Comprendre le bitcoin, l'intelligence artificielle, faire un site web... En 3 minutes en vidéo!

Virus Chinois et cassiopessa

<<<1>>>

[Page 1 sur 1 - 8 messages]
Informations Messages

Nicolas18041

Avatar de Nicolas18041
35 messages
Disquette
Disquette

Lien direct Le 06 Décembre 2015 à 11h31

Bonjour, c'est encore moi,
Après avoir fait la mise à jour windows 10, j'ai quelques soucis avec un virus qui s'est installer je ne sais comment.

Pour aller plus vite, voici les log et info de rsit.

 

Publicité

Winx

Avatar de Winx
27902 messages
No-Life
No-Life
AidoHardware
AidoHardware
AidoAntivirus
AidoAntivirus
AidoWindows
AidoWindows

Lien direct Le 06 Décembre 2015 à 13h06

Salut à toi et bienvenue,Sourire Hello

J'ai supprimé ton rapport , tu vas le refaire, en lisant ce qui suit avant Clin d'oeil



Dans un tout premier temps, prends connaissance et approuve les règles élémentaires en vigeur sur ce forum ( histoire de ne pas perdre nortre temps à tous les deux ! )
Ajoute une petite phrase dans ta réponse, pour me montrer que tu as bien lu et approuvé les quelques règles en cours ( merci , c'est sympa Clin d'oeil ), histoire de partir sur un bon pied.

Afin de m' éclairer sur la nature précise de tes soucis "infectieux",
dans un premier temps fais cette procédure et poste le rapport généré par Random's system information tool (RSIT) par
random/random
Télécharge random's system information tool (RSIT) par random/random et sauvegarde-le sur le Bureau.

    - Double-clique sur RSIT.exe afin de lancer RSIT.
    ( sous Windows Seven et 8, llancer avec un clic droit sur le fichier, et choisir les Droits administrateur )
    - Clique Continue à l'écran Disclaimer.


    - Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.





    Ensuite une petite fenetre apparait, avec la mention "Hijackthis " ensuite " Listing recently..."


    il peut arriver qu'une petite fenêtre d'erreur de hijackthis s'ouvre, ce n'est pas grave, on clic sur "ok" ( il rale parce que Windows a bloqué l'accès au fichier "Host " qui se trouve sous Seven 64 bits dans C\windows\SysWOW64\driver\etc , donc ce n'est pas grave, ça ne va pas empêcher Hijackthis de s'éxécuter.

    - Poste le contenu de log.txt (<<qui sera affiché) dans la barre de tâche ( sous Seven )
    ainsi que info.txt (<<qui sera réduit dans la Barre des Tâches).


Il est toutefois possible que sous Seven, le fichier " info.txt" ne soit pas créé. Ne poster donc alors que le contenu de "log.txt"




// ! Important !
=======================

Citation

Durant la phase de désinfection, il est absolument indispensable et primordial de ne pas rajouter de programmes à votre PC, afin de ne pas perturber la décontamination de votre machine. Faites-en un usage minimum durant cette phase.

D'autre part, ne pas utiliser d'outil(s) de décontamination de sa propre initiative, cela peut définitivement nuire à notre travail et au bon rétablissement de la machine. Sourire
C'est à la mode en ce moment, d'utiliser des outils comme Combofix sans autorisation !
C'est ABSOLUMENT proscrit ici sur ce Forum.

Il est évident qu'un PC infecté peut tout à fait devenir inutilisable malgré la tentative de désinfection, et de ce fait prendre la précaution de sauvegarder tous ses documents personnels, AVANT de commencer notre travail, c'est une très bonne idée en soi....merci de prendre ça en considération LOL !

Il est évident que je considère que l'option formatage et/ou une restauration du Système ne fait pas actuellement partie de ton intention, ce qui m'évite de perdre du temps.... LOL ! merci d'avance



Ps:
======
Conseil d'ordre général Sourire
---->> Aller sur le Net avec Windows Internet Explorer, n'est pas souhaitable.
Ne me demandez pas ici pourquoi, c'est un fait établi, que vous devrez considérer comme acquis.
( si vous n'êtes pas d'accord, c'est votre droit, mais je n'ai pas de temps à perdre en polémiques inutiles et non constructives. )
Toutefois, ce qui ne veut pas dire que Windows Internet Explorer, ne doit pas être à jour ! (vérifier que vous avez la dernière version ! )

Télécharger Mozilla-Firefox 3.0. X. (le X représente évidemment la dernière version ) et le mettre à l'install comme Navigateur par défaut.

Flèche lien ici

-->source ici de conseils
Eviter à tous prix de poster dans plusieurs Forum à la fois...pas de multi-postage donc !



Poster les 2 rapports demandés (log.txt et info.txt)
En cas de fichier trop gros, suffit de le diviser sur deux réponses, ou plus.....




PS:
Pas de messages en MP en ce qui concerne le sujet en cours de désinfection, les MP sont réservés aux questions d'ordre privé Clin d'oeil
Si tu ne peux pas télécharger en direct avec la machine infectée, il est évident qu'il faut faire usage, d'une carte SD ou clé usb via un autre PC.

Si je détecte l'usage de P2, et de téléchargements de jeux crackés via µtorrent, ou n'importe quels autre clients Torrent, je peux vous aider une fois, seule chose ne remettez pas le couvert 15 jours après ( ou plus ) en général je donne un avertissement à ce sujet, il y a d'autres moyens légaux que de télécharger des jeux crackés actuellement.

Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
 

Nicolas18041

Avatar de Nicolas18041
35 messages
Disquette
Disquette

Lien direct Le 06 Décembre 2015 à 13h36

Bonjour, merci de m'aiderSourire

Voici le log.txt:

Logfile of random's system information tool 1.10 (written by random/random)
Run by PC-Nicolas2 at 2015-12-06 13:35:00
Microsoft Windows 10 Famille
System drive C: has 575 GB (82%) free of 701 GB
Total RAM: 8143 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:35:01, on 06/12/2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0000)
Boot mode: Normal

Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\PC-Nicolas2\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\PC-Nicolas2.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://toshiba13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Intel AppUp(R) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [TPUReg] "C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe" /Retimes
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-412 413 415 Series"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\PC-Nicolas2\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\PC-Nicolas2\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O23 - Service: @%SystemRoot%\system32\AJRouter.dll,-2 (AJRouter) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Avira Protection e-mail (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
O23 - Service: Avira Planificateur (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avguard.exe
O23 - Service: Avira Protection Web (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\AppReadiness.dll,-1000 (AppReadiness) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\appxdeploymentserver.dll,-1 (AppXSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\AudioEndpointBuilder.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%windir%\system32\bisrv.dll,-100 (BrokerInfrastructure) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\BthHFSrv.dll,-103 (BthHFSrv) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ClipSVC.dll,-103 (ClipSVC) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\coremessaging.dll,-1 (CoreMessagingRegistrar) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @combase.dll,-5012 (DcomLaunch) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dcpsvc.dll,-3001 (DcpSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\das.dll,-100 (DeviceAssociationService) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (DeviceInstall) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\DevQueryBroker.dll,-100 (DevQueryBroker) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\diagtrack.dll,-3001 (DiagTrack) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\Windows.Internal.Management.dll,-100 (DmEnrollmentSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dmwappushsvc.dll,-200 (dmwappushservice) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dosvc.dll,-100 (DoSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\DeviceSetupManager.dll,-1000 (DsmSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dssvc.dll,-10003 (DsSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (Eaphost) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\embeddedmodesvc.dll,-200 (embeddedmode) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @EnterpriseAppMgmtSvc.dll,-1 (EntAppSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (EventLog) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fhsvc.dll,-101 (fhsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\tetheringservice.dll,-4097 (icssvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\lfsvc.dll,-1 (lfsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\licensemanagersvc.dll,-200 (LicenseManager) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @%windir%\system32\lsm.dll,-1001 (LSM) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\moshost.dll,-100 (MapsBroker) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @%SystemRoot%\system32\MessagingService.dll,-100 (MessagingService) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: MessagingService_38267 - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: MessagingService_40281 - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\WINDOWS\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\ncasvc.dll,-3009 (NcaSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ncbservice.dll,-500 (NcbService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\NcdAutoSetup.dll,-100 (NcdAutoSetup) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofmsvc.dll,-202 (netprofm) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\NetSetupSvc.dll,-3 (NetSetupSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\NgcCtnrSvc.dll,-1 (NgcCtnrSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\APHostRes.dll,-10002 (OneSyncSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Hôte de synchronisation_38267 (OneSyncSvc_38267) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Hôte de synchronisation_40281 (OneSyncSvc_40281) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\WINDOWS\SysWow64\perfhost.exe
O23 - Service: @%SystemRoot%\system32\PhoneserviceRes.dll,-10000 (PhoneSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\UserDataAccessRes.dll,-15001 (PimIndexMaintenanceSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Données de contacts_38267 (PimIndexMaintenanceSvc_38267) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Données de contacts_40281 (PimIndexMaintenanceSvc_40281) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-200 (PlugPlay) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll,-1 (PrintNotify) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\RDXService.dll,-256 (RetailDemo) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @combase.dll,-5010 (RpcSs) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ScDeviceEnum.dll,-100 (ScDeviceEnum) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\sensorservice.dll,-1000 (SensorService) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\System32\smphost.dll,-102 (smphost) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SmsRouterSvc.dll,-10001 (SmsRouter) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\windows.staterepository.dll,-1 (StateRepository) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\StorSvc.dll,-100 (StorSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\svsvc.dll,-101 (svsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%windir%\system32\SystemEventsBrokerServer.dll,-1001 (SystemEventsBroker) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: TEMPRO Service (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\tileobjserver.dll,-1 (tiledatamodelsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%windir%\system32\TimeBrokerServer.dll,-1001 (TimeBroker) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\WINDOWS\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\tzautoupdate.dll,-200 (tzautoupdate) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\umrdp.dll,-1000 (UmRdpService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\UserDataAccessRes.dll,-10003 (UnistoreSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Stockage des données utilisateur_38267 (UnistoreSvc_38267) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Stockage des données utilisateur_40281 (UnistoreSvc_40281) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\UserDataAccessRes.dll,-14001 (UserDataSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Accès aux données utilisateur_38267 (UserDataSvc_38267) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: Accès aux données utilisateur_40281 (UserDataSvc_40281) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\usermgr.dll,-100 (UserManager) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\usocore.dll,-102 (UsoSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\icsvc.dll,-801 (vmicguestinterface) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-101 (vmicheartbeat) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-201 (vmickvpexchange) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-601 (vmicrdv) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-301 (vmicshutdown) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-401 (vmictimesync) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-901 (vmicvmsession) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\icsvc.dll,-501 (vmicvss) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\WalletService.dll,-1000 (WalletService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wcmsvc.dll,-4097 (Wcmsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wephostsvc.dll,-100 (WEPHOSTSVC) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiarpc.dll,-2 (WiaRpc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (WlanSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wlidsvc.dll,-100 (wlidsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%systemroot%\system32\workfolderssvc.dll,-102 (workfolderssvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpnservice.dll,-1 (WpnService) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\WINDOWS\system32\SearchIndexer.exe
O23 - Service: @%SystemRoot%\system32\WSService.dll,-103 (WSService) - Unknown owner - C:\WINDOWS\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\XblAuthManager.dll,-100 (XblAuthManager) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\XblGameSave.dll,-100 (XblGameSave) - Unknown owner - C:\WINDOWS\system32\svchost.exe
O23 - Service: @%systemroot%\system32\XboxNetApiSvc.dll,-100 (XboxNetApiSvc) - Unknown owner - C:\WINDOWS\system32\svchost.exe

--
End of file - 34489 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Invitation {7F5297BA-3CC0-4CCF-A63C-79FFFC9AFB46}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{7F5297BA-3CC0-4CCF-A63C-79FFFC9AFB46}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-412 413 415 Series Update {7F5297BA-3CC0-4CCF-A63C-79FFFC9AFB46}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLEE.EXE /EXE:"{7F5297BA-3CC0-4CCF-A63C-79FFFC9AFB46}" /F:"Update"
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\tasks\Uninstaller_SkipUac_PC-Nicolas2.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2015-12-04 162888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2015-12-04 1513592]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-21 767176]
"Intel AppUp(R) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-12-18 156000]
"TPUReg"=C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe [2012-12-05 7152640]
"Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2015-11-18 66320]
"avgnt"=C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2015-10-07 782520]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-11-10 3011152]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-01 50748544]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILEE.EXE [2014-12-02 297024]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\PC-Nicolas2\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 202240]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingReg istrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc ]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingReg istrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc ]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-06 13:35:00 ----D---- C:\rsit
2015-12-06 12:09:01 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Infamous GTAV Menu
2015-12-06 11:32:52 ----D---- C:\Program Files (x86)\Rockstar Games
2015-12-06 11:22:56 ----D---- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2015-12-06 11:22:03 ----D---- C:\Program Files (x86)\trend micro
2015-12-06 11:18:07 ----D---- C:\ProgramData\EPSON
2015-12-05 21:40:46 ----D---- C:\ProgramData\RogueKiller
2015-12-05 19:23:37 ----A---- C:\WINDOWS\SECOH-QAD.exe
2015-12-05 19:23:37 ----A---- C:\WINDOWS\SECOH-QAD.dll
2015-12-05 19:17:38 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\BitTorrent
2015-12-05 19:13:42 ----D---- C:\Program Files (x86)\ESET
2015-12-05 13:05:30 ----D---- C:\ProgramData\Alienware
2015-12-05 12:57:58 ----A---- C:\WINDOWS\SysWOW64\dchcfl32.dll
2015-12-05 12:57:58 ----A---- C:\WINDOWS\hapint.exe
2015-12-05 12:57:58 ----A---- C:\WINDOWS\dcmdev64.exe
2015-12-05 12:57:58 ----A---- C:\WINDOWS\dchcfg32.exe
2015-12-05 12:57:55 ----A---- C:\WINDOWS\SysWOW64\dchbas32.dll
2015-12-05 12:57:55 ----A---- C:\WINDOWS\SysWOW64\dchapi32.dll
2015-12-05 12:57:51 ----D---- C:\ProgramData\Dell
2015-12-05 12:46:06 ----D---- C:\Dell
2015-12-05 12:06:32 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\MotioninJoy
2015-12-05 12:06:28 ----D---- C:\Program Files (x86)\MotionInJoy
2015-12-05 12:06:04 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\WinRAR
2015-12-05 12:00:27 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-05 12:00:27 ----D---- C:\Program Files (x86)\AGEIA Technologies
2015-12-05 12:00:23 ----A---- C:\WINDOWS\SysWOW64\XAudio2_7.dll
2015-12-05 12:00:23 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2015-12-05 12:00:22 ----A---- C:\WINDOWS\SysWOW64\xactengine3_7.dll
2015-12-05 12:00:21 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\XAudio2_6.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\D3DX9_43.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\d3dx11_43.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\d3dx10_43.dll
2015-12-05 12:00:20 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2015-12-05 12:00:19 ----A---- C:\WINDOWS\SysWOW64\xactengine3_6.dll
2015-12-05 12:00:19 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2015-12-05 12:00:17 ----A---- C:\WINDOWS\SysWOW64\XAudio2_5.dll
2015-12-05 12:00:17 ----A---- C:\WINDOWS\SysWOW64\xactengine3_5.dll
2015-12-05 12:00:15 ----A---- C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2015-12-05 12:00:15 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2015-12-05 12:00:14 ----A---- C:\WINDOWS\SysWOW64\D3DX9_42.dll
2015-12-05 12:00:14 ----A---- C:\WINDOWS\SysWOW64\d3dx11_42.dll
2015-12-05 12:00:14 ----A---- C:\WINDOWS\SysWOW64\d3dx10_42.dll
2015-12-05 12:00:13 ----A---- C:\WINDOWS\SysWOW64\d3dx10_41.dll
2015-12-05 12:00:13 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2015-12-05 12:00:12 ----A---- C:\WINDOWS\SysWOW64\XAudio2_4.dll
2015-12-05 12:00:12 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2015-12-05 12:00:12 ----A---- C:\WINDOWS\SysWOW64\xactengine3_4.dll
2015-12-05 12:00:12 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2015-12-05 12:00:11 ----A---- C:\WINDOWS\SysWOW64\D3DX9_40.dll
2015-12-05 12:00:11 ----A---- C:\WINDOWS\SysWOW64\d3dx10_40.dll
2015-12-05 12:00:11 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2015-12-05 12:00:10 ----A---- C:\WINDOWS\SysWOW64\XAudio2_3.dll
2015-12-05 12:00:10 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\XAudio2_2.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\xactengine3_3.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\xactengine3_2.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\d3dx10_39.dll
2015-12-05 12:00:09 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2015-12-05 12:00:08 ----A---- C:\WINDOWS\SysWOW64\XAudio2_1.dll
2015-12-05 12:00:08 ----A---- C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2015-12-05 12:00:08 ----A---- C:\WINDOWS\SysWOW64\xactengine3_1.dll
2015-12-05 12:00:08 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2015-12-05 12:00:08 ----A---- C:\WINDOWS\SysWOW64\D3DX9_39.dll
2015-12-05 12:00:07 ----A---- C:\WINDOWS\SysWOW64\D3DX9_38.dll
2015-12-05 12:00:07 ----A---- C:\WINDOWS\SysWOW64\d3dx10_38.dll
2015-12-05 12:00:07 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2015-12-05 12:00:06 ----A---- C:\WINDOWS\SysWOW64\XAudio2_0.dll
2015-12-05 12:00:06 ----A---- C:\WINDOWS\SysWOW64\xactengine3_0.dll
2015-12-05 12:00:05 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2015-12-05 12:00:04 ----A---- C:\WINDOWS\SysWOW64\d3dx10_37.dll
2015-12-05 12:00:04 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2015-12-05 12:00:02 ----A---- C:\WINDOWS\SysWOW64\xactengine2_10.dll
2015-12-05 12:00:02 ----A---- C:\WINDOWS\SysWOW64\D3DX9_37.dll
2015-12-05 12:00:01 ----A---- C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2015-12-05 12:00:01 ----A---- C:\WINDOWS\SysWOW64\d3dx9_36.dll
2015-12-05 12:00:01 ----A---- C:\WINDOWS\SysWOW64\d3dx10_36.dll
2015-12-05 12:00:01 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2015-12-05 12:00:00 ----A---- C:\WINDOWS\SysWOW64\xactengine2_9.dll
2015-12-05 12:00:00 ----A---- C:\WINDOWS\SysWOW64\d3dx9_35.dll
2015-12-05 12:00:00 ----A---- C:\WINDOWS\SysWOW64\d3dx10_35.dll
2015-12-05 12:00:00 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2015-12-05 11:59:59 ----A---- C:\WINDOWS\SysWOW64\xactengine2_8.dll
2015-12-05 11:59:59 ----A---- C:\WINDOWS\SysWOW64\d3dx10_34.dll
2015-12-05 11:59:59 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2015-12-05 11:59:58 ----A---- C:\WINDOWS\SysWOW64\xinput1_3.dll
2015-12-05 11:59:58 ----A---- C:\WINDOWS\SysWOW64\d3dx9_34.dll
2015-12-05 11:59:57 ----A---- C:\WINDOWS\SysWOW64\xactengine2_7.dll
2015-12-05 11:59:57 ----A---- C:\WINDOWS\SysWOW64\d3dx10_33.dll
2015-12-05 11:59:57 ----A---- C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2015-12-05 11:59:56 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2015-12-05 11:59:56 ----A---- C:\WINDOWS\SysWOW64\d3dx9_33.dll
2015-12-05 11:59:55 ----A---- C:\WINDOWS\SysWOW64\xactengine2_6.dll
2015-12-05 11:59:55 ----A---- C:\WINDOWS\SysWOW64\xactengine2_5.dll
2015-12-05 11:59:55 ----A---- C:\WINDOWS\SysWOW64\d3dx9_32.dll
2015-12-05 11:59:55 ----A---- C:\WINDOWS\SysWOW64\d3dx10.dll
2015-12-05 11:59:54 ----A---- C:\WINDOWS\SysWOW64\xinput1_2.dll
2015-12-05 11:59:54 ----A---- C:\WINDOWS\SysWOW64\xactengine2_4.dll
2015-12-05 11:59:54 ----A---- C:\WINDOWS\SysWOW64\xactengine2_3.dll
2015-12-05 11:59:54 ----A---- C:\WINDOWS\SysWOW64\d3dx9_31.dll
2015-12-05 11:59:53 ----A---- C:\WINDOWS\SysWOW64\xinput1_1.dll
2015-12-05 11:59:53 ----A---- C:\WINDOWS\SysWOW64\xactengine2_2.dll
2015-12-05 11:59:53 ----A---- C:\WINDOWS\SysWOW64\xactengine2_1.dll
2015-12-05 11:59:47 ----A---- C:\WINDOWS\SysWOW64\xactengine2_0.dll
2015-12-05 11:59:47 ----A---- C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2015-12-05 11:59:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_30.dll
2015-12-05 11:59:47 ----A---- C:\WINDOWS\SysWOW64\d3dx9_29.dll
2015-12-05 11:59:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_28.dll
2015-12-05 11:59:46 ----A---- C:\WINDOWS\SysWOW64\d3dx9_27.dll
2015-12-05 11:59:44 ----A---- C:\WINDOWS\SysWOW64\d3dx9_26.dll
2015-12-05 11:59:44 ----A---- C:\WINDOWS\SysWOW64\d3dx9_25.dll
2015-12-05 11:59:43 ----A---- C:\WINDOWS\SysWOW64\d3dx9_24.dll
2015-12-05 11:59:08 ----A---- C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-12-05 11:28:28 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Skype
2015-12-05 11:28:23 ----RD---- C:\Program Files (x86)\Skype
2015-12-05 11:28:23 ----D---- C:\Program Files (x86)\Common Files\Skype
2015-12-05 11:28:19 ----D---- C:\ProgramData\Skype
2015-12-05 11:16:15 ----D---- C:\ProgramData\SmartTechnology
2015-12-05 11:03:44 ----D---- C:\ProgramData\USOShared
2015-12-05 02:08:31 ----D---- C:\Program Files (x86)\Common Files\Steam
2015-12-05 02:08:29 ----D---- C:\Program Files (x86)\Steam
2015-12-05 01:51:38 ----D---- C:\ProgramData\ATI
2015-12-05 01:44:42 ----SHD---- C:\ProgramData\Documents
2015-12-05 01:44:42 ----SHD---- C:\ProgramData\Application Data
2015-12-05 01:34:12 ----ASH---- C:\hiberfil.sys
2015-12-05 01:25:43 ----SD---- C:\Users\PC-Nicolas2\AppData\Roaming\Microsoft
2015-12-05 01:21:13 ----D---- C:\Program Files (x86)\ATI Technologies
2015-12-05 01:20:46 ----D---- C:\ProgramData\Package Cache
2015-12-05 01:20:14 ----D---- C:\WINDOWS\SysWOW64\RTCOM
2015-12-05 01:20:07 ----D---- C:\AMD
2015-12-05 01:18:07 ----A---- C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-12-05 01:15:57 ----AS---- C:\WINDOWS\bootstat.dat
2015-12-05 01:15:14 ----D---- C:\WINDOWS\Prefetch
2015-12-05 01:13:41 ----SHD---- C:\Recovery
2015-12-05 01:13:33 ----DC---- C:\WINDOWS\Panther
2015-12-05 01:08:44 ----D---- C:\Windows.old
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\mfps.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\edgehtml.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2015-12-05 00:59:20 ----A---- C:\WINDOWS\SysWOW64\AppCapture.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\wwapi.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\wimgapi.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\policymanager.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\mssign32.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\LogonController.dll
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2015-12-05 00:59:12 ----A---- C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\Unistore.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\StoreAgent.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\mfpmp.exe
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\mf.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\InstallAgent.exe
2015-12-05 00:59:02 ----A---- C:\WINDOWS\SysWOW64\cryptngc.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\WWAHost.exe
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\WordBreakers.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\wininetlui.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\SRHInproc.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\SRH.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\offlinelsa.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\NmaDirect.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\NMAA.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\msftedit.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MosStorage.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MosResource.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MosHostClient.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\mos.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MapControlCore.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\lpk.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\kerberos.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\jscript.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\JpMapControl.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\InputService.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\fontsub.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\deviceaccess.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\dcomp.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\dciman32.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\d3d11.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\cdp.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\BingMaps.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\atmlib.dll
2015-12-05 00:59:01 ----A---- C:\WINDOWS\SysWOW64\atmfd.dll
2015-12-05 00:52:23 ----D---- C:\WINDOWS\SysWOW64\XPSViewer
2015-12-05 00:52:22 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-12-05 00:52:22 ----D---- C:\Program Files (x86)\MSBuild
2015-12-05 00:51:24 ----A---- C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-12-05 00:51:24 ----A---- C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-12-05 00:51:24 ----A---- C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-04 22:17:30 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Identities
2015-12-04 22:15:06 ----SHD---- C:\ProgramData\Modèles
2015-12-04 22:15:06 ----SHD---- C:\ProgramData\Menu Démarrer
2015-12-04 22:15:06 ----SHD---- C:\ProgramData\Bureau
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-12-04 21:22:40 ----A---- C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-12-04 20:34:39 ----D---- C:\ProgramData\Auslogics
2015-12-04 20:34:36 ----D---- C:\Program Files (x86)\Auslogics
2015-12-04 20:23:38 ----D---- C:\Program Files (x86)\Microsoft OneDrive
2015-12-04 20:23:29 ----D---- C:\ProgramData\Microsoft OneDrive
2015-12-04 20:22:04 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2015-12-04 19:40:31 ----D---- C:\ProgramData\DriversCloud.com
2015-12-04 19:08:24 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Mozilla
2015-12-04 19:08:13 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Avira
2015-12-04 19:03:03 ----D---- C:\Program Files (x86)\Avira
2015-12-04 19:03:02 ----D---- C:\ProgramData\Avira
2015-12-04 16:21:44 ----D---- C:\sources
2015-12-04 14:02:45 ----A---- C:\Recovery.txt
2015-12-04 13:03:06 ----SHD---- C:\System Volume Information
2015-12-04 13:03:06 ----ASH---- C:\pagefile.sys
2015-12-04 06:52:22 ----D---- C:\ProgramData\Malwarebytes
2015-12-04 06:52:21 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-03 22:38:07 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\ProductData
2015-12-03 22:38:07 ----D---- C:\ProgramData\ProductData
2015-12-03 22:33:08 ----D---- C:\AdwCleaner
2015-12-03 22:30:40 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Macromedia
2015-12-03 22:12:37 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\ZHP
2015-12-03 21:51:51 ----D---- C:\Program Files (x86)\Common Files\IObit
2015-12-03 21:51:19 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\IObit
2015-12-03 21:51:04 ----D---- C:\ProgramData\IObit
2015-12-03 21:51:04 ----D---- C:\Program Files (x86)\IObit
2015-12-03 21:45:11 ----D---- C:\Program Files (x86)\Google
2015-12-03 21:17:55 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\ATI
2015-12-03 21:17:11 ----D---- C:\ProgramData\ToshibaEurope
2015-12-03 21:12:12 ----D---- C:\Users\PC-Nicolas2\AppData\Roaming\Adobe
2015-12-03 21:09:10 ----D---- C:\WINDOWS\SoftwareDistribution

======List of files/folders modified in the last 1 month======

2015-12-06 13:35:00 ----D---- C:\WINDOWS\Temp
2015-12-06 13:26:59 ----D---- C:\WINDOWS\AppReadiness
2015-12-06 11:33:43 ----SHDC---- C:\WINDOWS\Installer
2015-12-06 11:33:42 ----D---- C:\WINDOWS\System32
2015-12-06 11:33:34 ----D---- C:\WINDOWS\SysWOW64
2015-12-06 11:32:52 ----RD---- C:\Program Files (x86)
2015-12-06 11:32:41 ----RD---- C:\Program Files
2015-12-06 11:29:51 ----D---- C:\WINDOWS\Tasks
2015-12-06 11:22:56 ----HD---- C:\ProgramData
2015-12-06 11:17:07 ----A---- C:\WINDOWS\SysWOW64\log.txt
2015-12-06 11:15:19 ----D---- C:\WINDOWS\INF
2015-12-06 11:00:19 ----D---- C:\Windows
2015-12-06 11:00:14 ----D---- C:\WINDOWS\CbsTemp
2015-12-06 08:40:00 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-06 08:29:12 ----D---- C:\WINDOWS\debug
2015-12-05 17:12:05 ----RSD---- C:\WINDOWS\assembly
2015-12-05 15:41:34 ----D---- C:\WINDOWS\Logs
2015-12-05 13:07:11 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-12-05 12:54:15 ----RSD---- C:\WINDOWS\Fonts
2015-12-05 12:25:48 ----D---- C:\WINDOWS\LiveKernelReports
2015-12-05 11:59:08 ----D---- C:\WINDOWS\WinSxS
2015-12-05 11:28:23 ----D---- C:\Program Files (x86)\Common Files
2015-12-05 11:06:26 ----D---- C:\WINDOWS\appcompat
2015-12-05 11:03:44 ----D---- C:\ProgramData\USOPrivate
2015-12-05 02:06:32 ----RD---- C:\WINDOWS\DevicesFlow
2015-12-05 01:57:12 ----D---- C:\WINDOWS\Registration
2015-12-05 01:49:34 ----D---- C:\WINDOWS\rescache
2015-12-05 01:48:25 ----RD---- C:\WINDOWS\PurchaseDialog
2015-12-05 01:48:23 ----RD---- C:\WINDOWS\PrintDialog
2015-12-05 01:48:20 ----RD---- C:\WINDOWS\MiracastView
2015-12-05 01:47:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-12-05 01:46:27 ----SD---- C:\ProgramData\Microsoft
2015-12-05 01:29:55 ----D---- C:\WINDOWS\SysWOW64\zh-TW
2015-12-05 01:29:55 ----D---- C:\WINDOWS\SysWOW64\zh-HK
2015-12-05 01:29:55 ----D---- C:\WINDOWS\SysWOW64\zh-CN
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\uk-UA
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\tr-TR
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\th-TH
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\sysprep
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\sv-SE
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\sr-Latn-RS
2015-12-05 01:29:54 ----D---- C:\WINDOWS\SysWOW64\sl-SI
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\sk-SK
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\sda
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\ru-RU
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\ro-RO
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\pt-PT
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\pt-BR
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\pl-PL
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\nl-NL
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\nb-NO
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\migwiz
2015-12-05 01:29:53 ----D---- C:\WINDOWS\SysWOW64\lv-LV
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\lt-LT
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\ko-KR
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\ja-JP
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\it-IT
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\IME
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\hu-HU
2015-12-05 01:29:52 ----D---- C:\WINDOWS\SysWOW64\hr-HR
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\he-IL
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\fr-FR
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\fi-FI
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\et-EE
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\es-ES
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\en-GB
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\el-GR
2015-12-05 01:29:51 ----D---- C:\WINDOWS\SysWOW64\drivers
2015-12-05 01:29:50 ----D---- C:\WINDOWS\SysWOW64\de-DE
2015-12-05 01:29:50 ----D---- C:\WINDOWS\SysWOW64\da-DK
2015-12-05 01:29:50 ----D---- C:\WINDOWS\SysWOW64\cs-CZ
2015-12-05 01:29:50 ----D---- C:\WINDOWS\SysWOW64\bg-BG
2015-12-05 01:29:50 ----D---- C:\WINDOWS\SysWOW64\ar-SA
2015-12-05 01:28:16 ----D---- C:\WINDOWS\MediaViewer
2015-12-05 01:28:12 ----D---- C:\WINDOWS\InputMethod
2015-12-05 01:28:09 ----D---- C:\WINDOWS\DigitalLocker
2015-12-05 01:28:08 ----D---- C:\WINDOWS\ADFS
2015-12-05 01:28:06 ----RD---- C:\Users
2015-12-05 01:28:06 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-12-05 01:28:06 ----D---- C:\ProgramData\PRICache
2015-12-05 01:27:57 ----D---- C:\Program Files (x86)\Windows Mail
2015-12-05 01:27:57 ----D---- C:\Program Files (x86)\TOSHIBA
2015-12-05 01:27:56 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-12-05 01:27:55 ----D---- C:\Program Files (x86)\Common Files\Microsoft Shared
2015-12-05 01:27:53 ----D---- C:\Program Files (x86)\AMD AVT
2015-12-05 01:14:48 ----D---- C:\WINDOWS\ServiceProfiles
2015-12-05 00:59:44 ----D---- C:\WINDOWS\SysWOW64\migration
2015-12-05 00:59:44 ----D---- C:\WINDOWS\SysWOW64\Dism
2015-12-05 00:59:44 ----D---- C:\WINDOWS\Provisioning
2015-12-05 00:59:44 ----D---- C:\WINDOWS\AppPatch
2015-12-05 00:52:23 ----D---- C:\WINDOWS\SysWOW64\MUI
2015-12-05 00:31:38 ----HD---- C:\$WINDOWS.~BT
2015-12-04 22:32:12 ----D---- C:\Program Files (x86)\Microsoft Office
2015-12-04 22:18:30 ----SHD---- C:\$Recycle.Bin
2015-12-04 21:34:05 ----RD---- C:\WINDOWS\ToastData
2015-12-04 20:36:35 ----D---- C:\WINDOWS\AUInstallAgent
2015-12-03 22:01:32 ----D---- C:\Program Files (x86)\TOSHIBA Games
2015-12-03 21:59:26 ----D---- C:\ProgramData\WildTangent
2015-12-03 21:14:20 ----D---- C:\ProgramData\Toshiba

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys []
R0 tos_sps64;@oem5.inf,%SERVICE_DESC_amd64%;TOSHIBA tos_s

 

Winx

Avatar de Winx
27902 messages
No-Life
No-Life
AidoHardware
AidoHardware
AidoAntivirus
AidoAntivirus
AidoWindows
AidoWindows

Lien direct Le 06 Décembre 2015 à 14h23

Hello,hi, bonjour Hello



Hello, Hi, bonjour, Hello



Télécharge ZHPcleaner de Nocolas Coolman sur le Bureau.
Une fois télécharger double clic dessus.
Ferme ton navigateur.
Lance le scan de l'outil Avec un clic sur "Scanner"







En fin de scan, clic sur
Copie le rapport dans ta réponse sur le forum.

Comment faire pour copier le rapport ?
Sélectionne tout le contenus du rapport " ctrl+A " , copie le contenu en mémoire avec" ctrl+c" , ensuite dans ta réponse, colle le rapport avec un "ctrl+v"

Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
 

Nicolas18041

Avatar de Nicolas18041
35 messages
Disquette
Disquette

Lien direct Le 06 Décembre 2015 à 15h06

voici le rapport:

~ ZHPCleaner v2015.12.5.391 by Nicolas Coolman (2015/12/05)
~ Run by PC-Nicolas2 (Administrator) (06/12/2015 15:01:21)
~ Site : http://www.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Scanner
~ Report : C:\Users\PC-Nicolas2\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\PC-Nicolas2\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)


---\\ Service. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Navigateur internet. (2)
TROUVÉ Chrome Secure Preferences: "http://www.cassiopessa.com/?f=7&a=csp_tuto16_15_49&=>PUP.Optional.Cassiopesa
TROUVÉ Chrome Secure Preferences: "http://www.oursurfing.com/?type=hp&ts=1449176123&z=2a518b52796aeae2f0db743g1z4zbt7g9mbq9gco6e&from=wscy2&uid=TOSHIBAXMQ01ABD075_3445PPBYTXX3445PPBYT" =>PUP.Optional.OurSurfing


---\\ Fichier hôte. (1)
~ Le fichier hôte est légitime. (21)


---\\ Tâche planifiée. (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Explorateur ( Dossiers, Fichiers ). (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Base de Registres ( Clés, Valeurs, Données ). (0)
~ Aucun élément malicieux ou superflu trouvé.


---\\ Récapitulatif des éléments trouvés sur votre station. (2)
http://www.nicolascoolman.fr/?p=2587 =>PUP.Optional.Cassiopesa
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.OurSurfing


---\\ Bilan de la réparation
~ Aucune réparation effectuée.
~ Ce navigateur est absent (Mozilla Firefox)
~ Ce navigateur est absent (Opera Software)


---\\ Statistiques
~ Items scannés : 88017
~ Items trouvés : 2
~ Items annulés : 0
~ Items réparés : 0


~ End of search in 4 minutes
===================
ZHPCleaner-[R]-03122015-22_20_07.txt
ZHPCleaner-[R]-04122015-23_02_48.txt
ZHPCleaner-[R]-05122015-21_30_02.txt
ZHPCleaner-[S]-03122015-22_16_45.txt
ZHPCleaner-[S]-04122015-23_02_26.txt
ZHPCleaner-[S]-05122015-02_01_03.txt
ZHPCleaner-[S]-05122015-21_29_20.txt
ZHPCleaner-[S]-06122015-15_05_32.txt

 

Winx

Avatar de Winx
27902 messages
No-Life
No-Life
AidoHardware
AidoHardware
AidoAntivirus
AidoAntivirus
AidoWindows
AidoWindows

Lien direct Le 06 Décembre 2015 à 19h27

Hello,hi, bonjour Hello

je voudrais une explication logique a tous ces rapports depuis le 03/12/15, dont 3 rapports en lecture et 5 en suppression ?


Citation

ZHPCleaner-[R]-03122015-22_20_07.txt
ZHPCleaner-[R]-04122015-23_02_48.txt
ZHPCleaner-[R]-05122015-21_30_02.txt
ZHPCleaner-[S]-03122015-22_16_45.txt
ZHPCleaner-[S]-04122015-23_02_26.txt
ZHPCleaner-[S]-05122015-02_01_03.txt
ZHPCleaner-[S]-05122015-21_29_20.txt
ZHPCleaner-[S]-06122015-15_05_32.txt

Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
 

Nicolas18041

Avatar de Nicolas18041
35 messages
Disquette
Disquette

Lien direct Le 06 Décembre 2015 à 19h36

Aucune, j'ai formater mon pc hier.

C'est grave ?

 

Nicolas18041

Avatar de Nicolas18041
35 messages
Disquette
Disquette

Lien direct Le 08 Décembre 2015 à 20h08

Plus de réponse ?

 

<<<1>>>

[Page 1 sur 1 - 8 messages]