Computer has been freaking out lately. Couldn't go on certain web pages at first, then I could but it took 5 minutes to load one page and now my browser keeps closing and opening on it's own. I did scans, nothing turned up on them so I turned to this instead. Hope you can help.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-11-2015
Ran by Stéphane (administrator) on POPSY (01-12-2015 00:00:57)
Running from C:\Users\Stéphane\Downloads
Loaded Profiles: Stéphane (Available Profiles: Stéphane & Administrator)
Platform: Windows 8.1 (X64) Language: Anglais (États-Unis)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe
(McAfee, Inc.) C:\WINDOWS\System32\mfevtps.exe
(McAfee, Inc.) C:\WINDOWS\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\WINDOWS\System32\SkyDrive.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\WINDOWS\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\WINDOWS\System32\WWAHost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [719272 2015-04-02] (McAfee, Inc.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [132736 2013-07-31] (Qualcomm®Atheros®)
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Dropbox Update] => "C:\Users\Stéphane\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Itibiti.exe] => C:\Program Files (x86)\Itibiti Soft Phone\Itibiti.exe
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Birds] => C:\Users\Stéphane\AppData\Local\Birds\birds365.exe
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11776 2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-09]
ShortcutTarget: Dropbox.lnk -> C:\Users\Stéphane\AppData\Roaming\Dropbox\bin\Dropbox.exe (No File)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk.disabled [2014-07-09]
ShortcutTarget: OpenOffice.org 3.1.lnk.disabled -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-11-28]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Stéphane\AppData\Local\SmartWeb\SmartWebHelper.exe (No File)
CHR HKU\S-1-5-21-2305276200-880437817-2703856125-1001\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{3A65BCD6-CC51-4BE8-8E69-0A8595F1340A}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{7240100B-9783-4000-9EBE-35DA510ECDC7}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ca/
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,DisableRequiresActiveXPrompt = www.moviestarplanet.ca
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.palikan.com/results.php?f=4&q={searchTerms}&a=plk_popjar_15_48_ssg06&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCyEtByBtN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDtCzzzyyD0DtDtAtGyD0ByD0EtGyE0EtB0BtGtDzz0B0DtGzzyB0BzyyBtAyB0Fzz0E0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN0A0LzuyE&cr=1126545279&ir=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3325281&octid=EB_ORIGINAL_CTID&ISID=IFD73A98B-0D91-4F1C-9BE9-CC2BCB9A60C7&SearchSource=58&CUI=&UM=8&UP=SPF00348D6-0D21-4E26-9BB1-636B8C8B028E&D=112815&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL =
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {6586d803-df30-46d3-a89a-4136c8571d45} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {66257AB4-CB2A-4DAB-9E04-7BB72463D9EB} URL = hxxp://binkiland.com/results.php?f=4&q={searchTerms}&a=bnk_dstndrm_15_11&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCtCyCyEtN1L2XzutAtFzztFtAtFyEtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StAtC0AtD0A0E0DtCtG0BtC0A0EtG0BtC0B0FtGtAyC0B0AtGyEyEtCyDzy0A0F0F0AtD0A0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN1B2Z1V1T1S1NzuyDzztA&cr=1349387303&ir=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.palikan.com/results.php?f=4&q={searchTerms}&a=plk_popjar_15_48_ssg06&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCyEtByBtN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDtCzzzyyD0DtDtAtGyD0ByD0EtGyE0EtB0BtGtDzz0B0DtGzzyB0BzyyBtAyB0Fzz0E0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN0A0LzuyE&cr=1126545279&ir=
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2013-07-31] (Qualcomm®Atheros®)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-04-07] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-04-07] (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\Stéphane\AppData\Roaming\Mozilla\Firefox\Profiles\ne3tnxqz.Meow
FF Homepage: hxxps://www.google.ca/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&ved=0ahUKEwj5vY_Y6rnJAhWD6x4KHScdBNQQFggcMAA&url=https%3A%2F%2Fwww.google.fr%2F&usg=AFQjCNGdHlVoNRlBX2ykwfj-cD_jxplLog
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-30] ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin HKU\S-1-5-21-2305276200-880437817-2703856125-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Stéphane\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-11-03]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-11-29] [not signed]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-29]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-29]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-31] (Windows (R) Win 7 DDK provider) [File not signed]
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2574168 2015-09-11] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201560 2015-09-11] (Dell Inc.)
S4 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [139328 2014-02-19] (Aviata, Inc.)
S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [149496 2014-01-15] (Dell Inc.)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
S4 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-01-17] ()
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
S4 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [157928 2015-11-13] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [753768 2015-04-07] (McAfee, Inc.)
S4 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.)
R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [207344 2015-06-04] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [612688 2015-04-09] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-02-17] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [372144 2015-04-06] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [250672 2015-02-17] (McAfee, Inc.)
S4 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 My Dell Client Framework; C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.ClientFramework.exe [168960 2014-01-10] (Dell Inc.) [File not signed]
S4 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor)
S4 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [2005392 2015-02-12] (SoftThinks SAS)
S4 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [21160 2015-09-30] (Dell Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
S4 WysePocketCloud; C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe [16176 2013-08-22] ()
S4 WyseRemoteAccess; C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe [1785344 2013-08-19] (DELL Inc.) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3837440 2013-08-08] (Qualcomm Atheros Communications, Inc.)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-07-30] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-06-20] (Microsoft Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [68784 2015-02-17] (McAfee, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2015-09-11] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-09-11] (Dell Computer Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [401736 2015-02-17] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [337888 2015-02-17] (McAfee, Inc.)
R0 mfedisk; C:\Windows\System32\DRIVERS\mfedisk.sys [101872 2015-02-17] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [488000 2015-02-17] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [864072 2015-02-17] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [482600 2015-01-16] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [100720 2015-01-16] (McAfee, Inc.)
S3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-11-13] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340448 2015-02-17] (McAfee, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-01 00:00 - 2015-12-01 00:01 - 00019172 _____ C:\Users\Stéphane\Downloads\FRST.txt
2015-12-01 00:00 - 2015-12-01 00:00 - 02350080 _____ (Farbar) C:\Users\Stéphane\Downloads\FRST64.exe
2015-12-01 00:00 - 2015-12-01 00:00 - 00000000 ____D C:\FRST
2015-11-30 23:59 - 2015-11-30 23:59 - 01721344 _____ (Farbar) C:\Users\Stéphane\Downloads\FRST.exe
2015-11-30 22:44 - 2015-11-30 22:44 - 00000000 ___RD C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-11-30 13:35 - 2015-11-30 13:36 - 00000629 _____ C:\Users\Stéphane\Desktop\Se7en.txt
2015-11-30 12:09 - 2015-11-30 12:09 - 00000000 ____D C:\Users\Stéphane\Desktop\Anciennes données de Firefox
2015-11-30 11:21 - 2015-11-30 11:21 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Macromedia
2015-11-30 11:19 - 2015-11-30 11:20 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Adobe
2015-11-29 22:21 - 2015-11-30 11:22 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Mozilla
2015-11-29 22:21 - 2015-11-29 22:22 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Mozilla
2015-11-29 22:21 - 2015-11-29 22:21 - 00243992 _____ C:\Users\Stéphane\Downloads\Firefox Setup Stub 42.0.exe
2015-11-29 22:21 - 2015-11-29 22:21 - 00001173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-11-29 22:21 - 2015-11-29 22:21 - 00001161 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-11-29 22:21 - 2015-11-29 22:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-29 22:21 - 2015-11-29 22:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-29 22:12 - 2015-11-29 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2015-11-29 21:34 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
2015-11-29 11:18 - 2015-11-29 11:18 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-11-29 09:13 - 2015-11-29 09:13 - 00003818 _____ C:\Windows\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2015-11-29 09:13 - 2015-11-29 09:13 - 00000000 __HDC C:\ProgramData\{AA6BF06E-316C-487A-9BC2-5F06A43C56B1}
2015-11-29 09:12 - 2015-11-29 09:43 - 00000000 ____D C:\ProgramData\SupportAssistAgent
2015-11-29 09:10 - 2015-11-29 09:13 - 00000000 ____D C:\Program Files\Dell
2015-11-29 09:10 - 2015-11-29 09:10 - 00004030 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
2015-11-29 09:10 - 2015-11-29 09:10 - 00003484 _____ C:\Windows\System32\Tasks\PCDEventLauncherTask
2015-11-29 09:10 - 2015-11-29 09:10 - 00003218 _____ C:\Windows\System32\Tasks\SystemToolsDailyTest
2015-11-29 09:10 - 2015-11-29 09:10 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows
2015-11-29 09:10 - 2015-11-29 09:10 - 00000000 ____D C:\Program Files\Dell Support Center
2015-11-29 09:08 - 2015-11-29 09:10 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\PCDr
2015-11-28 19:19 - 2015-11-28 19:19 - 00003344 _____ C:\Windows\System32\Tasks\McAfee Remediation (Prepare)
2015-11-28 19:19 - 2015-11-28 19:19 - 00000000 ____D C:\Program Files\Common Files\AV
2015-11-28 18:56 - 2015-11-28 18:56 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-11-28 18:56 - 2015-11-28 18:56 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Macromedia
2015-11-28 18:54 - 2015-11-28 18:54 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Adobe
2015-11-28 18:50 - 2015-11-30 11:13 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2305276200-880437817-2703856125-1001
2015-11-28 18:49 - 2015-11-28 18:49 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Aviata
2015-11-28 18:47 - 2015-11-28 18:47 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Intel Corporation
2015-11-28 18:46 - 2015-11-28 18:46 - 00000000 ____D C:\Users\Stéphane\Documents\Bluetooth Folder
2015-11-28 18:46 - 2015-11-28 18:46 - 00000000 ____D C:\Users\Stéphane\AppData\Local\BMExplorer
2015-11-28 18:45 - 2015-11-30 22:43 - 00000000 __RDO C:\Users\Stéphane\OneDrive
2015-11-28 18:45 - 2015-11-28 18:46 - 00000000 ____D C:\ProgramData\Atheros
2015-11-28 18:45 - 2015-11-28 18:45 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-11-28 18:45 - 2015-11-28 18:45 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Atheros
2015-11-28 18:43 - 2015-11-30 08:17 - 00000000 ____D C:\Users\Stéphane\AppData\Local\CrashDumps
2015-11-28 18:42 - 2015-11-28 18:42 - 00000000 __SHD C:\System Recovery
2015-11-28 18:42 - 2015-11-28 18:42 - 00000000 ____D C:\Program Files (x86)\Dell Digital Delivery
2015-11-28 18:41 - 2015-11-28 18:41 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Power2Go8
2015-11-28 18:40 - 2015-11-28 18:57 - 00000000 __SHD C:\Users\Stéphane\AppData\Local\EmieUserList
2015-11-28 18:40 - 2015-11-28 18:57 - 00000000 __SHD C:\Users\Stéphane\AppData\Local\EmieSiteList
2015-11-28 18:40 - 2015-11-28 18:40 - 00000000 ____D C:\Windows\System32\Tasks\GenericSettingsHandler
2015-11-28 18:39 - 2015-11-28 18:39 - 00000020 ___SH C:\Users\Stéphane\ntuser.ini
2015-11-28 18:27 - 2015-11-28 18:27 - 00000030 _____ C:\20151128164011_BACKUPMIGRATION_STATUS.INI
2015-11-28 18:25 - 2015-04-05 11:00 - 00465640 ___SH (SoftThinks SAS) C:\Users\Stéphane\AppData\Local\SDSRepStore.exe
2015-11-28 18:25 - 2015-04-05 11:00 - 00041496 ___SH C:\Users\Stéphane\AppData\Local\SDSRepStore.xml
2015-11-28 18:25 - 2015-04-05 11:00 - 00000567 ___SH C:\Users\Stéphane\AppData\Local\SDSAppxReg.ps1
2015-11-28 18:16 - 2015-11-28 18:45 - 00000000 ____D C:\Users\Stéphane\OneDrive (2).old
2015-11-28 18:16 - 2015-11-28 18:16 - 00000000 ____D C:\Users\Stéphane\OneDrive.old
2015-11-28 18:15 - 2015-11-28 18:16 - 00000000 ____D C:\Users\Stéphane\Dropbox
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\Users\Public\AccountPictures
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\uninst
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\KOGGAMES
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\20151127073800_BACKUP
2015-11-28 18:07 - 2015-11-30 11:07 - 00000000 ____D C:\Users\Stéphane\Desktop\torrent
2015-11-28 18:06 - 2015-11-28 18:07 - 00000000 ____D C:\Users\Stéphane\Desktop\Photos
2015-11-28 18:06 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\muzik
2015-11-28 18:06 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\Juliette Folder
2015-11-28 18:05 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\Isabelle
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Documents\Wondershare DVD Creator
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Documents\CyberLink
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Desktop\horaire bus
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Desktop\DIVERS
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\My Documents
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2015-11-28 18:01 - 2015-11-29 22:16 - 00000000 ____D C:\ProgramData\SoftThinks
2015-11-28 17:48 - 2015-11-28 17:48 - 00000000 ____D C:\Windows\SMINST
2015-11-28 17:40 - 2015-11-28 17:41 - 00001817 _____ C:\Users\Stéphane\Desktop\all.txt
2015-11-28 16:40 - 2015-11-28 18:26 - 00000000 ____D C:\20151128164011_BACKUP
2015-11-28 00:35 - 2015-11-29 22:15 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-11-28 00:35 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Company
2015-11-28 00:35 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2015-11-27 17:07 - 2015-11-27 17:07 - 00000025 _____ C:\Users\Stéphane\Desktop\serial number bMafee.txt
2015-11-27 14:39 - 2015-11-27 10:20 - 00000000 _____ C:\Recovery.txt
2015-11-21 23:50 - 2015-11-21 23:51 - 00000081 _____ C:\Users\Stéphane\Desktop\Cyrano de Bergerac.txt
2015-11-09 19:28 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-06 23:13 - 2015-11-06 23:13 - 00730062 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés temporaires(1).pdf
2015-11-06 20:52 - 2015-11-06 20:52 - 00730062 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés temporaires.pdf
2015-11-06 20:48 - 2015-11-06 20:48 - 01065463 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés Réguliers(1).pdf
2015-11-06 20:47 - 2015-11-06 20:47 - 01065463 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés Réguliers.pdf
2015-11-04 22:05 - 2015-11-04 22:05 - 00688891 _____ C:\Users\Stéphane\Downloads\37fb2339-7846-489b-a94c-edcac4362f5b.PDF
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-01 00:00 - 2013-08-22 08:36 - 00000000 ____D C:\WINDOWS
2015-11-30 17:35 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\system32\NDF
2015-11-30 10:08 - 2014-06-20 20:44 - 01827432 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-30 10:08 - 2013-08-29 08:05 - 00810364 _____ C:\Windows\system32\perfh00C.dat
2015-11-30 10:08 - 2013-08-29 08:05 - 00159310 _____ C:\Windows\system32\perfc00C.dat
2015-11-30 10:08 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\Inf
2015-11-30 10:03 - 2013-08-22 09:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-30 10:03 - 2013-08-22 08:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-11-29 22:16 - 2014-06-20 21:07 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2015-11-29 21:58 - 2014-06-20 21:04 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-11-29 21:34 - 2014-06-20 21:04 - 00000000 ____D C:\Program Files\Common Files\mcafee
2015-11-29 21:34 - 2013-08-22 10:36 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-11-29 21:34 - 2013-08-22 08:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-11-29 09:12 - 2014-06-20 21:10 - 00000000 ____D C:\Program Files (x86)\Dell
2015-11-29 09:10 - 2014-06-20 21:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-11-29 09:10 - 2014-06-20 21:04 - 00000000 ____D C:\ProgramData\PCDr
2015-11-29 00:38 - 2014-06-20 21:04 - 00000000 ____D C:\ProgramData\McAfee
2015-11-29 00:09 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\rescache
2015-11-28 19:40 - 2013-08-22 10:36 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-28 19:34 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\AppReadiness
2015-11-28 19:12 - 2013-08-22 09:44 - 00344624 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-28 18:45 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane
2015-11-28 18:44 - 2014-06-20 20:54 - 00000000 ____D C:\ProgramData\Intel
2015-11-28 18:19 - 2014-06-20 20:34 - 00000000 ____D C:\Windows\Panther
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\WinStore
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\vpnplugins
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\FileManager
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\Camera
2015-11-28 18:19 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\system32\oobe
2015-11-28 18:17 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Packages
2015-11-28 18:03 - 2015-08-26 15:09 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Oracle
2015-11-28 18:03 - 2015-06-11 17:13 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Sun
2015-11-28 18:03 - 2015-02-19 14:48 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\RbxLogs
2015-11-28 18:03 - 2014-10-22 17:39 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Adobe
2015-11-28 18:03 - 2014-09-27 14:41 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-11-28 18:03 - 2014-07-15 14:40 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Unity
2015-11-28 18:03 - 2014-07-10 15:05 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Temp
2015-11-28 18:03 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane\AppData\Local\VirtualStore
2015-11-27 17:22 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\system32\SMI
2015-11-25 23:32 - 2015-02-19 14:48 - 00000247 _____ C:\Users\Stéphane\AppData\LocalLow\rbxcsettings.rbx
==================== Files in the root of some directories =======
2015-11-28 18:25 - 2015-04-05 11:00 - 0000567 ___SH () C:\Users\Stéphane\AppData\Local\SDSAppxReg.ps1
2015-11-28 18:25 - 2015-04-05 11:00 - 0465640 ___SH (SoftThinks SAS) C:\Users\Stéphane\AppData\Local\SDSRepStore.exe
2015-11-28 18:46 - 2015-11-28 19:28 - 0052510 ___SH () C:\Users\Stéphane\AppData\Local\SDSRepStore.exe.SDS.LOG
2015-11-28 18:25 - 2015-04-05 11:00 - 0041496 ___SH () C:\Users\Stéphane\AppData\Local\SDSRepStore.xml
2014-06-20 20:30 - 2014-06-20 20:30 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-06-20 21:03 - 2014-06-20 21:03 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2014-06-20 21:01 - 2014-06-20 21:01 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2014-06-20 21:01 - 2014-06-20 21:02 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2014-06-20 21:02 - 2014-06-20 21:03 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2014-06-20 21:01 - 2014-06-20 21:01 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-28 19:40
==================== End of FRST.txt ============================
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-11-2015
Ran by Stéphane (administrator) on POPSY (01-12-2015 00:00:57)
Running from C:\Users\Stéphane\Downloads
Loaded Profiles: Stéphane (Available Profiles: Stéphane & Administrator)
Platform: Windows 8.1 (X64) Language: Anglais (États-Unis)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe
(McAfee, Inc.) C:\WINDOWS\System32\mfevtps.exe
(McAfee, Inc.) C:\WINDOWS\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\WINDOWS\System32\SkyDrive.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\WINDOWS\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\WINDOWS\System32\WWAHost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [719272 2015-04-02] (McAfee, Inc.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [132736 2013-07-31] (Qualcomm®Atheros®)
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Dropbox Update] => "C:\Users\Stéphane\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Itibiti.exe] => C:\Program Files (x86)\Itibiti Soft Phone\Itibiti.exe
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\...\Run: [Birds] => C:\Users\Stéphane\AppData\Local\Birds\birds365.exe
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11776 2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-11-09]
ShortcutTarget: Dropbox.lnk -> C:\Users\Stéphane\AppData\Roaming\Dropbox\bin\Dropbox.exe (No File)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk.disabled [2014-07-09]
ShortcutTarget: OpenOffice.org 3.1.lnk.disabled -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (No File)
Startup: C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-11-28]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Stéphane\AppData\Local\SmartWeb\SmartWebHelper.exe (No File)
CHR HKU\S-1-5-21-2305276200-880437817-2703856125-1001\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{3A65BCD6-CC51-4BE8-8E69-0A8595F1340A}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{7240100B-9783-4000-9EBE-35DA510ECDC7}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ca/
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,DisableRequiresActiveXPrompt = www.moviestarplanet.ca
HKU\S-1-5-21-2305276200-880437817-2703856125-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.palikan.com/results.php?f=4&q={searchTerms}&a=plk_popjar_15_48_ssg06&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCyEtByBtN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDtCzzzyyD0DtDtAtGyD0ByD0EtGyE0EtB0BtGtDzz0B0DtGzzyB0BzyyBtAyB0Fzz0E0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN0A0LzuyE&cr=1126545279&ir=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3325281&octid=EB_ORIGINAL_CTID&ISID=IFD73A98B-0D91-4F1C-9BE9-CC2BCB9A60C7&SearchSource=58&CUI=&UM=8&UP=SPF00348D6-0D21-4E26-9BB1-636B8C8B028E&D=112815&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL =
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {6586d803-df30-46d3-a89a-4136c8571d45} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {66257AB4-CB2A-4DAB-9E04-7BB72463D9EB} URL = hxxp://binkiland.com/results.php?f=4&q={searchTerms}&a=bnk_dstndrm_15_11&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCtCyCyEtN1L2XzutAtFzztFtAtFyEtN1L1CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StAtC0AtD0A0E0DtCtG0BtC0A0EtG0BtC0B0FtGtAyC0B0AtGyEyEtCyDzy0A0F0F0AtD0A0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN1B2Z1V1T1S1NzuyDzztA&cr=1349387303&ir=
SearchScopes: HKU\S-1-5-21-2305276200-880437817-2703856125-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.palikan.com/results.php?f=4&q={searchTerms}&a=plk_popjar_15_48_ssg06&cd=2XzuyEtN2Y1L1QzuzytDyEzzzy0Azz0B0ByC0EzytAtC0DzytN0D0Tzu0StCyEtByBtN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StDtCzzzyyD0DtDtAtGyD0ByD0EtGyE0EtB0BtGtDzz0B0DtGzzyB0BzyyBtAyB0Fzz0E0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyCyDtAyByBtCtC0FtGzz0FyB0AtGyEzztDzytG0A0E0FtAtGyEzy0FyBzzyB0B0F0ByByCzz2QtN0A0LzuyE&cr=1126545279&ir=
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2013-07-31] (Qualcomm®Atheros®)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-04-07] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-04-07] (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\Stéphane\AppData\Roaming\Mozilla\Firefox\Profiles\ne3tnxqz.Meow
FF Homepage: hxxps://www.google.ca/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&ved=0ahUKEwj5vY_Y6rnJAhWD6x4KHScdBNQQFggcMAA&url=https%3A%2F%2Fwww.google.fr%2F&usg=AFQjCNGdHlVoNRlBX2ykwfj-cD_jxplLog
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-30] ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin HKU\S-1-5-21-2305276200-880437817-2703856125-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Stéphane\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-11-03]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-11-29] [not signed]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-29]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-29]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-31] (Windows (R) Win 7 DDK provider) [File not signed]
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2574168 2015-09-11] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201560 2015-09-11] (Dell Inc.)
S4 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [139328 2014-02-19] (Aviata, Inc.)
S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [149496 2014-01-15] (Dell Inc.)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
S4 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-01-17] ()
S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
S4 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [157928 2015-11-13] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [753768 2015-04-07] (McAfee, Inc.)
S4 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-24] (McAfee, Inc.)
R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [207344 2015-06-04] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [612688 2015-04-09] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-02-17] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [372144 2015-04-06] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [250672 2015-02-17] (McAfee, Inc.)
S4 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S4 My Dell Client Framework; C:\Program Files (x86)\Dell\My Dell Client Framework\Dell.ClientFramework.exe [168960 2014-01-10] (Dell Inc.) [File not signed]
S4 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor)
S4 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [2005392 2015-02-12] (SoftThinks SAS)
S4 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [21160 2015-09-30] (Dell Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
S4 WysePocketCloud; C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe [16176 2013-08-22] ()
S4 WyseRemoteAccess; C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe [1785344 2013-08-19] (DELL Inc.) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3837440 2013-08-08] (Qualcomm Atheros Communications, Inc.)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-07-30] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-06-20] (Microsoft Corporation)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [68784 2015-02-17] (McAfee, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2015-09-11] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-09-11] (Dell Computer Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [401736 2015-02-17] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [337888 2015-02-17] (McAfee, Inc.)
R0 mfedisk; C:\Windows\System32\DRIVERS\mfedisk.sys [101872 2015-02-17] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [488000 2015-02-17] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [864072 2015-02-17] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [482600 2015-01-16] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [100720 2015-01-16] (McAfee, Inc.)
S3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-11-13] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340448 2015-02-17] (McAfee, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-01 00:00 - 2015-12-01 00:01 - 00019172 _____ C:\Users\Stéphane\Downloads\FRST.txt
2015-12-01 00:00 - 2015-12-01 00:00 - 02350080 _____ (Farbar) C:\Users\Stéphane\Downloads\FRST64.exe
2015-12-01 00:00 - 2015-12-01 00:00 - 00000000 ____D C:\FRST
2015-11-30 23:59 - 2015-11-30 23:59 - 01721344 _____ (Farbar) C:\Users\Stéphane\Downloads\FRST.exe
2015-11-30 22:44 - 2015-11-30 22:44 - 00000000 ___RD C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2015-11-30 13:35 - 2015-11-30 13:36 - 00000629 _____ C:\Users\Stéphane\Desktop\Se7en.txt
2015-11-30 12:09 - 2015-11-30 12:09 - 00000000 ____D C:\Users\Stéphane\Desktop\Anciennes données de Firefox
2015-11-30 11:21 - 2015-11-30 11:21 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Macromedia
2015-11-30 11:19 - 2015-11-30 11:20 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Adobe
2015-11-29 22:21 - 2015-11-30 11:22 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Mozilla
2015-11-29 22:21 - 2015-11-29 22:22 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Mozilla
2015-11-29 22:21 - 2015-11-29 22:21 - 00243992 _____ C:\Users\Stéphane\Downloads\Firefox Setup Stub 42.0.exe
2015-11-29 22:21 - 2015-11-29 22:21 - 00001173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-11-29 22:21 - 2015-11-29 22:21 - 00001161 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-11-29 22:21 - 2015-11-29 22:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-29 22:21 - 2015-11-29 22:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-29 22:12 - 2015-11-29 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2015-11-29 21:34 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
2015-11-29 11:18 - 2015-11-29 11:18 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-11-29 09:13 - 2015-11-29 09:13 - 00003818 _____ C:\Windows\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2015-11-29 09:13 - 2015-11-29 09:13 - 00000000 __HDC C:\ProgramData\{AA6BF06E-316C-487A-9BC2-5F06A43C56B1}
2015-11-29 09:12 - 2015-11-29 09:43 - 00000000 ____D C:\ProgramData\SupportAssistAgent
2015-11-29 09:10 - 2015-11-29 09:13 - 00000000 ____D C:\Program Files\Dell
2015-11-29 09:10 - 2015-11-29 09:10 - 00004030 _____ C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
2015-11-29 09:10 - 2015-11-29 09:10 - 00003484 _____ C:\Windows\System32\Tasks\PCDEventLauncherTask
2015-11-29 09:10 - 2015-11-29 09:10 - 00003218 _____ C:\Windows\System32\Tasks\SystemToolsDailyTest
2015-11-29 09:10 - 2015-11-29 09:10 - 00000000 ____D C:\ProgramData\PC-Doctor for Windows
2015-11-29 09:10 - 2015-11-29 09:10 - 00000000 ____D C:\Program Files\Dell Support Center
2015-11-29 09:08 - 2015-11-29 09:10 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\PCDr
2015-11-28 19:19 - 2015-11-28 19:19 - 00003344 _____ C:\Windows\System32\Tasks\McAfee Remediation (Prepare)
2015-11-28 19:19 - 2015-11-28 19:19 - 00000000 ____D C:\Program Files\Common Files\AV
2015-11-28 18:56 - 2015-11-28 18:56 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-11-28 18:56 - 2015-11-28 18:56 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Macromedia
2015-11-28 18:54 - 2015-11-28 18:54 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Adobe
2015-11-28 18:50 - 2015-11-30 11:13 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2305276200-880437817-2703856125-1001
2015-11-28 18:49 - 2015-11-28 18:49 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Aviata
2015-11-28 18:47 - 2015-11-28 18:47 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Intel Corporation
2015-11-28 18:46 - 2015-11-28 18:46 - 00000000 ____D C:\Users\Stéphane\Documents\Bluetooth Folder
2015-11-28 18:46 - 2015-11-28 18:46 - 00000000 ____D C:\Users\Stéphane\AppData\Local\BMExplorer
2015-11-28 18:45 - 2015-11-30 22:43 - 00000000 __RDO C:\Users\Stéphane\OneDrive
2015-11-28 18:45 - 2015-11-28 18:46 - 00000000 ____D C:\ProgramData\Atheros
2015-11-28 18:45 - 2015-11-28 18:45 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-11-28 18:45 - 2015-11-28 18:45 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Atheros
2015-11-28 18:43 - 2015-11-30 08:17 - 00000000 ____D C:\Users\Stéphane\AppData\Local\CrashDumps
2015-11-28 18:42 - 2015-11-28 18:42 - 00000000 __SHD C:\System Recovery
2015-11-28 18:42 - 2015-11-28 18:42 - 00000000 ____D C:\Program Files (x86)\Dell Digital Delivery
2015-11-28 18:41 - 2015-11-28 18:41 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Power2Go8
2015-11-28 18:40 - 2015-11-28 18:57 - 00000000 __SHD C:\Users\Stéphane\AppData\Local\EmieUserList
2015-11-28 18:40 - 2015-11-28 18:57 - 00000000 __SHD C:\Users\Stéphane\AppData\Local\EmieSiteList
2015-11-28 18:40 - 2015-11-28 18:40 - 00000000 ____D C:\Windows\System32\Tasks\GenericSettingsHandler
2015-11-28 18:39 - 2015-11-28 18:39 - 00000020 ___SH C:\Users\Stéphane\ntuser.ini
2015-11-28 18:27 - 2015-11-28 18:27 - 00000030 _____ C:\20151128164011_BACKUPMIGRATION_STATUS.INI
2015-11-28 18:25 - 2015-04-05 11:00 - 00465640 ___SH (SoftThinks SAS) C:\Users\Stéphane\AppData\Local\SDSRepStore.exe
2015-11-28 18:25 - 2015-04-05 11:00 - 00041496 ___SH C:\Users\Stéphane\AppData\Local\SDSRepStore.xml
2015-11-28 18:25 - 2015-04-05 11:00 - 00000567 ___SH C:\Users\Stéphane\AppData\Local\SDSAppxReg.ps1
2015-11-28 18:16 - 2015-11-28 18:45 - 00000000 ____D C:\Users\Stéphane\OneDrive (2).old
2015-11-28 18:16 - 2015-11-28 18:16 - 00000000 ____D C:\Users\Stéphane\OneDrive.old
2015-11-28 18:15 - 2015-11-28 18:16 - 00000000 ____D C:\Users\Stéphane\Dropbox
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\Users\Public\AccountPictures
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\uninst
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\KOGGAMES
2015-11-28 18:15 - 2015-11-28 18:15 - 00000000 ____D C:\20151127073800_BACKUP
2015-11-28 18:07 - 2015-11-30 11:07 - 00000000 ____D C:\Users\Stéphane\Desktop\torrent
2015-11-28 18:06 - 2015-11-28 18:07 - 00000000 ____D C:\Users\Stéphane\Desktop\Photos
2015-11-28 18:06 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\muzik
2015-11-28 18:06 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\Juliette Folder
2015-11-28 18:05 - 2015-11-28 18:06 - 00000000 ____D C:\Users\Stéphane\Desktop\Isabelle
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Documents\Wondershare DVD Creator
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Documents\CyberLink
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Desktop\horaire bus
2015-11-28 18:05 - 2015-11-28 18:05 - 00000000 ____D C:\Users\Stéphane\Desktop\DIVERS
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\My Documents
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2015-11-28 18:03 - 2015-11-28 18:03 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2015-11-28 18:01 - 2015-11-29 22:16 - 00000000 ____D C:\ProgramData\SoftThinks
2015-11-28 17:48 - 2015-11-28 17:48 - 00000000 ____D C:\Windows\SMINST
2015-11-28 17:40 - 2015-11-28 17:41 - 00001817 _____ C:\Users\Stéphane\Desktop\all.txt
2015-11-28 16:40 - 2015-11-28 18:26 - 00000000 ____D C:\20151128164011_BACKUP
2015-11-28 00:35 - 2015-11-29 22:15 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-11-28 00:35 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Company
2015-11-28 00:35 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\{D2020D47-707D-4E26-B4D9-739C4F4C2E9A}
2015-11-27 17:07 - 2015-11-27 17:07 - 00000025 _____ C:\Users\Stéphane\Desktop\serial number bMafee.txt
2015-11-27 14:39 - 2015-11-27 10:20 - 00000000 _____ C:\Recovery.txt
2015-11-21 23:50 - 2015-11-21 23:51 - 00000081 _____ C:\Users\Stéphane\Desktop\Cyrano de Bergerac.txt
2015-11-09 19:28 - 2015-11-28 18:03 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-11-06 23:13 - 2015-11-06 23:13 - 00730062 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés temporaires(1).pdf
2015-11-06 20:52 - 2015-11-06 20:52 - 00730062 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés temporaires.pdf
2015-11-06 20:48 - 2015-11-06 20:48 - 01065463 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés Réguliers(1).pdf
2015-11-06 20:47 - 2015-11-06 20:47 - 01065463 _____ C:\Users\Stéphane\Downloads\Liste d'ancienneté préliminaire au 30 juin 2015 - Employés Réguliers.pdf
2015-11-04 22:05 - 2015-11-04 22:05 - 00688891 _____ C:\Users\Stéphane\Downloads\37fb2339-7846-489b-a94c-edcac4362f5b.PDF
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-12-01 00:00 - 2013-08-22 08:36 - 00000000 ____D C:\WINDOWS
2015-11-30 17:35 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\system32\NDF
2015-11-30 10:08 - 2014-06-20 20:44 - 01827432 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-30 10:08 - 2013-08-29 08:05 - 00810364 _____ C:\Windows\system32\perfh00C.dat
2015-11-30 10:08 - 2013-08-29 08:05 - 00159310 _____ C:\Windows\system32\perfc00C.dat
2015-11-30 10:08 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\Inf
2015-11-30 10:03 - 2013-08-22 09:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-30 10:03 - 2013-08-22 08:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-11-29 22:16 - 2014-06-20 21:07 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2015-11-29 21:58 - 2014-06-20 21:04 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-11-29 21:34 - 2014-06-20 21:04 - 00000000 ____D C:\Program Files\Common Files\mcafee
2015-11-29 21:34 - 2013-08-22 10:36 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-11-29 21:34 - 2013-08-22 08:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-11-29 09:12 - 2014-06-20 21:10 - 00000000 ____D C:\Program Files (x86)\Dell
2015-11-29 09:10 - 2014-06-20 21:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-11-29 09:10 - 2014-06-20 21:04 - 00000000 ____D C:\ProgramData\PCDr
2015-11-29 00:38 - 2014-06-20 21:04 - 00000000 ____D C:\ProgramData\McAfee
2015-11-29 00:09 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\rescache
2015-11-28 19:40 - 2013-08-22 10:36 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-28 19:34 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\AppReadiness
2015-11-28 19:12 - 2013-08-22 09:44 - 00344624 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-28 18:45 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane
2015-11-28 18:44 - 2014-06-20 20:54 - 00000000 ____D C:\ProgramData\Intel
2015-11-28 18:19 - 2014-06-20 20:34 - 00000000 ____D C:\Windows\Panther
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\WinStore
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\vpnplugins
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\FileManager
2015-11-28 18:19 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\Camera
2015-11-28 18:19 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\system32\oobe
2015-11-28 18:17 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane\AppData\Local\Packages
2015-11-28 18:03 - 2015-08-26 15:09 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Oracle
2015-11-28 18:03 - 2015-06-11 17:13 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Sun
2015-11-28 18:03 - 2015-02-19 14:48 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\RbxLogs
2015-11-28 18:03 - 2014-10-22 17:39 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Adobe
2015-11-28 18:03 - 2014-09-27 14:41 - 00000000 ____D C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-11-28 18:03 - 2014-07-15 14:40 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Unity
2015-11-28 18:03 - 2014-07-10 15:05 - 00000000 ____D C:\Users\Stéphane\AppData\LocalLow\Temp
2015-11-28 18:03 - 2014-06-29 14:54 - 00000000 ____D C:\Users\Stéphane\AppData\Local\VirtualStore
2015-11-27 17:22 - 2013-08-22 08:36 - 00000000 ____D C:\Windows\system32\SMI
2015-11-25 23:32 - 2015-02-19 14:48 - 00000247 _____ C:\Users\Stéphane\AppData\LocalLow\rbxcsettings.rbx
==================== Files in the root of some directories =======
2015-11-28 18:25 - 2015-04-05 11:00 - 0000567 ___SH () C:\Users\Stéphane\AppData\Local\SDSAppxReg.ps1
2015-11-28 18:25 - 2015-04-05 11:00 - 0465640 ___SH (SoftThinks SAS) C:\Users\Stéphane\AppData\Local\SDSRepStore.exe
2015-11-28 18:46 - 2015-11-28 19:28 - 0052510 ___SH () C:\Users\Stéphane\AppData\Local\SDSRepStore.exe.SDS.LOG
2015-11-28 18:25 - 2015-04-05 11:00 - 0041496 ___SH () C:\Users\Stéphane\AppData\Local\SDSRepStore.xml
2014-06-20 20:30 - 2014-06-20 20:30 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-06-20 21:03 - 2014-06-20 21:03 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2014-06-20 21:01 - 2014-06-20 21:01 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2014-06-20 21:01 - 2014-06-20 21:02 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2014-06-20 21:02 - 2014-06-20 21:03 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2014-06-20 21:01 - 2014-06-20 21:01 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-28 19:40
==================== End of FRST.txt ============================
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~