Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11.03.2019
Exécuté par 33689 (administrateur) sur DESKTOP-42SV760 (13-03-2019 15:08:06)
Exécuté depuis C:\Users\33689\Desktop
Profils chargés: 33689 (Profils disponibles: isaty & 33689)
Platform: Windows 10 Home Version 1803 17134.590 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2ba6aeb68ff67e79\igfxCUIService.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Byte Technologies LLC -> Byte Technologies LLC) C:\Program Files\ByteFence\ByteFenceService.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2ba6aeb68ff67e79\IntelCpHDCPSvc.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.16.4.15\NortonSecurity.exe
(Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe
(WildTangent Inc -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2ba6aeb68ff67e79\IntelCpHeciSvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.16.4.15\nsWscSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QASvc.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2ba6aeb68ff67e79\igfxEM.exe
(Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.16.4.15\NortonSecurity.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QAAgent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x64__kzf8qxf38zg5c\SkypeApp.exe
() [Fichier non signé] C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3003.0_x64__48frkmn4z8aw4\DesktopApp\AcerRegistrationBackGroundTask.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19011.19410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18389448 2018-02-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [259976 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-2463398481-764691035-839599802-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22458328 2019-02-27] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-06] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\64.0.3282.119\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{4478a478-67ae-4aab-b271-e72efffb8959}: [DhcpNameServer] 192.168.1.1 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-2463398481-764691035-839599802-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.accueil-nav.com/
HKU\S-1-5-21-2463398481-764691035-839599802-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-2463398481-764691035-839599802-1002 -> DefaultScope {FCD6C8AA-FD14-4238-8027-AE784CA13666} URL = hxxp://www.accueil-nav.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2463398481-764691035-839599802-1002 -> {091078C3-9CFD-4BF5-8543-810C3066D6BF} URL = hxxp://www.nav-fr.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2463398481-764691035-839599802-1002 -> {D7A27968-94CA-4EE2-8EAD-AC3A2890647F} URL =
SearchScopes: HKU\S-1-5-21-2463398481-764691035-839599802-1002 -> {FCD6C8AA-FD14-4238-8027-AE784CA13666} URL = hxxp://www.accueil-nav.com/search?q={searchTerms}

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-2463398481-764691035-839599802-1002 -> hxxp://www.accueil-nav.com/

FireFox:
========
FF DefaultProfile: qpczmygj.default
FF ProfilePath: C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default [2019-03-13]
FF Homepage: Mozilla\Firefox\Profiles\qpczmygj.default -> hxxp://www.nav-fr.com/
FF Extension: (Amazon Assistant for Firefox) - C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default\Extensions\abb-acer@amazon.com.xpi [2019-01-30] [UpdateUrl:hxxps://s3-us-west-2.amazonaws.com/ubp-ubpextension-us-prod/vendor-update/firefox/acer1/updates.json]
FF Extension: (Français Language Pack) - C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default\Extensions\langpack-fr@firefox.mozilla.org.xpi [2019-01-30]
FF Extension: (Mozilla Partner Defaults) - C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default\Extensions\partnerdefaults@mozilla.com [2019-01-30] [Legacy]
FF Extension: (Avast SafePrice) - C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default\Extensions\sp@avast.com.xpi [2019-01-30] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avast/sp/update.json]
FF Extension: (Avast Online Security) - C:\Users\33689\AppData\Roaming\Mozilla\Firefox\Profiles\qpczmygj.default\Extensions\wrc@avast.com.xpi [2019-01-30]
FF Extension: (Amazon Assistant for Firefox) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\abb-acer@amazon.com [2018-08-30] [hxxps://s3-us-west-2.amazonaws.com/ubp-ubpextension-us-prod/vendor-update/firefox/acer1/updates.json]
FF Extension: (Français Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-fr@firefox.mozilla.org [2018-08-30]
FF Extension: (Mozilla Partner Defaults) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com [2018-08-30] [Legacy]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-30] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-30] (Google Inc -> Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.accueil-nav.com/
CHR StartupUrls: Default -> "hxxp://www.accueil-nav.com/"
CHR DefaultSearchURL: Default -> hxxp://www.accueil-nav.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Default -> recherche
CHR Profile: C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default [2019-03-13]
CHR Extension: (Slides) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-01-30]
CHR Extension: (Docs) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-01-30]
CHR Extension: (Google Drive) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-01-30]
CHR Extension: (YouTube) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-01-30]
CHR Extension: (Norton Security Toolbar) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2019-03-09]
CHR Extension: (Sheets) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-01-30]
CHR Extension: (Google Docs hors connexion) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-01-30]
CHR Extension: (AdBlock) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-25]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-01-30]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2019-02-06]
CHR Extension: (Gmail) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-01-30]
CHR Extension: (Chrome Media Router) - C:\Users\33689\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-02]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.16.4.15\Exts\Chrome.crx <non trouvé(e)>
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.16.4.15\Exts\Chrome.crx <non trouvé(e)>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [301872 2018-07-26] (Acer Incorporated -> Acer Incorporated)
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6758976 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [357304 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R2 ByteFenceService; c:\program files\bytefence\ByteFenceService.exe [156488 2019-01-08] (Byte Technologies LLC -> Byte Technologies LLC)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\iCLS\SocketHeciServer.exe [742704 2017-09-20] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\TXE Components\iCLS\TPMProvisioningService.exe [668472 2017-09-20] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [213648 2017-10-27] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.16.4.15\NortonSecurity.exe [328648 2019-02-08] (Symantec Corporation -> Symantec Corporation)
R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.16.4.15\nsWscSvc.exe [915712 2019-02-08] (Symantec Corporation -> Symantec Corporation)
R3 QASvc; C:\Program Files\Acer\Quick Access Service\QASvc.exe [509232 2018-04-12] (Acer Incorporated -> Acer Incorporated)
R2 rtop; c:\program files\bytefence\rtop\bin\rtop_svc.exe [297288 2019-01-30] (Byte Technologies LLC -> Byte Technologies LLC.)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [303408 2018-03-22] (Acer Incorporated -> Acer Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4403496 2019-01-09] (Microsoft Corporation -> Microsoft Corporation)
R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1495912 2019-01-08] (WildTangent Inc -> )
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [225680 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196072 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswblog; C:\Windows\System32\drivers\aswblog.sys [320696 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57960 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-01-30] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [249672 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R3 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167304 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034432 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [474456 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswStm; C:\Windows\System32\drivers\aswStm.sys [216784 2019-02-25] (AVAST Software s.r.o. -> AVAST Software)
S3 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [379952 2019-03-13] (AVAST Software s.r.o. -> AVAST Software)
R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.14.1.6\Definitions\BASHDefs\20190311.001\BHDrvx64.sys [1934048 2019-02-12] (Symantec Corporation -> Symantec Corporation)
R1 ccSet_NGC; C:\Windows\System32\drivers\NGCx64\1610040.00F\ccSetx64.sys [189152 2019-02-08] (Symantec Corporation -> Symantec Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 dot4usb; C:\Windows\system32\DRIVERS\dot4usb.sys [49056 2012-10-19] (Hewlett-Packard Company -> Microsoft Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [515792 2019-01-30] (Symantec Corporation -> Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153296 2019-01-30] (Symantec Corporation -> Symantec Corporation)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [115864 2017-10-15] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.14.1.6\Definitions\IPSDefs\20190312.061\IDSvia64.sys [1424392 2019-02-25] (Symantec Corporation -> Symantec Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1010656 2017-11-27] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [421312 2018-02-21] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SRTSP; C:\Windows\System32\drivers\NGCx64\1610040.00F\SRTSP64.SYS [855048 2019-02-08] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\Windows\System32\drivers\NGCx64\1610040.00F\SRTSPX64.SYS [49672 2019-02-08] (Symantec Corporation -> Symantec Corporation)
R0 SymEFASI; C:\Windows\System32\drivers\NGCx64\1610040.00F\SYMEFASI64.SYS [1969328 2019-02-08] (Symantec Corporation -> Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\NGCx64\1610040.00F\SymELAM.sys [25744 2019-02-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [99920 2018-08-30] (Symantec Corporation -> Symantec Corporation)
S4 SymEvnt; C:\Program Files\Norton Security\NortonData\22.14.1.6\SymPlatform\SymEvnt.sys [700640 2019-02-20] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\Windows\System32\drivers\NGCx64\1610040.00F\Ironx64.SYS [308416 2019-02-08] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\Windows\System32\drivers\NGCx64\1610040.00F\symnets.sys [567024 2019-02-08] (Symantec Corporation -> Symantec Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 wpCtrlDrv_NGC; C:\Windows\System32\drivers\NGCx64\1610040.00F\wpCtrlDrv.sys [1011056 2019-02-08] (Symantec Corporation -> Symantec Corporation)
U3 aswbdisk; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-03-13 15:08 - 2019-03-13 15:09 - 000020653 _____ C:\Users\33689\Desktop\FRST.txt
2019-03-13 15:07 - 2019-03-13 15:08 - 000000000 ____D C:\FRST
2019-03-13 15:04 - 2019-03-13 15:04 - 002434560 _____ (Farbar) C:\Users\33689\Desktop\FRST64.exe
2019-03-09 11:10 - 2019-03-09 11:10 - 000176653 _____ C:\Users\33689\Downloads\les-types-de-textes.pdf
2019-03-09 10:58 - 2019-03-09 10:58 - 000000000 ____D C:\Windows\System32\Tasks\Remediation
2019-03-06 16:12 - 2019-03-06 16:12 - 000023547 _____ C:\Users\33689\Downloads\poisson-nemo-coloriage-coloriage-poisson-d-avril-a-imprimer-gratuit-inspirational-coloriage-of-poisson-nemo-coloriage.jpeg
2019-03-06 11:31 - 2019-03-06 11:31 - 000003730 _____ C:\Windows\System32\Tasks\HPCustParticipation HP DeskJet 3630 series
2019-03-06 11:31 - 2019-03-06 11:31 - 000002293 _____ C:\Users\Public\Desktop\HP DeskJet 3630 series.lnk
2019-03-06 11:31 - 2019-03-06 11:31 - 000002064 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk
2019-03-06 11:31 - 2019-03-06 11:31 - 000000000 ____D C:\ProgramData\Visan
2019-03-06 11:31 - 2019-03-06 11:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2019-03-06 11:31 - 2019-03-06 11:31 - 000000000 ____D C:\ProgramData\HP Photo Creations
2019-03-06 11:31 - 2019-03-06 11:31 - 000000000 ____D C:\Program Files (x86)\HP Photo Creations
2019-03-06 11:30 - 2019-03-06 11:31 - 000000000 ____D C:\Program Files (x86)\HP
2019-03-06 11:30 - 2019-03-06 11:30 - 000000000 ____D C:\Program Files\HP
2019-03-06 11:27 - 2019-03-06 11:33 - 000000000 ____D C:\Users\33689\AppData\Local\HP
2019-03-06 10:48 - 2018-09-04 23:36 - 001476904 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2019-03-06 10:43 - 2019-03-06 10:59 - 000000000 ____D C:\Windows\Minidump
2019-03-06 10:25 - 2019-03-06 11:30 - 000000000 ____D C:\ProgramData\HP
2019-03-06 10:08 - 2019-03-06 10:09 - 021159736 _____ (Piriform Software Ltd) C:\Users\33689\Downloads\ccsetup554.exe
2019-03-03 08:55 - 2019-03-03 08:55 - 000003376 _____ C:\Windows\System32\Tasks\Norton WSC Integration
2019-03-03 08:54 - 2019-03-03 08:54 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security
2019-02-28 09:50 - 2019-02-28 09:50 - 000000000 ____D C:\Users\Public\CyberLink
2019-02-25 19:05 - 2019-02-06 08:54 - 004527584 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-02-25 19:05 - 2019-02-06 08:53 - 001634704 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-02-25 19:05 - 2019-02-06 08:35 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2019-02-25 19:05 - 2019-02-06 08:32 - 003648512 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-02-25 19:05 - 2019-02-06 08:30 - 004052992 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-02-25 19:05 - 2019-02-06 08:30 - 001662464 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-02-25 19:05 - 2019-02-06 08:30 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-02-25 19:05 - 2019-02-06 08:11 - 001454648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-02-25 19:05 - 2019-02-06 07:57 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2019-02-25 19:05 - 2019-02-06 07:52 - 004053504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-02-25 19:05 - 2019-02-06 07:52 - 002891776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-02-25 19:05 - 2019-02-06 07:52 - 001470976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-02-25 19:05 - 2019-02-06 04:01 - 001989040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2019-02-25 19:05 - 2019-02-06 04:01 - 001221432 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-02-25 19:05 - 2019-02-06 04:01 - 001029944 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-02-25 19:05 - 2019-02-06 04:01 - 000720480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-02-25 19:05 - 2019-02-06 04:01 - 000566568 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-02-25 19:05 - 2019-02-06 04:01 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-02-25 19:05 - 2019-02-06 04:01 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-02-25 19:05 - 2019-02-06 04:01 - 000033576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NtlmShared.dll
2019-02-25 19:05 - 2019-02-06 04:00 - 009084432 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-02-25 19:05 - 2019-02-06 04:00 - 007520112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-02-25 19:05 - 2019-02-06 04:00 - 006572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-02-25 19:05 - 2019-02-06 04:00 - 002719760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-02-25 19:05 - 2019-02-06 04:00 - 002465792 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2019-02-25 19:05 - 2019-02-06 04:00 - 002421264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-02-25 19:05 - 2019-02-06 04:00 - 001257904 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-02-25 19:05 - 2019-02-06 04:00 - 001140680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-02-25 19:05 - 2019-02-06 04:00 - 000945680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys
2019-02-25 19:05 - 2019-02-06 04:00 - 000899728 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-02-25 19:05 - 2019-02-06 04:00 - 000466960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2019-02-25 19:05 - 2019-02-06 04:00 - 000376120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2019-02-25 19:05 - 2019-02-06 04:00 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
2019-02-25 19:05 - 2019-02-06 04:00 - 000038792 _____ (Microsoft Corporation) C:\Windows\system32\NtlmShared.dll
2019-02-25 19:05 - 2019-02-06 03:59 - 001922064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2019-02-25 19:05 - 2019-02-06 03:59 - 001457248 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-02-25 19:05 - 2019-02-06 03:59 - 000983128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-02-25 19:05 - 2019-02-06 03:59 - 000144288 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-02-25 19:05 - 2019-02-06 03:52 - 022014464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-02-25 19:05 - 2019-02-06 03:45 - 019404288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-02-25 19:05 - 2019-02-06 03:42 - 003711488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-02-25 19:05 - 2019-02-06 03:41 - 025853952 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-02-25 19:05 - 2019-02-06 03:41 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2019-02-25 19:05 - 2019-02-06 03:40 - 005792256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-02-25 19:05 - 2019-02-06 03:40 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2019-02-25 19:05 - 2019-02-06 03:38 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-02-25 19:05 - 2019-02-06 03:38 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-02-25 19:05 - 2019-02-06 03:37 - 004515840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-02-25 19:05 - 2019-02-06 03:37 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-02-25 19:05 - 2019-02-06 03:33 - 022714880 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-02-25 19:05 - 2019-02-06 03:29 - 004865536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-02-25 19:05 - 2019-02-06 03:28 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2019-02-25 19:05 - 2019-02-06 03:28 - 000039936 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2019-02-25 19:05 - 2019-02-06 03:27 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-02-25 19:05 - 2019-02-06 03:27 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-02-25 19:05 - 2019-02-06 03:27 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2019-02-25 19:05 - 2019-02-06 03:27 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2019-02-25 19:05 - 2019-02-06 03:26 - 007599616 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-02-25 19:05 - 2019-02-06 03:26 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-02-25 19:05 - 2019-02-06 03:26 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2019-02-25 19:05 - 2019-02-06 03:26 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-02-25 19:05 - 2019-02-06 03:26 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-02-25 19:05 - 2019-02-06 03:25 - 000736256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-02-25 19:05 - 2019-02-06 03:25 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2019-02-25 19:05 - 2019-02-06 03:24 - 004937728 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-02-25 19:05 - 2019-02-06 03:24 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2019-02-25 19:05 - 2019-02-06 03:23 - 000393216 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2019-02-25 19:05 - 2019-02-06 03:22 - 000960512 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-02-25 19:05 - 2019-02-06 03:22 - 000885760 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-02-25 19:05 - 2019-02-06 03:21 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2019-02-25 19:05 - 2019-02-06 02:04 - 000001314 _____ C:\Windows\system32\tcbres.wim
2019-02-25 19:05 - 2019-01-12 09:56 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2019-02-25 19:05 - 2019-01-12 03:28 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-02-25 19:05 - 2019-01-09 19:08 - 000309560 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-02-25 19:05 - 2019-01-09 18:57 - 000720536 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-02-25 19:05 - 2019-01-09 18:42 - 004716032 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-02-25 19:05 - 2019-01-09 18:41 - 012730368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-02-25 19:05 - 2019-01-09 18:41 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-02-25 19:05 - 2019-01-09 18:40 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2019-02-25 19:05 - 2019-01-09 18:36 - 001054720 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-02-25 19:05 - 2019-01-09 18:35 - 002919936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2019-02-25 19:05 - 2019-01-09 11:14 - 000607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-02-25 19:05 - 2019-01-09 10:55 - 011919872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-02-25 19:05 - 2019-01-09 10:55 - 000150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2019-02-25 19:05 - 2019-01-09 09:55 - 001285432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-02-25 19:05 - 2019-01-09 09:48 - 000527368 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-02-25 19:05 - 2019-01-09 06:59 - 000611848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2019-02-25 19:05 - 2019-01-09 06:44 - 000078688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wldp.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 006043496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 002253480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 001981280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 001620264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 000607376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 000287640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 000127744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rmclient.dll
2019-02-25 19:05 - 2019-01-09 06:43 - 000071456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
2019-02-25 19:05 - 2019-01-09 06:42 - 001035232 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-02-25 19:05 - 2019-01-09 06:42 - 000092704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-02-25 19:05 - 2019-01-09 06:40 - 002765336 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-02-25 19:05 - 2019-01-09 06:40 - 001063224 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2019-02-25 19:05 - 2019-01-09 06:40 - 000432952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-02-25 19:05 - 2019-01-09 06:40 - 000226104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2019-02-25 19:05 - 2019-01-09 06:40 - 000090872 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 007436016 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 002571632 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 001943128 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 000789696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 000349656 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 000269624 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 000175416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spacedump.sys
2019-02-25 19:05 - 2019-01-09 06:39 - 000164192 _____ (Microsoft Corporation) C:\Windows\system32\rmclient.dll
2019-02-25 19:05 - 2019-01-09 06:39 - 000085472 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2019-02-25 19:05 - 2019-01-09 06:33 - 016597504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-02-25 19:05 - 2019-01-09 06:32 - 013878272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-02-25 19:05 - 2019-01-09 06:29 - 008188928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-02-25 19:05 - 2019-01-09 06:29 - 002500096 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2019-02-25 19:05 - 2019-01-09 06:27 - 004710912 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2019-02-25 19:05 - 2019-01-09 06:27 - 004384256 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-02-25 19:05 - 2019-01-09 06:27 - 001587712 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2019-02-25 19:05 - 2019-01-09 06:26 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-02-25 19:05 - 2019-01-09 06:26 - 003396608 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-02-25 19:05 - 2019-01-09 06:26 - 002966016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2019-02-25 19:05 - 2019-01-09 06:25 - 000161792 _____ (Microsoft Corporation) C:\Windows\system32\spacebridge.dll
2019-02-25 19:05 - 2019-01-09 06:24 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-02-25 19:05 - 2019-01-09 06:24 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2019-02-25 19:05 - 2019-01-09 06:24 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spacebridge.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 002368000 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 001189888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 000898560 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 000145920 _____ (Microsoft Corporation) C:\Windows\system32\srpapi.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManagerClient.dll
2019-02-25 19:05 - 2019-01-09 06:23 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CapabilityAccessManagerClient.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 001551360 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 001395200 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\WaaSMedicSvc.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\CapabilityAccessManager.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-02-25 19:05 - 2019-01-09 06:22 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srpapi.dll
2019-02-25 19:05 - 2019-01-09 06:21 - 002173440 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-02-25 19:05 - 2019-01-09 06:21 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\smartscreenps.dll
2019-02-25 19:05 - 2019-01-09 06:21 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2019-02-25 19:05 - 2019-01-09 06:20 - 001000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2019-02-25 19:05 - 2019-01-09 06:20 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2019-02-25 19:05 - 2019-01-09 06:20 - 000607232 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-02-25 19:05 - 2019-01-09 06:20 - 000135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smartscreenps.dll
2019-02-25 19:05 - 2019-01-09 06:19 - 000678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-02-25 19:05 - 2019-01-09 06:19 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-02-25 19:05 - 2019-01-09 06:19 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2019-02-25 19:05 - 2019-01-09 06:19 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-02-25 19:05 - 2019-01-09 06:18 - 000195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2019-02-25 19:05 - 2019-01-09 05:34 - 000806320 _____ C:\Windows\SysWOW64\locale.nls
2019-02-25 19:05 - 2019-01-09 05:34 - 000806320 _____ C:\Windows\system32\locale.nls
2019-02-25 19:05 - 2019-01-08 10:08 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-02-25 19:05 - 2019-01-08 04:06 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-02-25 19:05 - 2019-01-08 04:06 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-02-25 19:05 - 2019-01-08 04:06 - 000000072 _____ C:\Windows\system32\edgehtmlpluginpolicy.bin
2019-02-25 19:04 - 2019-02-06 04:00 - 001130568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-02-25 19:04 - 2019-02-06 04:00 - 001098272 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-02-25 19:04 - 2019-01-09 06:43 - 004789944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2019-02-25 19:04 - 2019-01-09 06:43 - 000581592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2019-02-25 19:04 - 2019-01-09 06:43 - 000129088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2019-02-25 19:04 - 2019-01-09 06:39 - 004404720 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-02-25 19:04 - 2019-01-09 06:39 - 000713264 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2019-02-25 19:04 - 2019-01-09 06:39 - 000260800 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2019-02-25 19:04 - 2019-01-09 06:23 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2019-02-25 19:04 - 2019-01-09 06:23 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2019-02-25 18:14 - 2019-02-25 18:14 - 000249672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-02-25 18:14 - 2019-02-25 18:14 - 000002092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2019-02-25 18:13 - 2019-02-25 18:12 - 000362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe

==================== Un mois (modifiés) ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2019-03-13 15:05 - 2019-02-06 14:37 - 000000000 ____D C:\ProgramData\Packages
2019-03-13 15:05 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-03-13 15:05 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\AppReadiness
2019-03-13 15:02 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-03-13 15:01 - 2018-04-12 00:30 - 000000000 ____D C:\Windows\CbsTemp
2019-03-13 14:43 - 2019-01-30 16:28 - 000379952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-03-13 14:43 - 2019-01-30 15:59 - 000000000 __SHD C:\Users\33689\IntelGraphicsProfiles
2019-03-09 10:33 - 2019-01-30 16:07 - 000003374 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2463398481-764691035-839599802-1002
2019-03-09 10:33 - 2019-01-30 16:02 - 000000000 ___RD C:\Users\33689\OneDrive
2019-03-09 10:33 - 2019-01-30 15:55 - 000002405 _____ C:\Users\33689\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-09 10:16 - 2018-04-12 00:36 - 000000000 ____D C:\Windows\INF
2019-03-09 10:13 - 2019-02-10 11:41 - 000000000 ____D C:\Windows\System32\Tasks\Norton Security
2019-03-09 10:13 - 2018-08-30 18:21 - 001766590 _____ C:\Windows\system32\PerfStringBackup.INI
2019-03-09 10:13 - 2018-05-29 15:12 - 000789786 _____ C:\Windows\system32\perfh00C.dat
2019-03-09 10:13 - 2018-05-29 15:12 - 000149318 _____ C:\Windows\system32\perfc00C.dat
2019-03-09 10:05 - 2018-08-30 18:08 - 000425992 _____ C:\Windows\system32\FNTCACHE.DAT
2019-03-09 10:05 - 2018-08-30 18:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-03-06 18:41 - 2018-04-11 22:04 - 000524288 _____ C:\Windows\system32\config\BBI
2019-03-06 18:32 - 2018-08-30 18:08 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-03-06 15:42 - 2019-01-30 16:28 - 000004264 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-03-06 10:43 - 2019-01-30 16:02 - 000000000 ____D C:\Users\33689\AppData\Local\PlaceholderTileLogoFolder
2019-03-06 10:10 - 2019-02-03 10:23 - 000003936 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-03-06 10:10 - 2019-01-30 17:33 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-06 10:00 - 2018-04-11 22:04 - 000032768 _____ C:\Windows\system32\config\ELAM
2019-03-03 09:24 - 2019-01-30 16:48 - 000000000 ____D C:\Program Files\Common Files\AV
2019-03-03 08:55 - 2018-08-30 19:01 - 000000000 ____D C:\Windows\system32\Drivers\NGCx64
2019-03-02 10:58 - 2019-01-30 15:59 - 000000000 ____D C:\Users\33689\AppData\Local\Packages
2019-03-02 10:20 - 2019-01-30 15:59 - 000000000 ____D C:\Users\33689\AppData\Local\ConnectedDevicesPlatform
2019-03-02 10:10 - 2019-02-03 10:05 - 000000000 ____D C:\Program Files\rempl
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ___SD C:\Windows\SysWOW64\F12
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ___SD C:\Windows\system32\F12
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\TextInput
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\ShellExperiences
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\bcastdvr
2019-02-25 21:00 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Windows Defender
2019-02-25 18:47 - 2019-02-03 10:51 - 000000000 ____D C:\Windows\system32\MRT
2019-02-25 18:42 - 2019-02-03 10:51 - 129330784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-02-25 18:24 - 2019-01-30 15:07 - 000000000 ____D C:\Users\isaty
2019-02-25 18:23 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\LiveKernelReports
2019-02-25 18:18 - 2019-02-03 10:08 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-02-25 18:14 - 2019-01-30 16:28 - 000474456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-02-25 18:13 - 2019-01-30 16:28 - 000216784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-02-25 18:13 - 2019-01-30 16:28 - 000167304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-02-25 18:13 - 2019-01-30 16:28 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-02-25 18:13 - 2019-01-30 16:28 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-02-25 18:13 - 2019-01-30 16:28 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-02-25 18:13 - 2018-04-12 00:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-02-25 18:12 - 2019-01-30 16:28 - 001034432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000320696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000225680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000196072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000057960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-02-25 18:12 - 2019-01-30 16:28 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-02-25 18:12 - 2019-01-30 15:55 - 000000000 ____D C:\Users\33689
2019-02-13 18:47 - 2019-02-03 10:10 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-02-13 18:40 - 2019-01-30 16:25 - 000000000 ____D C:\Users\33689\AppData\Local\WallpaperHd

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\dllhost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\dllhost.exe => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2018-08-30 18:07

==================== Fin de FRST.txt ============================