Résultats de correction de Farbar Recovery Scan Tool (x64) Version: 19-05-2021 Exécuté par manep (20-05-2021 07:06:36) Run:2 Exécuté depuis C:\Users\manep\Downloads Profils chargés: defaultuser0 & manep Mode d'amorçage: Normal ============================================== fixlist contenu: ***************** CreateRestorepoint: CloseProcesses: HKU\S-1-5-21-1644168496-700387399-703654843-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33698888 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION Task: {11A13201-F86D-412A-89F5-89E82BF78707} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28082760 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) Task: {8244BAD3-A9EB-485A-9BCA-D6D640289D4A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-20] (Google LLC -> Google LLC) Task: {96E2286A-EA88-4614-8F90-CB32CE363450} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {A18E26F1-9272-4F7B-B21A-B8C6BEFA129C} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [126152 2020-04-03] (Mozilla Corporation -> Mozilla Foundation) Task: {D3C6574C-95B2-45F8-A640-8106F0B11383} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-20] (Google LLC -> Google LLC) Task: {E3BCB5B2-EC1F-4BCA-9913-FABBA448698F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-04-22] (Piriform Software Ltd -> Piriform) Task: {E5A83541-021B-4CF9-A525-80402D3AB7E3} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe) C:\ProgramData\Avira C:\Program Files (x86)\Avira AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB} ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0] AlternateDataStreams: C:\Users\manep\Desktop\CARTE JEUNE CHARLOTTE SNCF.jpeg:3or4kl4x13tuuug3Byamue2s4b [79] AlternateDataStreams: C:\Users\manep\Desktop\CARTE JEUNE CHARLOTTE SNCF.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] AlternateDataStreams: C:\Users\manep\Desktop\FACTURE.jpeg:3or4kl4x13tuuug3Byamue2s4b [79] AlternateDataStreams: C:\Users\manep\Desktop\FACTURE.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\defaultuser0\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Pas de fichier) Shortcut: C:\Users\manep\AppData\Roaming\ZHP\Quarantine\ZHPCleaner\Toolbar Cleaner\Toolbar Cleaner\Toolbar Cleaner.lnk -> C:\Program Files (x86)\Toolbar Cleaner\ToolbarCleaner.exe (Pas de fichier) Shortcut: C:\Users\manep\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Avira Connect.lnk -> C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Pas de fichier) DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 DeleteKey: HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} DeleteKey: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 cmd: cscript %windir%\system32\slmgr.vbs /dlv cmd: ipconfig /flushdns RemoveProxy: EmptyTemp: ***************** Le Point de restauration a été créé avec succès. Processus fermé avec succès. "HKU\S-1-5-21-1644168496-700387399-703654843-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Smart Cleaning" => non trouvé(e) HKLM\SOFTWARE\Policies\Mozilla => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11A13201-F86D-412A-89F5-89E82BF78707}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\CCleanerSkipUAC" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8244BAD3-A9EB-485A-9BCA-D6D640289D4A}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96E2286A-EA88-4614-8F90-CB32CE363450}" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A18E26F1-9272-4F7B-B21A-B8C6BEFA129C}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Mozilla\Firefox Default Browser Agent E7CF176E110C211B" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3C6574C-95B2-45F8-A640-8106F0B11383}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3BCB5B2-EC1F-4BCA-9913-FABBA448698F}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\CCleaner Update" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5A83541-021B-4CF9-A525-80402D3AB7E3}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater" => non trouvé(e) "C:\ProgramData\Avira" => non trouvé(e) "C:\Program Files (x86)\Avira" => non trouvé(e) "AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB}" => non trouvé(e) HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => non trouvé(e) "C:\ProgramData\Reprise" => ":wupeogjxlctlfudivq`qsp`28hfm" ADS non trouvé(e). "C:\Users\manep\Desktop\CARTE JEUNE CHARLOTTE SNCF.jpeg" => ":3or4kl4x13tuuug3Byamue2s4b" ADS non trouvé(e). "C:\Users\manep\Desktop\CARTE JEUNE CHARLOTTE SNCF.jpeg" => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS non trouvé(e). "C:\Users\manep\Desktop\FACTURE.jpeg" => ":3or4kl4x13tuuug3Byamue2s4b" ADS non trouvé(e). "C:\Users\manep\Desktop\FACTURE.jpeg" => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS non trouvé(e). "C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk" => non trouvé(e) "C:\Users\manep\AppData\Roaming\ZHP\Quarantine\ZHPCleaner\Toolbar Cleaner\Toolbar Cleaner\Toolbar Cleaner.lnk" => non trouvé(e) "C:\Users\manep\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Avira Connect.lnk" => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 => non trouvé(e) HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} => non trouvé(e) HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 => non trouvé(e) HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 => non trouvé(e) ========= cscript %windir%\system32\slmgr.vbs /dlv ========= Microsoft (R) Windows Script Host Version 5.812 Copyright (C) Microsoft Corporation. Tous droits r‚serv‚s. Version du service de licences logiciellesÿ: 10.0.19041.867 Nomÿ: Windows(R), Core edition Description : Windows(R) Operating System, RETAIL channel ID d'activationÿ: 2b1f36bb-c1cd-4306-bf5c-a0367c2d97d8 ID d'applicationÿ: 55c92734-d682-4d71-983e-d6ec3f16059f PID ‚tenduÿ: 03612-03261-001-633102-00-1036-19041.0000-3202020 Canal de la cl‚ de produit (Product Key)ÿ: Retail Identificateur d'installationÿ: 611941562485004393502756697272569269960354971000304437210065043 URL de licence d'utilisation : https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail URL de validationÿ: https://validation-v2.sls.microsoft.com/SLWGA/slwga.asmx Cl‚ de produit partielleÿ: BG9QV tat de la licenceÿ: avec licence Nombre de r‚initialisations de Windows restantÿ: 1001 Nombre de r‚initialisations de la r‚f‚rence (SKU) restantÿ: 1001 Heure approuv‚eÿ: 20/05/2021 07:06:51 ========= Fin de CMD: ========= ========= ipconfig /flushdns ========= Configuration IP de Windows Cache de r‚solution DNS vid‚. ========= Fin de CMD: ========= ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => supprimé(es) avec succès "HKU\S-1-5-21-1644168496-700387399-703654843-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => supprimé(es) avec succès "HKU\S-1-5-21-1644168496-700387399-703654843-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => supprimé(es) avec succès ========= Fin de RemoveProxy: ========= =========== EmptyTemp: ========== BITS transfer queue => 10772480 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11979998 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 161978 B Edge => 0 B Chrome => 0 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B NetworkService => 0 B defaultuser0 => 0 B manep => 37761 B RecycleBin => 0 B EmptyTemp: => 21.9 MB données temporaires supprimées. ================================ Le système a dû redémarrer. ==== Fin de Fixlog 07:06:53 ====