Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 24-10-2020
Exécuté par Asura (administrateur) sur ASURA (Micro-Star International Co., Ltd MS-7B86) (24-10-2020 17:55:48)
Exécuté depuis C:\Users\Asura\Desktop
Profils chargés: Asura
Platform: Windows 10 Pro Version 1809 17763.1158 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> ) C:\Program Files\AMD\Performance Profile Client\RyzenMaster\AUEPRyzenMasterAC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe <3>
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPLauncher.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPUF.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0352369.inf_amd64_8df39ff66d4d8f46\B352355\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0352369.inf_amd64_8df39ff66d4d8f46\B352355\atiesrxx.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(A-Volute -> Nahimic) C:\Windows\System32\NahimicService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <11>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\ipconfig.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2009.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2009.7-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\Live Update.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe
(Micro-Star International CO., LTD. -> MICRO-STAR INT'L,.LTD.) C:\Program Files\WMIHook\WMIHookBtnFn\LEDBarController.exe
(Micro-Star International CO., LTD. -> MICRO-STAR INT'L,.LTD.) C:\Program Files\WMIHook\WMIHookBtnFn\SilentFanController.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe <4>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [956920 2019-12-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Command Center] => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [835768 2018-09-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [598200 2018-09-28] (Razer USA Ltd. -> Razer Inc.)
HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1598920 2017-06-30] (Razer USA Ltd. -> Razer Inc)
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26282160 2019-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [LEDBarController] => C:\Program Files\WMIHook\WMIHookBtnFn\LEDBarController.exe [43056 2015-09-18] (Micro-Star International CO., LTD. -> MICRO-STAR INT'L,.LTD.)
HKLM-x32\...\Run: [SilentFanControl] => C:\Program Files\WMIHook\WMIHookBtnFn\SilentFanController.exe [243248 2015-09-16] (Micro-Star International CO., LTD. -> MICRO-STAR INT'L,.LTD.)
HKU\S-1-5-21-1547625454-3822929043-2741935155-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-1547625454-3822929043-2741935155-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1547625454-3822929043-2741935155-1001\...\Run: [AMDDVR] => C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe [2486376 2020-02-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-1547625454-3822929043-2741935155-1001\...\RunOnce: [Application Restart #3] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM\...\Windows x64\Print Processors\Canon MG2500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBX.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG2500 series: C:\Windows\system32\CNMLMBX.DLL [391168 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.116\Installer\chrmstp.exe [2020-07-07] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
InternetURL: C:\Users\Asura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mikiLove.url -> URL: "C:\Users\Asura\AppData\Roaming\mikiLove\fkbNmYW.vbs"
InternetURL: C:\Users\Asura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\umaJoin.url -> URL: "C:\Users\Asura\AppData\Roaming\umaJoin\wKsESIKg.vbs"
==================== Tâches planifiées (Avec liste blanche) ============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {1ADB4AAE-F053-431A-8821-15272B10699E} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1628160 2020-02-29] (Advanced Micro Devices, Inc.) [Fichier non signé]
Task: {25084540-32E7-4D9E-BCF9-36E55A150023} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3C9CEDC8-2F05-4D17-9689-4B48E817D311} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {41BA5DED-74FF-4408-A6D0-5910E23A023D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2018-12-06] (Google Inc -> Google Inc.)
Task: {50F8095C-5650-48D2-B30C-12889C01FA97} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2018-12-06] (Google Inc -> Google Inc.)
Task: {51E602A1-8B1D-4888-BDF3-7841ED3B2056} - System32\Tasks\Private Internet Access Startup => %SYSTEMDRIVE%/Program Files/pia_manager/pia_manager.exe
Task: {5C5A05A2-8ACB-45D6-91E6-5E3A675EAC6A} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1628160 2020-02-29] (Advanced Micro Devices, Inc.) [Fichier non signé]
Task: {7B496E12-FD1B-4900-B7A8-F4104363167D} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [1068688 2019-08-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {819B1A96-3D0A-4B2B-8843-1434E4D5E69E} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {848A11E8-77B7-413C-800E-DD821DACE13B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1341008 2020-09-06] (Adobe Inc. -> Adobe Inc.)
Task: {89DDAFB5-E535-44DA-9F63-2E9DB1F4B3E7} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {8B908CA2-0D14-452D-A19B-1103E5A6D87D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9A12588C-965C-4C86-9EE4-7CDE0B511243} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60008 2020-02-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {9B402863-C44A-499A-83DA-E4407CF7B4FA} - System32\Tasks\AMDInstallUEP => C:\Program Files\AMD\InstallUEP\AMDInstallUEP.exe
Task: {A443F6F1-040E-4298-B457-1782DDCCF480} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {B111C932-D36F-4826-84F8-FED207A708CB} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [677624 2019-11-21] (Advanced Micro Devices INC. -> )
Task: {C5A754AB-D770-4AD6-8CDC-4208CDF5C051} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D21006D1-3E4F-464C-B01A-4C33778E43BB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DDF75359-0D67-4110-B3A7-5FE664771F56} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E1C319EA-0F1E-4D80-9BF5-AEC165C24ED5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EFEAEF1D-B2E2-472F-915E-503EAAB8B221} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [67688 2020-02-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {F7A6B943-6E54-4FC3-AC26-5DB90D5143ED} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60008 2020-02-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1838c6bd-ef6a-424e-b289-b15c51ce61da}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{20a83cae-ef1e-484a-963a-237866e0194c}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7bab3f52-d7f5-4ae3-af9b-ad3692327142}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{99903aa5-0211-4e3a-abbb-f11ad9d96377}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{d12b0285-bb24-4797-9f8a-7fdc1d66b6a1}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{d95eb284-eee3-4873-b102-15bcd971b4f8}: [DhcpNameServer] 209.222.18.222 209.222.18.218
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-09-11] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default [2020-10-24]
CHR Notifications: Default -> hxxps://shop.nestle.jp
CHR Extension: (Slides) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-12-06]
CHR Extension: (Docs) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-12-06]
CHR Extension: (Google Drive) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (YouTube) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-06]
CHR Extension: (Adobe Acrobat) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-10-24]
CHR Extension: (Dark Reader) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2020-10-24]
CHR Extension: (Sheets) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-12-06]
CHR Extension: (Google Docs hors connexion) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-24]
CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-10-24]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\Asura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-07]
CHR HKU\S-1-5-21-1547625454-3822929043-2741935155-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-09-06] (Adobe Inc. -> Adobe Inc.)
R2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPLauncher.exe [58984 2020-02-28] (Advanced Micro Devices, Inc. -> AMD)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3729512 2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [774272 2019-01-03] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1242696 2020-03-29] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-03-29] (GOG Sp. z o.o. -> GOG.com)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7138296 2020-09-01] (Malwarebytes Inc -> Malwarebytes)
S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService_x64.exe [2669240 2018-01-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2343608 2018-01-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService_x64.exe [2725048 2017-12-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2255032 2018-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2507448 2018-10-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2136248 2018-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2742968 2018-08-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2323632 2019-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [34976 2018-12-20] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NahimicService; C:\Windows\system32\NahimicService.exe [1758968 2019-11-28] (A-Volute -> Nahimic)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5897960 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9620768 2020-04-18] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-10-24] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 WMI_Hook_Service; C:\Program Files\WMIHook\WMIHookBtnFn\WMI_Hook_Service.exe [155696 2015-09-21] (Micro-Star International CO., LTD. -> MICRO-STAR INT'L,.LTD.)
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [75584 2018-12-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2018-12-06] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2018-12-06] (Disc Soft Ltd -> Disc Soft Ltd)
R1 EneIo; C:\Windows\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 inpoutx64; C:\Windows\System32\Drivers\inpoutx64.sys [15008 2020-08-07] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2020-09-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-09-01] (Malwarebytes Inc -> Malwarebytes)
R3 Nahimic_Mirroring; C:\Windows\system32\DRIVERS\Nahimic_Mirroring.sys [85592 2020-01-17] (A-Volute -> Windows (R) Win 7 DDK provider)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MysticLight\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2018-01-30] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [3196560 2020-04-18] (Riot Games, Inc. -> Riot Games, Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-10-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [428264 2020-10-24] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [69864 2020-10-24] (Microsoft Windows -> Microsoft Corporation)
S3 atillk64; \??\C:\Users\Asura\AppData\Local\Temp\AGT\atillk64.sys [X] <==== ATTENTION
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) ===================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2020-10-24 17:55 - 2020-10-24 17:56 - 000022190 _____ C:\Users\Asura\Desktop\FRST.txt
2020-10-24 17:54 - 2020-10-24 17:56 - 000000000 ____D C:\FRST
2020-10-24 17:53 - 2020-10-24 17:54 - 002299904 _____ (Farbar) C:\Users\Asura\Desktop\FRST64.exe
2020-10-24 13:28 - 2020-10-24 13:28 - 000451770 _____ C:\Users\Asura\Desktop\ZHPDiag.html
2020-10-24 13:28 - 2020-10-24 13:28 - 000370534 _____ C:\Users\Asura\Desktop\ZHPDiag.txt
2020-10-24 13:16 - 2020-10-24 14:02 - 000000000 ____D C:\Users\Asura\AppData\Roaming\ZHP
2020-10-24 13:16 - 2020-10-24 13:16 - 000000865 _____ C:\Users\Asura\Desktop\ZHPSuite.lnk
2020-10-24 13:16 - 2020-10-24 13:16 - 000000000 ____D C:\Users\Asura\AppData\Local\ZHP
2020-10-24 13:05 - 2020-10-24 13:06 - 003440000 _____ (Nicolas Coolman) C:\Users\Asura\Downloads\ZHPSuite.exe
2020-10-24 12:40 - 2020-10-24 12:54 - 000000375 _____ C:\Users\Asura\Desktop\DiskInfo.ini
2020-10-24 12:40 - 2020-10-24 12:40 - 000000000 ____D C:\Users\Asura\Desktop\Smart
2020-10-24 12:39 - 2020-09-28 22:16 - 002908784 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskInfoA64.exe
2020-10-24 12:39 - 2020-09-28 22:16 - 002762352 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskInfo64.exe
2020-10-24 12:39 - 2020-09-28 22:16 - 002616944 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskInfoA32.exe
2020-10-24 12:39 - 2020-09-28 22:16 - 002569328 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskInfo32.exe
2020-10-24 12:39 - 2020-09-23 22:26 - 000000000 ____D C:\Users\Asura\Desktop\CdiResource
2020-10-24 12:38 - 2020-10-24 12:38 - 006639714 _____ C:\Users\Asura\Downloads\CrystalDiskInfo8_8_9.zip
2020-10-24 12:34 - 2020-10-24 12:39 - 000000000 ____D C:\Users\Asura\Desktop\License
2020-10-24 12:34 - 2020-10-24 12:37 - 000000131 _____ C:\Users\Asura\Desktop\DiskMark64.ini
2020-10-24 12:34 - 2020-10-11 17:23 - 000000000 ____D C:\Users\Asura\Desktop\CdmResource
2020-10-24 12:34 - 2020-10-11 17:19 - 000867952 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskMarkA64.exe
2020-10-24 12:34 - 2020-10-11 17:19 - 000848496 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskMark64.exe
2020-10-24 12:34 - 2020-10-11 17:19 - 000689776 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskMark32.exe
2020-10-24 12:34 - 2020-10-11 17:19 - 000675440 _____ (Crystal Dew World) C:\Users\Asura\Desktop\DiskMarkA32.exe
2020-10-24 12:34 - 2020-04-18 22:17 - 000000698 _____ C:\Users\Asura\Desktop\ReadMe.txt
2020-10-24 12:29 - 2020-10-24 12:32 - 004189658 _____ C:\Users\Asura\Downloads\CrystalDiskMark8_0_0RC1.zip
==================== Un mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2020-10-24 17:52 - 2018-12-06 12:42 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-10-24 14:24 - 2020-09-01 14:55 - 000000000 __SHD C:\Users\Asura\AppData\Roaming\mikiLove
2020-10-24 14:22 - 2020-04-14 15:34 - 000003276 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2020-10-24 14:22 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-10-24 14:21 - 2018-12-06 12:42 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-10-24 14:20 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness
2020-10-24 14:20 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI
2020-10-24 14:06 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-10-24 14:05 - 2020-08-07 19:16 - 000000000 ____D C:\Users\Asura\AppData\Local\ElevatedDiagnostics
2020-10-24 13:51 - 2020-03-17 16:47 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-10-24 13:50 - 2020-03-17 16:47 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-10-24 12:58 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp
2020-10-24 12:56 - 2018-12-07 00:09 - 000000000 ____D C:\Windows\system32\MRT
2020-10-24 12:52 - 2018-12-07 00:09 - 129170736 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-10-24 12:40 - 2018-12-06 12:42 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-10-24 12:23 - 2018-12-06 20:03 - 000795000 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2020-10-24 12:22 - 2018-12-06 06:09 - 000003588 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-10-24 12:22 - 2018-12-06 06:09 - 000003464 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-10-06 02:04 - 2020-02-13 18:48 - 000835472 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-10-06 02:04 - 2020-02-13 18:48 - 000179608 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
==================== Fichiers à la racine de certains dossiers ========
2019-02-17 02:26 - 2019-02-17 02:26 - 000007605 _____ () C:\Users\Asura\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== Fin de FRST.txt ========================