Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024 Exécuté par miche (administrateur) sur DESKTOP-55MSELP (MSI MS-7846) (30-09-2024 08:59:02) Exécuté depuis C:\Users\miche\Downloads\FRST64.exe Profils chargés: miche Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.4957 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4> (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe (C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe ->) (Avast Software s.r.o. -> Software Security System) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\Ekag20nt.exe (C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe ->) (Avast Software s.r.o. -> The CefSharp Authors) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\CefSharp.BrowserSubprocess.exe <3> (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Program Files\Mozilla Firefox\firefox.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe (explorer.exe ->) (RealDefense LLC -> SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <14> (services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Malwarebytes Corporation -> Malwarebytes) C:\ProgramData\MB3Install\MBAMIService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (services.exe ->) (RealDefense LLC -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2437.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [427304 2024-09-27] (Avast Software s.r.o. -> Gen Digital Inc.) HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [9831832 2024-03-19] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [369504 2024-08-21] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 HKU\S-1-5-21-3714741450-1788149739-961137336-1002\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482168 2022-07-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-3714741450-1788149739-961137336-1002\...\Run: [Microsoft Edge Update] => C:\Users\miche\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\MicrosoftEdgeUpdateCore.exe [268344 2024-09-09] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3714741450-1788149739-961137336-1002\...\Run: [MicrosoftEdgeAutoLaunch_759D3352B5EF39D8F51D04926FADE8F5] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3794984 2024-09-26] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\129.0.6668.60\Installer\chrmstp.exe [2024-09-26] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\129.1.70.119\Installer\chrmstp.exe [2024-09-25] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {3031376B-0825-45A0-83A4-1803A47E6D0B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {05287162-6E18-4F9A-8952-1F819DD82DED} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) Task: {9324B672-54AF-48C0-AAE0-4970C5C08849} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4979096 2024-03-19] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 193a0ba5-12f6-44a9-9 (l'élément de données a 16 caractères en plus). Task: {74617673-89C6-42F4-8769-239A44AEF9B6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [7786904 2024-03-14] (Avast Software s.r.o. -> Avast Software) Task: {B7ACEDD2-8FAD-4E7C-882D-0E73D96630F8} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5200168 2024-09-27] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {E65C07E4-1663-43A7-9CD6-E7375794AAD1} - System32\Tasks\Avast Software\AvastAntiTrackPremiumStart => C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe [806824 2024-06-25] (Avast Software s.r.o. -> AVAST Software) Task: {4E8E6CDE-FBDB-4A7D-86BD-7A610D937010} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software) Task: {521DB5E2-2339-42B2-B3C6-AD7A208FF3A1} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{F2318F3C-A59C-4D66-9946-918DC5342EDF} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [173160 2022-07-30] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {50D538D3-60F1-4DFC-B77C-173687C87A60} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{9F865474-B7E8-49F1-9FEE-3EAC46E3BB79} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [173160 2022-07-30] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {15CEFA36-FDF9-4A0E-B0EE-827AD895BBAA} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{71CCF76D-7E49-42F9-A6BE-5838FF46423B} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC) Task: {232A6008-E79B-41B0-9198-DB91DA335A35} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {186B0238-41C9-4C69-9B9F-A991AE4DE94E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {C38DE766-5EA0-4129-A899-4BC78DD4335A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222896 2024-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {62D311A1-AD81-4464-893F-248F25C918FE} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222896 2024-08-31] (Microsoft Corporation -> Microsoft Corporation) Task: {7325E6C2-33D7-4FF3-860A-B7528C8EB026} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => C:\Windows\system32\clipesu.exe [221680 2024-09-26] (Microsoft Windows -> Microsoft Corporation) Task: {6D024F2A-75E0-44EC-9A04-C301567FDFFD} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3714741450-1788149739-961137336-1002Core{AC13C268-F0D6-4C20-B92B-2FC920C78D88} => C:\Users\miche\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205768 2022-09-03] (Microsoft Corporation -> Microsoft Corporation) Task: {C182CD26-88CA-4CB2-952A-6D270648FBF0} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3714741450-1788149739-961137336-1002UA{5ED49CD9-7396-46E2-AEE5-E0E49AC430E5} => C:\Users\miche\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205768 2022-09-03] (Microsoft Corporation -> Microsoft Corporation) Task: {CDFAFA27-BD33-43DF-87CB-050F1877043C} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [672328 2024-09-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {E014956D-6263-4AC2-9C27-13593B57E9C9} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3714741450-1788149739-961137336-1002 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [672328 2024-09-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {75F8521B-E3C0-42FC-AC66-0AFCF5564FA4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34376 2024-09-20] (Mozilla Corporation -> Mozilla Foundation) Task: {19D6E9B8-10C8-477B-8F03-B0895BADC9A1} - System32\Tasks\Opera scheduled Autoupdate 1661767587 => C:\Users\miche\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Pas de fichier) Task: {65B9CD77-1FE0-46E6-9B58-07999D234A2A} - System32\Tasks\PrivaZer_SkipUAC => C:\Program Files (x86)\PrivaZer\PrivaZer.exe [21909472 2024-08-14] (Goversoft LLC -> Goversoft LLC) -> C:\Program Files (x86)\PrivaZer\\$(Arg0) Task: {A7E77AD9-192F-4A7C-A651-C7E924700A32} - System32\Tasks\SUPERAntiSpyware Scheduled Task 8bd41fd2-e901-457c-86ef-83fc8c2688c9 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) -> "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:8bd41fd2-e901-457c-86ef-83fc8c2688c9 Task: {DAC339CF-1870-492D-BC04-F31A6340D53B} - System32\Tasks\SUPERAntiSpyware Scheduled Task e397b525-64ca-4d18-9798-29db9fbe450c => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2013-11-07] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) -> "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:e397b525-64ca-4d18-9798-29db9fbe450c (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bd41fd2-e901-457c-86ef-83fc8c2688c9.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task e397b525-64ca-4d18-9798-29db9fbe450c.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0f48c343-8e36-4f68-a9d4-26d0bb0c1ff7}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0f48c343-8e36-4f68-a9d4-26d0bb0c1ff7}: [DhcpDomain] home Tcpip\..\Interfaces\{40382957-5ff4-4d52-9a8a-141824d6b543}: [DhcpNameServer] 172.20.10.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\miche\AppData\Local\Microsoft\Edge\User Data\Default [2024-09-28] Edge StartupUrls: Default -> "hxxp://www.yahoo.fr/" Edge Extension: (Google Docs hors connexion) - C:\Users\miche\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-22] Edge Extension: (Online Security) - C:\Users\miche\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jcpgbnbdnakoblgfkbgggankeidkfcdl [2024-09-22] Edge Extension: (Edge relevant text changes) - C:\Users\miche\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-07] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKU\S-1-5-21-3714741450-1788149739-961137336-1002\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl] FireFox: ======== FF DefaultProfile: tezpfuj9.default FF ProfilePath: C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\tezpfuj9.default [2022-07-30] FF ProfilePath: C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798 [2024-09-30] FF Homepage: Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798 -> www.yahoo.fr FF Extension: (Orange Confort+) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\@orange_confort_plus.xpi [2023-10-29] FF Extension: (Adaware AdBlock) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\AdBlockerLavaSoftFF@lavasoft.com.xpi [2023-10-29] FF Extension: (Ghostery Bloqueur de Traqueurs et de Publicités - confidentialité) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\firefox@ghostery.com.xpi [2024-09-02] FF Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2024-01-22] FF Extension: (VPN Avast SecureLine) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\secureline-vpn@avast.com.xpi [2023-10-29] FF Extension: (Rainbow Sparkle Theme) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{0173e270-14c4-4af4-bb5f-b1f7c0472bce}.xpi [2023-10-29] FF Extension: (Malwarebytes Browser Guard) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2024-06-19] FF Extension: (EPUBReader) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}.xpi [2023-10-29] FF Extension: (Blue Slant) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{6fb43836-5696-4eeb-9328-6b90c5db567c}.xpi [2023-10-29] FF Extension: (Green Checkerboardf) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{77152fad-ca68-4e9f-89f3-e8fdac2b1185}.xpi [2023-10-29] FF Extension: (Flash Player ) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{87e997f4-ae0e-42e6-a780-ff73977188c5}.xpi [2023-10-29] FF Extension: (Adobe Flash) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{abf6a41a-5038-4dd9-abef-b66ae700fe88}.xpi [2023-10-29] FF Extension: (Dark Night Star Animated Theme) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{c420dcff-ab17-4d67-8c6a-76eb0c4b62db}.xpi [2023-10-29] FF Extension: (Night Time Stars Animated Theme) - C:\Users\miche\AppData\Roaming\Mozilla\Firefox\Profiles\5n7bljb2.default-release-1698575817798\Extensions\{d411c16f-6d54-4442-bea9-7ae36e9aaa22}.xpi [2023-10-29] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-08-23] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-08-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.20 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin HKU\S-1-5-21-3714741450-1788149739-961137336-1002: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Users\miche\AppData\Local\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [Pas de fichier] FF Plugin HKU\S-1-5-21-3714741450-1788149739-961137336-1002: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Users\miche\AppData\Local\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [Pas de fichier] Chrome: ======= CHR Profile: C:\Users\miche\AppData\Local\Google\Chrome\User Data\Default [2024-08-14] CHR StartupUrls: Default -> "hxxp://www.yahoo.fr/" CHR Extension: (Malwarebytes Browser Guard) - C:\Users\miche\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2024-08-13] CHR Extension: (Online Security) - C:\Users\miche\AppData\Local\Google\Chrome\User Data\Default\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2024-08-13] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\miche\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-02-19] CHR Extension: (Avast AntiTrack) - C:\Users\miche\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2024-08-13] CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKU\S-1-5-21-3714741450-1788149739-961137336-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] Opera: ======= OPR Profile: C:\Users\miche\AppData\Roaming\Opera Software\Opera Stable [2024-07-21] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} Brave: ======= BRA DefaultProfile: Default BRA Profile: C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2024-09-27] BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Online Security) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2024-09-24] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-09-24] BRA Extension: (Brave Local Data Files Updater) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-09-24] BRA Extension: (Brave NTP background images) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-09-10] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-09-24] BRA Extension: (Brave Ads Resources) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\bgifagoclclhhoflocdefiklgodpihog [2024-09-10] BRA Extension: (Wallet Data Files Updater) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-15] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-09-24] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-11-23] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-11-23] BRA Extension: (Brave Ad Block Updater (AdGuard Français (plaintext))) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\flnkmpokemfpaajmiimmjeiandgoodgg [2024-09-24] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-09-24] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-09-24] BRA Extension: (Brave SpeedReader Updater) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-07-30] BRA Extension: (Brave NTP sponsored images) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2024-09-24] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-08-30] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\miche\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-25] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [231456 2024-09-30] (RealDefense LLC -> SUPERAntiSpyware.com) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-07-31] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [5328200 2024-05-26] (AnyDesk Software GmbH -> AnyDesk Software GmbH) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2024-08-27] (Apple Inc. -> Apple Inc.) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7252264 2024-09-27] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [774440 2024-09-27] (Avast Software s.r.o. -> Gen Digital Inc.) R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2317608 2024-09-27] (Avast Software s.r.o. -> Gen Digital Inc.) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1220904 2024-09-27] (Avast Software s.r.o. -> Gen Digital Inc.) R2 AvastAntiTrackSvc; C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe [6175128 2024-06-25] (Avast Software s.r.o. -> Gen Digital Inc.) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-30] (Avast Software s.r.o. -> AVAST Software) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [173160 2022-07-30] (Brave Software, Inc. -> BraveSoftware Inc.) S4 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\129.1.70.119\elevation_service.exe [2656280 2024-09-25] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [173160 2022-07-30] (Brave Software, Inc. -> BraveSoftware Inc.) R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [18727320 2024-03-19] (Avast Software s.r.o. -> AVAST Software) S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14042624 2024-08-31] (Microsoft Corporation -> Microsoft Corporation) S4 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4960120 2022-07-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-08-08] (HP Inc. -> HP Inc.) R2 MBAMIService; C:\ProgramData\MB3Install\MBAMIService.exe [231120 2019-06-26] (Malwarebytes Corporation -> Malwarebytes) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2024-08-08] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-07-02] (Malwarebytes Inc. -> Malwarebytes) S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe [1377416 2024-07-16] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [530488 2024-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe [3236728 2024-07-16] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe [133688 2024-07-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [39272 2023-06-27] (Apple Inc. -> Apple Inc.) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [229944 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [381520 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [293968 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84424 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27744 2024-08-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28752 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [274000 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [549968 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [97848 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [950328 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1200696 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [203832 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306744 2024-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [280064 2022-09-21] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [147968 2022-07-30] (Microsoft Corporation) [Fichier non signé] R3 dc3d; C:\Windows\System32\drivers\dc3d.sys [47616 2011-05-18] (Hardware Group Test Cert -> Microsoft Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2022-07-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2022-07-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [158640 2024-06-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R2 mbamchameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [231504 2024-09-20] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-06-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\system32\DRIVERS\farflt.sys [201280 2024-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [78928 2024-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2024-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [189776 2024-09-30] (Malwarebytes Inc. -> Malwarebytes) S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [23040 2022-01-06] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R1 netfilter2; C:\Windows\System32\drivers\netfilter2.sys [124952 2023-07-06] (Avast Software s.r.o. -> Windows (R) Win 7 DDK provider) S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [23072 2024-09-30] (RealDefense LLC -> SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [21968 2024-07-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [602520 2024-07-16] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-07-16] (Microsoft Windows -> Microsoft Corporation) R3 WirelessKeyboardFilter; C:\Windows\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-09-30 08:59 - 2024-09-30 08:59 - 000036186 _____ C:\Users\miche\Downloads\FRST.txt 2024-09-30 08:58 - 2024-09-30 08:59 - 000000000 ____D C:\FRST 2024-09-30 08:58 - 2024-09-30 08:58 - 002397696 _____ (Farbar) C:\Users\miche\Downloads\FRST64(1).exe 2024-09-30 08:56 - 2024-09-30 08:56 - 002397696 _____ (Farbar) C:\Users\miche\Downloads\FRST64.exe 2024-09-30 08:30 - 2024-09-30 08:30 - 000189776 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2024-09-29 07:55 - 2024-09-29 07:56 - 000814180 _____ C:\Windows\Minidump\092924-7265-01.dmp 2024-09-29 07:55 - 2024-09-29 07:55 - 1053590290 _____ C:\Windows\MEMORY.DMP 2024-09-28 16:53 - 2024-09-28 16:53 - 000306581 _____ C:\Users\miche\Downloads\TROMI_FA240313.pdf 2024-09-28 08:33 - 2024-09-28 08:33 - 000439128 _____ C:\Windows\system32\FNTCACHE.DAT 2024-09-27 06:52 - 2024-09-27 06:52 - 000315688 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe 2024-09-26 07:44 - 2024-09-26 07:44 - 000000000 ___HD C:\$WinREAgent 2024-09-20 17:11 - 2024-09-20 17:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2024-09-20 17:11 - 2024-09-20 17:11 - 000000000 ____D C:\Program Files\iTunes 2024-09-09 11:20 - 2024-09-09 11:20 - 000000000 ____D C:\Program Files (x86)\DsNET Corp 2024-09-09 11:20 - 2008-08-18 19:18 - 000077824 _____ (Fox Magic Software) C:\Windows\SysWOW64\fmcodec.DLL 2024-09-09 11:04 - 2024-09-09 11:04 - 000000000 ____D C:\Users\miche\AppData\Roaming\aTubeCatcher_10 2024-09-09 11:04 - 2024-09-09 11:04 - 000000000 ____D C:\Users\miche\AppData\Local\DsNET_Corp 2024-09-07 09:21 - 2024-09-07 09:21 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\QuickStyles 2024-09-07 09:21 - 2024-09-07 09:21 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\Bibliography ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-09-30 08:51 - 2022-07-30 10:11 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-09-30 08:50 - 2022-07-30 10:44 - 000000000 ____D C:\Windows\SystemTemp 2024-09-30 08:49 - 2022-07-30 11:44 - 000000000 _____ C:\Windows\system32\Drivers\lvuvc.hs 2024-09-30 08:49 - 2022-07-30 09:58 - 000000000 ____D C:\Windows\system32\SleepStudy 2024-09-30 08:40 - 2024-06-16 11:41 - 000000000 ____D C:\Users\miche\AppData\Local\Malwarebytes 2024-09-30 08:35 - 2022-07-30 10:02 - 001681374 _____ C:\Windows\system32\PerfStringBackup.INI 2024-09-30 08:35 - 2019-12-07 16:50 - 000755342 _____ C:\Windows\system32\perfh00C.dat 2024-09-30 08:35 - 2019-12-07 16:50 - 000142148 _____ C:\Windows\system32\perfc00C.dat 2024-09-30 08:35 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2024-09-30 08:30 - 2023-07-06 12:10 - 000000000 ____D C:\Users\miche\AppData\Local\AvastAntiTrackPremium 2024-09-30 08:30 - 2022-07-30 12:45 - 000000000 ____D C:\ProgramData\Avast Software 2024-09-30 08:30 - 2022-07-30 09:58 - 000008192 ___SH C:\DumpStack.log.tmp 2024-09-30 08:30 - 2022-07-30 09:58 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2024-09-30 08:30 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-09-30 08:29 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI 2024-09-30 08:28 - 2022-08-09 16:25 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\Skype for Desktop 2024-09-30 08:28 - 2022-07-30 10:03 - 000000000 ___SD C:\Users\miche\AppData\Roaming\Microsoft\Credentials 2024-09-30 07:45 - 2023-01-12 10:43 - 000000000 ____D C:\Program Files\SUPERAntiSpyware 2024-09-30 07:42 - 2024-08-05 14:14 - 000000000 ____D C:\ProgramData\SUPERSetup 2024-09-30 07:30 - 2024-05-02 11:12 - 000000542 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task e397b525-64ca-4d18-9798-29db9fbe450c.job 2024-09-30 07:30 - 2024-05-02 11:12 - 000000542 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 8bd41fd2-e901-457c-86ef-83fc8c2688c9.job 2024-09-29 19:50 - 2022-07-30 10:03 - 000000000 ____D C:\Users\miche 2024-09-29 15:56 - 2022-07-30 13:17 - 000000000 ____D C:\Users\miche\AppData\Roaming\vlc 2024-09-29 15:54 - 2024-05-02 11:12 - 000003384 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task e397b525-64ca-4d18-9798-29db9fbe450c 2024-09-29 15:54 - 2024-05-02 11:12 - 000003126 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task 8bd41fd2-e901-457c-86ef-83fc8c2688c9 2024-09-29 15:54 - 2022-09-03 11:58 - 000003868 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3714741450-1788149739-961137336-1002UA{5ED49CD9-7396-46E2-AEE5-E0E49AC430E5} 2024-09-29 15:54 - 2022-09-03 11:58 - 000003774 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3714741450-1788149739-961137336-1002Core{AC13C268-F0D6-4C20-B92B-2FC920C78D88} 2024-09-29 15:54 - 2022-08-29 12:06 - 000003628 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1661767587 2024-09-29 15:54 - 2022-07-30 12:46 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software 2024-09-29 15:54 - 2022-07-30 09:58 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-09-29 15:54 - 2022-07-30 09:58 - 000003394 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-09-29 08:26 - 2023-10-19 11:39 - 000000000 ____D C:\Users\miche\Desktop\Recettes 2024-09-29 07:56 - 2022-08-15 11:52 - 000000000 ____D C:\Windows\Minidump 2024-09-29 07:29 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-09-29 07:29 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2024-09-29 07:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2024-09-28 20:12 - 2022-07-30 09:58 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-09-28 15:20 - 2022-08-07 10:54 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\Windows Photo Viewer 2024-09-28 15:06 - 2023-05-24 14:50 - 000000000 ____D C:\Users\miche\Desktop\Photos Esteban 2024-09-28 15:00 - 2023-01-10 09:32 - 000000000 ____D C:\Users\miche\Desktop\Esteban Films 2024-09-27 12:09 - 2022-07-30 12:46 - 000000000 ____D C:\Users\miche\AppData\Local\Avast Software 2024-09-27 12:07 - 2022-07-30 14:09 - 000000000 ____D C:\Users\miche\AppData\Roaming\AIMP 2024-09-27 06:58 - 2022-09-27 17:57 - 000000000 ___RD C:\Users\miche\Documents\Scanned Documents 2024-09-27 06:52 - 2022-07-30 12:46 - 001200696 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000950328 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000549968 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswNetHub.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000381520 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000306744 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000293968 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000274000 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000229944 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000097848 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000084424 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000069176 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys 2024-09-27 06:52 - 2022-07-30 12:46 - 000028752 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys 2024-09-27 06:52 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2024-09-26 08:19 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2024-09-26 07:53 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2024-09-25 14:44 - 2022-07-30 17:04 - 000002362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2024-09-24 09:57 - 2022-08-13 10:37 - 000000000 ____D C:\Users\miche\Desktop\DIVERS 2024-09-23 10:27 - 2023-02-19 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2024-09-21 07:27 - 2022-07-30 10:00 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2024-09-20 17:29 - 2022-07-30 14:09 - 000000000 ____D C:\Program Files (x86)\AIMP 2024-09-20 17:17 - 2023-10-29 12:36 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-09-20 17:16 - 2023-10-29 12:36 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-09-20 16:51 - 2022-07-30 10:15 - 000000000 ____D C:\Windows\system32\MRT 2024-09-20 16:49 - 2022-07-30 10:15 - 199688632 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2024-09-10 09:06 - 2022-08-05 08:41 - 000000000 ____D C:\Users\miche\AppData\Local\CrashDumps 2024-09-09 13:54 - 2022-07-30 10:04 - 000000000 ____D C:\Users\miche\AppData\Local\Packages 2024-09-09 13:50 - 2024-06-16 16:08 - 000239568 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2024-09-09 11:36 - 2022-07-30 10:06 - 000000000 ____D C:\Users\miche\AppData\Local\PlaceholderTileLogoFolder 2024-09-09 11:02 - 2022-07-30 10:02 - 000000000 ____D C:\ProgramData\Package Cache 2024-09-09 08:48 - 2024-04-03 14:10 - 000003542 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-09-09 08:45 - 2024-04-03 14:10 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-09-08 13:46 - 2022-07-30 12:51 - 000000000 ____D C:\Users\miche\AppData\Roaming\AnyDesk 2024-09-07 09:27 - 2022-07-30 10:41 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\Word 2024-09-07 09:20 - 2022-07-30 17:25 - 000000000 ____D C:\Users\miche\AppData\Roaming\Microsoft\Excel 2024-09-04 17:15 - 2023-10-29 12:36 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-09-04 08:49 - 2023-10-29 12:36 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2024-08-31 08:13 - 2019-12-07 16:53 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents 2024-08-31 08:13 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-08-31 08:13 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2024-08-31 06:43 - 2022-07-30 10:38 - 000000000 ____D C:\Program Files (x86)\Microsoft Office ==================== Fichiers à la racine de certains dossiers ======== 2023-09-27 12:26 - 2023-09-27 12:26 - 000000000 _____ () C:\Users\miche\AppData\Local\installLocal 2023-11-28 14:33 - 2023-11-28 14:33 - 000001355 _____ () C:\Users\miche\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================