 03:26 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-02-13 07:32 - 2019-02-06 03:26 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-02-13 07:32 - 2019-02-06 03:26 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-02-13 07:32 - 2019-02-06 03:26 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-02-13 07:32 - 2019-02-06 03:25 - 000736256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-02-13 07:32 - 2019-02-06 03:25 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2019-02-13 07:32 - 2019-02-06 03:24 - 004937728 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-02-13 07:32 - 2019-02-06 03:24 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-02-13 07:32 - 2019-02-06 03:23 - 000393216 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2019-02-13 07:32 - 2019-02-06 03:22 - 000960512 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-02-13 07:32 - 2019-02-06 03:22 - 000885760 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-02-13 07:32 - 2019-02-06 03:21 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-02-13 07:32 - 2019-02-06 02:04 - 000001314 _____ C:\Windows\system32\tcbres.wim
2019-02-13 07:32 - 2019-01-12 09:56 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2019-02-13 07:32 - 2019-01-12 03:28 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-02-13 07:32 - 2019-01-09 19:08 - 000309560 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-02-13 07:32 - 2019-01-09 18:57 - 000720536 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-02-13 07:32 - 2019-01-09 18:42 - 004716032 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-02-13 07:32 - 2019-01-09 18:41 - 012730368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-02-13 07:32 - 2019-01-09 18:41 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-02-13 07:32 - 2019-01-09 18:40 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-02-13 07:32 - 2019-01-09 18:36 - 001054720 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-02-13 07:32 - 2019-01-09 18:35 - 002919936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2019-02-13 07:32 - 2019-01-09 11:14 - 000607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-02-13 07:32 - 2019-01-09 10:55 - 011919872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-02-13 07:32 - 2019-01-09 10:55 - 000150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-02-13 07:32 - 2019-01-09 09:55 - 001285432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-02-13 07:32 - 2019-01-09 09:48 - 000527368 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-02-13 07:32 - 2019-01-09 06:59 - 000611848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2019-02-13 07:32 - 2019-01-09 06:44 - 000078688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 006043496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 004789944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 002253480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 001981280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 001620264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000607376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000581592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000287640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000129088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000127744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-02-13 07:32 - 2019-01-09 06:43 - 000071456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
2019-02-13 07:32 - 2019-01-09 06:42 - 001035232 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-02-13 07:32 - 2019-01-09 06:42 - 000092704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-02-13 07:32 - 2019-01-09 06:40 - 002765336 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-02-13 07:32 - 2019-01-09 06:40 - 001063224 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2019-02-13 07:32 - 2019-01-09 06:40 - 000432952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-02-13 07:32 - 2019-01-09 06:40 - 000226104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-02-13 07:32 - 2019-01-09 06:40 - 000090872 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 007436016 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 004404720 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 002571632 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 001943128 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000789696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000713264 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000349656 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000269624 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000260800 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000175416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
2019-02-13 07:32 - 2019-01-09 06:39 - 000164192 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-02-13 07:32 - 2019-01-09 06:39 - 000085472 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2019-02-13 07:32 - 2019-01-09 06:33 - 016597504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-02-13 07:32 - 2019-01-09 06:32 - 013878272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-02-13 07:32 - 2019-01-09 06:29 - 008188928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-02-13 07:32 - 2019-01-09 06:29 - 002500096 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2019-02-13 07:32 - 2019-01-09 06:27 - 004710912 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2019-02-13 07:32 - 2019-01-09 06:27 - 004384256 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-02-13 07:32 - 2019-01-09 06:27 - 001587712 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2019-02-13 07:32 - 2019-01-09 06:26 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-02-13 07:32 - 2019-01-09 06:26 - 003396608 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-02-13 07:32 - 2019-01-09 06:26 - 002966016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2019-02-13 07:32 - 2019-01-09 06:25 - 000161792 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll
2019-02-13 07:32 - 2019-01-09 06:24 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-02-13 07:32 - 2019-01-09 06:24 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2019-02-13 07:32 - 2019-01-09 06:24 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 002368000 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 001189888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 000898560 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManagerClient.dll
2019-02-13 07:32 - 2019-01-09 06:23 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CapabilityAccessManagerClient.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 001551360 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 001395200 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManager.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-02-13 07:32 - 2019-01-09 06:22 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srpapi.dll
2019-02-13 07:32 - 2019-01-09 06:21 - 002173440 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-02-13 07:32 - 2019-01-09 06:21 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\smartscreenps.dll
2019-02-13 07:32 - 2019-01-09 06:21 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-02-13 07:32 - 2019-01-09 06:20 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-02-13 07:32 - 2019-01-09 06:20 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-02-13 07:32 - 2019-01-09 06:20 - 000607232 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-02-13 07:32 - 2019-01-09 06:20 - 000135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smartscreenps.dll
2019-02-13 07:32 - 2019-01-09 06:19 - 000678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-02-13 07:32 - 2019-01-09 06:19 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-02-13 07:32 - 2019-01-09 06:19 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2019-02-13 07:32 - 2019-01-09 06:19 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-02-13 07:32 - 2019-01-09 06:18 - 000195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2019-02-13 07:32 - 2019-01-09 05:34 - 000806320 _____ C:\Windows\SysWOW64\locale.nls
2019-02-13 07:32 - 2019-01-09 05:34 - 000806320 _____ C:\Windows\system32\locale.nls
2019-02-13 07:32 - 2019-01-08 10:08 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-02-13 07:32 - 2019-01-08 04:06 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-02-13 07:32 - 2019-01-08 04:06 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-02-13 07:32 - 2019-01-08 04:06 - 000000072 _____ C:\Windows\system32\edgehtmlpluginpolicy.bin
2019-02-07 07:22 - 2019-02-07 07:24 - 000000000 ____D C:\Program Files (x86)\Realtek
2019-02-07 07:02 - 2019-01-20 20:24 - 001137928 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2019-02-07 06:59 - 2019-02-07 06:59 - 001624440 _____ (Tous Les Drivers) C:\Users\fred\Desktop\Mes_Drivers_3.0.4.exe
2019-02-06 19:51 - 2019-02-06 19:51 - 000000000 ____D C:\Users\fred\AppData\LocalLow\WalkiusGames

==================== Un mois (modifiés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-03-05 09:02 - 2018-10-27 06:01 - 000000000 ____D C:\Windows\SysWOW64\aamdata
2019-03-05 08:58 - 2018-12-28 15:27 - 000000000 ____D C:\ProgramData\NVIDIA
2019-03-05 08:58 - 2018-10-19 14:31 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-03-05 08:58 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-03-05 08:57 - 2018-04-11 22:04 - 000524288 _____ C:\Windows\system32\config\BBI
2019-03-05 08:24 - 2018-11-02 00:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-03-05 08:24 - 2018-11-02 00:14 - 000000000 ____D C:\Program Files (x86)\Java
2019-03-05 08:24 - 2018-10-19 14:45 - 000000000 ____D C:\Users\fred\AppData\LocalLow\Mozilla
2019-03-05 08:23 - 2018-11-02 00:14 - 000099192 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2019-03-05 07:51 - 2018-10-19 14:31 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-03-05 07:26 - 2018-11-04 09:26 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-05 07:26 - 2018-11-04 09:26 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-03-05 07:24 - 2018-10-19 14:45 - 000000000 ____D C:\Users\fred\AppData\Local\D3DSCache
2019-03-04 23:23 - 2018-10-19 16:22 - 000000000 ____D C:\Users\fred\AppData\Roaming\Molotov
2019-03-03 14:08 - 2018-04-12 00:30 - 000000000 ____D C:\Windows\CbsTemp
2019-03-03 13:22 - 2018-11-15 16:14 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2019-03-03 13:06 - 2018-11-18 16:37 - 000000000 ____D C:\Users\Public\Logi
2019-03-03 12:59 - 2018-11-02 08:02 - 000000000 ____D C:\ESD
2019-03-03 12:59 - 2018-10-19 15:30 - 000000000 ____D C:\Windows\Panther
2019-03-03 00:14 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\AppReadiness
2019-03-03 00:05 - 2018-11-26 14:21 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-03-03 00:05 - 2018-11-26 14:20 - 000474456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-03-03 00:05 - 2018-10-19 14:43 - 001770012 _____ C:\Windows\system32\PerfStringBackup.INI
2019-03-03 00:05 - 2018-04-12 17:18 - 000790824 _____ C:\Windows\system32\perfh00C.dat
2019-03-03 00:05 - 2018-04-12 17:18 - 000149854 _____ C:\Windows\system32\perfc00C.dat
2019-03-03 00:05 - 2018-04-12 00:36 - 000000000 ____D C:\Windows\INF
2019-03-03 00:04 - 2019-01-14 17:50 - 000225680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-03-03 00:04 - 2019-01-04 09:49 - 000320696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-03-03 00:04 - 2019-01-04 09:49 - 000196072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-03-03 00:04 - 2019-01-04 09:49 - 000057960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-03-03 00:04 - 2019-01-04 09:49 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 001034432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000379952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000216784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000167304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-03-03 00:04 - 2018-11-26 14:20 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-03-03 00:04 - 2018-04-12 00:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-03-02 23:59 - 2018-10-27 08:44 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-03-02 23:59 - 2018-10-27 08:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-03-02 23:06 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\LiveKernelReports
2019-03-02 08:19 - 2018-10-27 08:44 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-03-02 08:19 - 2018-10-20 14:06 - 000000000 ____D C:\Users\fred\AppData\Roaming\BitTorrent
2019-03-01 19:16 - 2018-11-17 17:04 - 000000000 ____D C:\Program Files\rempl
2019-02-28 19:43 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-02-28 09:43 - 2018-10-19 16:02 - 000000000 ___RD C:\Users\fred\Desktop\photoshop cs6
2019-02-28 09:39 - 2018-10-24 05:23 - 000000000 ____D C:\Users\fred\AppData\Roaming\RenPy
2019-02-21 20:33 - 2018-11-21 18:08 - 000000000 ____D C:\Users\fred\AppData\Roaming\vlc
2019-02-18 13:09 - 2018-10-19 16:22 - 000000000 ____D C:\Users\fred\AppData\Local\Molotov
2019-02-18 11:23 - 2018-10-21 06:27 - 000000000 ____D C:\Users\fred\AppData\Local\CrashDumps
2019-02-18 11:23 - 2018-10-19 16:22 - 000002252 _____ C:\Users\fred\Desktop\Molotov.lnk
2019-02-18 11:23 - 2018-10-19 16:22 - 000000000 ____D C:\Users\fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molotov
2019-02-13 20:52 - 2018-11-21 18:07 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2019-02-13 17:26 - 2018-10-19 14:31 - 000278024 _____ C:\Windows\system32\FNTCACHE.DAT
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ___SD C:\Windows\SysWOW64\F12
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ___SD C:\Windows\system32\F12
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ___RD C:\Program Files\Windows Defender
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\TextInput
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\ShellExperiences
2019-02-13 17:24 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\bcastdvr
2019-02-13 07:31 - 2018-10-19 15:21 - 000000000 ____D C:\Windows\system32\MRT
2019-02-13 07:29 - 2018-10-19 15:20 - 129330784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-02-10 17:40 - 2018-10-19 14:45 - 000003350 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-812116667-556820374-3654873591-1001
2019-02-10 17:40 - 2018-10-19 14:44 - 000000000 ___RD C:\Users\fred\OneDrive
2019-02-10 17:40 - 2018-10-19 14:39 - 000002398 _____ C:\Users\fred\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-02-08 07:09 - 2018-10-19 14:57 - 000000000 ____D C:\ProgramData\Packages
2019-02-07 07:22 - 2018-11-16 18:03 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-02-07 07:10 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\system32\NDF
2019-02-06 21:04 - 2018-11-16 20:19 - 000000000 ____D C:\Users\fred\AppData\Local\ElevatedDiagnostics
2019-02-06 18:27 - 2018-10-19 14:39 - 000000000 ___HD C:\Users\fred
2019-02-06 18:15 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\InfusedApps
2019-02-06 18:10 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\registration

==================== Fichiers à la racine de certains dossiers =======

2018-10-19 16:04 - 2018-10-19 16:04 - 000000001 _____ () C:\Users\fred\AppData\Local\llftool.4.40.agreement
2018-11-10 15:58 - 2018-11-10 15:58 - 000007602 _____ () C:\Users\fred\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\dllhost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\dllhost.exe => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2018-10-19 14:31

==================== Fin de FRST.txt ============================