Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16.05.2018 01 Exécuté par apollo (administrateur) sur APOLLO-PC (21-10-2018 11:05:26) Exécuté depuis C:\Users\apollo\Documents\Mes téléchargements outils Profils chargés: apollo (Profils disponibles: apollo) Platform: Windows 10 Home Version 1809 17763.55 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: IE) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe () C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe () C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe () C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avpui.exe () C:\Program Files\WindowsApps\22450.ImageResizerforWindows10_1.1.0.0_x64__0aqw1zw0x2snt\huaImageResizer.exe () C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.10311.0_x64__8wekyb3d8bbwe\Video.UI.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSATray.exe () C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18081.14710.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1809.2731.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe (Microsoft Corporation) C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\WINDOWS\system32\SecurityHealthSystray.exe [83968 2018-09-15] (Microsoft Corporation) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [567088 2016-10-14] () HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [421768 2016-04-25] (Acronis International GmbH) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [7390424 2017-06-23] () HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (CANON INC.) HKLM-x32\...\Run: [DSATray] => C:\Program Files (x86)\Intel Driver and Support Assistant\DsaTray.exe [126712 2018-09-26] (Intel) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-10-06] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2239739076-4037631489-1261610323-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [221184 2018-09-15] (Microsoft Corporation) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 62.197.111.140 109.88.203.3 Tcpip\..\Interfaces\{142ee7f9-c607-4381-8fe4-8c17bf2b0329}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ac7dfe45-8591-43a0-948e-6b8a255855e9}: [DhcpNameServer] 62.197.111.140 109.88.203.3 Internet Explorer: ================== HKU\S-1-5-21-2239739076-4037631489-1261610323-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2239739076-4037631489-1261610323-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-2239739076-4037631489-1261610323-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ SearchScopes: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> DefaultScope {68EBFBF6-8CDC-428F-9B3C-4AE6E9BAB558} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> {68EBFBF6-8CDC-428F-9B3C-4AE6E9BAB558} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} BHO: SnagIt Toolbar Loader -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitBHO64.dll [2010-09-01] (TechSmith Corporation) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2018-02-13] (Microsoft Corporation) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2018-01-17] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2018-03-13] (Microsoft Corporation) BHO-x32: SnagIt Toolbar Loader -> {00C6482D-C502-44C8-8409-FCE54AD9C208} -> C:\Program Files (x86)\TechSmith\Snagit 10\SnagitBHO.dll [2010-09-01] (TechSmith Corporation) BHO-x32: Kaspersky Passsword Manager Toolbar -> {215BA832-75A3-426E-A4FC-7C5B58CE6A10} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager\spIEBho.dll [2014-06-05] (Kaspersky Lab) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-17] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-17] (Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM - Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\DLLx64\SnagitIEAddin64.dll [2010-09-01] (TechSmith Corporation) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM-x32 - Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 10\SnagitIEAddin.dll [2010-09-01] (TechSmith Corporation) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager\spIEBho.dll [2014-06-05] (Kaspersky Lab) Toolbar: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> Pas de nom - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - Pas de fichier Toolbar: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> Pas de nom - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - Pas de fichier Toolbar: HKU\S-1-5-21-2239739076-4037631489-1261610323-1000 -> Pas de nom - {093F479D-712E-46CD-9E06-62E734A05F68} - Pas de fichier Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - Pas de fichier Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2018-01-17] (Microsoft Corporation) Edge: ====== Edge Extension: (BookReader) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [2018-09-15] Edge Extension: (PinJSAPI) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [2018-09-15] FireFox: ======== FF ProfilePath: C:\Users\apollo\AppData\Roaming\Mozilla\Firefox\Profiles\hwvectfh.default [2018-10-20] FF HKLM\...\Firefox\Extensions: [light_plugin_F88CEF8523DE460F9FA1D6E48BF8D340@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\FFExt\light_plugin_firefox\addon.xpi [2018-06-01] FF HKU\S-1-5-21-2239739076-4037631489-1261610323-1000\...\Firefox\Extensions: [{72CA2996-F580-47DF-98FF-0B853D09CEC8}] - C:\Users\apollo\AppData\Roaming\Kaspersky Lab\Kaspersky Password Manager\kpmAutofill FF Extension: (Password Manager Autofill Engine) - C:\Users\apollo\AppData\Roaming\Kaspersky Lab\Kaspersky Password Manager\kpmAutofill [2017-11-01] [Legacy] [non signé] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2017-10-17] (CANON INC.) FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-17] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2018-01-17] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2239739076-4037631489-1261610323-1000: @kaspersky.com/Password Manager -> C:\PROGRA~2\KASPER~1\KASPER~1\NPKPMA~1.DLL [2014-06-05] (Kaspersky Lab) Chrome: ======= CHR Profile: C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default [2018-10-20] CHR Extension: (Slides) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-04-12] CHR Extension: (Kaspersky Protection) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\amkpcclbbgegoafihnpgomddadjhcadd [2018-05-25] CHR Extension: (Docs) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-04-12] CHR Extension: (Google Drive) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-04-12] CHR Extension: (YouTube) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-04-12] CHR Extension: (Sheets) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-04-12] CHR Extension: (Google Docs hors connexion) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-20] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-12] CHR Extension: (Kaspersky Password Manager plugin) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nopoafngjcbddhhbepebefngiioncigi [2018-04-12] CHR Extension: (Gmail) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-04-12] CHR Extension: (Chrome Media Router) - C:\Users\apollo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-10-20] CHR HKLM\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd CHR HKLM-x32\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1244408 2016-10-14] () R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [4463592 2017-07-12] () R2 AVP19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe [619640 2018-02-28] (AO Kaspersky Lab) R2 BrokerInfrastructure; C:\WINDOWS\System32\psmsrv.dll [241664 2018-09-15] (Microsoft Corporation) S3 cbdhsvc; C:\WINDOWS\System32\cbdhsvc.dll [961024 2018-09-15] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3058392 2017-12-12] (Microsoft Corporation) S3 ConsentUxUserSvc; C:\WINDOWS\System32\ConsentUxClient.dll [157696 2018-09-15] (Microsoft Corporation) S3 DisplayEnhancementService; C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [914944 2018-09-15] (Microsoft Corporation) R2 DSAService; C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [23800 2018-09-26] (Intel) R2 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [937192 2018-09-19] () S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [73200 2018-08-22] (Freemake) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [397472 2018-03-15] () S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel Corporation) S3 klvssbridge64_19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\vssbridge64.exe [416560 2018-06-01] (AO Kaspersky Lab) S2 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (AO Kaspersky Lab) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis) S3 perceptionsimulation; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [78848 2018-09-15] (Microsoft Corporation) S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] () R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [194792 2018-09-19] () S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [937192 2018-09-19] () S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe [3905952 2018-08-15] (Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe [110944 2018-08-15] (Microsoft Corporation) S3 WManSvc; C:\WINDOWS\system32\Windows.Management.Service.dll [370176 2018-09-15] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 Apowersoft_AudioDevice; C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare) R1 BasicDisplay; C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [68096 2018-09-15] (Microsoft Corporation) R1 BasicRender; C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [37376 2018-09-15] (Microsoft Corporation) S3 BthMini; C:\WINDOWS\System32\drivers\BTHMINI.sys [34816 2018-09-15] (Microsoft Corporation) R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [243400 2018-01-27] (AO Kaspersky Lab) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [366432 2017-07-12] (Acronis International GmbH) S3 hidspi; C:\WINDOWS\System32\drivers\hidspi.sys [60928 2018-09-15] (Microsoft Corporation) S3 iaLPSS2i_GPIO2_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2018-09-15] (Intel Corporation) S3 iaLPSS2i_GPIO2_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2018-09-15] (Intel Corporation) S3 iaLPSS2i_I2C_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2018-09-15] (Intel Corporation) R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [73416 2018-10-01] (AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [123152 2018-10-01] (AO Kaspersky Lab) R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [89168 2018-10-01] (AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [29208 2017-03-30] (AO Kaspersky Lab) R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [220472 2018-10-01] (AO Kaspersky Lab) R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [1214752 2018-10-01] (AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\klids.sys [168760 2018-08-01] (AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1113912 2018-10-01] (AO Kaspersky Lab) R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57032 2018-02-12] (AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [58048 2018-01-15] (AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [83496 2017-12-11] (AO Kaspersky Lab) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [50648 2017-05-30] (AO Kaspersky Lab) S3 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [45768 2018-10-01] (AO Kaspersky Lab) R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [48080 2018-02-12] (The OpenVPN Project) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [238312 2018-10-17] (AO Kaspersky Lab) R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2018-10-17] (AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [289872 2018-10-17] (AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [110640 2018-10-17] (AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [193384 2018-10-17] (AO Kaspersky Lab) R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [100552 2018-02-17] (AO Kaspersky Lab) R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [161080 2018-07-18] (AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [203968 2018-02-24] (AO Kaspersky Lab) S3 MbbCx; C:\WINDOWS\System32\drivers\MbbCx.sys [290816 2018-09-15] (Microsoft Corporation) R3 Microsoft_Bluetooth_AvrcpTransport; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760 2018-09-15] (Microsoft Corporation) S3 PktMon; C:\WINDOWS\System32\drivers\PktMon.sys [85504 2018-09-15] (Microsoft Corporation) S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [43008 2018-09-19] () S0 SmartSAMD; C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960 2018-09-15] (Microsemi Corportation) R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1267552 2017-07-12] (Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\System32\DRIVERS\tib_mounter.sys [193376 2017-07-12] (Acronis International GmbH) S3 tnd; C:\WINDOWS\System32\DRIVERS\tnd.sys [601432 2017-07-12] (Acronis International GmbH) S3 UcmUcsiAcpiClient; C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [31232 2018-09-15] (Microsoft Corporation) S3 UcmUcsiCx0101; C:\WINDOWS\System32\Drivers\UcmUcsiCx.sys [99840 2018-09-15] (Microsoft Corporation) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [279392 2016-11-03] (Acronis International GmbH) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46584 2018-08-15] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [340008 2018-08-15] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61992 2018-08-15] (Microsoft Corporation) R3 WinQuic; C:\WINDOWS\System32\drivers\winquic.sys [156984 2018-09-15] (Microsoft Corporation) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-10-21 11:04 - 2018-10-21 11:04 - 000000042 _____ C:\Users\apollo\Desktop\bikini.txt 2018-10-21 10:46 - 2018-10-21 10:46 - 000003556 _____ C:\Users\apollo\Desktop\startup.txt 2018-10-20 17:15 - 2018-10-20 17:16 - 000000000 ____D C:\Users\apollo\Documents\Renaujlt Clio docs 2018-10-19 09:02 - 2018-10-19 09:02 - 000002678 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_QUEENCREEK 2018-10-17 15:21 - 2018-10-17 15:21 - 000000000 ____D C:\Users\apollo\AppData\Roaming\Sun 2018-10-17 15:20 - 2018-10-17 15:20 - 000098680 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2018-10-17 15:20 - 2018-10-17 15:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2018-10-17 15:20 - 2018-10-17 15:20 - 000000000 ____D C:\Program Files (x86)\Java 2018-10-17 14:40 - 2018-10-17 14:40 - 000124882 _____ C:\Users\apollo\Documents\Frais de retour.pdf 2018-10-17 12:30 - 2018-10-17 12:30 - 000289872 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys 2018-10-17 12:29 - 2018-10-17 12:29 - 000110640 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys 2018-10-17 12:29 - 2018-10-17 12:29 - 000087584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2018-10-17 10:19 - 2018-10-17 14:52 - 000193384 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys 2018-10-17 10:19 - 2018-10-17 10:19 - 000238312 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys 2018-10-15 17:01 - 2018-10-15 17:09 - 000000023 _____ C:\Users\apollo\Desktop\ethias assurance incendie.txt 2018-10-13 12:26 - 2018-10-13 12:26 - 000000000 ____D C:\Users\apollo\AppData\Local\mbam 2018-10-13 12:25 - 2018-10-13 12:25 - 000000000 ____D C:\Users\apollo\AppData\Local\mbamtray 2018-10-11 13:44 - 2018-10-11 13:44 - 000000008 _____ C:\Users\apollo\Desktop\apo.txt 2018-10-10 03:46 - 2018-10-10 03:46 - 026805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 023440384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 022112072 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 020809216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 019024384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 012857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 012151296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 011744256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 009951744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 009696768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-10-10 03:46 - 2018-10-10 03:46 - 007861248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 006543224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 006062592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 005584056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 005440016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 004588032 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2018-10-10 03:46 - 2018-10-10 03:46 - 003981312 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 003662336 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 003556864 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 003380736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 003378176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 002927096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002721280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 002625552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 002488320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 002469648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002435488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002323904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002186752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 002020560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001863168 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001830912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001797128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001672072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001590288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001520208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001466992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 001360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 001255952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-10-10 03:46 - 2018-10-10 03:46 - 001050640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-10-10 03:46 - 2018-10-10 03:46 - 000918496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000863752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 000850960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000582248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2018-10-10 03:46 - 2018-10-10 03:46 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000402376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll 2018-10-10 03:46 - 2018-10-10 03:46 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll 2018-10-09 09:28 - 2018-10-09 09:28 - 000146674 _____ C:\Users\apollo\Documents\preuve virement supplémentaire cofidis 9-10-18.pdf 2018-10-07 14:49 - 2018-10-14 14:50 - 000000000 ____D C:\Program Files (x86)\Intel Driver and Support Assistant 2018-10-07 14:49 - 2018-10-07 14:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver and Support Assistant 2018-10-06 19:30 - 2018-10-06 19:30 - 000010826 _____ C:\Users\apollo\Documents\Etiquette envoi Véro MRelay 7-10-18.pdf 2018-10-06 14:20 - 2018-10-06 14:20 - 000000000 ____D C:\WINDOWS\SysWOW64\beidpp 2018-10-06 13:56 - 2018-10-06 14:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID 2018-10-06 13:56 - 2018-10-06 14:12 - 000001315 _____ C:\Users\Public\Desktop\eID Viewer.lnk 2018-10-06 13:21 - 2018-10-06 13:21 - 007084984 _____ (Belgian Government) C:\Users\apollo\Documents\belgium_eid-quickinstaller_4.3.2.3551.exe 2018-10-04 16:00 - 2018-10-04 16:07 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2018-10-04 16:00 - 2018-10-04 16:00 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2018-10-04 15:58 - 2018-10-04 16:00 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2018-10-04 15:58 - 2018-10-04 15:58 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2018-10-04 15:55 - 2018-10-10 07:45 - 000000000 ____D C:\WINDOWS\system32\msmq 2018-10-04 15:55 - 2018-10-04 15:55 - 000780376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2018-10-04 15:55 - 2018-10-04 15:55 - 000104560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-10-04 15:55 - 2018-10-04 15:55 - 000036896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\Program Files\MSBuild 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-10-04 15:55 - 2018-10-04 15:55 - 000000000 ____D C:\inetpub 2018-10-04 15:54 - 2018-10-04 15:55 - 001167960 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2018-10-04 15:54 - 2018-10-04 15:55 - 000126064 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2018-10-04 15:54 - 2018-10-04 15:55 - 000035440 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2018-10-04 15:53 - 2018-10-04 15:53 - 004488192 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-10-04 15:53 - 2018-10-04 15:53 - 003442176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2018-10-04 15:53 - 2018-10-04 15:53 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2018-10-04 15:53 - 2018-10-04 15:53 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll 2018-10-04 15:53 - 2018-10-04 15:53 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll 2018-10-04 15:53 - 2018-10-04 15:53 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll 2018-10-04 15:53 - 2018-10-04 15:53 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2018-10-04 15:53 - 2018-10-04 15:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2018-10-04 15:42 - 2018-10-04 15:42 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2018-10-04 15:39 - 2018-10-04 15:39 - 000000020 ___SH C:\Users\apollo\ntuser.ini 2018-10-04 15:37 - 2018-10-19 11:51 - 000003834 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2018-10-04 15:37 - 2018-10-19 09:02 - 000003762 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2018-10-04 15:37 - 2018-10-19 09:02 - 000003528 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2018-10-04 15:37 - 2018-10-17 15:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-10-04 15:37 - 2018-10-04 15:38 - 000003640 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2018-10-04 15:37 - 2018-10-04 15:38 - 000003540 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-10-04 15:37 - 2018-10-04 15:38 - 000002778 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2239739076-4037631489-1261610323-1000 2018-10-04 15:37 - 2018-10-04 15:38 - 000002420 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe 2018-10-04 15:37 - 2018-10-04 15:38 - 000002394 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe 2018-10-04 15:37 - 2018-10-04 15:38 - 000002392 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_itype_exe 2018-10-04 15:37 - 2018-10-04 15:38 - 000002220 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-10-04 15:37 - 2018-10-04 15:37 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2018-10-04 15:37 - 2018-10-04 15:37 - 000003312 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-10-04 15:37 - 2018-10-04 15:37 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-10-04 15:37 - 2018-10-04 15:37 - 000002904 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe 2018-10-04 15:37 - 2018-10-04 15:37 - 000002378 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe 2018-10-04 15:37 - 2018-10-04 15:37 - 000002376 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe 2018-10-04 15:37 - 2018-10-04 15:37 - 000002262 _____ C:\WINDOWS\System32\Tasks\PDVDServ12 Task 2018-10-04 15:37 - 2018-10-04 15:37 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD 2018-10-04 15:37 - 2018-10-04 15:37 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform 2018-10-04 15:36 - 2018-10-04 15:37 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2018-10-04 15:36 - 2018-10-04 15:37 - 000007623 _____ C:\WINDOWS\diagerr.xml 2018-10-04 15:26 - 2018-10-21 10:14 - 001924730 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-10-04 15:18 - 2018-10-04 15:18 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2018-10-04 15:16 - 2018-10-20 09:10 - 000002414 _____ C:\Users\apollo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-10-04 15:16 - 2018-10-14 16:02 - 000000000 ____D C:\Users\apollo 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Voisinage réseau 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Voisinage d'impression 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Modèles 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Mes documents 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Menu Démarrer 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Documents\Mes vidéos 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Documents\Mes images 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\Documents\Ma musique 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2018-10-04 15:16 - 2018-10-04 15:16 - 000000000 _SHDL C:\Users\apollo\AppData\Local\Historique 2018-10-04 15:13 - 2018-10-04 15:13 - 000000000 ____D C:\ProgramData\USOShared 2018-10-04 15:12 - 2018-09-15 09:28 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2018-10-04 15:08 - 2018-10-20 19:12 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-10-04 15:08 - 2018-10-10 06:05 - 000304584 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-10-04 13:08 - 2018-10-05 11:17 - 000000000 ___DC C:\WINDOWS\Panther 2018-10-03 14:54 - 2018-10-03 14:55 - 000000000 ____D C:\Users\apollo\Desktop\accessoires maquettes 2018-10-02 15:21 - 2018-10-02 15:21 - 000054272 _____ C:\Users\apollo\Documents\Incident INC0280389 -- lecteur carte à puce.msg 2018-10-02 13:09 - 2018-10-02 13:09 - 002059008 _____ (Belgian Government) C:\Users\apollo\Documents\belgium_eid_viewer_installer_4.3.6.3571.exe 2018-10-01 19:25 - 2018-10-01 19:25 - 000250023 _____ C:\Users\apollo\Documents\conditions_particulieres_pcbanking_201811_fr.pdf 2018-10-01 12:15 - 2018-10-01 12:16 - 000134796 _____ C:\Users\apollo\Documents\Passwords Database.pws 2018-09-25 16:43 - 2018-09-25 16:43 - 000036352 _____ C:\Users\apollo\Documents\Votre inscription bpost est confirmée..msg 2018-09-21 15:51 - 2018-09-21 15:51 - 000052633 _____ C:\Users\apollo\Downloads\BE78000133917186_20180921_000001.pdf ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-10-21 11:05 - 2016-09-01 21:26 - 000000000 ____D C:\FRST 2018-10-21 11:05 - 2016-02-23 20:44 - 000000000 ____D C:\Users\apollo\Documents\Mes téléchargements outils 2018-10-21 11:02 - 2016-02-23 20:12 - 000000000 ____D C:\Users\apollo\Documents\Fichiers Outlook 2018-10-21 10:58 - 2018-05-25 13:30 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2018-10-21 10:53 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-10-21 10:14 - 2018-09-15 18:39 - 000832008 _____ C:\WINDOWS\system32\perfh00C.dat 2018-10-21 10:14 - 2018-09-15 18:39 - 000167676 _____ C:\WINDOWS\system32\perfc00C.dat 2018-10-21 10:14 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF 2018-10-20 17:19 - 2017-10-24 10:19 - 000000876 _____ C:\Users\apollo\Desktop\ZHPCleaner.lnk 2018-10-20 17:19 - 2017-07-01 11:18 - 000000722 _____ C:\Users\apollo\Desktop\ZHPLite.lnk 2018-10-20 17:19 - 2017-01-10 23:35 - 000000866 _____ C:\Users\apollo\Desktop\ZHPDiag.lnk 2018-10-20 17:19 - 2016-12-27 13:07 - 000000000 ____D C:\Users\apollo\AppData\Roaming\ZHP 2018-10-20 13:04 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-10-20 12:58 - 2018-04-12 22:19 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-10-20 11:55 - 2016-03-05 14:11 - 000000000 ___SD C:\Users\apollo\Documents\Passwords Database 2018-10-20 09:10 - 2016-02-24 02:28 - 000000000 ___RD C:\Users\apollo\OneDrive 2018-10-19 12:10 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps 2018-10-18 10:32 - 2016-03-25 13:42 - 000000000 ____D C:\Users\apollo\AppData\Roaming\MPC-HC 2018-10-17 15:22 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-10-17 10:55 - 2018-05-12 17:18 - 000000000 ____D C:\Users\apollo\Documents\Pension 2018-10-14 16:33 - 2016-02-23 19:17 - 000000000 ____D C:\Users\apollo\Desktop\Icônes peu utilisées 2018-10-14 16:02 - 2017-07-02 14:59 - 003281792 _____ C:\Users\apollo\ZHPCleaner.exe 2018-10-14 16:01 - 2017-07-02 14:59 - 003171712 _____ C:\Users\apollo\ZHPDiag3.exe 2018-10-13 11:52 - 2016-02-23 20:12 - 000000000 ____D C:\Users\apollo\Documents\PDF 2018-10-12 09:25 - 2018-09-15 08:09 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2018-10-11 16:42 - 2016-02-24 20:59 - 000000000 ____D C:\Users\apollo\AppData\Local\Canon Easy-PhotoPrint EX 2018-10-11 16:41 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2018-10-11 15:38 - 2017-07-11 18:28 - 001559936 _____ C:\Users\apollo\ZHPLite.exe 2018-10-11 12:20 - 2017-12-02 01:09 - 000720384 _____ C:\Users\apollo\Desktop\CTR.exe 2018-10-11 10:01 - 2016-03-23 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2018-10-11 10:01 - 2016-03-23 13:20 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2018-10-10 06:12 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-10-10 06:12 - 2018-09-15 08:09 - 000000000 ____D C:\WINDOWS\servicing 2018-10-10 06:07 - 2018-06-01 22:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-10-10 06:07 - 2018-06-01 22:30 - 000000000 ___RD C:\Users\apollo\3D Objects 2018-10-10 06:03 - 2018-09-15 18:40 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2018-10-10 06:03 - 2018-09-15 18:40 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2018-10-10 06:03 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-10-10 06:03 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr 2018-10-10 03:46 - 2016-02-24 01:03 - 000408242 __RSH C:\bootmgr 2018-10-10 03:43 - 2018-09-15 09:36 - 000835152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-10-10 03:43 - 2018-09-15 09:36 - 000179792 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-10-10 03:43 - 2016-02-24 09:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-10-10 03:38 - 2016-02-24 09:00 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-10-09 11:01 - 2017-04-11 20:25 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-10-08 10:41 - 2016-10-24 14:01 - 000000000 ____D C:\Users\apollo\Documents\Etiquettes adressage 2018-10-08 09:50 - 2016-09-18 17:52 - 000000000 ____D C:\Users\apollo\Documents\Factures et modes d'emploi divers 2018-10-07 14:49 - 2016-02-24 00:12 - 000000000 ____D C:\ProgramData\Package Cache 2018-10-06 20:23 - 2018-06-04 20:02 - 000000000 ____D C:\ProgramData\CanonIJPLM 2018-10-06 18:50 - 2016-02-24 03:09 - 000000000 ____D C:\ProgramData\DVD Shrink 2018-10-06 14:20 - 2018-07-20 19:11 - 000000000 ____D C:\ProgramData\Belgium Identity Card 2018-10-06 14:20 - 2017-01-04 13:57 - 000000000 ____D C:\Program Files (x86)\Belgium Identity Card 2018-10-05 20:08 - 2018-04-22 10:55 - 000000000 ____D C:\Users\apollo\AppData\LocalLow\Adobe 2018-10-05 11:17 - 2016-04-06 01:49 - 000000000 ____D C:\Users\apollo\AppData\Local\CrashDumps 2018-10-05 11:13 - 2017-11-29 11:00 - 000001733 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk 2018-10-05 11:13 - 2017-11-29 11:00 - 000000000 ____D C:\Program Files\CDBurnerXP 2018-10-05 08:14 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\appcompat 2018-10-04 18:31 - 2017-11-25 17:32 - 000000000 ____D C:\Users\apollo\AppData\Local\Packages 2018-10-04 18:27 - 2018-07-10 13:21 - 000000000 ____D C:\ProgramData\Packages 2018-10-04 16:08 - 2018-09-15 09:31 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2018-10-04 16:07 - 2018-09-15 18:39 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2018-10-04 16:07 - 2018-09-15 09:36 - 000000000 ____D C:\WINDOWS\Setup 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 __SHD C:\Program Files\Windows Sidebar 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\spool 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\IME 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\schemas 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-10-04 16:07 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-10-04 16:07 - 2018-09-04 20:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG3600 series 2018-10-04 16:07 - 2018-09-04 19:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG3600 series Manual 2018-10-04 16:07 - 2018-08-20 16:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-10-04 16:07 - 2018-08-12 10:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2018-10-04 16:07 - 2018-06-01 22:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection 2018-10-04 16:07 - 2018-06-01 22:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security 2018-10-04 16:07 - 2018-05-21 19:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2018-10-04 16:07 - 2018-05-21 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Audio Extractor 2018-10-04 16:07 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2018-10-04 16:07 - 2018-01-31 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2018-10-04 16:07 - 2018-01-17 22:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2018-10-04 16:07 - 2016-10-27 06:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2018-10-04 16:07 - 2016-08-31 14:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2018-10-04 16:07 - 2016-08-29 17:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2018-10-04 16:07 - 2016-08-04 09:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2018-10-04 16:07 - 2016-06-04 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileASSASSIN 2018-10-04 16:07 - 2016-03-05 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager 2018-10-04 16:07 - 2016-03-04 04:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2018-10-04 16:07 - 2016-03-03 22:49 - 000000000 ____D C:\WINDOWS\fr 2018-10-04 16:07 - 2016-02-24 16:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat 2018-10-04 16:07 - 2016-02-24 15:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snagit 10 2018-10-04 16:07 - 2016-02-24 05:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite 2018-10-04 16:07 - 2016-02-24 03:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink 2018-10-04 16:07 - 2016-02-23 19:32 - 000000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2018-10-04 16:07 - 2016-02-23 18:59 - 000000000 ____D C:\Program Files\Intel 2018-10-04 16:07 - 2016-02-23 18:54 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2018-10-04 16:07 - 2009-07-14 05:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2018-10-04 16:04 - 2018-09-15 09:33 - 000000000 __RHD C:\Users\Public\Libraries 2018-10-04 16:04 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\InfusedApps 2018-10-04 16:01 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2018-10-04 16:00 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2018-10-04 16:00 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2018-10-04 16:00 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Resources 2018-10-04 16:00 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Help 2018-10-04 16:00 - 2017-12-13 04:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft 2018-10-04 16:00 - 2016-11-20 22:28 - 000000000 ____D C:\Program Files\Realtek 2018-10-04 16:00 - 2016-02-24 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2018-10-04 16:00 - 2016-02-23 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2018-10-04 16:00 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Microsoft Games 2018-10-04 15:55 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-10-04 15:55 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\et-EE 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\es-MX 2018-10-04 15:53 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\en-GB 2018-10-04 15:41 - 2018-06-01 22:32 - 000000000 ___HD C:\Users\apollo\MicrosoftEdgeBackups 2018-10-04 15:40 - 2018-06-01 22:29 - 000000000 ____D C:\Users\apollo\AppData\Local\ConnectedDevicesPlatform 2018-10-04 15:38 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\windows nt 2018-10-04 15:37 - 2018-09-15 09:33 - 000000000 ____D C:\Program Files\Windows Defender 2018-10-04 15:35 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\Registration 2018-10-04 15:29 - 2018-09-15 09:33 - 000000000 ___RD C:\WINDOWS\PrintDialog 2018-10-04 15:28 - 2018-09-15 09:33 - 000000000 __RSD C:\WINDOWS\media 2018-10-04 15:28 - 2018-06-01 22:28 - 000023208 _____ C:\WINDOWS\system32\emptyregdb.dat 2018-10-04 15:17 - 2018-05-21 19:32 - 000000000 ____D C:\Users\apollo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2018-10-04 15:13 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\USOPrivate 2018-10-04 15:12 - 2016-11-20 22:28 - 000000000 ____D C:\WINDOWS\system32\DAX2 2018-10-04 15:11 - 2016-11-20 22:28 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2018-10-04 15:10 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\ServiceState 2018-10-04 14:25 - 2018-06-01 21:39 - 000008192 __RSH C:\BOOTSECT.BAK 2018-10-02 17:53 - 2016-11-22 08:53 - 000000000 ____D C:\Users\apollo\Documents\LUMINUS 2018-10-01 11:18 - 2018-06-01 22:50 - 001113912 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys 2018-10-01 11:18 - 2018-06-01 22:50 - 000220472 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys 2018-10-01 11:18 - 2018-04-24 12:45 - 000089168 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kldisk.sys 2018-10-01 11:18 - 2018-02-02 03:45 - 000123152 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupflt.sys 2018-10-01 11:18 - 2017-12-27 10:10 - 000073416 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupdisk.sys 2018-10-01 11:18 - 2017-11-29 07:03 - 000045768 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klpnpflt.sys 2018-10-01 11:16 - 2018-04-24 12:45 - 001214752 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys 2018-10-01 11:16 - 2018-04-24 12:45 - 000152960 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\klhkum.dll 2018-09-27 18:09 - 2016-02-23 19:27 - 000000000 ____D C:\Users\apollo\AppData\Local\ElevatedDiagnostics 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2018-09-27 13:00 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2018-09-23 09:31 - 2018-01-17 22:57 - 000000000 ____D C:\Program Files\Microsoft Office 15 2018-09-22 12:15 - 2018-08-20 16:11 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk ==================== Fichiers à la racine de certains dossiers ======= 2017-07-02 14:59 - 2018-10-14 16:02 - 003281792 _____ () C:\Users\apollo\ZHPCleaner.exe 2017-07-02 14:59 - 2018-10-14 16:01 - 003171712 _____ () C:\Users\apollo\ZHPDiag3.exe 2017-07-11 18:28 - 2018-10-11 15:38 - 001559936 _____ () C:\Users\apollo\ZHPLite.exe 2018-01-08 23:25 - 2018-01-08 23:25 - 000000171 _____ () C:\Users\apollo\AppData\Roaming\1eb766f2-fed1-4d33-9c39-2c8a972fd11f 2018-01-08 23:25 - 2018-01-08 23:25 - 000000304 _____ () C:\Users\apollo\AppData\Roaming\4e93aa11-2d46-4980-a421-0a4ac759e5bf 2018-01-08 23:25 - 2018-01-08 23:25 - 000000175 _____ () C:\Users\apollo\AppData\Roaming\fc19ece2-6b3f-4f22-8758-9651ab9ca388 2017-12-07 01:11 - 2017-12-07 01:11 - 000038430 _____ () C:\Users\apollo\AppData\Roaming\Valeurs séparées par une virgule.ADR 2016-03-15 19:33 - 2016-03-15 19:33 - 000000017 _____ () C:\Users\apollo\AppData\Local\resmon.resmoncfg 2017-10-23 12:19 - 2018-08-20 13:45 - 000002183 _____ () C:\Users\apollo\AppData\Local\restore.vbs 2008-02-05 14:28 - 2008-02-05 14:28 - 000000051 _____ () C:\Users\apollo\AppData\Local\setup.txt ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ==================== Fin de FRST.txt ============================