cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19.02.2024 02
Exécuté par ecach (administrateur) sur DESKTOP-QKPGICK (Hewlett-Packard HP Pro 3400 Series MT) (21-02-2024 09:14:24)
Exécuté depuis C:\Users\ecach\OneDrive\Bureau\FRST64.exe
Profils chargés: ecach
Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.4046 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvBugReport.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <8>
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Glarysoft Ltd -> Glarysoft Ltd) C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe <3>
(svchost.exe ->) (Avast Software s.r.o. -> Avast Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe
(svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(svchost.exe ->) (Garmin International, Inc. -> ) C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21830.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3989_none_7ddb45627cb30e03\TiWorker.exe
(svchost.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <2>

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [418200 2024-02-16] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2713131098-656278332-3595530044-1001\...\Run: [AvastBrowserAutoLaunch_07940172626D66A88821046053903CA8] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3117856 2024-02-07] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-2713131098-656278332-3595530044-1002\...\Run: [AvastBrowserAutoLaunch_2CB11136983B9F4DEAE1E965765CDBAF] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3117856 2024-02-07] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-2713131098-656278332-3595530044-1002\...\Run: [MicrosoftEdgeAutoLaunch_F7A67CEBC5019FD7689EF69789D3150C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788240 2024-02-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2713131098-656278332-3595530044-1017\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31300376 2023-02-01] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-2713131098-656278332-3595530044-1017\...\Run: [MicrosoftEdgeAutoLaunch_ACD3870ECF706465B78AD29FEAB66201] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788240 2024-02-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2713131098-656278332-3595530044-1017\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\franc\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [66108320 2024-02-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2713131098-656278332-3595530044-1017\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\franc\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Pas de fichier)
HKU\S-1-5-21-2713131098-656278332-3595530044-1017\...\RunOnce: [Uninstall 23.246.1127.0002] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\franc\AppData\Local\Microsoft\OneDrive\23.246.1127.0002" [0 2024-02-18] () <==== ATTENTION [zéro octet Fichier/Dossier]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\121.0.6167.185\Installer\chrmstp.exe [2024-02-17] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\121.0.23861.160\Installer\chrmstp.exe [2024-02-17] (Avast Software s.r.o. -> AVAST Software)
BootExecute: autocheck autochk *
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {D8820A7D-65CF-4130-A117-1876C1030EA5} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5154200 2024-02-16] (Avast Software s.r.o. -> AVAST Software)
Task: {96424590-5ABE-4A44-8A22-7E249EBC16D6} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3117856 2024-02-07] (Avast Software s.r.o. -> AVAST Software)
Task: {4628E941-3132-4718-8608-B93352E2D964} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3117856 2024-02-07] (Avast Software s.r.o. -> AVAST Software)
Task: {F0A28643-2D9C-405A-87DF-5EF2C08BEC83} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software)
Task: {838F2A8D-FBB4-46CD-8941-ECDE754154C0} - System32\Tasks\AvastBrowserProtectS-1-5-21-2713131098-656278332-3595530044-1002 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1682328 2024-02-07] (Avast Software s.r.o. -> Avast Software) <==== ATTENTION
Task: {E6EE5BE5-306F-4405-91CD-B3480D528463} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-01-09] (Avast Software s.r.o. -> AVAST Software)
Task: {481C671B-073B-4586-BD1B-3687F8EF4262} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-01-09] (Avast Software s.r.o. -> AVAST Software)
Task: {27727C59-1A45-4419-8ED5-7B8A1CD005A1} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [29464 2023-02-01] (Garmin International, Inc. -> )
Task: {DCE38E64-5FA9-4C77-BFE2-0076A2189827} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-03] (Google LLC -> Google LLC)
Task: {D0323D56-0DB5-4C82-A946-4B7E611B372E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-09-03] (Google LLC -> Google LLC)
Task: {344E32FE-C809-4F5E-9958-1DBB2CF59D5F} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-18] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {8CDAA702-2FC1-4AFD-85E8-F82BE8C26B38} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720 2024-02-18] (Mozilla Corporation -> Mozilla Foundation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{8cd643c8-82f1-4db5-a8db-c7c1d42bbf5d}: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{f90413b3-151b-4f2b-9ecf-77de1c08fbd1}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f90413b3-151b-4f2b-9ecf-77de1c08fbd1}\6627565626F687F594E465556564: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{f90413b3-151b-4f2b-9ecf-77de1c08fbd1}\84F6E6F62702642716E6: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{f90413b3-151b-4f2b-9ecf-77de1c08fbd1}\960586F6E6560246560254577656E656: [DhcpNameServer] 172.20.10.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ecach\AppData\Local\Microsoft\Edge\User Data\Default [2024-02-21]
Edge HomePage: Default -> hxxp://www.google.com
Edge Extension: (Google Docs hors connexion) - C:\Users\ecach\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-29]
Edge Extension: (Edge relevant text changes) - C:\Users\ecach\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]

FireFox:
========
FF DefaultProfile: yhk4iekx.default
FF ProfilePath: C:\Users\ecach\AppData\Roaming\Mozilla\Firefox\Profiles\yhk4iekx.default [2022-11-26]
FF ProfilePath: C:\Users\ecach\AppData\Roaming\Mozilla\Firefox\Profiles\s28f02lo.default-release [2024-02-18]
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2023-01-09] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2023-01-09] (Avast Software s.r.o. -> AVAST Software)

Chrome:
=======
CHR Profile: C:\Users\ecach\AppData\Local\Google\Chrome\User Data\Default [2024-02-21]
CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?fr=mcafee&type=E210FR91082G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR DefaultSuggestURL: Default -> hxxps://fr.search.yahoo.com/sugg/gossip/gossip-fr-partner?output=fxjson&appid=mca&source=yahoo_mcafee_searchassist&command={searchTerms}
CHR Extension: (Solitaire Card Games) - C:\Users\ecach\AppData\Local\Google\Chrome\User Data\Default\Extensions\endfkcomiidjflcpoppjmdhhakdpcedj [2024-01-14]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\ecach\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-02-16]
CHR Extension: (Google Docs hors connexion) - C:\Users\ecach\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-18]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\ecach\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-29]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

Brave:
=======
BRA Profile: C:\Users\ecach\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-12-08]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

"AltruisticsService" => service a été déverrouillé. <==== ATTENTION

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9124248 2024-02-16] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-01-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [761752 2024-02-16] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1176472 2024-02-16] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-01-09] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\121.0.23861.160\elevation_service.exe [1832224 2024-02-07] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-12-07] (Avast Software s.r.o. -> AVAST Software)
R2 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [889240 2023-05-29] (Glarysoft Ltd -> Glarysoft Ltd)
S3 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [76696 2023-05-29] (Glarysoft Ltd -> Glarysoft Ltd)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [889400 2024-02-16] (McAfee, LLC -> McAfee, LLC)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-23] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-26] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-26] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 AltruisticsService; C:\ProgramData\Altruistic\Altruistic.exe -s [X] <==== ATTENTION

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [20536 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [230456 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [380360 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [292816 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84424 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27760 2024-02-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28616 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [263632 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548296 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [93752 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [934968 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [692280 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [201784 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306232 2024-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [45056 2023-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49616 2022-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [469288 2022-11-26] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-26] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2024-02-21 09:14 - 2024-02-21 09:16 - 000019961 _____ C:\Users\ecach\OneDrive\Bureau\FRST.txt
2024-02-21 09:13 - 2024-02-21 09:15 - 000000000 ____D C:\FRST
2024-02-21 09:10 - 2024-02-21 09:08 - 002386944 _____ (Farbar) C:\Users\ecach\OneDrive\Bureau\FRST64.exe
2024-02-21 09:08 - 2024-02-21 09:08 - 002386944 _____ (Farbar) C:\Users\ecach\Downloads\FRST64.exe
2024-02-20 21:51 - 2024-02-20 21:51 - 000135843 _____ C:\Users\ecach\OneDrive\Bureau\ZHPDiag.txt
2024-02-20 21:44 - 2024-02-20 21:51 - 000000000 ____D C:\Users\ecach\AppData\Roaming\ZHP
2024-02-20 21:44 - 2024-02-20 21:44 - 000000871 _____ C:\Users\ecach\OneDrive\Bureau\ZHPSuite.lnk
2024-02-20 21:44 - 2024-02-20 21:44 - 000000000 ____D C:\Users\ecach\AppData\Local\ZHP
2024-02-20 21:43 - 2024-02-20 21:42 - 003538592 _____ (Nicolas Coolman) C:\Users\ecach\OneDrive\Bureau\ZHPSuite.exe
2024-02-20 16:12 - 2024-02-20 16:16 - 000000000 ___HD C:\$WinREAgent
2024-02-18 12:46 - 2024-02-18 12:46 - 000000000 ____D C:\Users\ecach\AppData\Local\Garmin_Ltd._or_its_subsid
2024-02-18 12:46 - 2024-02-18 12:46 - 000000000 ____D C:\Users\ecach\AppData\Local\Garmin
2024-02-18 12:34 - 2024-02-18 12:35 - 071961216 _____ (Molotov) C:\Users\ecach\Downloads\MolotovSetup-5.0.1.exe
2024-02-18 12:34 - 2024-02-18 12:35 - 071961216 _____ (Molotov) C:\Users\ecach\Downloads\MolotovSetup-5.0.1 (1).exe
2024-02-18 10:53 - 2024-02-20 15:02 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-02-16 20:50 - 2024-02-16 20:48 - 000313752 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2024-01-30 11:29 - 2024-01-30 11:29 - 000102899 _____ C:\Users\franc\Downloads\delivery_slip_20240124162634_47039_159358.pdf
2024-01-30 10:54 - 2024-01-30 10:55 - 005437032 _____ C:\Users\franc\Downloads\-Passage pietons .mp4
2024-01-29 21:39 - 2024-01-29 21:39 - 000019697 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-01-29 21:36 - 2024-01-29 21:36 - 000019697 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-01-29 20:24 - 2024-01-29 20:24 - 000003822 _____ C:\Windows\system32\Tasks\AvastBrowserProtectS-1-5-21-2713131098-656278332-3595530044-1002

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2024-02-21 09:12 - 2022-05-31 13:00 - 000000000 ____D C:\Windows\SystemTemp
2024-02-21 09:12 - 2021-09-03 07:44 - 000000000 ____D C:\Program Files (x86)\Google
2024-02-21 09:00 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-02-20 21:32 - 2020-11-18 23:44 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-02-20 15:35 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-02-20 15:35 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2024-02-20 15:03 - 2022-07-31 18:12 - 000000000 ____D C:\ProgramData\AVAST Software
2024-02-20 15:02 - 2021-09-03 07:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-02-20 15:02 - 2021-08-31 13:33 - 000008192 ___SH C:\DumpStack.log.tmp
2024-02-20 15:02 - 2020-11-19 00:44 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-02-20 15:01 - 2019-12-07 10:03 - 001048576 _____ C:\Windows\system32\config\BBI
2024-02-20 14:49 - 2022-12-07 15:49 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2024-02-20 14:49 - 2021-08-31 15:56 - 001771910 _____ C:\Windows\system32\PerfStringBackup.INI
2024-02-20 14:49 - 2019-12-07 15:50 - 000792000 _____ C:\Windows\system32\perfh00C.dat
2024-02-20 14:49 - 2019-12-07 15:50 - 000150166 _____ C:\Windows\system32\perfc00C.dat
2024-02-20 14:49 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2024-02-19 21:17 - 2023-02-17 11:31 - 000002702 _____ C:\Windows\system32\Tasks\GarminUpdaterTask
2024-02-19 21:17 - 2022-12-08 16:47 - 000003062 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2713131098-656278332-3595530044-1017
2024-02-19 21:17 - 2022-12-08 16:47 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2713131098-656278332-3595530044-1017
2024-02-19 21:17 - 2022-12-07 15:50 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2024-02-19 21:17 - 2022-07-30 17:19 - 000003062 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2713131098-656278332-3595530044-1002
2024-02-19 21:17 - 2022-07-30 17:17 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2713131098-656278332-3595530044-1002
2024-02-19 21:17 - 2022-07-29 18:31 - 000003062 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2713131098-656278332-3595530044-1001
2024-02-19 21:17 - 2021-09-03 07:45 - 000003526 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2024-02-19 21:17 - 2021-09-03 07:45 - 000003302 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2024-02-19 21:17 - 2021-08-31 15:55 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2713131098-656278332-3595530044-1001
2024-02-19 21:17 - 2021-08-31 13:34 - 000002854 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2713131098-656278332-3595530044-500
2024-02-19 21:17 - 2020-11-19 00:46 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-02-19 21:17 - 2020-11-19 00:46 - 000003394 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-02-18 18:51 - 2022-12-08 11:16 - 000000000 ____D C:\Users\franc\AppData\Local\Packages
2024-02-18 18:45 - 2022-12-08 11:14 - 000002417 _____ C:\Users\franc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-02-18 18:27 - 2022-07-29 18:04 - 000002417 _____ C:\Users\ecach\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-02-18 12:47 - 2022-07-29 18:06 - 000000000 ____D C:\Users\ecach\AppData\Local\VirtualStore
2024-02-18 12:45 - 2023-01-11 18:31 - 000000000 ____D C:\Users\ecach\AppData\Roaming\molotov
2024-02-18 12:45 - 2022-12-04 19:47 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-02-18 12:45 - 2021-09-03 07:43 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-02-17 22:07 - 2022-07-31 18:12 - 000002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2024-02-17 18:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2024-02-17 18:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2024-02-17 15:04 - 2023-12-22 18:14 - 000000000 ____D C:\Users\ecach\AppData\Local\CrashDumps
2024-02-17 14:39 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2024-02-17 13:20 - 2020-11-19 00:46 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-02-17 11:46 - 2021-08-31 16:04 - 000000000 ____D C:\Windows\system32\MRT
2024-02-17 11:30 - 2021-08-31 16:04 - 191155960 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-02-17 11:22 - 2020-11-19 00:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-02-16 21:35 - 2022-07-31 18:12 - 000000000 ____D C:\Users\ecach\AppData\Local\AVAST Software
2024-02-16 20:58 - 2022-12-08 11:14 - 000000000 ____D C:\Users\franc
2024-02-16 20:58 - 2022-07-29 18:04 - 000000000 ____D C:\Users\ecach
2024-02-16 20:50 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2024-02-16 20:49 - 2022-12-07 15:48 - 000692280 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000548296 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswNetHub.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000306232 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000292816 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000263632 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000093752 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000084424 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000069176 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000028616 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys
2024-02-16 20:49 - 2022-12-07 15:48 - 000027760 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswElam.sys
2024-02-16 20:47 - 2022-12-07 15:48 - 000934968 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys
2024-02-16 20:47 - 2022-12-07 15:48 - 000380360 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys
2024-02-16 20:47 - 2022-12-07 15:48 - 000230456 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys
2024-02-16 20:47 - 2022-12-07 15:48 - 000020536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArDisk.sys
2024-01-30 13:55 - 2020-11-18 23:44 - 000458312 _____ C:\Windows\system32\FNTCACHE.DAT
2024-01-30 13:50 - 2019-12-07 15:53 - 000000000 ___SD C:\Windows\system32\AppV
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz
2024-01-30 13:50 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser
2024-01-30 13:49 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-01-30 13:49 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellComponents
2024-01-30 11:34 - 2022-12-08 11:16 - 000000000 ____D C:\Users\franc\AppData\Local\AVAST Software

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité