cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 18-05-2022
Exécuté par fr (administrateur) sur DESKTOP-HTBEU97 (HP HP Pavilion All-in-One 24-xa0xxx) (19-05-2022 17:04:21)
Exécuté depuis C:\Users\franc\Downloads
Profils chargés: fr
Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.1706 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Apple Inc. -> Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(C:\Program Files (x86)\TotalAV\SecurityService.exe ->) (Protected Antivirus Limited -> TotalAV) C:\Program Files (x86)\TotalAV\TotalAV.exe
(C:\Program Files\Portrait Displays\HP Display Control Service\DisplayControlService.exe ->) (PORTRAIT DISPLAYS, INC. -> Portrait Displays) C:\Program Files\Portrait Displays\HP Display Control Service\CTHelper.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_baf36d4852e8e257\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_baf36d4852e8e257\igfxEM.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\AppHelperCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\BridgeCommunication.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.2.15.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(HP Inc.) C:\Program Files\WindowsApps\PortraitDisplays.HPDisplayControl_4.7.88.0_x64__2dgmkzkw4h30c\win32\DisplayControl.exe
(McAfee, LLC. -> McAfee, LLC.) C:\Program Files\Common Files\mcafee\platform\msm\McSmtFwk.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_a6e24179070178de\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\SysInfoCap.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_baf36d4852e8e257\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a439e07c373809e2\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_19b6a2e0bdb1ec9f\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_19b6a2e0bdb1ec9f\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_ccf4cd38f776cb97\RstMwService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Portrait Displays, Inc. -> HP Inc.) C:\Program Files\Portrait Displays\HP Display Control Service\DisplayControlService.exe
(services.exe ->) (Protected Antivirus Limited -> TotalAV) C:\Program Files (x86)\TotalAV\SecurityService.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0e8db3195354f73d\RtkAudUService64.exe <2>
(services.exe ->) (Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(services.exe ->) (WildTangent, Inc. -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe
(sihost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_baf36d4852e8e257\igfxext.exe
(svchost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2203.4603.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.15128.20224.0_x86__8wekyb3d8bbwe\Office16\SDXHelperBgt.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [164152 2016-07-26] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-355365165-2533683597-1363231706-1001\...\Run: [Speech Recognition] => C:\WINDOWS\Speech\Common\sapisvr.exe [44544 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\101.0.4951.67\Installer\chrmstp.exe [2022-05-14] (Google LLC -> Google LLC)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {102A2220-FE55-4AFD-877C-98F9180CF167} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [569416 2016-02-23] (Apple Inc. -> Apple Inc.)
Task: {1DC588CD-4F63-413F-B55A-9E51FF280220} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-25] (Google LLC -> Google LLC)
Task: {2EA8AE45-DD2E-4E11-94A5-1229D5710C6E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1145944 2022-03-28] (HP Inc. -> HP Inc.)
Task: {4083DF71-C057-461D-91CC-0FD36FCFDCF2} - System32\Tasks\HPCustParticipation HP ENVY 5000 series => C:\Program Files\HP\HP ENVY 5000 series\Bin\HPCustPartic.exe [6659488 2019-03-18] (HP Inc -> HP Inc.)
Task: {49261EB6-787E-4B6C-8BFE-F4296D53782A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1145944 2022-03-28] (HP Inc. -> HP Inc.)
Task: {546B8319-8B3B-4E39-9391-FB8DEEA88CB0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-03-28] (HP Inc. -> HP Inc.)
Task: {58DCAA9F-B773-4BB3-AFC1-8D8A8F3CB5A9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_TH8BS7M277 => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1145944 2022-03-28] (HP Inc. -> HP Inc.)
Task: {8424342E-F442-4A85-89E0-860A15C4D0D5} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0e8db3195354f73d\RtkAudUService64.exe [1231928 2021-02-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {9929EE18-4FB7-41BA-BA2E-87FA6A7EEA6C} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [462696 2018-06-01] (HP Inc. -> HP Inc.)
Task: {CAD686D1-A024-4D09-A12A-A0D1373F7707} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644984 2018-07-18] (HP Inc. -> HP Inc.)
Task: {EEDF1139-A7AC-4691-9B0F-A296991857DB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-25] (Google LLC -> Google LLC)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{69a26a52-e9e9-4621-9b45-c5df961b5bc3}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{d043b539-0b9d-4463-a34f-23b9ed86e035}: [DhcpNameServer] 192.168.1.1

Edge:
=======
DownloadDir: C:\Users\franc\Downloads
Edge Notifications: HKU\S-1-5-21-355365165-2533683597-1363231706-1001 -> hxxps://www.jeanmarcmorandini.com
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge DefaultProfile: Default
Edge Profile: C:\Users\franc\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-19]
Edge DownloadDir: Default -> C:\Users\franc\Downloads
Edge Notifications: Default -> hxxps://www.jeanmarcmorandini.com; hxxps://www1.notification-news.com; hxxps://yourflash24.com
Edge StartupUrls: Default -> "hxxps://google.fr/"

FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-12-18] (Apple Inc. -> )

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\franc\AppData\Local\Google\Chrome\User Data\Default [2022-05-19]
CHR Notifications: Default -> hxxps://assistance.orange.fr; hxxps://fr.aliexpress.com; hxxps://www.20minutes.fr; hxxps://www.50factory.com; hxxps://www.fnac.com; hxxps://www.materiel-velo.com; hxxps://www.motordoctor.fr; hxxps://www.orange.ma; hxxps://www.pourquoidocteur.fr
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\franc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-05-13]
CHR Extension: (Google Docs hors connexion) - C:\Users\franc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-15]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\franc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\franc\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-05-12]
CHR Profile: C:\Users\franc\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-12]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 0265971652637246mcinstcleanup; C:\ProgramData\McInstTemp0265971652637246\mcinst.exe [959224 2020-02-05] (McAfee, LLC -> McAfee, LLC.)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [356472 2019-06-26] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\AppHelperCap.exe [764448 2022-03-30] (HP Inc. -> HP Inc.)
R2 HPDCService; C:\Program Files\Portrait Displays\HP Display Control Service\DisplayControlService.exe [333016 2021-11-20] (Portrait Displays, Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\DiagsCap.exe [763480 2022-03-30] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [478056 2018-06-01] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\NetworkCap.exe [759336 2022-03-30] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_82b4ea84f6cb4b64\x64\SysInfoCap.exe [762904 2022-03-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_a6e24179070178de\x64\TouchpointAnalyticsClientService.exe [497328 2022-03-30] (HP Inc. -> HP Inc.)
R2 RtkBtAudioServ; C:\windows\RtkBtAudioServ.exe [304728 2019-02-21] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SecurityService; C:\Program Files (x86)\TotalAV\SecurityService.exe [264032 2021-11-09] (Protected Antivirus Limited -> TotalAV) <==== ATTENTION
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1689984 2022-03-29] (WildTangent, Inc. -> )
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S2 mfemms; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S3 mfevtp; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [208176 2021-11-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [197176 2021-11-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [46704 2021-11-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.)
S0 ProtectedELAM; C:\WINDOWS\System32\drivers\protected_elam.sys [17864 2021-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> TODO: )
R3 RtkA2dp; C:\WINDOWS\system32\DRIVERS\RtkA2dp.sys [208416 2018-10-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RtkAvrcp; C:\WINDOWS\System32\drivers\RtkAvrcp.sys [88376 2018-10-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64872 2019-09-26] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49600 2022-04-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [443664 2022-04-08] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-08] (Microsoft Windows -> Microsoft Corporation)
R1 webshieldfilter; C:\WINDOWS\System32\drivers\webshieldfilter.sys [96264 2021-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) <==== ATTENTION
U3 aspnet_state; pas de ImagePath
S0 cfwids; system32\drivers\cfwids.sys [X]
S3 dg_ssudbus; \SystemRoot\System32\drivers\ssudbus.sys [X]
R0 mfeaack; system32\drivers\mfeaack.sys [X]
R0 mfeavfk; system32\drivers\mfeavfk.sys [X]
S0 mfeelamk; system32\drivers\mfeelamk.sys [X]
S0 mfefirek; system32\drivers\mfefirek.sys [X]
R0 mfehidk; system32\drivers\mfehidk.sys [X]
R0 mfeplk; system32\drivers\mfeplk.sys [X]
R4 mfewfpk; system32\drivers\mfewfpk.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-05-19 17:04 - 2022-05-19 17:04 - 000020227 _____ C:\Users\franc\Downloads\FRST.txt
2022-05-19 17:03 - 2022-05-19 17:04 - 000000000 ____D C:\FRST
2022-05-19 17:00 - 2022-05-19 17:00 - 002366464 _____ (Farbar) C:\Users\franc\Downloads\FRST64.exe
2022-05-16 17:38 - 2021-11-09 18:51 - 000208176 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2022-05-16 17:38 - 2021-11-09 18:51 - 000197176 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2022-05-16 17:38 - 2021-11-09 18:51 - 000046704 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2022-05-15 20:23 - 2022-05-15 20:23 - 005238759 _____ C:\Users\franc\Downloads\randonnee Clue de la Melle - SENEZ.pdf
2022-05-15 19:54 - 2022-05-15 19:54 - 000000000 ____D C:\ProgramData\McInstTemp0265971652637246
2022-05-15 19:50 - 2022-05-15 19:50 - 000000000 ____D C:\ProgramData\McAfeeMcUnInstShim
2022-05-15 14:47 - 2022-05-15 14:47 - 000000000 ____D C:\Users\franc\Documents\TotalAV
2022-05-15 14:47 - 2021-11-09 18:51 - 000096264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\webshieldfilter.sys
2022-05-15 14:46 - 2022-05-19 07:32 - 000001153 _____ C:\Users\franc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalAV.lnk
2022-05-15 14:46 - 2022-05-15 14:46 - 000000000 ____D C:\Users\franc\AppData\Local\GUI
2022-05-15 14:46 - 2022-05-15 14:46 - 000000000 ____D C:\ProgramData\SecuritySuite
2022-05-15 14:45 - 2022-05-16 17:38 - 000000000 ____D C:\Program Files (x86)\TotalAV
2022-05-15 14:45 - 2022-05-15 14:46 - 000000000 ____D C:\ProgramData\TotalAV
2022-05-15 14:45 - 2022-05-15 14:45 - 000001067 _____ C:\Users\Public\Desktop\TotalAV.lnk
2022-05-15 14:45 - 2021-11-09 18:51 - 000017864 _____ (TODO: ) C:\WINDOWS\system32\Drivers\protected_elam.sys
2022-05-15 14:44 - 2022-05-15 14:44 - 057545744 _____ C:\Users\franc\Downloads\TotalAV_Setup (2).exe
2022-05-15 14:44 - 2022-05-15 14:44 - 057545744 _____ C:\Users\franc\Downloads\TotalAV_Setup (1).exe
2022-05-15 14:42 - 2022-05-15 14:43 - 057545744 _____ C:\Users\franc\Downloads\TotalAV_Setup.exe
2022-05-15 14:39 - 2022-05-15 14:39 - 006705440 _____ (EnigmaSoft Limited) C:\Users\franc\Downloads\SpyHunter-5.12-6-5285-Installer.exe
2022-05-13 20:57 - 2022-05-15 07:19 - 000002287 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-05-13 07:48 - 2022-05-13 07:48 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-05-13 07:48 - 2022-05-13 07:48 - 000093696 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-05-13 07:48 - 2022-05-13 07:48 - 000011799 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-05-13 07:40 - 2022-05-13 07:40 - 000000000 ___HD C:\$WinREAgent
2022-05-12 21:34 - 2022-05-15 15:09 - 092536832 _____ C:\WINDOWS\system32\config\SOFTWARE
2022-05-12 21:30 - 2022-05-12 21:34 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2022-05-12 20:42 - 2022-05-12 20:42 - 000000000 ___HD C:\$SysReset
2022-05-11 20:54 - 2022-05-11 20:54 - 000000000 ____D C:\Program Files\Google
2022-05-09 19:48 - 2022-05-09 19:48 - 005176546 _____ C:\Users\franc\Downloads\Newsletter_Mai.pdf
2022-05-09 06:11 - 2022-05-09 06:11 - 000079396 _____ C:\Users\franc\Downloads\La Crête de Liman depuis Marcoux (2).html
2022-05-08 17:27 - 2022-05-08 17:27 - 000079396 _____ C:\Users\franc\Downloads\La Crête de Liman depuis Marcoux (1).html
2022-05-08 16:33 - 2022-05-08 16:33 - 000009223 _____ C:\Users\franc\Downloads\637.gpx
2022-05-08 16:31 - 2022-05-08 16:31 - 000079396 _____ C:\Users\franc\Downloads\La Crête de Liman depuis Marcoux.html
2022-05-08 11:31 - 2022-05-08 11:31 - 000012833 _____ C:\Users\franc\Downloads\RemboursementSoins28042022.pdf
2022-05-08 11:31 - 2022-05-08 11:31 - 000012833 _____ C:\Users\franc\Downloads\RemboursementSoins28042022 (1).pdf
2022-05-08 11:29 - 2022-05-08 11:29 - 000012607 _____ C:\Users\franc\Downloads\PaiementTiers26042022.pdf
2022-05-08 11:29 - 2022-05-08 11:29 - 000012605 _____ C:\Users\franc\Downloads\PaiementTiers22032022.pdf
2022-05-08 11:28 - 2022-05-08 11:28 - 000012818 _____ C:\Users\franc\Downloads\RemboursementSoins10032022.pdf
2022-05-01 13:16 - 2022-05-01 13:16 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-04-29 15:50 - 2022-04-29 15:50 - 006672445 _____ C:\Users\franc\Downloads\Bosch SMS40D22EU Dishwasher.pdf
2022-04-28 08:33 - 2022-04-28 08:33 - 000497048 _____ C:\Users\franc\Downloads\Indesit DFG 254 FR Dishwasher.pdf
2022-04-23 09:23 - 2022-04-23 09:23 - 000651682 _____ C:\Users\franc\Downloads\Les arches La barres des dalles.pdf
2022-04-20 19:20 - 2022-04-20 19:20 - 000105303 _____ C:\Users\franc\Downloads\gedCli-Mail-DCP-20220419-112300-1953959245-202204-1911 (1).pdf
2022-04-20 18:56 - 2022-04-20 18:56 - 000105303 _____ C:\Users\franc\Downloads\gedCli-Mail-DCP-20220419-112300-1953959245-202204-1911.pdf
2022-04-20 18:54 - 2022-04-20 18:54 - 000196117 _____ C:\Users\franc\Downloads\1_884429_20220420161806.pdf
2022-04-20 13:50 - 2022-04-20 13:50 - 000141784 _____ C:\Users\franc\Downloads\COURRIER1 (2).pdf
2022-04-19 20:49 - 2022-04-19 20:49 - 001368570 _____ C:\Users\franc\Downloads\résultat Dr ROUDIl.zip
2022-04-19 17:42 - 2022-04-19 17:42 - 000101609 _____ C:\Users\franc\Downloads\travaux_a_realiser.pdf
2022-04-19 17:40 - 2022-04-19 17:40 - 001550937 _____ C:\Users\franc\Downloads\Scan_20220419_164837.pdf

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-05-19 17:03 - 2020-01-25 19:26 - 000000000 ____D C:\Program Files (x86)\Google
2022-05-19 17:00 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-05-19 16:35 - 2021-01-28 18:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-05-18 18:45 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-05-18 18:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-05-18 18:03 - 2021-12-11 08:58 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-355365165-2533683597-1363231706-1001
2022-05-18 18:03 - 2021-01-28 19:00 - 000003372 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-355365165-2533683597-1363231706-1001
2022-05-18 18:03 - 2021-01-28 18:54 - 000002424 _____ C:\Users\franc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-05-15 19:55 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-05-15 19:55 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-05-15 19:55 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-05-15 19:54 - 2020-08-11 09:22 - 000000000 ____D C:\Users\defaultuser100001
2022-05-15 19:54 - 2020-08-01 08:35 - 000000000 ____D C:\Users\defaultuser100000
2022-05-15 19:54 - 2019-06-20 10:53 - 000000000 ____D C:\ProgramData\McAfee
2022-05-15 19:54 - 2019-06-20 10:53 - 000000000 ____D C:\Program Files\Common Files\mcafee
2022-05-15 15:14 - 2021-01-28 19:01 - 000004702 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-05-15 15:14 - 2019-12-07 16:49 - 000954354 _____ C:\WINDOWS\system32\perfh00C.dat
2022-05-15 15:14 - 2019-12-07 16:49 - 000202164 _____ C:\WINDOWS\system32\perfc00C.dat
2022-05-15 15:09 - 2021-01-28 19:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-05-15 15:09 - 2021-01-28 18:52 - 000567080 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-05-15 15:09 - 2020-01-21 09:29 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2022-05-15 15:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-05-15 15:09 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-05-15 15:08 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-05-15 07:19 - 2020-06-16 18:02 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-05-13 07:50 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-05-13 07:40 - 2020-01-23 11:24 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-05-13 07:39 - 2020-01-23 11:24 - 145501456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-05-12 20:35 - 2019-06-20 10:43 - 000000000 ____D C:\Intel
2022-05-12 20:30 - 2021-01-28 18:54 - 000000000 ____D C:\Users\franc
2022-05-11 19:04 - 2021-01-28 18:52 - 000008192 ___SH C:\DumpStack.log.tmp
2022-05-10 06:53 - 2021-02-11 06:30 - 000003596 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6f5969d661cb8
2022-05-10 06:53 - 2021-01-28 19:00 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-05-09 18:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-05-01 19:07 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-05-01 13:16 - 2021-11-07 07:48 - 000001153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-04-20 14:08 - 2021-01-28 19:00 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-04-20 14:08 - 2021-01-28 19:00 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité