Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2021
Exécuté par dbail (administrateur) sur DESKTOP-35954UG (Micro-Star International Co., Ltd. MS-7C80) (18-08-2021 17:32:46)
Exécuté depuis C:\Users\dbail\Desktop
Profils chargés: dbail
Platform: Windows 10 Home Version 20H2 19042.1165 (X64) Langue: Français (France)
Navigateur par défaut: Brave
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <14>
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\dbail\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\dbail\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WaaSMedicAgent.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5d5c294bb8d17217\Display.NvContainer\NVDisplay.Container.exe <2>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe <3>
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe <2>
(Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\CoreScanner.exe
(Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\HidKeyboardEmulator.exe
(Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\RSMDriverProviderService.exe
(Zebra Technologies) [Fichier non signé] C:\Program Files\Zebra Technologies\Barcode Scanners\Common\ScannerService.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01042bb7f11c17c4\RtkAudUService64.exe [1256824 2021-04-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942936 2018-11-02] (Logitech -> Logitech, Inc.)
HKU\S-1-5-21-1656184490-3149520006-3500268422-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443296 2021-07-31] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1656184490-3149520006-3500268422-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35062912 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1656184490-3149520006-3500268422-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [2270664 2021-08-10] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCS.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\Windows\system32\CNMLMCS.DLL [406528 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\92.0.11400.134\Installer\chrmstp.exe [2021-08-16] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\92.1.28.105\Installer\chrmstp.exe [2021-08-12] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Tâches planifiées (Avec liste blanche) ============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {015E9391-169F-4F87-9F90-3F801E362658} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {04DA0B35-D732-4DC2-A7F6-719AEA1BCDC7} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-12-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {0660A39B-1700-4091-B664-80BFB07FE871} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139112 2021-08-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {1CF5B999-9B3B-4D79-83E4-BEEBB504638D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29136000 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {20506E79-8E6A-413A-A21E-B76060DBA8F3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {20CEDFAC-780A-45E5-A41D-C84EC6913D61} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {26B22A1F-6560-45D4-B4E7-BA50AF9A877D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2ADA2786-DC37-4290-88BA-DA29FB01CFCC} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {39314310-95E2-463F-9BB7-B615FFF6416C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {39D8CBD0-65CA-4522-B259-FF33E1F79D19} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4DF27EF1-DE82-496C-84A4-2255868CB478} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-07-16] (Piriform Software Ltd -> Piriform)
Task: {5DB9DE04-D76B-4397-9494-7C1BE6630005} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-12-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {649E009B-D791-4C4B-9D18-FDFEE4712EDE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6CF029DF-C1F1-40C1-A96E-F98C0B0A82C2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {728A301F-51FC-4A03-A747-A1FE3135AA9C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139112 2021-08-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {8687FEAE-CB52-4EF8-8FF0-F4347E65A30F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9124D904-C2B2-4225-9101-983A84860B36} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {A5B90CD1-8526-4A7B-9F34-6D77558D25B1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {A9A0D177-0B8F-4956-82D7-924B2D0ED48B} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-24] (Piriform Software Ltd -> Piriform Software)
Task: {B6973C1F-F553-455D-953D-EB4213C1DF5C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B72F1374-878F-47F0-B18E-1EE35E78F3C0} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C3849F7D-2DEB-4FFD-8B72-95F2D431F7FE} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C4330DA0-99EE-4E1F-91C8-903586D6BC75} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C6496C17-24A5-4285-9DAD-24440619D813} - System32\Tasks\Eteindre le PC => shutdown /S
Task: {CCCBD0D6-09DB-4708-B4A9-5F887A0A61B1} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {D8674884-CE87-478C-8425-C2597BB10D42} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2287472 2021-08-12] (Piriform Software Ltd -> Piriform Software)
Task: {EDDDEB30-8023-41B8-BCDB-BE104894427F} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2287472 2021-08-12] (Piriform Software Ltd -> Piriform Software)
Task: {F1CB4869-3FD1-49C2-BFF0-F9039BF545F8} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-24] (Piriform Software Ltd -> Piriform Software)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{56c5c126-a6d7-49ad-b842-dd1a0ee31989}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{663d017c-0f23-496e-a4cf-b953c838895a}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{67fbdde5-b24e-4d35-a8e4-166f2fb6f179}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{773f7e5c-2388-4953-9ece-bdd77837eb93}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{8f842419-1aca-4c9a-af8b-884e649c2c98}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{957b085a-eba3-4ca4-a32f-cb024ec2f24d}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{a0de6861-e07f-445f-b847-84cfc9e623c9}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{cdf5d1aa-5751-43b6-a74e-5ce34e341f4d}: [DhcpNameServer] 192.168.120.250
Tcpip\..\Interfaces\{dfabb5d7-9c92-4932-bb23-ca419a34d5af}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fc886755-9df1-4a5b-8886-3c4641c6fdb8}: [DhcpNameServer] 192.168.120.250
Edge:
=======
Edge Profile: C:\Users\dbail\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-17]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-24] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-24] (Piriform Software Ltd -> Piriform Software)
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
Brave:
=======
BRA Profile: C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2021-08-18]
BRA Notifications: Default -> hxxps://ffxivteamcraft.com; hxxps://www.facebook.com; hxxps://www.netflix.com; hxxps://www.youtube.com
BRA DefaultSearchKeyword: Default -> :g
BRA Extension: (Brave Local Data Files Updater) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-08-10]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2021-08-18]
BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2021-08-18]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\ffopfgphnhgdkbnogedcfofdpfghgfbp [2021-05-24]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2021-06-30]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2021-08-18]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\dbail\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2021-08-18]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-12-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-12-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-24] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\92.0.11400.134\elevation_service.exe [1419240 2021-08-12] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-24] (Piriform Software Ltd -> Piriform Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9142128 2021-08-05] (Microsoft Corporation -> Microsoft Corporation)
R2 CoreScanner; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\CoreScanner.exe [690688 2019-09-19] (Zebra Technologies) [Fichier non signé]
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-08-06] (EasyAntiCheat Oy -> Epic Games, Inc)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10787232 2021-07-31] (Logitech Inc -> Logitech, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7269976 2020-12-07] (Malwarebytes Inc -> Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [9473408 2021-01-18] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2556048 2021-08-07] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3474584 2021-08-07] (Electronic Arts, Inc. -> Electronic Arts)
R2 rsmdriverproviderservice; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\RSMDriverProviderService.exe [136192 2019-09-23] (Zebra Technologies) [Fichier non signé]
R2 ScnSrvc; C:\Program Files\Zebra Technologies\Barcode Scanners\Common\ScannerService.exe [288256 2019-09-19] (Zebra Technologies) [Fichier non signé]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5d5c294bb8d17217\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5d5c294bb8d17217\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2020-11-19] (Microsoft Corporation) [Fichier non signé]
R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-07-31] (Logitech Inc -> Logitech)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44496 2021-07-31] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-19] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-19] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-19] (Logitech Inc -> Logitech)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220160 2020-12-07] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2020-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-12-07] (Malwarebytes Inc -> Malwarebytes)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49568 2021-08-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [434424 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-04] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2021-08-18 17:32 - 2021-08-18 17:36 - 000022870 _____ C:\Users\dbail\Desktop\FRST.txt
2021-08-18 17:30 - 2021-08-18 17:34 - 000000000 ____D C:\FRST
2021-08-18 17:29 - 2021-08-18 17:29 - 002300416 _____ (Farbar) C:\Users\dbail\Desktop\FRST64.exe
2021-08-18 17:27 - 2021-08-18 17:28 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2021-08-18 17:27 - 2021-08-18 17:27 - 004707136 _____ (Crystal Dew World ) C:\Users\dbail\Downloads\CrystalDiskInfo8_11_2.exe
2021-08-18 17:27 - 2021-08-18 17:27 - 000001839 _____ C:\Users\dbail\Desktop\CrystalDiskInfo.lnk
2021-08-18 17:27 - 2021-08-18 17:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2021-08-17 19:07 - 2021-08-17 19:07 - 000000112 ___SH C:\bootTel.dat
2021-08-17 19:07 - 2021-08-17 19:07 - 000000000 __SHD C:\found.000
2021-08-11 18:06 - 2021-08-11 18:06 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-08-11 18:06 - 2021-08-11 18:06 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-08-11 18:06 - 2021-08-11 18:06 - 001823280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-08-11 18:06 - 2021-08-11 18:06 - 001393480 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-08-11 18:06 - 2021-08-11 18:06 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2021-08-11 18:06 - 2021-08-11 18:06 - 000011347 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-08-11 18:05 - 2021-08-11 18:05 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2021-08-11 18:02 - 2021-08-11 18:02 - 000000000 ___HD C:\$WinREAgent
2021-08-07 08:47 - 2021-07-13 19:07 - 001858664 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2021-08-07 08:47 - 2021-07-13 19:07 - 001858664 _____ C:\Windows\system32\vulkaninfo.exe
2021-08-07 08:47 - 2021-07-13 19:07 - 001438824 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-08-07 08:47 - 2021-07-13 19:07 - 001438824 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2021-08-07 08:47 - 2021-07-13 19:07 - 001097856 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2021-08-07 08:47 - 2021-07-13 19:07 - 001097856 _____ C:\Windows\system32\vulkan-1.dll
2021-08-07 08:47 - 2021-07-13 19:07 - 000951936 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2021-08-07 08:47 - 2021-07-13 19:07 - 000951936 _____ C:\Windows\SysWOW64\vulkan-1.dll
2021-08-07 08:47 - 2021-07-13 19:06 - 001474704 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2021-08-07 08:47 - 2021-07-13 19:06 - 001212560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 001520776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 000716912 _____ C:\Windows\system32\nvofapi64.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 000676480 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 000645232 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 000577152 _____ C:\Windows\SysWOW64\nvofapi.dll
2021-08-07 08:47 - 2021-07-13 19:02 - 000564352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2021-08-07 08:47 - 2021-07-13 19:01 - 002112128 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2021-08-07 08:47 - 2021-07-13 19:01 - 001595520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2021-08-07 08:47 - 2021-07-13 19:01 - 001171072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2021-08-07 08:47 - 2021-07-13 19:01 - 000919168 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2021-08-07 08:47 - 2021-07-13 19:01 - 000706176 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2021-08-07 08:47 - 2021-07-13 19:00 - 008854144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2021-08-07 08:47 - 2021-07-13 19:00 - 007920768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2021-08-07 08:47 - 2021-07-13 19:00 - 005680760 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2021-08-07 08:47 - 2021-07-13 19:00 - 004987520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2021-08-07 08:47 - 2021-07-13 19:00 - 002925696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2021-08-07 08:47 - 2021-07-13 19:00 - 000447104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2021-08-07 08:47 - 2021-07-13 18:59 - 000849008 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2021-08-07 08:47 - 2021-07-13 18:57 - 006215792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2021-08-07 08:47 - 2021-07-12 13:32 - 000083062 _____ C:\Windows\system32\nvinfo.pb
2021-08-07 08:39 - 2021-08-07 08:39 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-08-07 08:38 - 2021-08-07 08:38 - 000000000 ____D C:\Program Files (x86)\Origin
2021-08-07 08:37 - 2021-08-13 19:27 - 000000000 ____D C:\Users\dbail\AppData\Roaming\Origin
2021-08-07 08:37 - 2021-08-13 18:27 - 000000000 ____D C:\Users\dbail\AppData\Local\Origin
2021-08-07 08:36 - 2021-08-07 08:37 - 063653408 _____ (Electronic Arts) C:\Users\dbail\Downloads\OriginThinSetup.exe
2021-08-07 08:27 - 2021-08-07 09:35 - 000000000 ____D C:\Users\dbail\AppData\Local\KnockoutCity
2021-08-03 21:56 - 2021-08-03 21:56 - 000000000 ____D C:\Users\dbail\AppData\Local\Ghostrunner
2021-08-01 09:30 - 2021-08-01 09:30 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-08-01 09:30 - 2021-08-01 09:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-08-01 09:30 - 2021-08-01 09:30 - 000000000 ____D C:\Program Files\LGHUB
2021-07-31 11:26 - 2021-07-31 11:26 - 002040296 _____ (Logitech) C:\Windows\system32\logi_audio_hx2e_render_apo.dll
2021-07-31 11:26 - 2021-07-31 11:26 - 000412312 _____ (Logitech) C:\Windows\system32\logi_audio_dts_studio_capture_apo.dll
2021-07-31 11:26 - 2021-07-31 11:26 - 000044496 _____ (Logitech) C:\Windows\system32\Drivers\logi_audio_surround.sys
2021-07-20 17:53 - 2021-07-20 17:54 - 000000000 ____D C:\Users\dbail\AppData\Local\Persona
2021-07-20 17:53 - 2021-07-20 17:53 - 000000000 ____D C:\Users\dbail\AppData\Roaming\AGS
2021-07-20 17:53 - 2021-07-20 17:53 - 000000000 ____D C:\Users\dbail\AppData\Local\AGS
==================== Un mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2021-08-18 17:28 - 2020-11-19 09:32 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-18 17:28 - 2020-11-19 09:32 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-08-18 17:27 - 2021-01-24 15:32 - 000000000 ____D C:\Program Files\CCleaner
2021-08-18 17:27 - 2020-12-07 23:43 - 000000000 ____D C:\ProgramData\NVIDIA
2021-08-18 17:26 - 2020-12-07 19:58 - 000000000 ____D C:\Users\dbail\AppData\Local\LGHUB
2021-08-18 17:26 - 2020-12-07 19:49 - 000000000 ___RD C:\Users\dbail\OneDrive
2021-08-18 17:25 - 2020-12-07 19:58 - 000000000 ____D C:\Users\dbail\AppData\Roaming\LGHUB
2021-08-18 00:22 - 2020-12-07 20:05 - 000000000 ____D C:\Users\dbail\AppData\Roaming\discord
2021-08-17 23:54 - 2020-12-07 20:05 - 000000000 ____D C:\Users\dbail\AppData\Local\Discord
2021-08-17 23:03 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-17 19:13 - 2020-11-28 13:05 - 001771594 _____ C:\Windows\system32\PerfStringBackup.INI
2021-08-17 19:13 - 2020-11-27 15:20 - 000791924 _____ C:\Windows\system32\perfh00C.dat
2021-08-17 19:13 - 2020-11-27 15:20 - 000150090 _____ C:\Windows\system32\perfc00C.dat
2021-08-17 19:13 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2021-08-17 19:09 - 2020-11-19 09:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-08-17 19:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2021-08-17 19:08 - 2020-11-28 12:59 - 000008192 ___SH C:\DumpStack.log.tmp
2021-08-17 18:58 - 2020-12-07 19:46 - 000000000 ____D C:\Users\dbail
2021-08-17 18:58 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
2021-08-17 18:57 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-08-17 18:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2021-08-17 18:47 - 2020-11-28 15:12 - 000000185 _____ C:\Windows\system32\symbscnr.log.bak
2021-08-17 18:47 - 2020-11-19 09:30 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-08-16 18:50 - 2021-01-24 15:33 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2021-08-16 18:50 - 2021-01-24 15:32 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2021-08-15 18:42 - 2021-01-04 12:37 - 000000000 ____D C:\Screenshots FF14
2021-08-15 11:03 - 2020-11-28 14:50 - 000000000 ____D C:\Program Files\Microsoft Office
2021-08-15 10:58 - 2020-12-07 19:49 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1656184490-3149520006-3500268422-1001
2021-08-15 10:58 - 2020-12-07 19:49 - 000002432 _____ C:\Users\dbail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-14 08:19 - 2020-11-19 09:32 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-08-13 21:30 - 2021-01-24 15:29 - 000000000 ____D C:\Users\dbail\AppData\Roaming\Twitch
2021-08-13 18:27 - 2021-02-23 00:13 - 000000000 ____D C:\ProgramData\Origin
2021-08-13 17:03 - 2020-12-07 19:50 - 000000000 ____D C:\Users\dbail\AppData\Local\PlaceholderTileLogoFolder
2021-08-13 17:03 - 2020-12-07 19:48 - 000000000 ____D C:\Users\dbail\AppData\Local\Packages
2021-08-12 17:57 - 2020-12-07 19:50 - 000002373 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2021-08-12 17:57 - 2020-12-07 19:50 - 000002332 _____ C:\Users\Public\Desktop\Brave.lnk
2021-08-12 00:06 - 2020-11-19 09:30 - 000439128 _____ C:\Windows\system32\FNTCACHE.DAT
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2021-08-12 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2021-08-12 00:05 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2021-08-11 18:07 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2021-08-11 18:02 - 2020-11-28 14:42 - 000000000 ____D C:\Windows\system32\MRT
2021-08-11 18:01 - 2020-11-28 14:42 - 133215968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-08-09 22:09 - 2020-12-30 11:50 - 000000000 ____D C:\Users\dbail\AppData\Roaming\Advanced Combat Tracker
2021-08-07 09:10 - 2020-12-17 22:48 - 000000000 ____D C:\Users\dbail\AppData\Roaming\EasyAntiCheat
2021-08-07 08:49 - 2020-12-07 23:43 - 000000000 ____D C:\Users\dbail\AppData\Local\NVIDIA
2021-08-07 08:48 - 2020-11-28 14:43 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-08-07 08:36 - 2020-12-07 23:22 - 000000000 ____D C:\Users\dbail\AppData\Local\CrashDumps
2021-08-07 08:26 - 2020-12-07 19:55 - 000000000 ____D C:\Users\dbail\AppData\Local\D3DSCache
2021-08-06 19:34 - 2021-02-22 14:36 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-08-04 18:05 - 2020-11-19 09:30 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-08-02 18:15 - 2021-01-24 12:06 - 000000000 ____D C:\Program Files\Genshin Impact
2021-07-30 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-07-20 17:46 - 2021-01-24 15:32 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
==================== Fichiers à la racine de certains dossiers ========
2021-02-07 00:26 - 2021-02-07 00:26 - 000000113 _____ () C:\Users\dbail\AppData\Roaming\D2Info0
2021-02-07 00:26 - 2021-02-07 01:27 - 000000008 _____ () C:\Users\dbail\AppData\Roaming\DofusAppId0_1
2021-07-04 20:36 - 2021-07-04 21:39 - 000012613 _____ () C:\Users\dbail\AppData\Roaming\SpeedRunnersLog.txt
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== Fin de FRST.txt ========================