cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 11-09-2021
Exécuté par benoi (administrateur) sur DESKTOP-T29EFHD (Sony Corporation VGN-FW21E) (12-09-2021 06:38:17)
Exécuté depuis C:\Users\benoi\Desktop
Profils chargés: Benoit & benoi & bluew & Jesuis L'invité & Florence
Platform: Microsoft Windows 10 Famille Version 20H2 19042.1165 (X86) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe
(Glarysoft LTD -> Glarysoft Ltd) C:\Program Files\Glary Utilities 5\GUBootService.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Update\1.3.36.102\GoogleCrashHandler.exe
(HP Inc. -> HP Inc.) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\benoi\AppData\Local\Microsoft\OneDrive\21.160.0808.0002\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\benoi\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.8052.0_x86__8wekyb3d8bbwe\GameBar.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.8052.0_x86__8wekyb3d8bbwe\GameBarFTServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <10>
(TomTom International BV -> TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files\Wondershare\WAF\2.4.3.225\WsAppService.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [486464 2020-10-01] (geek software GmbH -> geek software GmbH)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [293432 2021-08-04] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1001\...\Run: [GUDelayStartup] => C:\Program Files\Glary Utilities 5\StartupManager.exe [44416 2021-08-22] (Glarysoft LTD -> Glarysoft Ltd)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\Run: [GUDelayStartup] => C:\Program Files\Glary Utilities 5\StartupManager.exe [44416 2021-08-22] (Glarysoft LTD -> Glarysoft Ltd)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\Run: [Adobe Reader Synchronizer] => C:\Program Files\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5550304 2021-07-24] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\benoi\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\benoi\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-4151030420-1558553286-1906363010-1002\...\RunOnce: [Uninstall 21.150.0725.0001] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\benoi\AppData\Local\Microsoft\OneDrive\21.150.0725.0001"
HKU\S-1-5-21-4151030420-1558553286-1906363010-1004\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-4151030420-1558553286-1906363010-1007\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\...\Print\Monitors\HP AF11 Status Monitor: C:\WINDOWS\system32\hpinkstsAF11LM.dll [268688 2012-06-12] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Photosmart 6520 series): C:\WINDOWS\system32\HPDiscoPMAF11.dll [580712 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\Send To Microsoft OneNote Monitor: C:\WINDOWS\system32\msonpmon.dll [31640 2009-02-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\93.0.4577.63\Installer\chrmstp.exe [2021-09-05] (Google LLC -> Google LLC)
Startup: C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk [2016-07-03]
ShortcutTarget: OneNote 2007 - Capture d'écran et lancement.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\Benoit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk [2016-10-01]
ShortcutTarget: OneNote 2007 - Capture d'écran et lancement.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
BootExecute: autocheck autochk *
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {05291C08-232B-4903-8315-0B44CE63BCB0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.)
Task: {091FA6E8-E9DA-45DA-8B50-03F89C038973} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [1488248 2018-12-10] (HP Inc. -> HP Inc.)
Task: {15A5C41D-4AC9-401D-AF67-CD60B35E130A} - System32\Tasks\GU5SkipUAC => C:\Program Files\Glary Utilities 5\Integrator.exe [919936 2021-08-22] (Glarysoft LTD -> Glarysoft Ltd)
Task: {15C54966-A7FA-4D31-8575-FDC434243614} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [17454496 2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {16D63003-9B97-473C-933D-70875C7643A3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-03-21] (Google LLC -> Google LLC)
Task: {18C436CC-23F9-4B64-839E-181214CF8ED8} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1155504 2021-09-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {1B07E650-3755-4083-90C0-74714FF5DE10} - System32\Tasks\CCleanerSkipUAC - Jesuis L'invité => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {292A6719-5C22-4BCF-9F06-DBAFE404288E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [627128 2021-09-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {3106871B-477D-457D-BBBA-170A51B13E57} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [694104 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3DC98744-DA11-4D4D-A62B-319473EE9933} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.)
Task: {47EFDA6D-C7DD-424E-AD11-913E4F13B368} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {526FA0DD-EB0E-4CB8-B17C-012F8C66A58B} - System32\Tasks\Driver Booster SkipUAC (benoi) => C:\Program Files\IObit\Driver Booster\7.3.0\DriverBooster.exe
Task: {537F3ADE-EE9E-430B-9188-BFA3997A3A3D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [113496 2021-09-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {577CB1B9-5F1F-445A-BF32-5041EB8CAFA0} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe
Task: {5AFA0427-B1EF-48F4-85F7-FFCA716E731E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [326320 2021-07-15] (HP Inc. -> HP Inc.)
Task: {5D0B7ADE-760E-437D-BD56-B4A9C3550E01} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [694104 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6CDF5C70-8481-4D7A-8DAA-7D17DE66025B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-17] (HP Inc. -> HP Inc.)
Task: {7999FE2A-87AA-4405-8488-E541C1AEBDEE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-07-16] (Piriform Software Ltd -> Piriform)
Task: {849E4310-5726-4BC6-BACF-E5C72FC9449A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [113496 2021-09-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {888B04CF-7758-47A4-9560-B0A7E7BA633B} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
Task: {8CA346B5-B8F6-4E21-88BC-A7CCBC55BDC3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [1488248 2018-12-10] (HP Inc. -> HP Inc.)
Task: {8D17DD58-7745-42D1-8836-3B717DFECBC9} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe
Task: {996C562D-6573-4127-8C95-4AAA30617C29} - System32\Tasks\Driver Booster Update => C:\Program Files\IObit\Driver Booster\7.3.0\AutoUpdate.exe
Task: {9B8BD773-CE66-40B8-8B47-16D8E671F0E6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [156104 2020-03-21] (Google LLC -> Google LLC)
Task: {A851CCDF-05BB-4165-A824-D7E93D112A82} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-11-07] (HP Inc. -> HP Inc.)
Task: {B26FD34B-0D8C-4501-8002-5C179E2D9DF5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {B2B8EC14-B5F9-4B66-B865-D4F977686369} - System32\Tasks\Driver Booster Scheduler => C:\Program Files\IObit\Driver Booster\7.3.0\Scheduler.exe
Task: {B87EC2EE-8A04-45A2-A442-8D41125AA8E3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {BB7A6CBD-A98A-4EF2-8BA6-E6D55F73FA23} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {C1259C8A-C93F-4D18-8101-ADFE064B4F79} - System32\Tasks\HPCeeScheduleForJesuis L'invité => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [97848 2016-01-22] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {C7F39D7A-652C-4CD5-916A-9698F8735BAC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [694104 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D2D323FD-5F68-4198-9CAC-867F3BF42F28} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [17454496 2021-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {E037A2D6-9927-47E3-BFFE-7DF288D308B2} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [220816 2019-09-30] (Tweaking LLC -> Tweaking.com)
Task: {E0D19752-6F02-4C08-A14E-269957E73124} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [694104 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EDB7C1A8-7AE7-41DB-B8DA-EA8EE535B794} - System32\Tasks\CCleanerSkipUAC - benoi => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForJesuis L'invité.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{547248ce-7bb4-423b-9483-52e791dea204}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8aa3accc-6592-4b37-9e7d-bfc0aed75439}: [DhcpNameServer] 192.168.1.1

Edge:
=======
DownloadDir:
Edge Notifications: HKU\S-1-5-21-4151030420-1558553286-1906363010-1002 -> hxxps://book.lufthansa.com; hxxps://www.youtube.com
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge DefaultProfile: Default
Edge Profile: C:\Users\benoi\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-12]

FireFox:
========
FF DefaultProfile: 02i3tvmt.default-1555236563015
FF ProfilePath: C:\Users\benoi\AppData\Roaming\TomTom\HOME\Profiles\1lcswugx.default [2017-04-29]
FF Extension: (Pas de nom) - C:\Program Files\TomTom HOME\xul\extensions\MapShare-status@tomtom.com [non trouvé(e)]
FF ProfilePath: C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\02i3tvmt.default-1555236563015 [2021-09-12]
FF Extension: (Dictionnaire français) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\02i3tvmt.default-1555236563015\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2020-06-01]
FF Extension: (Privacy Badger) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\02i3tvmt.default-1555236563015\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2021-08-21]
FF Extension: (Français Language Pack) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\02i3tvmt.default-1555236563015\Extensions\langpack-fr@firefox.mozilla.org.xpi [2021-09-12]
FF Extension: (uBlock Origin) - C:\Users\benoi\AppData\Roaming\Mozilla\Firefox\Profiles\02i3tvmt.default-1555236563015\Extensions\uBlock0@raymondhill.net.xpi [2021-08-22]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-06-20] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.15 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [217088 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [7477096 2021-08-23] (Microsoft Corporation -> Microsoft Corporation)
R2 GUBootService; C:\Program Files\Glary Utilities 5\GUBootService.exe [867712 2021-08-22] (Glarysoft LTD -> Glarysoft Ltd)
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [486464 2020-10-01] (geek software GmbH -> geek software GmbH)
S3 PrintNotify; C:\WINDOWS\system32\spool\drivers\W32X86\3\PrintConfig.dll [2873344 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S2 TTHOMEService; C:\Program Files\TomTom HOME\TTHOMEService.exe [97792 2019-04-17] (TomTom) [Fichier non signé]
S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [281928 2021-07-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe [1807664 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe [92368 2021-09-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WsAppService; C:\Program Files\Wondershare\WAF\2.4.3.225\WsAppService.exe [473824 2017-05-05] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [10070016 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [290304 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [17952 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [31344 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R3 Btcsrusb; C:\WINDOWS\System32\Drivers\btcusb.sys [47504 2020-03-15] (IVT CORPORATION -> IVT Corporation.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [200192 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [28744 2020-03-15] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [27632 2021-03-07] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd)
R1 HWiNFO; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [58776 2019-04-14] (Martin Malik - REALiX -> REALiX(tm))
R3 necbatt; C:\WINDOWS\System32\drivers\necbatt.sys [18448 2020-03-15] (Microsoft Windows Hardware Compatibility Publisher -> NEC Personal Computers, Ltd.)
R3 NETwNs32; C:\WINDOWS\System32\drivers\NETwNs32.sys [7518208 2019-12-07] (Microsoft Windows -> Intel Corporation)
R3 SrvHsfHDA; C:\WINDOWS\system32\DRIVERS\VSTAZL3.SYS [207360 2019-12-07] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfV92; C:\WINDOWS\system32\DRIVERS\VSTDPV3.SYS [980992 2019-12-07] (Microsoft Windows -> Conexant Systems, Inc.)
R3 SrvHsfWinac; C:\WINDOWS\system32\DRIVERS\VSTCNXT3.SYS [661504 2019-12-07] (Microsoft Windows -> Conexant Systems, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [39320 2021-09-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [341224 2021-09-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60648 2021-09-12] (Microsoft Windows -> Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [213504 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 yukonw8; C:\WINDOWS\System32\drivers\yk63x86.sys [242688 2019-12-07] (Microsoft Windows -> Marvell)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-09-12 06:38 - 2021-09-12 06:41 - 000023954 _____ C:\Users\benoi\Desktop\FRST.txt
2021-09-12 06:34 - 2021-09-12 06:34 - 002015232 _____ (Farbar) C:\Users\benoi\Desktop\FRST.exe
2021-09-12 06:19 - 2021-09-12 06:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-09-12 06:15 - 2021-09-12 06:19 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-09-05 07:11 - 2021-09-05 07:11 - 000000920 _____ C:\Users\benoi\Desktop\ZHPCleaner.lnk
2021-09-05 07:08 - 2021-09-05 07:08 - 003289240 _____ (Nicolas Coolman) C:\Users\benoi\Desktop\ZHPCleaner.exe
2021-09-05 07:02 - 2021-09-05 07:01 - 000393306 _____ C:\Users\benoi\Desktop\ZHPDiag.html
2021-09-04 19:16 - 2021-09-04 19:16 - 000000910 _____ C:\Users\benoi\Desktop\ZHPSuite.lnk
2021-09-04 19:13 - 2021-09-04 19:13 - 003475608 _____ (Nicolas Coolman) C:\Users\benoi\Desktop\ZHPSuite.exe
2021-09-04 18:32 - 2021-09-04 18:32 - 019817552 _____ (Glarysoft Ltd) C:\Users\benoi\Downloads\Glary_Utilities_v5.172.0.200.exe
2021-09-04 07:07 - 2021-09-04 07:07 - 000003324 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForJesuis L'invité
2021-09-04 07:07 - 2021-09-04 07:07 - 000000392 _____ C:\WINDOWS\Tasks\HPCeeScheduleForJesuis L'invité.job
2021-09-04 06:17 - 2021-09-04 06:17 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Roaming\4kdownload.com
2021-08-29 06:51 - 2021-08-29 09:12 - 000000000 ____D C:\Users\benoi\Desktop\London Grammar - Best Songs
2021-08-29 06:33 - 2021-08-29 06:33 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Local\Apple Inc
2021-08-29 06:08 - 2021-08-29 06:08 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Local\Apple Computer
2021-08-29 05:59 - 2021-08-29 05:59 - 000001440 _____ C:\Users\Jesuis L'invité\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K YouTube to MP3.lnk
2021-08-29 05:27 - 2021-08-29 05:27 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Local\4kdownload.com
2021-08-29 05:24 - 2021-08-29 05:24 - 000000902 _____ C:\Users\Public\Desktop\4K YouTube to MP3.lnk
2021-08-29 05:23 - 2021-08-29 05:23 - 000000914 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K YouTube to MP3.lnk
2021-08-29 05:23 - 2021-08-29 05:23 - 000000000 ____D C:\Program Files\4KDownload
2021-08-29 05:14 - 2021-08-29 05:14 - 000883400 _____ (Open Media LLC) C:\Users\Jesuis L'invité\Downloads\4kyoutubetomp3_4.2.1_online.exe
2021-08-28 19:22 - 2021-08-28 19:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-08-28 19:18 - 2021-08-28 19:18 - 001433312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-08-28 19:18 - 2021-08-28 19:18 - 001128528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-08-28 19:13 - 2021-08-28 19:13 - 000224256 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2021-08-26 03:10 - 2021-08-26 03:10 - 000000000 ___HD C:\$WinREAgent
2021-08-22 20:58 - 2021-08-22 20:58 - 000002944 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Jesuis L'invité
2021-08-21 19:45 - 2021-08-21 19:46 - 041380504 _____ C:\Users\benoi\Downloads\VLC_Media_Player_(32bit)_v3.0.15.exe
2021-08-21 19:36 - 2021-08-21 19:37 - 009196944 _____ (Martin Malik - REALiX ) C:\Users\benoi\Downloads\HWiNFO32_v7.06.exe
2021-08-21 19:32 - 2021-08-21 19:32 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk
2021-08-21 19:32 - 2021-08-21 19:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2021-08-21 19:26 - 2021-08-21 19:32 - 000000000 ____D C:\Program Files\iTunes
2021-08-21 18:44 - 2021-08-21 18:44 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2021-08-21 18:44 - 2021-08-21 18:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple
2021-08-21 18:44 - 2021-08-21 18:44 - 000000000 ____D C:\Program Files\Apple Software Update
2021-08-21 18:29 - 2021-08-21 18:33 - 034947992 _____ (Audacity Team ) C:\Users\benoi\Downloads\Audacity_v3.0.3.exe
2021-08-21 18:19 - 2021-08-21 18:27 - 179292232 _____ (Apple Inc.) C:\Users\benoi\Downloads\iTunes_(32bit)_v12.11.4.15.exe
2021-08-21 18:04 - 2021-08-21 18:04 - 000002904 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - benoi

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-09-12 06:40 - 2019-01-30 06:35 - 000000000 ____D C:\FRST
2021-09-12 06:32 - 2017-01-20 05:42 - 000000000 ____D C:\Program Files\Google
2021-09-12 06:25 - 2019-12-07 08:12 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-09-12 06:19 - 2016-11-16 06:00 - 000000000 ____D C:\Users\benoi\AppData\LocalLow\Mozilla
2021-09-12 06:19 - 2016-09-22 03:49 - 000001150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-09-12 06:19 - 2016-09-22 03:49 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2021-09-12 06:12 - 2019-12-07 08:12 - 000000000 ___HD C:\Program Files\WindowsApps
2021-09-12 06:12 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-09-12 06:09 - 2020-11-19 01:33 - 000002388 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-09-12 06:09 - 2020-11-19 01:33 - 000002226 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-09-12 06:07 - 2021-01-02 22:40 - 000004550 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-09-12 06:07 - 2017-03-25 07:22 - 000000000 ____D C:\Program Files\CCleaner
2021-09-12 06:01 - 2021-01-02 22:40 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4151030420-1558553286-1906363010-1002
2021-09-12 06:01 - 2021-01-02 21:45 - 000002450 _____ C:\Users\benoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-09-12 05:52 - 2020-11-19 01:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-09-05 13:53 - 2018-04-28 08:04 - 000007614 _____ C:\Users\benoi\AppData\Local\Resmon.ResmonCfg
2021-09-05 11:53 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2021-09-05 11:04 - 2016-07-03 12:12 - 000000000 ____D C:\Program Files\Glary Utilities 5
2021-09-05 07:19 - 2020-12-31 09:12 - 000000000 ____D C:\Users\benoi\AppData\Roaming\ZHP
2021-09-05 07:01 - 2021-06-20 09:25 - 000317016 _____ C:\Users\benoi\Desktop\ZHPDiag.txt
2021-09-05 06:05 - 2016-11-24 06:03 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\LocalLow\Mozilla
2021-09-05 05:33 - 2021-01-02 22:40 - 000004198 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{365EA3EA-1E42-4124-AD88-12A8950926B7}
2021-09-04 19:49 - 2021-06-20 09:44 - 000000755 _____ C:\Users\benoi\Desktop\ZHPFix.txt
2021-09-04 18:40 - 2018-06-03 05:13 - 000000000 ____D C:\Users\benoi\AppData\Roaming\vlc
2021-09-04 18:34 - 2021-01-02 22:40 - 000003030 _____ C:\WINDOWS\system32\Tasks\GU5SkipUAC
2021-09-04 18:34 - 2019-12-29 07:19 - 000001111 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk
2021-09-04 18:34 - 2016-07-03 12:12 - 000001123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2021-09-04 17:06 - 2016-07-03 08:59 - 000000000 ____D C:\Program Files\Microsoft Office
2021-09-04 06:23 - 2016-07-01 19:19 - 000652664 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2021-08-29 10:54 - 2019-12-07 08:10 - 000000000 ____D C:\WINDOWS\INF
2021-08-29 09:43 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\ServiceState
2021-08-29 08:13 - 2021-01-02 22:04 - 001681370 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-08-29 08:13 - 2019-12-07 14:20 - 000756416 _____ C:\WINDOWS\system32\perfh00C.dat
2021-08-29 08:13 - 2019-12-07 14:20 - 000142186 _____ C:\WINDOWS\system32\perfc00C.dat
2021-08-29 08:05 - 2020-11-19 01:31 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-29 08:05 - 2020-11-19 00:31 - 000441672 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-08-29 08:04 - 2019-12-10 06:12 - 000000000 ____D C:\ProgramData\Package Cache
2021-08-29 08:03 - 2019-12-07 08:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\SystemResources
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-08-29 08:02 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-08-29 08:02 - 2019-12-07 08:03 - 000000000 ____D C:\WINDOWS\servicing
2021-08-29 06:33 - 2017-09-23 04:44 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Roaming\Apple Computer
2021-08-29 06:09 - 2017-12-16 10:32 - 000000000 ____D C:\Users\Jesuis L'invité\AppData\Local\Packages
2021-08-28 21:07 - 2020-11-19 00:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-08-28 20:12 - 2019-12-07 08:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-08-26 02:56 - 2020-10-10 07:10 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-08-22 14:42 - 2017-12-16 10:28 - 000000000 ____D C:\Users\benoi\AppData\Local\Packages
2021-08-22 07:49 - 2016-07-01 20:31 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-08-22 07:27 - 2016-07-01 20:31 - 130386168 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-08-21 19:54 - 2020-03-27 21:48 - 000001101 _____ C:\Users\Public\Desktop\VLC media player.lnk
2021-08-21 19:44 - 2019-04-14 12:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO32
2021-08-21 19:44 - 2019-04-14 12:02 - 000000000 ____D C:\Program Files\HWiNFO32
2021-08-21 19:43 - 2018-06-03 07:54 - 000001050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2021-08-21 19:43 - 2018-06-03 07:54 - 000000000 ____D C:\Program Files\Audacity
2021-08-21 19:38 - 2017-10-22 12:22 - 000000000 ____D C:\Users\benoi\AppData\Local\Apple Inc
2021-08-21 18:04 - 2021-01-02 22:40 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-08-21 17:52 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-08-20 23:45 - 2021-01-02 22:40 - 000003528 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6b698bea4f16c
2021-08-20 23:45 - 2021-01-02 22:40 - 000003400 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4151030420-1558553286-1906363010-1007
2021-08-20 23:45 - 2021-01-02 21:45 - 000002480 _____ C:\Users\Jesuis L'invité\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-20 23:45 - 2020-11-19 01:33 - 000003622 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-20 23:42 - 2021-01-02 22:40 - 000003578 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-08-20 23:42 - 2021-01-02 22:40 - 000003454 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

==================== Fichiers à la racine de certains dossiers ========

2020-01-12 08:53 - 2021-04-04 07:52 - 003325592 _____ (Nicolas Coolman) C:\Users\benoi\ZHPCleaner.exe
2018-03-25 07:21 - 2018-03-25 07:29 - 000005632 _____ () C:\Users\benoi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-04-28 08:04 - 2021-09-05 13:53 - 000007614 _____ () C:\Users\benoi\AppData\Local\Resmon.ResmonCfg
2018-05-12 20:15 - 2018-05-16 10:49 - 000024496 _____ () C:\Users\benoi\AppData\Local\ZHPCquarantine.jpg

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité