cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 08-11-2021 02
Exécuté par riour (administrateur) sur LAPTOP-R64DUQTR (Acer Aspire E5-772) (08-11-2021 14:09:52)
Exécuté depuis C:\Users\riour\Desktop
Profils chargés: riour
Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1288 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <5>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <22>
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-03-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [134936 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-948431377-1523042896-2451150178-1001\...\Run: [Dashlane] => C:\Users\riour\AppData\Roaming\Dashlane\Dashlane.exe [478592 2017-01-05] (Dashlane -> Dashlane, Inc.)
HKU\S-1-5-21-948431377-1523042896-2451150178-1001\...\Run: [DashlanePlugin] => C:\Users\riour\AppData\Roaming\Dashlane\DashlanePlugin.exe [536960 2017-01-05] (Dashlane -> )
HKU\S-1-5-21-948431377-1523042896-2451150178-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-06] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-948431377-1523042896-2451150178-1001\...\Run: [AvastBrowserAutoLaunch_4D26AC96BEA9ED490927655AE712BAC9] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2495608 2021-11-01] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Print\Monitors\HP 8711 Status Monitor: C:\WINDOWS\system32\hpinksts8711LM.dll [332176 2012-09-12] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\92.2.11577.159\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\Installer\chrmstp.exe [2021-11-02] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\95.0.12827.70\Installer\chrmstp.exe [2021-11-04] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\riour\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Alertes de surveillance de l'encre - HP Deskjet 2050 J510 series.lnk [2021-11-08]
ShortcutAndArgument: Alertes de surveillance de l'encre - HP Deskjet 2050 J510 series.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 2050 J510 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN08E2J0YN05D1;CONNECTION=USB;MONITOR=1;
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {05B70514-EC61-4742-BB65-A134E2000566} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [4119656 2012-10-02] (Hewlett Packard -> Hewlett-Packard Co.)
Task: {083AD50D-F614-464F-93EF-66ECD369F263} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2495608 2021-11-01] (Avast Software s.r.o. -> AVAST Software)
Task: {1006BB74-F8E7-4F5D-B107-507F9D22629F} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: {134D0AD7-410B-4DE6-9CCC-74A203FED35C} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [216296 2014-03-13] (Acer Incorporated -> TODO: )
Task: {1BB473EB-C7C8-442A-B916-AD48CFCD45AE} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2495608 2021-11-01] (Avast Software s.r.o. -> AVAST Software)
Task: {2545D43D-7798-432D-8A9A-E6A9E07C2CE1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108928 2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {2EE516ED-39C8-45CD-9B48-55A1E88E789E} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4645168 2017-05-24] (Acer Incorporated -> )
Task: {47F2ED29-EB0D-43BC-9C05-875D9145855D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-01-18] (Google Inc -> Google Inc.)
Task: {4D9BEAB1-5CE9-47D9-A1B5-00A19EA19A2A} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
Task: {6553E41D-D73D-42F6-A245-4CADFF10F03F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-06] (Piriform Ltd -> Piriform Ltd)
Task: {668136FC-C5B3-47DE-9AF4-CB6F17BB6438} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4929304 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
Task: {66A5D5E6-DD1E-4EDF-9AA2-23ECFB7606D1} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe --cistrayUI (Pas de fichier)
Task: {6D5BE276-6A1B-4B63-956D-7FB82C72C81D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {70498BCB-4B75-42DA-84EC-4804210BF80B} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe [30976 2015-05-14] (Acer Incorporated -> )
Task: {7EAFB3EB-503A-4A34-B8BE-BD6BBA43C624} - System32\Tasks\App Explorer => C:\Users\riour\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7941288 2020-05-30] (SweetLabs Inc. -> SweetLabs, Inc) <==== ATTENTION
Task: {88E035F7-EB82-4830-8B63-E111EFBAD38F} - System32\Tasks\AcerCMUpdateTask2.1.16258 => C:\Program Files (x86)\Acer\Amundsen\2.1.16258\AWC.exe [152880 2016-09-20] (Acer Incorporated -> )
Task: {8BA33AC9-E223-44D0-A2F5-649D22C32ED4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {900E89CC-B16D-4228-8139-B224AFA746DC} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [40352 2016-01-20] (Acer Incorporated -> )
Task: {90A50089-C0F5-491F-99E5-968BBB2FAD4D} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2766240 2016-03-10] (Acer Incorporated -> Acer Incorporated)
Task: {93C25E00-419D-4136-A487-F5E3CD96E326} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2920752 2017-05-24] (Acer Incorporated -> )
Task: {94AD5340-1D5A-4F4C-ABB5-D2E5EAD3DB5A} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [421792 2016-03-10] (Acer Incorporated -> Acer Incorporated)
Task: {953ED5E4-A1E2-4A3D-AB20-4E9A2EA26D8E} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (Pas de fichier)
Task: {9B9C1DDE-25B4-45D9-807A-B1AF1B8C8F0D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22655904 2021-10-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {9BE39BAE-BC56-4CB8-BC2C-B61988FB1EFE} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [64320 2019-07-11] (Acer Incorporated -> Acer)
Task: {B5D10460-4A18-46F7-874F-109E435CD62B} - System32\Tasks\Microsoft\Office\Microsoft Office Touchless Attach Notification => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22655904 2021-10-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {BC5F60C5-5329-44A3-B63A-317169639AD3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-01-18] (Google Inc -> Google Inc.)
Task: {C3095AAE-8077-4DC2-8B5C-2FD284704555} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472992 2016-01-20] (Acer Incorporated -> Acer Incorporated)
Task: {D7DB1418-A92E-4648-B629-EC8C84CBC32A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108928 2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {E7934BDC-E434-4413-B114-7CF6596BE63B} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752 2017-03-20] (Acer Incorporated -> Acer Incorporated)
Task: {EB670F88-16B7-4284-8AD5-ADF97841F0CF} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"]
Task: {FB6C5B71-DAB9-4BBA-9905-A062C4E55657} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
Task: {FCAFFBE4-2D83-4537-8FBC-6415917819D1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22655904 2021-10-25] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{47ca9acf-c26a-49a6-b666-05306112325b}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e9c11d9f-a402-4078-bd35-fb5cd78be64b}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge Profile: C:\Users\riour\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-15]

FireFox:
========
FF DefaultProfile: 25tz7ico.default
FF ProfilePath: C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default [2021-07-27]
FF Homepage: Mozilla\Firefox\Profiles\25tz7ico.default -> hxxps://www.google.fr/
FF Extension: (Amazon Assistant for Firefox) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\abb-acer@amazon.com [2017-01-18] []
FF Extension: (Dashlane) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\jetpack-extension@dashlane.com.xpi [2019-06-04] [UpdateUrl:hxxps://ws1.dashlane.com/5/binaries/query?logins=&platform=firefox&target=ff_web_extension&format=json&version=]
FF Extension: (Français Language Pack) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\langpack-fr@firefox.mozilla.org.xpi [2019-06-06]
FF Extension: (Mozilla Partner Defaults) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\partnerdefaults@mozilla.com [2017-01-18] []
FF Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\sp@avast.com.xpi [2019-02-19]
FF Extension: (Avast Online Security) - C:\Users\riour\AppData\Roaming\Mozilla\Firefox\Profiles\25tz7ico.default\Extensions\wrc@avast.com.xpi [2018-08-16]
FF Extension: (Amazon Assistant for Firefox) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\abb-acer@amazon.com [2019-06-17] []
FF Extension: (Français Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-fr@firefox.mozilla.org [2019-06-17] []
FF Extension: (Mozilla Partner Defaults) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com [2019-06-17] []
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2016-11-23] (WildTangent Inc -> )

Chrome:
=======
CHR Profile: C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default [2021-11-08]
CHR Notifications: Default -> hxxps://forums.commentcamarche.net; hxxps://www.facebook.com
CHR HomePage: Default -> hxxp://www.google.fr/
CHR StartupUrls: Default -> "hxxps://www.google.fr/"
CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?FORM=SLBRDF&PC=SL10&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?query={searchTerms}
CHR Extension: (Slides) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-22]
CHR Extension: (Docs) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-22]
CHR Extension: (Google Drive) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22]
CHR Extension: (YouTube) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-18]
CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2021-11-06]
CHR Extension: (Sheets) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-22]
CHR Extension: (Google Docs hors connexion) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-19]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-10-28]
CHR Extension: (Itineraire - Offres shopping) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlincbpgbkpbjepghokdnhnnpphmegig [2017-07-20]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\riour\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8323664 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [630040 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [377624 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\95.0.12827.70\elevation_service.exe [1713640 2021-11-01] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-07] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12034464 2021-10-12] (Microsoft Corporation -> Microsoft Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane -> Dashlane, Inc.)
S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064 2016-11-23] (WildTangent Inc -> WildTangent)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé]
S3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [440224 2016-03-10] (Acer Incorporated -> Acer Incorporated)
S3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [481696 2016-03-10] (Acer Incorporated -> Acer Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13103632 2020-09-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [291232 2016-02-01] (Acer Incorporated -> acer)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35720 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [221600 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369176 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250408 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99368 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-10-04] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41368 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [184640 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [538480 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107864 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R0 AswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82912 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851712 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [557152 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215392 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [328568 2021-10-04] (Avast Software s.r.o. -> AVAST Software)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-15] (Acer Incorporated -> Acer Incorporated)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-15] (Acer Incorporated -> Acer Incorporated)
S3 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-11-08 14:05 - 2021-11-08 14:09 - 000035418 _____ C:\Users\riour\Desktop\Addition.txt
2021-11-08 13:50 - 2021-11-08 14:13 - 000027308 _____ C:\Users\riour\Desktop\FRST.txt
2021-11-08 13:50 - 2021-11-08 14:12 - 000000000 ____D C:\FRST
2021-11-08 13:48 - 2021-11-08 13:48 - 002312192 _____ (Farbar) C:\Users\riour\Desktop\FRST64.exe
2021-11-08 13:45 - 2021-11-08 13:45 - 002019840 _____ (Farbar) C:\Users\riour\Downloads\FRST.exe
2021-11-03 10:46 - 2021-11-03 10:46 - 000187119 _____ C:\Users\riour\Downloads\RIOU_FA20220207.pdf
2021-10-25 09:56 - 2021-10-25 09:56 - 000721383 _____ C:\Users\riour\Downloads\TARIF TTC au 15 OCTOBRE 2021 (2).pdf
2021-10-25 09:53 - 2021-10-25 09:53 - 000160511 _____ C:\Users\riour\Downloads\Bon de commande Champ Bourgeois-Boulonnais Octobre 2021 (1).xlsx
2021-10-23 10:20 - 2021-10-23 10:20 - 000721383 _____ C:\Users\riour\Downloads\TARIF TTC au 15 OCTOBRE 2021 (1).pdf
2021-10-22 13:38 - 2021-10-22 13:38 - 000078687 _____ C:\Users\riour\Downloads\amstrust_20211020004515150GNXXSDCFAEAU20127083.pdf
2021-10-19 10:40 - 2021-10-19 10:40 - 005830656 _____ C:\Users\riour\Downloads\CANO_CRISTALES_en_Colombie_____S_f__1_11 (1).pps
2021-10-19 10:39 - 2021-10-19 10:39 - 005830656 _____ C:\Users\riour\Downloads\CANO_CRISTALES_en_Colombie_____S_f__1_11.pps
2021-10-19 10:35 - 2021-10-19 10:35 - 000721383 _____ C:\Users\riour\Downloads\TARIF TTC au 15 OCTOBRE 2021.pdf
2021-10-19 10:34 - 2021-10-19 10:34 - 000160511 _____ C:\Users\riour\Downloads\Bon de commande Champ Bourgeois-Boulonnais Octobre 2021.xlsx
2021-10-15 15:24 - 2021-10-15 15:24 - 000043872 _____ C:\Users\riour\Downloads\Attestation_MGEN_Rejane_RIOU_21031940 (2).pdf
2021-10-15 10:52 - 2021-10-15 10:52 - 000078799 _____ C:\Users\riour\Downloads\amstrust_20210413003012120GNXXSDCFAEAU13053829 (1).pdf
2021-10-13 12:51 - 2021-10-13 12:52 - 009635413 _____ C:\Users\riour\Downloads\Elle vendait des attestation s et aussi… =5F Facebook.mp4
2021-10-13 05:05 - 2021-10-13 05:05 - 000011495 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-10-13 05:04 - 2021-10-13 05:04 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-10-13 05:02 - 2021-10-13 05:02 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll
2021-10-13 05:02 - 2021-10-13 05:02 - 000098304 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-10-13 05:01 - 2021-10-13 05:01 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2021-10-13 04:28 - 2021-10-13 04:28 - 000000000 ___HD C:\$WinREAgent
2021-10-12 11:21 - 2021-10-12 11:21 - 000685996 _____ C:\Users\riour\Downloads\D11606-récépissé de dépôt du PA.pdf
2021-10-11 10:53 - 2021-10-11 10:53 - 006876160 _____ C:\Users\riour\Downloads\Vues panoramiques du monde (DC)111.pps
2021-10-11 10:50 - 2021-10-11 10:50 - 003289088 _____ C:\Users\riour\Downloads\Arbres magnifiques AB.pps
2021-10-11 10:49 - 2021-10-11 10:49 - 001009324 _____ C:\Users\riour\Downloads\Le-chien-des-balkany-11.mp4
2021-10-11 10:46 - 2021-10-11 10:46 - 004720615 _____ C:\Users\riour\Downloads\Le-saviez-vous1.mp4
2021-10-11 10:45 - 2021-10-11 10:45 - 005537260 _____ C:\Users\riour\Downloads\4c348bd4-501f-46cf-9443-ffed434b70ae.MP4
2021-10-11 10:39 - 2021-10-11 10:39 - 007552512 _____ C:\Users\riour\Downloads\MG Beaux voyages (1).pps
2021-10-11 10:38 - 2021-10-11 10:38 - 007552512 _____ C:\Users\riour\Downloads\MG Beaux voyages.pps

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-11-08 14:12 - 2017-01-18 19:00 - 000000000 ____D C:\Program Files (x86)\Google
2021-11-08 13:43 - 2018-04-06 09:45 - 000000000 ____D C:\Users\riour\AppData\Local\AVAST Software
2021-11-08 13:36 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-11-08 13:17 - 2020-06-24 18:09 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-11-08 13:17 - 2020-06-24 18:09 - 000002284 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-11-08 13:17 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-11-08 13:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-11-08 13:16 - 2020-07-22 21:54 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-11-08 13:16 - 2019-12-07 15:49 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat
2021-11-08 13:16 - 2019-12-07 15:49 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat
2021-11-08 13:16 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-11-08 13:11 - 2017-01-18 18:43 - 000000000 __SHD C:\Users\riour\IntelGraphicsProfiles
2021-11-08 13:10 - 2017-09-15 16:45 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2021-11-08 13:10 - 2017-02-11 20:15 - 000000000 ____D C:\ProgramData\AVAST Software
2021-11-08 13:09 - 2020-10-20 10:54 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-11-08 13:09 - 2020-07-22 22:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-11-08 13:09 - 2020-07-22 21:36 - 000008192 ___SH C:\DumpStack.log.tmp
2021-11-08 13:08 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-11-08 13:07 - 2020-11-27 16:40 - 000002428 _____ C:\WINDOWS\system32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3}
2021-11-08 13:07 - 2020-07-22 22:17 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-11-08 13:07 - 2020-07-22 22:17 - 000003518 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-11-08 13:07 - 2020-07-22 22:17 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-11-08 13:07 - 2020-07-22 22:17 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-11-08 13:07 - 2020-07-22 22:17 - 000002218 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-11-08 13:07 - 2020-07-22 22:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2021-11-08 13:05 - 2020-07-22 21:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-11-06 11:32 - 2020-07-22 21:42 - 000000000 ____D C:\Users\riour
2021-11-05 15:52 - 2017-01-21 18:36 - 000000000 ____D C:\Users\riour\AppData\Local\CrashDumps
2021-11-04 21:01 - 2018-04-07 09:14 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2021-11-04 21:01 - 2018-04-07 09:14 - 000002465 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2021-11-01 11:12 - 2016-06-21 19:38 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-10-29 10:17 - 2018-01-10 12:33 - 000000000 ____D C:\Users\riour\AppData\Local\Packages
2021-10-22 08:53 - 2020-07-22 22:17 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-10-13 16:46 - 2020-07-22 22:17 - 000003512 _____ C:\WINDOWS\system32\Tasks\DashlaneUpgradeCheck
2021-10-13 16:42 - 2020-07-22 21:36 - 000435264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-10-13 16:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-10-13 05:18 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-10-13 04:22 - 2017-01-23 18:23 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-10-13 04:16 - 2017-01-23 18:23 - 139806512 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


Publicité


Signaler le contenu de ce document

Publicité