Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-11-2019 Exécuté par alain (administrateur) sur PC-ALAIN (HP HP Notebook) (08-11-2019 17:27:06) Exécuté depuis C:\Users\alain\Desktop Profils chargés: alain (Profils disponibles: alain) Platform: Windows 10 Home Version 1903 18362.418 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HPRegistrationService.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\tbaseprovisioning.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843520 2016-01-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [653576 2015-06-29] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795336 2015-06-22] (CyberLink Corp. -> CyberLink Corp.) HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-4048815811-3365332052-2349944975-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.87\Installer\chrmstp.exe [2019-11-06] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2015-07-01] (CyberLink Corp. -> CyberLink) HKLM\Software\...\Authentication\Credential Provider Filters: [{FA076B7A-C331-48e2-9EE9-7683A553739E}] -> C:\Program Files (x86)\CyberLink\YouCam6\CLCredProv\x64\CLCredProv.dll [2015-07-01] (CyberLink Corp. -> CyberLink) Startup: C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2019-09-27] ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (EVERNOTE CORPORATION -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {24B7AD89-33CC-4C44-80A0-64D1032697C0} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {35D3C9C8-0FE2-4456-8C20-F4CE922C3476} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {3B6F5ADD-2972-431A-9A6F-1169C9475D5A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [174904 2015-06-19] (Hewlett-Packard Company -> Hewlett-Packard) Task: {3FC167CC-93B2-41C9-9E0E-2AAD1E684118} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {44A980E2-7BC9-4E23-BD33-FF38FF0AD553} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [564536 2015-06-24] (Hewlett-Packard Company -> Hewlett-Packard) Task: {4C106E2F-D4A6-4404-8DB2-9F6D4C3250F7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {58F597B3-4D2E-49CB-95AA-A178438CA002} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [511344 2015-06-19] (Dropbox, Inc -> ) Task: {631D133C-7595-42D3-92F0-A880455C597F} - System32\Tasks\WpsUpdateTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.5113\wtoolex\wpsupdate.exe [474472 2015-09-12] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) Task: {6E078131-0485-4CA9-BC41-B8AF34E3A449} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7A7430DB-D50E-4C76-83F4-3E16BEFB1742} - System32\Tasks\HPCeeScheduleForalain => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard) Task: {7FADC0C6-ACDB-4C9A-9408-59AC64C9637B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {83E441C0-480B-475B-A238-3710B36D363F} - System32\Tasks\WpsNotifyTask_Administrator => C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.5113\wtoolex\wpsnotify.exe [517480 2015-09-12] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) Task: {8C239627-E8C2-46B7-B3A8-FB1CFE6C9806} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe [515512 2015-07-01] (CyberLink Corp. -> CyberLink Corp.) Task: {909444A9-AF96-4403-86D5-7BCA50D41571} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-28] (Google Inc -> Google LLC) Task: {91502C67-9857-4FB0-BA00-9BBC9BC69A44} - System32\Tasks\Hewlett-Packard\HP Support Assistant\First Boot => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [27448 2015-07-11] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {95C8E5EB-0093-4DAB-ABB7-E65275D517FD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {98F3F66A-80AD-47E5-9AC0-4C311B6FA225} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [447800 2015-07-11] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {A530C86B-8245-481B-8070-ACD0A61EA715} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {E3D5BF39-CA02-4E27-A88D-E620A2AED1F7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-28] (Google Inc -> Google LLC) Task: {E898A4CB-5C2F-4AF8-88E2-39B8386C66B5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [447800 2015-07-11] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {EFB50DA9-F852-40F6-A1F5-9EF09FC882FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForalain.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\WpsNotifyTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.5113\wtoolex\wpsnotify.exe Task: C:\WINDOWS\Tasks\WpsUpdateTask_Administrator.job => C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.5113\wtoolex\wpsupdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5d2ccab5-2279-40db-876f-f7951502412c}: [DhcpNameServer] 40.22.1.11 Tcpip\..\Interfaces\{d06d24cd-6ce5-4ae4-9d2f-c53749584574}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = SearchScopes: HKU\S-1-5-21-4048815811-3365332052-2349944975-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => Pas de fichier BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (EVERNOTE CORPORATION -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-05-05] (Hewlett-Packard Company -> Hewlett-Packard) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - Pas de fichier Edge: ====== DownloadDir: C:\Users\alain\Downloads FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [Fichier non signé] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) Chrome: ======= CHR HomePage: Default -> hxxps://www.google.fr/ CHR StartupUrls: Default -> "hxxp://www.google.fr/","hxxp://www.google.fr/","hxxp://www.google.fr/" CHR Profile: C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default [2019-11-08] CHR Extension: (Google Traduction) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-10-06] CHR Extension: (Slides) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-09-28] CHR Extension: (Docs) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-09-28] CHR Extension: (Google Drive) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-09-28] CHR Extension: (YouTube) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-09-28] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-10-22] CHR Extension: (Horloge facile) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\dplbpgapoedppajbikieafefmcceaagn [2019-09-28] CHR Extension: (Sheets) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-09-28] CHR Extension: (Google Docs hors connexion) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-09-28] CHR Extension: (AdBlock) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-23] CHR Extension: (Open SEO Stats(Formerly: PageRank Status)) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbdkkfheckcdppiaiabobmennhijkknn [2019-09-28] CHR Extension: (Google Keep – Notes et listes) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2019-11-06] CHR Extension: (Keepa - Amazon Price Tracker) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\neebplgakaahbhdphmkckjjcegoiijjo [2019-10-31] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03] CHR Extension: (Gmail) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-09-28] CHR Extension: (Chrome Media Router) - C:\Users\alain\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-29] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AdaptiveSleepService; c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2015-07-06] () [Fichier non signé] R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [264224 2015-12-09] (Microsoft Windows Hardware Compatibility Publisher -> AMD) R2 HPRegistrationSvc; c:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HPRegistrationService.exe [251632 2015-07-02] (Hewlett-Packard Company -> Hewlett-Packard) R2 HPSupportSolutionsFrameworkService; c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [24888 2015-07-11] (Hewlett-Packard Company -> Hewlett-Packard Company) R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [602888 2015-06-29] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) S2 Kingsoft_WPS_UpdateService; C:\Program Files (x86)\Kingsoft\WPS Office\9.1.0.5113\wtoolex\wpsupdatesvr.exe [133480 2015-09-12] (Zhuhai Kingsoft Office Software Co.,Ltd -> Zhuhai Kingsoft Office Software Co.,Ltd) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> ) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [310016 2016-01-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2019-08-16] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [780328 2019-08-16] (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated -> Synaptics Incorporated) R2 tbaseprovisioning; C:\Windows\SysWOW64\tbaseprovisioning.exe [60432 2015-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12054872 2019-10-10] (TeamViewer GmbH -> TeamViewer GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [X] S2 mcbootdelaystartsvc; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] S2 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.5.471.0\McCSPServiceHost.exe" [X] S2 mfemms; "C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AmdAS4; C:\WINDOWS\System32\drivers\AmdAS4.sys [27384 2015-11-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, INC.) S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. ) R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21653520 2015-12-09] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [683032 2015-12-09] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976 2015-07-14] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R1 amdpsp; C:\WINDOWS\system32\DRIVERS\amdpsp.sys [239976 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. ) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [118848 2016-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) S3 clwvd6; C:\WINDOWS\system32\DRIVERS\clwvd6.sys [41704 2013-10-29] (CyberLink Corp. -> CyberLink Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [135520 2019-08-16] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S2 mfeaack; C:\WINDOWS\system32\drivers\mfeaack.sys [412152 2015-06-11] (McAfee, Inc. -> McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [109480 2015-05-26] (McAfee, Inc. -> McAfee, Inc.) R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [301784 2015-07-13] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-07-06] (Realtek Semiconductor Corp -> Realtek ) S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [402136 2015-07-13] (Realtek Semiconductor Corp -> Realsil Semiconductor Corporation) R3 RTWlanE; C:\WINDOWS\System32\drivers\rtwlane.sys [7904088 2018-04-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation ) S3 silabenm; C:\WINDOWS\System32\drivers\silabenm.sys [23552 2014-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Silicon Laboratories) R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53848 2017-08-18] (Synaptics Incorporated -> Synaptics Incorporated) S3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [55384 2017-08-18] (Synaptics Incorporated -> Synaptics Incorporated) S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-08-16] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) U5 TMUSB; C:\WINDOWS\System32\DRIVERS\TMUSB64.SYS [63096 2018-01-30] (SEIKO EPSON Corporation Test Signing -> Seiko Epson Corporation) S3 vpnpbus; C:\WINDOWS\System32\drivers\vpnpbus.sys [18624 2016-09-21] (EldoS Corporation -> /n software, Inc.) S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [120976 2017-03-27] (Wacom Technology Corporation -> Wacom Technology) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-08-06] (HP Inc. -> HP) U3 aspnet_state; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-11-08 17:27 - 2019-11-08 17:29 - 000025466 _____ C:\Users\alain\Desktop\FRST.txt 2019-11-08 17:26 - 2019-11-08 17:28 - 000000000 ____D C:\FRST 2019-11-08 17:25 - 2019-11-08 17:25 - 002259968 _____ (Farbar) C:\Users\alain\Desktop\FRST64.exe 2019-11-08 17:20 - 2019-11-08 17:20 - 000037062 _____ C:\Users\alain\Desktop\ZHPCleaner (R).txt 2019-11-08 17:11 - 2019-11-08 17:11 - 000037053 _____ C:\Users\alain\Desktop\ZHPCleaner (S).txt 2019-11-08 16:52 - 2019-11-08 17:20 - 000000000 ____D C:\Users\alain\AppData\Roaming\ZHP 2019-11-08 16:52 - 2019-11-08 16:52 - 000000882 _____ C:\Users\alain\Desktop\ZHPCleaner.lnk 2019-11-08 16:52 - 2019-11-08 16:52 - 000000000 ____D C:\Users\alain\AppData\Local\ZHP 2019-11-08 16:50 - 2019-11-08 16:50 - 003328384 _____ (Nicolas Coolman) C:\Users\alain\Desktop\ZHPCleaner.exe 2019-11-07 16:27 - 2019-11-07 16:27 - 006152545 _____ C:\Users\alain\Desktop\Facturier-Outil-de-facturation-Excel-gratuit.xlsx 2019-11-06 17:02 - 2019-11-06 17:02 - 001238528 _____ C:\Users\alain\Desktop\MicrosoftEasyFix50388.msi 2019-11-04 18:52 - 2019-11-04 18:52 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2019-11-04 18:51 - 2019-11-04 18:51 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2019-11-04 18:18 - 2019-11-04 18:18 - 001238528 _____ C:\Users\alain\MicrosoftEasyFix50388.msi 2019-11-04 18:18 - 2019-11-04 18:18 - 001238528 _____ C:\Users\alain\Downloads\MicrosoftEasyFix50388.msi 2019-10-29 07:37 - 2019-10-29 07:37 - 000000000 ____D C:\ProgramData\AMD 2019-10-28 18:44 - 2019-10-28 18:44 - 000322746 _____ C:\Users\alain\Desktop\contrat_2c949e306dfdd0fa016e13ae2b6b6b53_Votre contrat Ma Tirelire.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-11-08 17:20 - 2019-09-28 20:57 - 000000000 ____D C:\Users\alain\AppData\Roaming\IObit 2019-11-08 17:20 - 2019-09-28 20:57 - 000000000 ____D C:\ProgramData\IObit 2019-11-08 16:58 - 2019-03-19 04:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-11-08 16:40 - 2019-09-29 18:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-11-08 14:34 - 2019-03-19 04:52 - 000000000 ___HD C:\Program Files\WindowsApps 2019-11-08 14:34 - 2019-03-19 04:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-11-08 13:28 - 2019-10-01 10:54 - 000000000 ____D C:\Users\alain\Documents\Fichiers Outlook 2019-11-08 09:16 - 2015-12-09 16:10 - 000000000 ____D C:\Users\alain\Documents\YouCam 2019-11-07 16:28 - 2019-09-27 13:28 - 000000000 ____D C:\Users\alain\AppData\Local\Packages 2019-11-07 09:12 - 2019-04-10 11:55 - 000115312 _____ C:\Users\alain\Desktop\Suivi -Locations v1.02.xlsm 2019-11-06 16:47 - 2015-09-12 11:21 - 000695105 _____ C:\WINDOWS\SysWOW64\rootpa.e2e 2019-11-06 16:46 - 2019-09-30 13:46 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2019-11-06 16:46 - 2019-09-29 19:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-11-06 16:46 - 2019-09-28 06:19 - 000000350 _____ C:\WINDOWS\Tasks\HPCeeScheduleForalain.job 2019-11-06 16:46 - 2019-09-27 12:51 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2019-11-06 16:46 - 2019-03-19 04:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-11-06 16:40 - 2019-09-29 19:01 - 000003242 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForalain 2019-11-06 15:58 - 2019-09-29 18:49 - 001839504 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-11-06 15:58 - 2019-03-19 12:00 - 000793190 _____ C:\WINDOWS\system32\perfh00C.dat 2019-11-06 15:58 - 2019-03-19 12:00 - 000150222 _____ C:\WINDOWS\system32\perfc00C.dat 2019-11-06 15:58 - 2019-03-19 04:50 - 000000000 ____D C:\WINDOWS\INF 2019-11-06 14:34 - 2019-09-28 03:24 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-11-06 09:09 - 2015-12-10 13:51 - 000000000 ____D C:\Log-Internet 2019-11-05 13:28 - 2019-09-29 19:01 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2019-11-05 13:28 - 2019-09-29 19:01 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2019-11-05 13:27 - 2019-09-28 03:23 - 000000000 ____D C:\Program Files (x86)\Google 2019-11-04 19:10 - 2019-09-29 18:31 - 000454368 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-11-04 19:02 - 2019-03-19 04:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-11-04 18:56 - 2019-09-30 17:12 - 000002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2019-11-04 18:56 - 2019-09-30 17:12 - 000002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2019-11-04 18:56 - 2019-01-31 14:54 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2019-11-04 18:55 - 2019-03-19 04:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2019-11-04 18:55 - 2015-07-10 13:16 - 000000000 ____D C:\WINDOWS\ShellNew 2019-11-04 18:51 - 2019-09-30 17:10 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2019-11-04 18:45 - 2019-03-19 04:52 - 000000000 ____D C:\Program Files\Common Files\System 2019-11-04 18:45 - 2015-07-10 11:04 - 000000199 _____ C:\WINDOWS\win.ini 2019-11-04 18:42 - 2015-09-12 11:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2019-11-04 18:21 - 2019-09-29 18:39 - 000000000 ____D C:\Users\alain 2019-11-04 15:43 - 2019-09-30 13:46 - 000001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk 2019-11-04 10:25 - 2018-01-13 14:17 - 000000000 ____D C:\Users\alain\Desktop\LOCATIONS ESTIVALES 2017 2019-11-02 10:17 - 2019-09-29 19:01 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4048815811-3365332052-2349944975-1001 2019-11-02 10:17 - 2019-09-29 18:39 - 000002412 _____ C:\Users\alain\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-11-02 10:17 - 2015-12-09 16:13 - 000000000 ___RD C:\Users\alain\OneDrive 2019-11-01 22:03 - 2019-09-27 13:47 - 000000000 ____D C:\ProgramData\Packages 2019-10-28 20:39 - 2019-09-27 13:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2019-10-20 10:46 - 2019-09-30 13:46 - 000000000 ____D C:\Users\alain\AppData\Roaming\TeamViewer 2019-10-20 10:28 - 2019-10-01 17:42 - 000000000 ____D C:\Program Files\CCleaner 2019-10-12 12:42 - 2019-09-28 14:48 - 000000000 ___DC C:\WINDOWS\Panther ==================== Fichiers à la racine de certains dossiers ======== 2017-05-18 22:15 - 2017-05-26 10:03 - 002732032 _____ () C:\Users\alain\ZHPDiag3.exe 2019-09-28 21:09 - 2014-04-16 22:08 - 000658000 _____ (WildTangent, Inc.) C:\ProgramData\uninstall598415.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================