cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-11-2023 02
Exécuté par martine (administrateur) sur PORTABLE (SAMSUNG ELECTRONICS CO., LTD. 350V5C/351V5C/3540VC/3440VC) (15-11-2023 16:27:01)
Exécuté depuis C:\Users\martine\Downloads\FRST64.exe
Profils chargés: martine
Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3324 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe ->) (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler.exe
(C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe ->) (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler64.exe
(C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe ->) (Samsung Electronics CO., LTD. -> ) [Fichier non signé] C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe
(services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(services.exe ->) (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) [Fichier non signé] C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(svchost.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxext.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\martine\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13191824 2012-08-10] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3940040 2015-06-12] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-13] (Intel® Services Manager -> Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3893194558-318786084-3912438258-1001\...\Run: [MicrosoftEdgeAutoLaunch_5CEC2B1DC9C64C509971B00B89C0857D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3894824 2023-11-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3893194558-318786084-3912438258-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\windows\system32\Bubbles.scr [809472 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\HP B111 Status Monitor: C:\WINDOWS\system32\hpinkstsB111LM.dll [328552 2012-01-11] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\PCL hpz3lw71: C:\WINDOWS\system32\hpz3lw71.dll [46080 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\119.0.6045.124\Installer\chrmstp.exe [2023-11-14] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2012-12-05] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Fichier non signé]
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2012-12-05] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Fichier non signé]
Startup: C:\Users\martine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2023-04-01]
ShortcutTarget: Dropbox.lnk -> C:\Users\martine\AppData\Roaming\Dropbox\bin\Dropbox.exe (Pas de fichier)

==================== Tâches planifiées (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {4439A543-C790-448D-A6B4-379F60A2B8D8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {15ABC061-0E1B-4C7B-AA7D-2BB0160ABDDE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [2144664 2023-08-17] (Avast Software s.r.o. -> Avast Software)
Task: {6EFBDA2C-85CC-4DF4-991C-1D67BA6B2668} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-09-16] (AVAST Software s.r.o. -> AVAST Software)
Task: {9D77F922-C93F-4BC9-9635-A32463C0F4CF} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-09-16] (AVAST Software s.r.o. -> AVAST Software)
Task: {AAF5B9C8-F590-4DA8-A6B1-4EC9871D4295} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {E3164C9A-0F0F-46F7-8075-A7236EC82565} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-31] (Google Inc -> Google Inc.)
Task: {363C3F51-E0FD-462E-88C2-D20B218EDC74} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792 2012-04-16] (Intel® Services Manager -> Intel Corporation)
Task: {7F42E2AF-D79A-4A8C-A4AC-85E2D821DE0A} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233792 2012-04-16] (Intel® Services Manager -> Intel Corporation)
Task: {8FDA11F7-46B9-452F-9789-F6C0803386E5} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {C9DCF59E-6B97-4C0C-8641-B8261089C8CA} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {9C41A5EC-F56C-455E-905E-295D7F84B133} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {094CD275-5C71-4753-B57E-5566CA859498} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {DB21EF32-6BA9-4118-BBC1-BC4FF48961E5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {8B6759EE-1C08-4B8F-955C-774AB5A6544E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {0F6DBBD1-1FA5-490B-A482-1F43FCC689E6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {D88B3512-1626-4E4C-92C7-AAFBA56A4668} - System32\Tasks\Microsoft\Windows\WaaSMedic\MaintenanceWork => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32}
Task: {FDDDF8F7-E8D6-4017-926A-8DA655C02A81} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5030E244-D2DB-4DCD-A0D6-01BD3A9B51E9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9019B91D-5D99-435C-AA17-0BF314C20C61} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4873755F-FE8A-42F8-BE95-3EE9764A1F7A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B9F34ED7-4D23-4F63-A016-22CE29AB8FE0} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [723872 2023-11-14] (Mozilla Corporation -> Mozilla Foundation)
Task: {139DB7A7-024F-4877-A35E-F4FC355C0E0B} - System32\Tasks\Opera scheduled Autoupdate 1673357341 => C:\Users\martine\AppData\Local\Programs\Opera\launcher.exe [2642848 2023-11-09] (Opera Norway AS -> Opera Software)
Task: {B27319CF-8607-4900-BC70-D01F4A007007} - System32\Tasks\SUPatchForW10Up => C:\ProgramData\Samsung\SamsungUpdatePatch\SUPatchForW10Up.exe [3148800 2015-08-18] (Samsung Electronics CO., LTD.) [Fichier non signé]

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001Core1d7699b73da3455.job => C:\Users\martine\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001UA1d7699b7470671b.job => C:\Users\martine\AppData\Local\DropboxUpdate\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1D726A8A-BA6C-4BF3-923F-8BEE9B8C13D8}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{84CB43D4-116C-4341-8250-9C67F68F9A58}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\martine\AppData\Local\Microsoft\Edge\User Data\Default [2023-11-15]
Edge Extension: (Google Docs hors connexion) - C:\Users\martine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-11-15]
Edge Extension: (Edge relevant text changes) - C:\Users\martine\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-11-15]

FireFox:
========
FF DefaultProfile: 8509o7aj.default
FF ProfilePath: C:\Users\martine\AppData\Roaming\Mozilla\Firefox\Profiles\8509o7aj.default [2023-11-15]
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\martine\AppData\Roaming\Mozilla\Firefox\Profiles\8509o7aj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-07-04]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-11-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Picasa3\npPicasa3.dll [Pas de fichier]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-09-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-09-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-27] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\martine\AppData\Local\Google\Chrome\User Data\Default [2023-11-14]
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Recherche Google) - C:\Users\martine\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-29]
CHR Extension: (Google Docs hors connexion) - C:\Users\martine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-12-20]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\martine\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-12]

Opera:
=======
OPR DefaultProfile: Default

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-09-16] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-09-16] (AVAST Software s.r.o. -> AVAST Software)
R2 Easy Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe [1591176 2012-11-30] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) [Fichier non signé]
S3 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3018800 2013-10-21] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe [3121120 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe [133704 2023-11-14] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink -> CyberLink)
R3 RadioHIDMini; C:\WINDOWS\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Samsung Electronics CO., LTD. -> Windows (R) Win 7 DDK provider)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55744 2023-11-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [578856 2023-11-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105768 2023-11-14] (Microsoft Windows -> Microsoft Corporation)
S3 intaud_WaveExtensible; \SystemRoot\system32\drivers\intelaud.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2023-11-15 16:27 - 2023-11-15 16:30 - 000021181 _____ C:\Users\martine\Downloads\FRST.txt
2023-11-15 16:26 - 2023-11-15 16:28 - 000000000 ____D C:\FRST
2023-11-15 16:24 - 2023-11-15 16:24 - 002383872 _____ (Farbar) C:\Users\martine\Downloads\FRST64.exe
2023-11-15 15:13 - 2023-11-15 15:13 - 000000000 ____D C:\Users\martine\AppData\Local\D3DSCache
2023-11-15 15:02 - 2023-11-15 15:02 - 000000000 ____D C:\Users\martine\AppData\Local\VirtualStore
2023-11-15 14:59 - 2023-11-15 14:59 - 000000000 ____D C:\ProgramData\PLUG
2023-11-15 12:47 - 2023-11-15 12:47 - 000000000 ____D C:\Users\martine\AppData\Local\Publishers
2023-11-15 12:40 - 2023-11-15 12:40 - 000000000 ___HD C:\$WinREAgent
2023-11-15 11:53 - 2023-11-15 11:53 - 000000000 ____D C:\ProgramData\AVAST Software
2023-11-14 15:02 - 2023-11-14 15:02 - 000000000 ____D C:\Program Files\Malwarebytes
2023-11-14 14:49 - 2023-11-14 14:49 - 000000000 ____D C:\Users\martine\AppData\Roaming\No Company Name
2023-11-14 14:31 - 2023-11-14 14:31 - 000000000 ____D C:\ProgramData\Qualcomm Atheros
2023-11-14 13:26 - 2023-11-14 13:26 - 008791352 _____ (Malwarebytes) C:\Users\martine\Downloads\adwcleaner.exe
2023-11-14 12:03 - 2023-11-14 13:32 - 000000000 ____D C:\AdwCleaner
2023-11-14 11:56 - 2023-11-14 11:56 - 000000000 ____D C:\Users\martine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2023-11-14 11:27 - 2023-11-14 13:42 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2023-11-15 16:19 - 2021-05-12 20:39 - 001772722 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-11-15 16:19 - 2019-12-07 15:49 - 000792858 _____ C:\WINDOWS\system32\perfh00C.dat
2023-11-15 16:19 - 2019-12-07 15:49 - 000149988 _____ C:\WINDOWS\system32\perfc00C.dat
2023-11-15 16:19 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-11-15 16:17 - 2021-12-16 15:02 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-11-15 16:17 - 2013-10-13 09:17 - 000000000 ____D C:\Program Files (x86)\Google
2023-11-15 16:16 - 2014-10-14 17:54 - 000000000 __SHD C:\Users\martine\IntelGraphicsProfiles
2023-11-15 15:26 - 2023-01-26 14:39 - 000002461 _____ C:\Users\martine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-11-15 15:26 - 2021-12-13 10:39 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3893194558-318786084-3912438258-1001
2023-11-15 15:26 - 2021-05-13 06:01 - 000003368 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3893194558-318786084-3912438258-1001
2023-11-15 15:19 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-11-15 15:19 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-11-15 15:11 - 2023-01-10 14:29 - 000001453 _____ C:\Users\martine\Desktop\Navigateur Opera.lnk
2023-11-15 14:46 - 2020-11-19 00:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-11-15 14:45 - 2021-05-12 20:05 - 000008192 ___SH C:\DumpStack.log.tmp
2023-11-15 14:45 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-11-15 14:33 - 2021-11-21 10:12 - 002259376 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-11-15 14:16 - 2020-11-18 23:28 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-11-15 13:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-11-15 13:13 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-11-15 12:37 - 2021-05-12 23:06 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-11-15 12:31 - 2013-10-11 18:51 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-11-15 12:24 - 2020-11-19 00:31 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-11-15 12:22 - 2013-10-11 18:51 - 182871392 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-11-15 12:09 - 2022-03-20 10:48 - 000000000 ____D C:\Program Files\RUXIM
2023-11-15 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-11-15 12:02 - 2021-05-12 20:40 - 000003916 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-11-15 12:02 - 2021-05-12 20:40 - 000003792 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-11-15 11:41 - 2020-11-19 00:31 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-11-15 11:41 - 2020-11-19 00:31 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-11-14 16:32 - 2023-01-10 14:29 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1673357341
2023-11-14 16:23 - 2022-02-15 14:09 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-11-14 16:20 - 2021-12-10 13:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2023-11-14 15:33 - 2014-08-03 07:42 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-11-14 15:24 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-11-14 14:56 - 2013-10-11 18:12 - 000000000 ____D C:\Users\martine\AppData\Local\Packages
2023-11-14 14:50 - 2013-03-29 10:23 - 000000000 ____D C:\Program Files\Common Files\Adobe
2023-11-14 14:50 - 2013-03-29 10:17 - 000000000 ____D C:\ProgramData\Adobe
2023-11-14 14:49 - 2013-10-11 18:14 - 000000000 ____D C:\Users\martine\AppData\Roaming\Adobe
2023-11-14 14:49 - 2013-03-29 10:17 - 000000000 ____D C:\Program Files (x86)\Adobe
2023-11-14 14:39 - 2014-11-16 20:05 - 000000000 ____D C:\Users\martine\AppData\Roaming\Dropbox
2023-11-14 14:37 - 2021-05-12 20:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-11-14 14:34 - 2013-03-29 08:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2023-11-14 14:34 - 2013-03-29 08:02 - 000000000 ____D C:\Program Files (x86)\Samsung
2023-11-14 14:34 - 2013-03-29 08:01 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-11-14 14:30 - 2022-12-02 14:29 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-11-14 14:30 - 2022-12-02 14:29 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-11-14 14:24 - 2013-03-29 10:24 - 000000000 ____D C:\ProgramData\PopCap Games
2023-11-14 14:09 - 2020-11-19 00:29 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-11-14 14:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2023-11-14 14:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
2023-11-14 13:42 - 2021-06-25 09:24 - 000001234 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001UA1d7699b7470671b.job
2023-11-14 13:42 - 2021-06-25 09:24 - 000001182 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001Core1d7699b73da3455.job
2023-11-14 13:42 - 2013-10-11 19:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2023-11-14 13:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-11-14 13:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2023-11-14 13:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-11-14 13:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2023-11-14 12:28 - 2020-11-19 00:31 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-11-14 12:05 - 2013-10-11 19:59 - 000001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2023-11-14 11:31 - 2021-06-25 09:24 - 000004386 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001UA1d7699b7470671b
2023-11-14 11:31 - 2021-06-25 09:24 - 000004010 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskUserS-1-5-21-3893194558-318786084-3912438258-1001Core1d7699b73da3455
2023-11-14 11:28 - 2014-11-16 20:12 - 000000000 ____D C:\Users\martine\Dropbox
2023-11-14 11:27 - 2016-11-22 15:20 - 000000000 ____D C:\Users\martine\AppData\LocalLow\Mozilla
2023-11-14 11:25 - 2018-11-09 14:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2023-11-14 11:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF

==================== Fichiers à la racine de certains dossiers ========

2013-12-11 08:25 - 2013-12-11 08:25 - 004096000 _____ () C:\Program Files (x86)\GUT6412.tmp

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité