Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 09-01-2023
Exécuté par 10 (administrateur) sur WIN-10 (Acer Aspire Z3-615) (11-01-2023 11:39:02)
Exécuté depuis C:\Users\10\bureau
Profils chargés: 10
Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.2486 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(explorer.exe ->) (Open-Shell) [Fichier non signé] C:\Program Files\Open-Shell\StartMenu.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe
(services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2307147982-3562324563-1335238040-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38916432 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\...\Windows x64\Print Processors\Canon MP495 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDA9.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP495 series: C:\WINDOWS\system32\CNMLMA9.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [117248 2018-11-16] (pdfforge GmbH) [Fichier non signé]
==================== Tâches planifiées (Avec liste blanche) ============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {037ED92D-87EA-455F-8B23-425118664B07} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {04F90569-9457-448A-BC1E-741AB623AB85} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2307147982-3562324563-1335238040-1001UA{A7282E46-8828-4C42-BC6D-C3145C0A6346} => C:\Users\10\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Pas de fichier)
Task: {094E2D6A-D32D-4072-92DD-2700FE46CA7F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-12-09] (Piriform Software Ltd -> Piriform)
Task: {1979047F-17A7-4207-9CA3-0DAE7A65503D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2089E1A7-8B73-4090-97FB-32FC51B45B04} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-24] (Google LLC -> Google LLC)
Task: {3E935D7D-45B9-4A21-9387-CDB01DFC0DF9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2307147982-3562324563-1335238040-1001Core{1C7308B6-2045-48FE-A6D4-983A77923223} => C:\Users\10\AppData\Local\Google\Update\GoogleUpdate.exe /c (Pas de fichier)
Task: {4C3354BB-CFD4-4671-9401-63F3A2E23FEC} - System32\Tasks\Opera scheduled Autoupdate 1646648622 => C:\Users\10\AppData\Local\Programs\Opera\launcher.exe [2607560 2022-12-20] (Opera Norway AS -> Opera Software)
Task: {6CBA5905-DBF2-4C3D-BE77-DA62923E8094} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {6D73B9B9-3AA6-4DD5-8BF6-D07244FE0C31} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7C153491-8E75-499B-A0BD-B57ED13D3E14} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8C4B3C57-4BA6-40DF-9AED-ACF33B329BE8} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2307147982-3562324563-1335238040-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {A8132FB9-667D-4593-B378-B7DD7804BEA6} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "f53e37a7-bd22-4a52-bc52-7279efe4ca1e" --version "6.07.10191" --silent
Task: {AFDC5B6E-EA73-404C-BA0C-29F5A0910212} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C4760A2D-B5E1-43B6-B5FC-BE02FD840883} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {E45DA99C-6771-47D5-B41A-46AF2ABAE8BD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-24] (Google LLC -> Google LLC)
Task: {F13F9259-5CCA-4D98-8E95-4FED3BFFF085} - System32\Tasks\CCleanerSkipUAC - 10 => C:\Program Files\CCleaner\CCleaner.exe [32602448 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{078682e3-7666-48b3-bbcc-a309eaeadbb5}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{0e11cadb-59ac-4c06-823c-503844d9577b}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{22bb7961-d4e6-4e7a-8adc-7b5cd9924086}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{5501dd64-1d86-4208-86b8-1a2048b1b9ff}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{af9cfd80-9934-4bc2-9eba-932e05ebd067}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{c2200188-0242-4fb3-9732-6efa3ea90dae}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{d4b779e8-2f8f-41bc-956d-65f321e44cc7}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f6ce1de1-1fcd-4e4b-bf1d-bc96bc329252}: [DhcpNameServer] 192.168.0.254
Edge:
=======
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge DefaultProfile: Default
Edge Profile: C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-11]
Edge DownloadDir: Default -> C:\Users\10\Desktop
Edge Notifications: Default -> hxxps://a.freecaptcha.top; hxxps://nul-55.1fr1.net; hxxps://www.facebook.com
Edge HomePage: Default -> qwant.com
Edge DefaultSearchURL: Default -> hxxps://www.qwant.com/?q={searchTerms}&client=ext-edge-sb
Edge DefaultSearchKeyword: Default -> www.qwant.com
Edge DefaultSuggestURL: Default -> hxxps://api.qwant.com/api/suggest/?q={searchTerms}&client=opensearch
Edge Extension: (Avira Safe Shopping) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2023-01-11]
Edge Extension: (Qwant) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eljplgljphmgjhnalbganhenlcapgnne [2022-12-19]
Edge Extension: (Avira Password Manager) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emgfgdclgfeldebanedpihppahgngnle [2023-01-11]
Edge Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2022-12-20]
Edge Extension: (uBlock Origin) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-12-23]
Edge Extension: (Browser Lock | Lock Your Browser) - C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pkggemhbcdfhhabkmlafgbcpeflpdbjc [2022-09-29]
Edge Profile: C:\Users\10\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2023-01-09]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]
FireFox:
========
FF DefaultProfile: yvplvly0.default-1653647143011
FF ProfilePath: C:\Users\10\AppData\Roaming\Mozilla\Firefox\Profiles\yvplvly0.default-1653647143011 [2023-01-10]
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-11-14] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2016-04-13] (CANON INC.) [Fichier non signé]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-08-13] (Google Inc -> Google, Inc.)
Chrome:
=======
CHR Profile: C:\Users\10\AppData\Local\Google\Chrome\User Data\Default [2023-01-09]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\10\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-16]
CHR Extension: (Chrome Media Router) - C:\Users\10\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-16]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
Opera:
=======
OPR Profile: C:\Users\10\AppData\Roaming\Opera Software\Opera Stable [2023-01-11]
OPR Notifications: Opera Stable -> hxxps://nul-55.1fr1.net
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Total AdBlock) - C:\Users\10\AppData\Roaming\Opera Software\Opera Stable\Extensions\ekpfhenefmlhjaljcghbioklgcpkalnn [2022-03-07]
OPR Extension: (Rich Hints Agent) - C:\Users\10\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-10-28]
OPR Extension: (Opera Wallet) - C:\Users\10\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-01-10]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\10\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-03-07]
StartMenuInternet: (HKU\S-1-5-21-2307147982-3562324563-1335238040-1001) OperaStable - "C:\Users\10\AppData\Local\Programs\Opera\Launcher.exe"
Brave:
=======
BRA Profile: C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-01-09]
BRA Extension: (Google Traduction) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-08-28]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-08-28]
BRA Extension: (Brave NTP background images) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-28]
BRA Extension: (Brave Ads Resources) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\bgifagoclclhhoflocdefiklgodpihog [2022-08-28]
BRA Extension: (Wallet Data Files Updater) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-08-28]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-08-28]
BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-08-28]
BRA Extension: (Brave Ads Resources) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\ijgkfgmfiinppefbonemjidmkhgbonei [2022-08-28]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-08-28]
BRA Extension: (Brave NTP sponsored images) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2022-08-28]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\10\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-08-28]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
S3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1003344 2022-12-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [886016 2022-11-07] (Glarysoft LTD -> Glarysoft Ltd)
S3 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [73984 2022-11-07] (Glarysoft LTD -> Glarysoft Ltd)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe [3191264 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe [133592 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [45056 2022-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd)
R3 mlbuspci; C:\WINDOWS\system32\drivers\mlbuspci.sys [44296 2015-10-29] (Magic Control Technology Corp. -> Magic Control Technology Corporation)
R2 NEWDRIVER; C:\WINDOWS\SysWow64\WinVDEdrv6.sys [197648 2022-11-24] (NewSoftwares.net Inc. SDN. BHD. -> )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2022-12-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473376 2022-12-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99616 2022-12-09] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsl8971b600; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F3C6451B-1198-4049-BDBB-F0DF4894E4EA}\MpKslDrv.sys [X]
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2023-01-11 11:13 - 2023-01-11 11:35 - 000015325 _____ C:\Users\10\bureau\Addition.txt
2023-01-11 11:12 - 2023-01-11 11:39 - 000019413 _____ C:\Users\10\bureau\FRST.txt
2023-01-11 11:11 - 2023-01-11 11:39 - 000000000 ____D C:\FRST
2023-01-11 11:10 - 2023-01-11 11:10 - 002376704 _____ (Farbar) C:\Users\10\bureau\FRST64.exe
2023-01-11 11:01 - 2023-01-11 11:02 - 000000000 ____D C:\Users\10\bureau\rapports
2023-01-11 10:40 - 2023-01-11 10:40 - 001772744 _____ (Nicolas Coolman) C:\Users\10\bureau\ZHPFix2.exe
2023-01-11 10:37 - 2023-01-11 10:37 - 000000000 ____D C:\ProgramData\Avira
2023-01-11 08:29 - 2023-01-11 08:29 - 000000000 ___HD C:\$WinREAgent
2023-01-10 16:34 - 2023-01-11 10:46 - 000000000 ____D C:\Users\10\AppData\Roaming\ZHP
2023-01-10 16:34 - 2023-01-11 10:41 - 000000000 ____D C:\Users\10\AppData\Local\ZHP
2023-01-10 16:29 - 2023-01-10 16:29 - 003311816 _____ (Nicolas Coolman) C:\Users\10\bureau\ZHPDiag3.exe
2023-01-10 11:19 - 2023-01-10 11:19 - 000000000 ____D C:\Users\10\AppData\Local\Microsoft_Corporation
2023-01-10 10:49 - 2023-01-11 08:55 - 000000000 ____D C:\Users\10\AppData\Local\ElevatedDiagnostics
2022-12-28 17:22 - 2022-12-28 17:22 - 000002223 _____ C:\Users\10\bureau\Google Earth Pro.lnk
2022-12-20 08:21 - 2022-12-20 08:21 - 000002223 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2022-12-20 08:21 - 2022-12-20 08:21 - 000000000 ____D C:\Program Files\Google
==================== Un mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2023-01-11 11:40 - 2018-06-26 10:00 - 000000000 ____D C:\Program Files (x86)\Google
2023-01-11 11:38 - 2021-01-20 15:26 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2023-01-11 11:38 - 2020-06-04 09:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-01-11 11:38 - 2020-06-04 08:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-01-11 11:38 - 2020-06-04 08:49 - 000008192 ___SH C:\DumpStack.log.tmp
2023-01-11 11:38 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-01-11 11:38 - 2018-06-26 09:43 - 000000000 __SHD C:\Users\10\IntelGraphicsProfiles
2023-01-11 11:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-01-11 11:13 - 2018-06-26 08:37 - 000000000 ___RD C:\Users\10\bureau
2023-01-11 11:00 - 2022-12-08 17:36 - 000000785 _____ C:\Users\10\bureau\Documents - Raccourci.lnk
2023-01-11 11:00 - 2020-01-16 10:12 - 000000000 ____D C:\Users\10\AppData\Local\OpenShell
2023-01-11 10:17 - 2020-06-04 09:04 - 000004506 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-01-11 10:17 - 2019-12-07 15:49 - 012381868 _____ C:\WINDOWS\system32\perfh00C.dat
2023-01-11 10:17 - 2019-12-07 15:49 - 003674830 _____ C:\WINDOWS\system32\perfc00C.dat
2023-01-11 10:15 - 2021-08-21 09:38 - 000002248 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - 10
2023-01-11 10:15 - 2021-07-09 10:25 - 000001392 _____ C:\Users\10\bureau\YouTube.lnk
2023-01-11 10:15 - 2018-06-26 09:57 - 000000000 ____D C:\Program Files\CCleaner
2023-01-11 10:13 - 2020-06-04 08:54 - 000000000 ____D C:\Users\10
2023-01-11 09:10 - 2020-06-04 08:50 - 000458296 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-01-11 09:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-01-11 09:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-01-11 09:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-01-11 09:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-01-11 09:09 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-01-11 09:09 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-01-11 09:05 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-01-11 09:04 - 2020-06-04 08:56 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-01-11 08:53 - 2018-06-26 09:31 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-01-11 08:53 - 2018-06-26 09:30 - 150199536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-01-10 17:45 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-01-10 11:07 - 2018-06-26 08:37 - 000000000 ____D C:\Users\10\AppData\Local\Packages
2023-01-10 09:57 - 2021-01-21 18:00 - 000003678 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-01-10 09:57 - 2021-01-21 18:00 - 000003454 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-01-10 09:56 - 2021-12-20 14:55 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5
2023-01-09 18:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2023-01-07 19:38 - 2020-10-21 14:23 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-12-28 10:05 - 2022-09-21 09:44 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2022-12-28 10:01 - 2022-11-22 12:25 - 000003826 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2307147982-3562324563-1335238040-1001UA{A7282E46-8828-4C42-BC6D-C3145C0A6346}
2022-12-28 10:01 - 2022-11-22 12:25 - 000003558 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2307147982-3562324563-1335238040-1001Core{1C7308B6-2045-48FE-A6D4-983A77923223}
2022-12-28 10:01 - 2022-09-21 09:44 - 000003108 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2022-12-28 10:01 - 2021-12-15 10:03 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-12-28 10:01 - 2021-01-24 15:09 - 000003578 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-12-28 10:01 - 2021-01-24 15:09 - 000003354 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-12-28 10:01 - 2020-10-21 19:39 - 000003280 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-12-28 10:01 - 2020-06-04 09:12 - 000003048 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-12-28 10:00 - 2022-03-07 11:23 - 000003546 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1646648622
2022-12-28 10:00 - 2021-12-13 09:48 - 000003126 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2307147982-3562324563-1335238040-1001
2022-12-28 10:00 - 2021-03-31 09:59 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2307147982-3562324563-1335238040-1001
2022-12-27 14:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-12-23 10:19 - 2022-03-07 11:23 - 000001410 _____ C:\Users\10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk
2022-12-15 14:49 - 2022-05-27 11:25 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-12-15 14:42 - 2018-06-26 09:59 - 000000000 ____D C:\Users\10\AppData\LocalLow\Mozilla
2022-12-15 10:58 - 2022-09-13 16:34 - 000000000 ____D C:\Users\10\AppData\Local\CrashDumps
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemApps
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-12-14 09:12 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
==================== Fichiers à la racine de certains dossiers ========
2022-04-04 14:47 - 2022-04-04 14:47 - 000000020 _____ () C:\Users\10\AppData\Roaming\pafexp.ini
2022-04-04 14:46 - 2017-05-09 17:02 - 000000002 _____ () C:\Users\10\AppData\Roaming\paflan.ini
2022-04-04 14:46 - 2022-03-23 10:11 - 000000003 _____ () C:\Users\10\AppData\Roaming\pafsound.dll
2022-11-24 16:12 - 2022-11-27 12:23 - 000000337 _____ () C:\Users\10\AppData\Local\Lockdir6
2022-11-24 16:21 - 2022-11-24 16:21 - 000000700 ___SH () C:\Users\10\AppData\Local\systemFL7.dat
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== Fin de FRST.txt ========================