Jump to content

Rsquattro

Members
  • Posts

    3
  • Joined

  • Last visited

Reputation

0 Neutral
  1. No more alert since the fix, thank you. Fix log : Résultats de correction de Farbar Recovery Scan Tool (x64) Version: 05-06-2019 01 Exécuté par Bilal (06-06-2019 18:22:33) Run:1 Exécuté depuis C:\Users\Bilal\Desktop\Farbar Profils chargés: Bilal & (Profils disponibles: Bilal & Administrateur) Mode d'amorçage: Normal ============================================== fixlist contenu: ***************** CreateRestorePoint: EmptyTemp: CloseProcesses: Task: {00D41FE9-60BE-4A1F-9CCC-DFB739CA87DC} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {1FEB579B-CCCF-4258-8147-A3B111E4ED96} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {52620F09-3683-46EB-BD3E-917E0EBB8B1D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {5EC955B1-5D2A-4121-B4F9-1EB87E4DE252} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {67F0FFE2-0506-4234-9D46-6F47E5243AAB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTI?ON Task: {7722BFB6-0AF1-466C-9BDA-DE52AF32FE0C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {902AF296-C328-4F3F-9587-06145355532F} - System32\Tasks\Driver Booster SkipUAC (Bilal) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe Task: {A732F88D-94F7-4CD8-BA48-9E00A9FF11C6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {A7?5934BA-48FD-4990-8C28-950FCC2AC0DE} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {B452D679-9476-4B71-BB6A-21A8BD959B1B} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {C1A7DB89-9C84-454F-BC50-73FF5180C5CE} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTI?ON Task: {D0075F63-400E-47B7-A93C-60D9377F3530} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {E35771A0-4A18-451A-BF5F-41C59D117D54} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} U3 idsvc;?? pas de ImagePath CustomCLSID: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038_Classes\CLSID\{49E0BE0A-39E0-4932-B7BE-F249D56ACD31}\InprocServer32 -> csp16.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000_Classes\CLSID\{49E0BE0A-39E0-4932-B7BE-F249D56ACD31}\InprocServer32 -> csp16.dll => Pas de fichier ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Pas de fichier ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Pas de fichier ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier AlternateDataStreams: C:\ProgramData\Temp:6CC69D3C [122] HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Pas de fichier) FirewallRules: [{11FD0FEA-A318-4CE8-82F9-B6C7954D31C6}] => (Allow) E:\Network\EpsonNetSetup\ENEasyApp.exe Pas de fichier FirewallRules: [{15FCA57D-7565-4DA4-B77E-2CC791F11D33}] => (Allow) E:\Network\EpsonNetSetup\ENEasyApp.exe Pas de fichier C:\Program Files (x86)\IObit\Driver Booster ***************** Le Point de restauration a été créé avec succès. Processus fermé avec succès. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{00D41FE9-60BE-4A1F-9CCC-DFB739CA87DC}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00D41FE9-60BE-4A1F-9CCC-DFB739CA87DC}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1FEB579B-CCCF-4258-8147-A3B111E4ED96}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FEB579B-CCCF-4258-8147-A3B111E4ED96}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{52620F09-3683-46EB-BD3E-917E0EBB8B1D}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{52620F09-3683-46EB-BD3E-917E0EBB8B1D}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5EC955B1-5D2A-4121-B4F9-1EB87E4DE252}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5EC955B1-5D2A-4121-B4F9-1EB87E4DE252}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67F0FFE2-0506-4234-9D46-6F47E5243AAB}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67F0FFE2-0506-4234-9D46-6F47E5243AAB}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7722BFB6-0AF1-466C-9BDA-DE52AF32FE0C}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7722BFB6-0AF1-466C-9BDA-DE52AF32FE0C}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{902AF296-C328-4F3F-9587-06145355532F}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{902AF296-C328-4F3F-9587-06145355532F}" => supprimé(es) avec succès C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Bilal) => déplacé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster SkipUAC (Bilal)" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A732F88D-94F7-4CD8-BA48-9E00A9FF11C6}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A732F88D-94F7-4CD8-BA48-9E00A9FF11C6}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7?5934BA-48FD-4990-8C28-950FCC2AC0DE}" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B452D679-9476-4B71-BB6A-21A8BD959B1B}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B452D679-9476-4B71-BB6A-21A8BD959B1B}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C1A7DB89-9C84-454F-BC50-73FF5180C5CE}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C1A7DB89-9C84-454F-BC50-73FF5180C5CE}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D0075F63-400E-47B7-A93C-60D9377F3530}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0075F63-400E-47B7-A93C-60D9377F3530}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E35771A0-4A18-451A-BF5F-41C59D117D54}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E35771A0-4A18-451A-BF5F-41C59D117D54}" => supprimé(es) avec succès "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => supprimé(es) avec succès "HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => supprimé(es) avec succès SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = => Erreur: Pas de correction automatique trouvée pour cet élément. SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = => Erreur: Pas de correction automatique trouvée pour cet élément. SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} => Erreur: Pas de correction automatique trouvée pour cet élément. SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} => Erreur: Pas de correction automatique trouvée pour cet élément. HKLM\System\CurrentControlSet\Services\idsvc => supprimé(es) avec succès idsvc => service supprimé(es) avec succès CustomCLSID: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038_Classes\CLSID\{49E0BE0A-39E0-4932-B7BE-F249D56ACD31}\InprocServer32 -> csp16.dll => Pas de fichier => Erreur: Pas de correction automatique trouvée pour cet élément. HKU\S-1-5-21-3795893650-3275294569-1792670153-1000_Classes\CLSID\{49E0BE0A-39E0-4932-B7BE-F249D56ACD31} => supprimé(es) avec succès HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => invalid subkey removed. HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => supprimé(es) avec succès "HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => supprimé(es) avec succès HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => non trouvé(e) HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => non trouvé(e) HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{6B9228DA-9C15-419e-856C-19E768A13BDC} => non trouvé(e) HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => non trouvé(e) HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => non trouvé(e) HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => supprimé(es) avec succès HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => non trouvé(e) C:\ProgramData\Temp => ":6CC69D3C" ADS supprimé(es) avec succès HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Pas de fichier) => Erreur: Pas de correction automatique trouvée pour cet élément. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{11FD0FEA-A318-4CE8-82F9-B6C7954D31C6}" => supprimé(es) avec succès "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{15FCA57D-7565-4DA4-B77E-2CC791F11D33}" => supprimé(es) avec succès "C:\Program Files (x86)\IObit\Driver Booster" => non trouvé(e) =========== EmptyTemp: ========== BITS transfer queue => 11821056 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 392801125 B Java, Flash, Steam htmlcache => 362403316 B Windows/system/drivers => 97078 B Edge => 95303 B Chrome => 413981659 B Firefox => 5713949 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 6220 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 7136 B LocalService => 0 B NetworkService => 6220 B NetworkService => 0 B Bilal => 45704179 B Administrateur => 38770 B RecycleBin => 0 B EmptyTemp: => 1.1 GB données temporaires supprimées. ================================ Le système a dû redémarrer. ==== Fin de Fixlog 18:25:11 ====
  2. Hello Nasdaq, Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-06-2019 Exécuté par Bilal (administrateur) sur BILAL-MSI (Micro-Star International Co., Ltd. GE60 2PL) (05-06-2019 18:28:19) Exécuté depuis C:\Users\Bilal\Desktop\Farbar Profils chargés: Bilal & (Profils disponibles: Bilal & Administrateur) Platform: Windows 10 Home Version 1803 17134.765 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Corporation) [Fichier non signé] C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.760_none_eaef1a361d71e348\TiWorker.exe (Micro-Star International CO., LTD. -> ) C:\Program Files (x86)\SCM\SCM.exe (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Rivet Networks LLC -> CloudBees, Inc.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe (Rivet Networks LLC -> CloudBees, Inc.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendSoftAP.exe (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-06-09] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349208 2016-04-14] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-31] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [MBCfg64] => C:\WINDOWS\system32\MBCfg64.dll [40576 2013-08-29] (Creative Technology Ltd -> Creative Technology Ltd.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-07-06] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [302888 2018-06-22] (Micro-Star International CO., LTD. -> ) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [177928 2019-04-05] (ESET, spol. s r.o. -> ESET) HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2013-08-16] (Creative Technology Ltd) [Fichier non signé] HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) [Fichier non signé] HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058912 2012-04-02] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -> Autodesk, Inc.) HKLM-x32\...\Run: [adc_launcher] => C:\Program Files (x86)\FreeStyle Libre\adc_launcher.exe [211456 2018-12-06] (Abbott Diabetes Care) [Fichier non signé] HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914124\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182211616\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914515\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182211772\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22588760 2019-05-16] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\...\Policies\Explorer: [] HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\...\MountPoints2: {d2504220-701b-11e5-9bd4-448a5bee936d} - "F:\setup.exe" HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22588760 2019-05-16] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796\...\Policies\Explorer: [] HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796\...\MountPoints2: {d2504220-701b-11e5-9bd4-448a5bee936d} - "F:\setup.exe" HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22588760 2019-05-16] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038\...\Policies\Explorer: [] HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038\...\MountPoints2: {d2504220-701b-11e5-9bd4-448a5bee936d} - "F:\setup.exe" HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Drivers32: [VIDC.FPS1] => C:\windows\system32\frapsv64.dll [105984 2015-09-05] (Beepa P/L) [Fichier non signé] HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2015-09-05] (Beepa P/L) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-22] (Google LLC -> Google Inc.) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00D41FE9-60BE-4A1F-9CCC-DFB739CA87DC} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {04ABA0BD-AA61-49CC-A534-61CC54DCA175} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {05217D86-529C-4CB1-91C8-D8E701536C63} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {0688B47C-5C41-43C5-9E1F-337C1192976F} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {06CF732B-973E-41E6-9608-BB1278B51357} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {0705CB4A-31C0-45D4-8F66-4AFFCF09EFA3} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {08F14A91-965D-491F-A5B2-96228D043CF8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-04-14] (Google Inc -> Google Inc.) Task: {0AD8A05E-BF21-40F6-9C5B-B128BB5BDA6B} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {0EE1D0D1-B3BC-410C-84D9-09B1796FDFD9} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1698000 2015-06-05] (Intel(R) Software -> Intel Corporation) Task: {0FE795EC-AC83-4D31-9D77-05143A061CB1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.) Task: {175C4705-B139-4C2E-8531-84600D227318} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {1FEB579B-CCCF-4258-8147-A3B111E4ED96} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {31E85D2E-FEF8-4E60-AD28-4A98BEDDA1BA} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {32E34C47-32E4-4006-B797-9CB011BF4FB6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3F4F73EA-B8CF-4B29-BF2A-1FBFBEC4C5E8} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {46C0052E-8CA6-497B-BE44-AA61C8934B47} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {47D5D27E-D367-423A-A258-422DB0E98A2B} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4B14F2CB-4EA5-414E-8D8F-A544205AD430} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {4D346952-5E67-4DA0-B364-E79A310F8B18} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {4E2A3864-7589-42E2-84C0-CDA98A5AAB1A} - System32\Tasks\MSI_Reminder => C:\Program Files (x86)\MSI\MSI Remind Manager\MSI Reminder.exe Task: {502A766E-D789-46F9-9F0B-CFE08C524AF7} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {52620F09-3683-46EB-BD3E-917E0EBB8B1D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {54168C30-92B3-420C-932E-FBEF17FF16B2} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {56A02F0A-AF09-40F6-BEB1-1762375D26A7} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {59BCF314-70C5-491E-831E-C4EC389E1041} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5CE5214F-3613-4D79-AE1F-25B800D22C18} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16571320 2019-05-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {5EC955B1-5D2A-4121-B4F9-1EB87E4DE252} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {5F1F6072-1D3F-4D19-8E71-1BA08C57F189} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {614EA0DA-8B77-4200-9AE8-63E0BA78163A} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {63CC45C2-3D37-4A91-A45C-FA54BD75A27F} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {67F0FFE2-0506-4234-9D46-6F47E5243AAB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {69644D90-4AB7-4722-B383-E87E19F9DF49} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {69E8BF28-74D5-44CF-BA4C-796197F2C18C} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6B27CC09-0839-4AF0-9CA5-3CC86FBA2C38} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6EA2609D-A396-40CE-9619-873823503E36} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504 2016-04-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {71396C75-980F-4600-9FF3-0E5401CFC694} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-04-14] (Google Inc -> Google Inc.) Task: {732C9434-06B5-4D7C-A39F-542EB7D5669B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {7722BFB6-0AF1-466C-9BDA-DE52AF32FE0C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {78B20537-7B52-4AEF-BF0D-0B3A143363E8} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7CDDB273-5EFB-4EAF-A86E-3F35C3A71999} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {7E8D1B13-EAAD-4F98-9F21-7832E2E86DB2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {87025057-365F-4A06-8256-4191D162463B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-05-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {8A55E883-94A1-4159-83AB-E75448351DEF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {8AAF2E24-CAF2-4CBA-9689-CDCC60AEE91C} - System32\Tasks\MSI_Dragon Gaming Center => C:\Program Files (x86)\MSI\Dragon Gaming Center\mDispatch.exe [1680520 2014-01-24] (MICRO-STAR INTERNATIONAL CO., LTD -> TODO: <公司名稱>) [Fichier non signé] Task: {8B4A5C57-BF1B-4A07-84AC-A6815731D8EA} - System32\Tasks\{A67AA69A-44B1-482E-A567-B8CC4A6C1509} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\SAMSUNG\USB Drivers\Uninstall.exe" -d "C:\Program Files\SAMSUNG\USB Drivers" Task: {8E530E37-5332-4696-BF64-734C12B65AAD} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8F9B455D-7780-445A-9A42-73842DF6E2F2} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {902AF296-C328-4F3F-9587-06145355532F} - System32\Tasks\Driver Booster SkipUAC (Bilal) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe Task: {99C57026-5F58-4EA2-A9CA-A75CC36837BA} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {9BCA1965-5A7E-4EE3-A79C-3E2E6160560F} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A3C4E668-685C-4545-A3B2-E00ABF0CC35F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A732F88D-94F7-4CD8-BA48-9E00A9FF11C6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {A75934BA-48FD-4990-8C28-950FCC2AC0DE} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B35CD68C-523E-4AC1-B18A-3CA353040427} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {B452D679-9476-4B71-BB6A-21A8BD959B1B} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {B45658A6-4D6A-4F49-9A02-932999F05F47} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C1A7DB89-9C84-454F-BC50-73FF5180C5CE} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {C6D776B3-5158-43FA-83DE-30D39BA9B144} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CE383234-60E0-4D41-830A-C8FE50C9346D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D0075F63-400E-47B7-A93C-60D9377F3530} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {D6CAEB0D-963E-484C-8430-220AE72401E1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {E35771A0-4A18-451A-BF5F-41C59D117D54} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {E8A1D58E-1608-4466-BFF2-A5CB6A9DA151} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {EDA945E9-574F-48EB-A5EB-BDA089790D97} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EEFD4C37-2597-49A4-8244-BCF628D7A10D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F67AB7B7-D619-463B-8FC9-81B176D6691F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{2764e24b-642b-470e-9e3e-67b32e0df892}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{7e03ca85-e73b-415d-a9a7-c91ad4685831}: [NameServer] 10.16.7.201,10.16.7.202 Tcpip\..\Interfaces\{ab3ebd23-7ca0-4e95-bd32-9b8d257d68d7}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ab3ebd23-7ca0-4e95-bd32-9b8d257d68d7}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{d411910b-5bb2-4fbe-8edc-5a2d82df0605}: [DhcpNameServer] 172.20.10.1 Internet Explorer: ================== HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp HKU\S-1-5-21-3795893650-3275294569-1792670153-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/fr-fr/?ocid=iehp HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131354652792886838&GUID=59D629C3-5A58-42EB-9272-B3288919EC07 HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131354652792886838&GUID=59D629C3-5A58-42EB-9272-B3288919EC07 HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com SearchScopes: HKLM-x32 -> DefaultScope {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAM3&src=IE-SearchBox SearchScopes: HKLM-x32 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAM3&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124914796 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182212038 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416 -> DefaultScope {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06042019124916416 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522 -> DefaultScope {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={D4F0CC3C-02B7-42D6-81C2-7498D01C6BFD}&mid=c3d310edd4a347cd988a95c31d0a7a9e-69be1bac7d6b1aebd397abf2901886ef42cf5d4f&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0915av&pr=fr&d=2015-09-11 12:50:43&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3795893650-3275294569-1792670153-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06052019182213522 -> {B1B5AF95-7D12-4905-8743-C7EF0FFEF1FE} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-03-13] (Microsoft Corporation -> Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-03-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-11] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-11] (Oracle America, Inc. -> Oracle Corporation) DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://files.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-04-12] (Adobe Systems Incorporated -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-12] (Adobe Systems Incorporated -> ) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-11] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-11] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-02-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-06-04] CHR Profile: C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-06-05] CHR Extension: (Slides) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-15] CHR Extension: (Docs) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-15] CHR Extension: (Google Drive) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17] CHR Extension: (YouTube) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-15] CHR Extension: (Réveillez la Force qui est en vous) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\boeojddkbfhdgnnicgkgogjnbkdljibb [2018-08-16] CHR Extension: (uBlock Origin) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-05-24] CHR Extension: (Sheets) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-15] CHR Extension: (Google Docs hors connexion) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-15] CHR Extension: (No Coin - Block miners on the web!) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gojamcfopckidlocpkbelmpjcgmbgjcl [2018-08-16] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-08-15] CHR Extension: (Gmail) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-04] CHR Extension: (Chrome Media Router) - C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23] CHR Profile: C:\Users\Bilal\AppData\Local\Google\Chrome\User Data\System Profile [2019-06-04] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -> Autodesk Inc.) S3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-07-05] (Apple Inc. -> Apple Inc.) S3 BBDemon; C:\Program Files (x86)\Dassault Systemes\B20\intel_a\code\bin\CATSysDemon.exe [36864 2009-09-26] (Dassault Systemes) [Fichier non signé] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8403672 2019-02-02] (BattlEye Innovations e.K. -> ) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2019-02-04] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET) S3 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Fichier non signé] S3 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (SEIKO EPSON Corporation -> Seiko Epson Corporation) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [145624 2016-04-14] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-31] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [184064 2017-01-13] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel® Trusted Connect Service -> Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [168048 2018-06-22] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) S4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161776 2013-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2304304 2019-04-16] (Electronic Arts, Inc. -> Electronic Arts) S3 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175728 2019-04-16] (Electronic Arts, Inc. -> Electronic Arts) S3 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2019-04-16] (Even Balance, Inc. -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-04-24] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-04-24] (Microsoft Corporation -> Microsoft Corporation) R2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72880 2018-07-13] (Rivet Networks LLC -> CloudBees, Inc.) R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72880 2018-07-13] (Rivet Networks LLC -> CloudBees, Inc.) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 clwvd; C:\WINDOWS\system32\DRIVERS\clwvd.sys [31216 2011-10-13] (CyberLink -> CyberLink Corporation) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2015-10-11] (Disc Soft Ltd -> Disc Soft Ltd) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [145600 2019-04-05] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188240 2019-04-05] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [110000 2019-04-05] (ESET, spol. s r.o. -> ESET) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes) S3 frzway; C:\WINDOWS\System32\drivers\frzway.sys [34552 2015-08-27] (Frozendo SARL -> The OpenVPN Project) S3 GridinSoftInetSecurityDriver; C:\WINDOWS\system32\DRIVERS\gsInetSecurity.sys [107784 2019-05-23] (GridinSoft, LLC -> GridinSoft LLC) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-04-14] (Martin Malik - REALiX -> REALiX(tm)) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [231168 2017-01-13] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19952 2013-02-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Windows (R) Win 7 DDK provider) S3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [150184 2018-07-13] (Rivet Networks LLC -> Rivet Networks, LLC.) R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2018-04-12] (Microsoft Windows -> Qualcomm Atheros, Inc.) R1 LUMDriver; C:\WINDOWS\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM Polska Sp. z o.o. -> IBM) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-06-04] (Malwarebytes Corporation -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [127136 2019-06-05] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73912 2019-06-04] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-06-04] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [117344 2019-06-05] (Malwarebytes Corporation -> Malwarebytes) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2014-08-16] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3517192 2016-07-04] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_b9b91ef48989f9cb\nvlddmkm.sys [20736440 2019-03-11] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-03-28] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [777944 2016-04-14] (Realtek Semiconductor Corp -> Realsil Semiconductor Corporation) S2 Sentinel64; C:\WINDOWS\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc. -> SafeNet, Inc.) S3 ssdevfactory; C:\WINDOWS\System32\DRIVERS\ssdevfactory.sys [16896 2015-01-02] (SteelSeries ApS) [Fichier non signé] S3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2016-10-17] (TunnelBear, Inc. -> The OpenVPN Project) S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 TrojanKillerDriver; C:\WINDOWS\System32\DRIVERS\gtkdrv.sys [38216 2019-05-23] (GridinSoft, LLC -> GridinSoft LLC) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-10-02] (Oracle Corporation -> Oracle Corporation) S3 vhidmini; C:\WINDOWS\System32\drivers\vjoy.sys [15544 2014-06-23] (Ultimarc Limited -> Headsoft) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46472 2019-04-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344544 2019-04-24] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-04-24] (Microsoft Windows -> Microsoft Corporation) S3 WINIO; C:\Program Files (x86)\MSI\Dragon Gaming Center\winio64.sys [15160 2010-06-07] (Micro-Star Int'l Co. Ltd. -> ) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-06-05 18:27 - 2019-06-05 18:28 - 000000000 ____D C:\FRST 2019-06-05 18:26 - 2019-06-05 18:28 - 000000000 ____D C:\Users\Bilal\Desktop\Farbar 2019-06-05 18:24 - 2019-06-05 18:24 - 000127136 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2019-06-05 18:24 - 2019-06-05 18:24 - 000117344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2019-06-05 18:20 - 2019-06-05 18:20 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2019-06-04 21:06 - 2019-06-04 21:06 - 000000784 _____ C:\Users\Bilal\Desktop\jjj.xml 2019-06-04 12:50 - 2019-06-04 12:50 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2019-06-04 12:50 - 2019-06-04 12:50 - 000073912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2019-06-04 12:49 - 2019-06-04 12:49 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2019-06-04 12:43 - 2019-06-04 12:43 - 000000000 ____D C:\Users\Bilal\AppData\Local\ESET 2019-06-04 02:57 - 2019-06-04 02:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2019-06-04 02:57 - 2019-06-04 02:57 - 000000000 ____D C:\ProgramData\ESET 2019-06-04 02:57 - 2019-06-04 02:57 - 000000000 ____D C:\Program Files\ESET 2019-06-04 02:55 - 2019-06-04 02:55 - 005488248 _____ (ESET) C:\Users\Bilal\Downloads\eset_nod32_antivirus_live_installer.exe 2019-06-04 01:54 - 2019-06-04 01:54 - 000003039 _____ C:\Users\Bilal\Desktop\HiJackThis.lnk 2019-06-04 01:54 - 2019-06-04 01:54 - 000000000 ____D C:\Users\Bilal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis 2019-06-04 01:54 - 2019-06-04 01:54 - 000000000 ____D C:\Program Files (x86)\Trend Micro 2019-06-04 01:53 - 2019-06-04 01:53 - 001402880 _____ C:\Users\Bilal\Downloads\hijackthis_hijackthis_2.0.4_anglais_17891.msi 2019-06-04 01:52 - 2019-06-04 01:53 - 001309080 _____ (BraveSoftware Inc.) C:\Users\Bilal\Downloads\BraveBrowserSetup-CLU884.exe 2019-06-04 01:44 - 2019-06-04 01:48 - 000800212 _____ C:\TDSSKiller.3.1.0.28_04.06.2019_01.44.33_log.txt 2019-06-04 01:41 - 2019-06-04 01:42 - 000166660 _____ C:\TDSSKiller.3.1.0.28_04.06.2019_01.41.10_log.txt 2019-06-04 01:40 - 2019-06-04 01:40 - 005054744 _____ (AO Kaspersky Lab) C:\Users\Bilal\Desktop\tdsskiller.exe 2019-06-04 01:34 - 2019-06-04 01:34 - 005660510 _____ (Swearware) C:\Users\Bilal\Downloads\ComboFix.exe 2019-06-04 01:12 - 2019-06-04 01:24 - 000000000 ____D C:\ProgramData\RogueKiller 2019-06-04 01:12 - 2019-06-04 01:12 - 033971256 _____ C:\Users\Bilal\Downloads\RogueKiller_portable64.exe 2019-06-04 01:09 - 2019-06-04 01:10 - 044829216 _____ (Microsoft Corporation) C:\Users\Bilal\Downloads\Windows-KB890830-x64-V5.72.exe 2019-06-02 20:03 - 2019-06-02 20:04 - 000000000 ____D C:\Program Files (x86)\FinalWire 2019-06-02 20:01 - 2019-06-02 20:02 - 046613880 _____ (FinalWire Ltd. ) C:\Users\Bilal\Downloads\aida64extreme600.exe 2019-06-02 19:17 - 2019-06-02 19:17 - 000001145 _____ C:\Users\Public\Desktop\GridinSoft Anti-Malware.lnk 2019-06-02 19:17 - 2019-06-02 19:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware 2019-06-02 19:16 - 2019-06-04 12:47 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware 2019-06-02 19:16 - 2019-06-02 19:16 - 000000000 ____D C:\ProgramData\GridinSoft 2019-06-02 19:13 - 2019-06-02 19:15 - 092364456 _____ C:\Users\Bilal\Downloads\gridinsoft-anti-malware_4-0-38_en_72648.exe 2019-06-02 17:19 - 2019-06-02 17:20 - 041329864 _____ (SUPERAntiSpyware) C:\Users\Bilal\Downloads\SUPERAntiSpywarePro.exe 2019-06-02 17:09 - 2019-06-02 17:10 - 000000000 ____D C:\Users\Bilal\AppData\Local\NPE 2019-06-02 17:09 - 2019-06-02 17:10 - 000000000 ____D C:\ProgramData\Norton 2019-06-02 17:09 - 2019-06-02 17:09 - 009634904 _____ (Symantec Corporation) C:\Users\Bilal\Downloads\NPE.exe 2019-06-02 17:09 - 2019-06-02 17:09 - 000003664 _____ C:\Users\Bilal\Downloads\Rkill.txt 2019-06-02 17:05 - 2019-06-02 17:05 - 000983168 _____ (Bleeping Computer, LLC) C:\Users\Bilal\Downloads\rkill_2-9-1-0_fr_38186664.exe 2019-06-02 17:03 - 2019-06-02 17:04 - 001792640 _____ (Bleeping Computer, LLC) C:\Users\Bilal\Downloads\rkill_2-9-1-0_fr_381866.exe 2019-06-02 16:57 - 2019-06-02 16:57 - 000602112 _____ (OldTimer Tools) C:\Users\Bilal\Downloads\OTL.exe 2019-06-02 15:46 - 2019-06-02 15:46 - 029930816 _____ (Adlice Software ) C:\Users\Bilal\Downloads\RogueKiller_setup_ref3.exe 2019-06-02 15:41 - 2019-06-02 15:42 - 007025360 _____ (Malwarebytes) C:\Users\Bilal\Downloads\adwcleaner_7.3 (1).exe 2019-06-02 15:18 - 2019-06-02 15:18 - 000001930 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-06-02 15:18 - 2019-06-02 15:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-06-02 15:18 - 2019-02-01 12:20 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2019-06-02 15:18 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2019-06-02 15:16 - 2019-06-02 15:17 - 063604352 _____ (Malwarebytes ) C:\Users\Bilal\Downloads\mb3-setup-consumer-3.7.1.2839-1.0.586-1.0.10862.exe 2019-06-02 14:49 - 2019-06-02 14:49 - 000001920 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCM.lnk 2019-06-02 14:49 - 2019-06-02 14:49 - 000000000 ____D C:\Users\Bilal\Downloads\MSI SCM x64 13.018.06221 2019-06-02 14:49 - 2019-06-02 14:49 - 000000000 ____D C:\Program Files (x86)\SCM 2019-06-02 14:12 - 2019-06-02 14:12 - 004355458 _____ C:\Users\Bilal\Downloads\MSI SCM x64 13.018.06221.zip 2019-05-30 20:33 - 2019-05-30 20:33 - 000012462 _____ C:\Users\Bilal\Downloads\113040-drive test.rar 2019-05-30 14:44 - 2019-05-30 14:44 - 000107947 _____ C:\Users\Bilal\Downloads\dmPDF.pdf 2019-05-30 12:47 - 2019-06-04 12:58 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2019-05-30 12:47 - 2019-05-30 12:47 - 000002876 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2019-05-30 12:47 - 2019-05-30 12:47 - 000000875 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-05-30 12:47 - 2019-05-30 12:47 - 000000000 ____D C:\Program Files\CCleaner 2019-05-30 12:46 - 2019-05-30 12:46 - 021018784 _____ (Piriform Software Ltd) C:\Users\Bilal\Downloads\ccsetup557_rtb.exe 2019-05-30 12:12 - 2019-05-30 12:12 - 007025360 _____ (Malwarebytes) C:\Users\Bilal\Downloads\adwcleaner_7.3.exe 2019-05-30 11:50 - 2019-05-30 11:50 - 000000000 ____D C:\Users\Bilal\AppData\Local\mbamtray 2019-05-30 11:50 - 2019-05-30 11:50 - 000000000 ____D C:\Users\Bilal\AppData\Local\mbam 2019-05-23 16:37 - 2019-05-23 16:37 - 000107784 _____ (GridinSoft LLC) C:\WINDOWS\system32\Drivers\gsInetSecurity.sys 2019-05-23 16:37 - 2019-05-23 16:37 - 000038216 _____ (GridinSoft LLC) C:\WINDOWS\system32\Drivers\gtkdrv.sys 2019-05-22 21:23 - 2019-05-22 21:23 - 000003368 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3795893650-3275294569-1792670153-1000 2019-05-22 21:23 - 2019-05-22 21:23 - 000002415 _____ C:\Users\Bilal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-05-19 14:25 - 2019-05-19 14:25 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:25 - 2019-05-19 14:25 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:25 - 2019-04-02 19:00 - 002769264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2019-05-19 14:24 - 2019-05-19 14:24 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-05-19 14:24 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-05-19 14:24 - 2019-03-19 07:42 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2019-05-18 20:48 - 2019-06-02 19:39 - 000000000 ____D C:\Users\Bilal\Documents\BeamNG.drive 2019-05-18 19:33 - 2019-05-08 23:00 - 000414720 _____ C:\WINDOWS\system32\HelloExtNoAtl.dll 2019-05-18 19:33 - 2019-05-08 17:08 - 000028160 _____ (Microsoft) C:\WINDOWS\system32\vccorelib141xvd.dll 2019-05-16 00:52 - 2019-05-16 00:52 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-05-14 21:27 - 2019-05-03 08:31 - 009084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-05-14 21:27 - 2019-05-03 08:31 - 007519888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-05-14 21:27 - 2019-05-03 08:31 - 007436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-05-14 21:27 - 2019-05-03 08:18 - 006569344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-05-14 21:27 - 2019-05-03 08:12 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-05-14 21:27 - 2019-05-03 08:10 - 022017024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-05-14 21:27 - 2019-05-03 08:05 - 022716416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-05-14 21:27 - 2019-05-03 08:02 - 019401216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-05-14 21:27 - 2019-05-03 07:59 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-05-14 21:27 - 2019-05-03 07:56 - 005350912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2019-05-14 21:27 - 2019-05-03 07:54 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2019-05-14 21:26 - 2019-05-04 01:53 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-05-14 21:26 - 2019-05-04 01:53 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2019-05-14 21:26 - 2019-05-03 14:14 - 000790208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-05-14 21:26 - 2019-05-03 14:13 - 001376472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2019-05-14 21:26 - 2019-05-03 14:13 - 000396088 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2019-05-14 21:26 - 2019-05-03 13:55 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-05-14 21:26 - 2019-05-03 13:54 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2019-05-14 21:26 - 2019-05-03 13:52 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-05-14 21:26 - 2019-05-03 13:51 - 003613696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-05-14 21:26 - 2019-05-03 13:51 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-05-14 21:26 - 2019-05-03 13:50 - 004054528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-05-14 21:26 - 2019-05-03 13:50 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2019-05-14 21:26 - 2019-05-03 13:49 - 001288704 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-05-14 21:26 - 2019-05-03 13:49 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-05-14 21:26 - 2019-05-03 13:49 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-05-14 21:26 - 2019-05-03 13:43 - 001027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2019-05-14 21:26 - 2019-05-03 13:43 - 000662328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-05-14 21:26 - 2019-05-03 13:30 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2019-05-14 21:26 - 2019-05-03 13:30 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-05-14 21:26 - 2019-05-03 13:28 - 002882048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-05-14 21:26 - 2019-05-03 13:28 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2019-05-14 21:26 - 2019-05-03 13:27 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-05-14 21:26 - 2019-05-03 13:26 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-05-14 21:26 - 2019-05-03 13:25 - 004055040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-05-14 21:26 - 2019-05-03 13:25 - 001471488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2019-05-14 21:26 - 2019-05-03 08:43 - 000177128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2019-05-14 21:26 - 2019-05-03 08:36 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-05-14 21:26 - 2019-05-03 08:34 - 000159864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2019-05-14 21:26 - 2019-05-03 08:33 - 005625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-05-14 21:26 - 2019-05-03 08:33 - 001219896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-05-14 21:26 - 2019-05-03 08:33 - 001027384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-05-14 21:26 - 2019-05-03 08:33 - 000709720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2019-05-14 21:26 - 2019-05-03 08:33 - 000568104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-05-14 21:26 - 2019-05-03 08:33 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-05-14 21:26 - 2019-05-03 08:33 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-05-14 21:26 - 2019-05-03 08:33 - 000063072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll 2019-05-14 21:26 - 2019-05-03 08:32 - 000793640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2019-05-14 21:26 - 2019-05-03 08:32 - 000776784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-05-14 21:26 - 2019-05-03 08:32 - 000493880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-05-14 21:26 - 2019-05-03 08:32 - 000438984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-05-14 21:26 - 2019-05-03 08:32 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-05-14 21:26 - 2019-05-03 08:32 - 000170296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-05-14 21:26 - 2019-05-03 08:32 - 000164664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2019-05-14 21:26 - 2019-05-03 08:31 - 002811192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-05-14 21:26 - 2019-05-03 08:31 - 002771256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-05-14 21:26 - 2019-05-03 08:31 - 001459328 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-05-14 21:26 - 2019-05-03 08:31 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2019-05-14 21:26 - 2019-05-03 08:31 - 001141224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2019-05-14 21:26 - 2019-05-03 08:31 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2019-05-14 21:26 - 2019-05-03 08:31 - 000983632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2019-05-14 21:26 - 2019-05-03 08:31 - 000545808 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2019-05-14 21:26 - 2019-05-03 08:31 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2019-05-14 21:26 - 2019-05-03 08:31 - 000115728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll 2019-05-14 21:26 - 2019-05-03 08:20 - 000434704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-05-14 21:26 - 2019-05-03 08:20 - 000384976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-05-14 21:26 - 2019-05-03 08:20 - 000192016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-05-14 21:26 - 2019-05-03 08:20 - 000146920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2019-05-14 21:26 - 2019-05-03 08:19 - 006043712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-05-14 21:26 - 2019-05-03 08:19 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-05-14 21:26 - 2019-05-03 08:19 - 000056288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll 2019-05-14 21:26 - 2019-05-03 08:18 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-05-14 21:26 - 2019-05-03 08:18 - 001130568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2019-05-14 21:26 - 2019-05-03 08:02 - 004866048 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-05-14 21:26 - 2019-05-03 08:01 - 008189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-05-14 21:26 - 2019-05-03 08:00 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-05-14 21:26 - 2019-05-03 08:00 - 003400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-05-14 21:26 - 2019-05-03 08:00 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll 2019-05-14 21:26 - 2019-05-03 08:00 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 005788672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 003710976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2019-05-14 21:26 - 2019-05-03 07:59 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-05-14 21:26 - 2019-05-03 07:59 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 002175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2019-05-14 21:26 - 2019-05-03 07:58 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2019-05-14 21:26 - 2019-05-03 07:58 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-05-14 21:26 - 2019-05-03 07:57 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 001560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 001295872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-05-14 21:26 - 2019-05-03 07:57 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2019-05-14 21:26 - 2019-05-03 07:56 - 001803776 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-05-14 21:26 - 2019-05-03 07:56 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-05-14 21:26 - 2019-05-03 07:56 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-05-14 21:26 - 2019-05-03 07:56 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-05-14 21:26 - 2019-05-03 07:55 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-05-14 21:26 - 2019-05-03 07:55 - 002166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-05-14 21:26 - 2019-05-03 07:55 - 000659968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 001628672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-05-14 21:26 - 2019-05-03 07:54 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2019-05-14 21:26 - 2019-05-03 07:54 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-05-14 21:26 - 2019-05-03 07:54 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-05-14 21:26 - 2019-05-03 07:53 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys 2019-05-14 21:26 - 2019-05-03 07:53 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys 2019-05-14 21:26 - 2019-05-03 07:53 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys 2019-05-14 21:26 - 2019-05-03 07:53 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys 2019-05-14 21:26 - 2019-05-03 06:38 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim 2019-05-14 21:26 - 2019-04-23 09:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll 2019-05-14 21:26 - 2019-04-23 08:14 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll 2019-05-14 21:26 - 2019-04-19 12:55 - 001634920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-05-14 21:26 - 2019-04-19 12:54 - 000720200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2019-05-14 21:26 - 2019-04-19 12:40 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-05-14 21:26 - 2019-04-19 12:39 - 012754944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-05-14 21:26 - 2019-04-19 12:38 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe 2019-05-14 21:26 - 2019-04-19 12:38 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll 2019-05-14 21:26 - 2019-04-19 12:36 - 000346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-05-14 21:26 - 2019-04-19 12:34 - 000522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2019-05-14 21:26 - 2019-04-19 11:44 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-05-14 21:26 - 2019-04-19 11:37 - 000607960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2019-05-14 21:26 - 2019-04-19 11:30 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll 2019-05-14 21:26 - 2019-04-19 11:28 - 011940864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-05-14 21:26 - 2019-04-19 11:26 - 002405888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-05-14 21:26 - 2019-04-19 11:25 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2019-05-14 21:26 - 2019-04-19 07:07 - 000985400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2019-05-14 21:26 - 2019-04-19 07:06 - 002571632 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-05-14 21:26 - 2019-04-19 07:06 - 000798520 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2019-05-14 21:26 - 2019-04-19 07:06 - 000713264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2019-05-14 21:26 - 2019-04-19 07:06 - 000436024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-05-14 21:26 - 2019-04-19 07:06 - 000274232 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2019-05-14 21:26 - 2019-04-19 07:02 - 000831800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2019-05-14 21:26 - 2019-04-19 07:01 - 001982008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-05-14 21:26 - 2019-04-19 07:01 - 000581592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2019-05-14 21:26 - 2019-04-19 07:01 - 000576016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2019-05-14 21:26 - 2019-04-19 07:01 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-05-14 21:26 - 2019-04-19 06:43 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll 2019-05-14 21:26 - 2019-04-19 06:42 - 004384256 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-05-14 21:26 - 2019-04-19 06:41 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2019-05-14 21:26 - 2019-04-19 06:41 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe 2019-05-14 21:26 - 2019-04-19 06:40 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe 2019-05-14 21:26 - 2019-04-19 06:40 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll 2019-05-14 21:26 - 2019-04-19 06:40 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll 2019-05-14 21:26 - 2019-04-19 06:40 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll 2019-05-14 21:26 - 2019-04-19 06:40 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll 2019-05-14 21:26 - 2019-04-19 06:39 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2019-05-14 21:26 - 2019-04-19 06:39 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2019-05-14 21:26 - 2019-04-19 06:39 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll 2019-05-14 21:26 - 2019-04-19 06:39 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll 2019-05-14 21:26 - 2019-04-19 06:39 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2019-05-14 21:26 - 2019-04-19 06:39 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 000300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2019-05-14 21:26 - 2019-04-19 06:38 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000953856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2019-05-14 21:26 - 2019-04-19 06:37 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 002909696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 001300992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 000827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2019-05-14 21:26 - 2019-04-19 06:36 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 001938944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 001175552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 001156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 000607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2019-05-14 21:26 - 2019-04-19 06:35 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll 2019-05-14 21:26 - 2019-04-19 06:34 - 000935936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2019-05-14 21:26 - 2019-04-19 06:34 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-05-14 21:26 - 2019-04-19 06:34 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-05-14 21:26 - 2019-04-19 06:34 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-05-14 21:26 - 2019-04-19 06:34 - 000653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2019-05-14 21:26 - 2019-04-19 05:18 - 000806360 _____ C:\WINDOWS\SysWOW64\locale.nls 2019-05-14 21:26 - 2019-04-19 05:18 - 000806360 _____ C:\WINDOWS\system32\locale.nls 2019-05-14 21:26 - 2019-04-09 03:48 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-05-14 21:26 - 2019-04-09 03:48 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll 2019-05-14 21:26 - 2019-04-09 03:48 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-05-14 21:26 - 2019-04-09 03:48 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2019-05-14 21:26 - 2019-04-09 03:48 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll 2019-05-13 22:12 - 2019-06-05 18:20 - 000000000 ____D C:\Users\Bilal\Documents\Assassin's Creed Unity 2019-05-12 15:16 - 2019-05-12 15:16 - 000000233 _____ C:\Users\Bilal\Desktop\Assassin’s Creed Unity.url ==================== Un mois (modifiés) ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-06-05 18:24 - 2017-05-07 16:21 - 000000000 ____D C:\ProgramData\NVIDIA 2019-06-05 18:21 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-06-05 18:20 - 2019-04-05 11:37 - 000015800 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys 2019-06-05 18:20 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2019-06-05 18:20 - 2015-04-14 15:01 - 000000000 __SHD C:\Users\Bilal\IntelGraphicsProfiles 2019-06-04 23:23 - 2018-07-03 19:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-06-04 22:59 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2019-06-04 22:59 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-06-04 13:20 - 2015-10-14 23:02 - 000007643 _____ C:\Users\Bilal\AppData\Local\Resmon.ResmonCfg 2019-06-04 13:08 - 2015-02-28 14:56 - 000000000 ____D C:\Users\Bilal\AppData\Local\CrashDumps 2019-06-04 12:48 - 2018-07-03 20:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-06-04 12:48 - 2018-04-11 23:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2019-06-04 07:41 - 2018-07-03 22:37 - 000000000 ____D C:\Users\Bilal\AppData\Local\D3DSCache 2019-06-04 02:57 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-06-04 01:42 - 2018-07-03 20:01 - 000000000 ____D C:\Users\Bilal 2019-06-04 01:10 - 2015-04-14 14:32 - 132445408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-06-02 21:46 - 2018-07-03 20:17 - 001999998 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-06-02 21:46 - 2018-04-12 18:18 - 000864222 _____ C:\WINDOWS\system32\perfh00C.dat 2019-06-02 21:46 - 2018-04-12 18:18 - 000176902 _____ C:\WINDOWS\system32\perfc00C.dat 2019-06-02 15:18 - 2015-01-29 19:21 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-05-30 20:19 - 2015-10-12 12:30 - 000000000 ____D C:\Users\Bilal\AppData\Local\Ubisoft Game Launcher 2019-05-30 12:50 - 2017-06-10 18:16 - 000000000 ____D C:\Program Files (x86)\Steam 2019-05-30 12:50 - 2017-04-10 00:22 - 000000000 ____D C:\Users\Bilal\AppData\Roaming\uTorrent 2019-05-30 12:50 - 2015-10-11 21:16 - 000000000 ____D C:\Users\Bilal\AppData\Roaming\DAEMON Tools Lite 2019-05-30 12:49 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2019-05-23 00:02 - 2015-04-14 17:54 - 000002309 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-05-23 00:02 - 2015-04-14 17:54 - 000002268 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-05-22 21:23 - 2015-09-11 15:12 - 000000000 ___RD C:\Users\Bilal\OneDrive 2019-05-22 21:16 - 2017-05-07 16:21 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2019-05-19 14:25 - 2017-12-25 18:57 - 000001489 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2019-05-19 14:25 - 2017-05-07 16:21 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-05-19 14:24 - 2017-05-07 16:21 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2019-05-18 19:15 - 2018-11-21 21:42 - 000000000 ____D C:\WINDOWS\SysWOW64\directx 2019-05-18 19:14 - 2015-04-16 10:45 - 000000000 ___HD C:\WINDOWS\msdownld.tmp 2019-05-18 19:11 - 2019-04-07 11:33 - 000000000 ____D C:\Users\Bilal\AppData\Local\BitTorrentHelper 2019-05-18 16:23 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-05-18 01:20 - 2018-11-19 02:19 - 000000000 ____D C:\Program Files\rempl 2019-05-17 00:44 - 2015-09-17 21:43 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2019-05-17 00:42 - 2009-07-14 04:34 - 000000478 _____ C:\WINDOWS\win.ini 2019-05-15 17:52 - 2018-07-03 20:23 - 000003588 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2019-05-15 17:52 - 2018-07-03 20:23 - 000003464 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2019-05-14 22:15 - 2018-07-03 19:49 - 000498528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-05-14 22:12 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2019-05-14 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput 2019-05-14 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-05-14 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-05-14 21:35 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-05-14 21:26 - 2015-04-14 14:32 - 000000000 ____D C:\WINDOWS\system32\MRT ==================== Fichiers à la racine de certains dossiers ======= 2015-11-03 22:55 - 2015-11-03 22:55 - 022941952 ____H () C:\Users\Bilal\AppData\Local\Ho.dat 2016-06-13 15:50 - 2016-06-13 15:54 - 000000600 _____ () C:\Users\Bilal\AppData\Local\PUTTY.RND 2015-10-14 23:02 - 2019-06-04 13:20 - 000007643 _____ () C:\Users\Bilal\AppData\Local\Resmon.ResmonCfg 2015-11-03 22:55 - 2015-11-03 22:55 - 004491056 ____H () C:\Users\Bilal\AppData\Local\Ring.dat 2015-11-03 22:55 - 2015-11-03 22:55 - 000123328 ____H () C:\Users\Bilal\AppData\Local\SFX.db 2015-11-03 22:55 - 2015-11-03 22:55 - 010726720 ____H () C:\Users\Bilal\AppData\Local\VD.db 2015-11-03 22:55 - 2015-11-03 22:55 - 000026336 ____H () C:\Users\Bilal\AppData\Local\VDX.db 2015-11-03 22:55 - 2015-11-03 22:55 - 001366544 ____H () C:\Users\Bilal\AppData\Local\WIX.db 2015-11-03 22:55 - 2015-11-03 22:55 - 000013984 ____H () C:\Users\Bilal\AppData\Local\WPX.db ==================== SigCheck =============================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ============================ Addition.txt
  3. Greetings, Since i had removed a coin miner trojan. I have several alerts everyday about an exploit stopped by Malwarebytes. Can someone help me please ? Attached the log of the event. log.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.