Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 25-01-2020 01 Exécuté par MaelSco (administrateur) sur PCMAËLCELINE (LENOVO 81A5) (26-01-2020 09:11:41) Exécuté depuis C:\Users\MaelSco\Desktop Profils chargés: celine & MaelSco (Profils disponibles: celine & MaelSco) Platform: Windows 10 Pro Version 1703 15063.1418 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe (IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\IntelCpHeciSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (LENOVO -> Lenovo) C:\Windows\System32\ymc.exe (LENOVO INC) C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.1.4.0_x64__5grkq8ppsgwt4\VFS\ProgramFilesX64\Lenovo\LenovoUtility\utility.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381280 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489896 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489896 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [139624 2019-12-13] (IDSA Production signing key -> Intel) HKU\S-1-5-21-3001529801-3994959800-1751078486-1005\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [148992 2017-03-18] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\79.0.3945.130\Installer\chrmstp.exe [2020-01-23] (Google LLC -> Google LLC) HKLM\Software\...\Winlogon\GPExtensions: [{9650FDBC-053A-4715-AD14-FC2DC65E8330}] -> C:\Windows\system32\hvsigpext.dll [2017-03-19] (Microsoft Windows -> ) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1224A6B8-AF14-470D-8FE8-70EC9732FC89} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC) Task: {275DFE43-9A8D-4EDE-92D6-BB5404FF17B0} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantAllUsersRun => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {30E9CC46-F229-4D86-A07F-CE74F2CDC2C4} - System32\Tasks\LenovoUtility Startup Task: {3104822C-63E1-427C-BB88-9A3D94A57489} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantWakeupRun => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {33E2E3A5-89D5-4D0C-B33B-2D802E14C578} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\Explorer.exe /NOUACCHECK Task: {35C0F81B-67C0-4ECD-8D8F-C1B5E2702938} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\afaedb85-3211-418e-b001-fa22522c781a => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.) Task: {39F9C7E7-CF20-4779-A3B1-F3146CCA5934} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [54144 2019-09-23] (Lenovo -> Lenovo Group Ltd.) Task: {4117567B-4888-4848-A883-39D0D2E72724} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {46144420-F161-43A6-874F-B6ED364612EB} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => %windir%\system32\sc.exe START ImControllerService Task: {619E42AB-17B7-4056-93B0-C0B58611F2A0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {6C946623-C906-435C-9761-9AFC993648B0} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantCalendarRun => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {7C841D0A-90EC-408F-9461-E06CEE6A0BF7} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {7F9EE309-59B7-4934-B0BA-82F2B9CE9FF5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC) Task: {845655F6-3825-4C03-8D5E-A4375DFB2B1A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9C8DD203-B13B-40C4-B676-D695A3F42B0B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AB8752D8-E1EB-4140-8332-533D156C62A5} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {AC49A338-B2B7-43E3-814F-9B96357A3836} - System32\Tasks\OneDrive Standalone Update Task v2 Task: {AD6BBF50-9913-4EAB-8415-476E03E885C4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AF95C490-1EAE-4C6A-AB95-65A355F8A994} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {C60B34B9-15B4-4A09-AF78-1E93A32975E8} - System32\Tasks\Microsoft\Windows\rempl\LaunchLowDiskToast => C:\Program Files\rempl\disktoast.exe [92664 2019-08-22] (Microsoft Windows -> Microsoft Corporation) Task: {C6744F89-34B5-4A0D-B500-78F2BDC2A58A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9e19242b-fb52-4e67-be19-e87e61f5a7b5 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.) Task: {D0741D56-008C-4455-B4CA-D71255EFBE4E} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [3976384 2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) Task: {F71758EE-3E38-42A4-8694-B320529493FA} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistant => C:\Windows\UpdateAssistant\UpdateAssistant.exe Task: {F8FBFA08-2D00-4E16-9E7A-5409C1EB4013} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1d9ab143-b579-4b1d-9991-19f0e9baf268 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{7dcb9560-18ca-4853-9fa9-036f6e6aaf5e}: [DhcpNameServer] 169.254.73.172 Tcpip\..\Interfaces\{bf75cbe3-2c3a-4246-9970-2db3a6da8224}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com HKU\S-1-5-21-3001529801-3994959800-1751078486-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE HKU\S-1-5-21-3001529801-3994959800-1751078486-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE HKU\S-1-5-21-3001529801-3994959800-1751078486-1005\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com SearchScopes: HKU\S-1-5-21-3001529801-3994959800-1751078486-1005 -> DefaultScope {15222648-EC39-4250-BE1F-9FC5D9834323} URL = SearchScopes: HKU\S-1-5-21-3001529801-3994959800-1751078486-1005 -> {15222648-EC39-4250-BE1F-9FC5D9834323} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) FireFox: ======== FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-3001529801-3994959800-1751078486-1005: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-06-27] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR Profile: C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default [2020-01-24] CHR Extension: (Slides) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-11-23] CHR Extension: (Docs) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-11-23] CHR Extension: (Google Drive) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-11-23] CHR Extension: (AdGuard AdBlocker) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2020-01-24] CHR Extension: (YouTube) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-11-23] CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-01-12] CHR Extension: (Sheets) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-11-23] CHR Extension: (Google Docs hors connexion) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-01-24] CHR Extension: (Avast Online Security) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-01-24] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-23] CHR Extension: (Gmail) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-11-23] CHR Extension: (Chrome Media Router) - C:\Users\MaelSco\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-12-15] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [38248 2019-12-13] (IDSA Production signing key -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [145768 2019-12-13] (IDSA Production signing key -> Intel) R2 esifsvc; C:\Windows\system32\Intel\DPTF\esif_uf.exe [2211448 2016-11-29] (Intel Corporation - pGFX -> Intel Corporation) R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [529912 2019-07-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [391744 2017-07-11] (Canon Inc. -> ) R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [77208 2019-09-23] (Lenovo -> Lenovo Group Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2018-06-08] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 YMC; C:\Windows\system32\ymc.exe [66384 2017-06-18] (LENOVO -> Lenovo) S2 HuaweiHiSuiteService64.exe; "C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AX88772; C:\Windows\System32\drivers\ax88772.sys [111616 2017-03-18] (Microsoft Windows -> ASIX Electronics Corp.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider) S3 dot4usb; C:\Windows\system32\DRIVERS\dot4usb.sys [49056 2012-10-19] (Hewlett-Packard Company -> Microsoft Corporation) R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [72592 2016-10-25] (Intel Corporation -> Intel Corporation) R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [67984 2016-10-25] (Intel Corporation -> Intel Corporation) S3 DrvAgent64; C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [20872 2017-01-13] (eSupport.com, Inc -> Phoenix Technologies) R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [355216 2016-10-25] (Intel Corporation -> Intel Corporation) S3 ew_usbccgpfilter; C:\Windows\System32\drivers\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-08-23] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [257528 2019-07-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 ldiagio; C:\ProgramData\Lenovo\iMController\Plugins\LenovoHardwareScanPlugin\x64\LSCDiags\ldiagio.sys [39048 2019-10-18] (Lenovo -> Lenovo Group Limited (R)) R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [8720384 2019-08-28] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 qcusbnet; C:\Windows\System32\drivers\qcusbnet.sys [428600 2017-03-15] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated) S3 qcusbser; C:\Windows\system32\DRIVERS\qcusbser.sys [254520 2017-03-15] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [329184 2017-04-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3234272 2017-07-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [31128 2017-03-18] (Microsoft Windows -> ) S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [41816 2019-08-16] (Intel Corporation -> ) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [23040 2017-03-18] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) Error(1) reading file: "C:\Users\MaelSco\Desktop\C++(coder)1°." 2020-01-26 09:11 - 2020-01-26 09:13 - 000025112 _____ C:\Users\MaelSco\Desktop\FRST.txt 2020-01-26 09:09 - 2020-01-26 09:12 - 000000000 ____D C:\FRST 2020-01-26 09:08 - 2020-01-26 09:08 - 002580480 ____C (Farbar) C:\Users\MaelSco\Desktop\FRST64.exe 2020-01-25 14:46 - 2020-01-25 14:47 - 003514588 ____C C:\Users\celine\Downloads\FortniteInstaller-4.0.3.apk 2020-01-24 12:23 - 2020-01-24 12:23 - 000000000 ___DC C:\Users\celine\AppData\Roaming\Bandicam Company 2020-01-24 12:22 - 2020-01-24 12:38 - 000000000 ___DC C:\Users\celine\Documents\Bandicam 2020-01-24 12:20 - 2020-01-24 12:20 - 019650976 ____C (Bandicam Company) C:\Users\celine\Downloads\bdcamsetup.exe 2020-01-23 16:59 - 2020-01-23 16:59 - 000010426 _____ C:\Users\MaelSco\Desktop\SVT 30 mill.odt 2020-01-23 15:35 - 2020-01-23 15:50 - 000011485 _____ C:\Users\MaelSco\Desktop\Clack's Launcher.odt 2020-01-21 18:03 - 2020-01-21 18:03 - 000009436 _____ C:\Users\MaelSco\Desktop\Anglais FR33 RUBOXFR33.odt 2020-01-21 16:10 - 2020-01-21 16:10 - 000000000 ____D C:\Users\MaelSco\Desktop\NR 2020-01-20 16:32 - 2020-01-20 16:32 - 000000011 _____ C:\Users\MaelSco\Desktop\TheBestReboot.bat 2020-01-20 14:52 - 2020-01-20 14:48 - 000000000 ____D C:\Users\MaelSco\Desktop\COURS NR ACT 2020-01-20 14:50 - 2020-01-20 14:50 - 000647410 _____ C:\Users\MaelSco\Desktop\COURS NR ACT2.exe 2020-01-20 08:59 - 2020-01-23 09:50 - 000000000 ___RD C:\Users\MaelSco\Desktop\MpCmdRunning 2020-01-20 08:34 - 2020-01-20 08:58 - 000011541 _____ C:\Users\MaelSco\Desktop\Francais Exercice Pass Simple ForRappel.odt 2020-01-20 08:34 - 2020-01-20 08:36 - 000000000 ____D C:\Users\MaelSco\Desktop\Cartable 2020-01-20 08:21 - 2020-01-20 10:48 - 000013979 _____ C:\Users\MaelSco\Documents\SecretOfAmber.odt 2020-01-19 13:06 - 2020-01-20 16:48 - 000011684 _____ C:\Users\MaelSco\Desktop\Devoirs maths NR.odt 2020-01-17 08:23 - 2020-01-24 19:31 - 000001168 _____ C:\Users\MaelSco\Desktop\OpenOffice 4.1.7.lnk 2020-01-16 08:21 - 2020-01-16 08:21 - 000000000 _____ C:\Users\MaelSco\Desktop\CONTROLE HISTOIRE LE 3 FEVRIER.txt 2020-01-14 16:19 - 2020-01-14 16:19 - 000000000 ____D C:\Users\MaelSco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-01-14 16:18 - 2020-01-14 16:18 - 000000000 ____D C:\Users\MaelSco\AppData\Roaming\WinRAR 2020-01-14 14:37 - 2020-01-20 14:55 - 006655821 _____ C:\Users\MaelSco\Desktop\Enregistrement Spyzie.zip 2020-01-13 14:43 - 2020-01-13 14:56 - 000013146 _____ C:\Users\MaelSco\Desktop\Lecon HT LES CITE OLYMPIQUES.odt 2020-01-13 14:28 - 2020-01-13 14:32 - 000000000 ____D C:\Users\MaelSco\Desktop\Hist TH2 CH4 2020-01-13 09:28 - 2020-01-17 10:02 - 000016993 _____ C:\Users\MaelSco\Desktop\questions mael du 13 janvier 2020.odt 2020-01-13 08:29 - 2020-01-17 15:27 - 000000000 ___SD C:\Users\MaelSco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.7 2020-01-13 08:27 - 2020-01-13 08:27 - 000000000 ____D C:\Users\MaelSco\Desktop\OpenOffice 4.1.7 (fr) Installation Files 2020-01-11 10:05 - 2020-01-11 10:05 - 000000000 ____D C:\KPRM 2020-01-06 09:40 - 2020-01-06 09:48 - 000010307 _____ C:\Users\MaelSco\Desktop\MezzoForteCreshendoDecrenshdo.odt 2020-01-06 09:24 - 2020-01-06 09:31 - 000022913 _____ C:\Users\MaelSco\Desktop\Binjamin britten.odt 2020-01-06 08:28 - 2020-01-06 08:28 - 000001605 _____ C:\Users\MaelSco\Desktop\Alarmes et horloge.lnk 2020-01-03 11:52 - 2020-01-24 11:55 - 000001496 ____C C:\Users\celine\Desktop\Roblox Studio.lnk 2020-01-03 11:52 - 2020-01-24 11:55 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2020-01-01 18:13 - 2020-01-01 18:36 - 000000000 ___DC C:\Users\celine\Documents\ROBLOX 2019-12-27 18:21 - 2019-12-27 18:21 - 000000000 ___DC C:\Users\celine\AppData\Roaming\WinRAR 2019-12-27 17:56 - 2020-01-14 16:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-12-27 17:56 - 2020-01-14 16:19 - 000000000 ____D C:\Program Files\WinRAR 2019-12-27 17:56 - 2019-12-27 17:56 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-01-26 09:07 - 2018-01-01 14:06 - 000004168 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{00D965FB-6056-49E8-B56D-3CC916B5C080} 2020-01-25 23:40 - 2017-12-14 15:05 - 000000000 ___DC C:\Users\celine 2020-01-25 20:45 - 2017-04-18 00:21 - 000000000 ____D C:\Windows\system32\SleepStudy 2020-01-25 15:12 - 2017-04-18 00:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-01-25 15:12 - 2017-03-18 12:40 - 001835008 _____ C:\Windows\system32\config\BBI 2020-01-25 15:11 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\system32\NDF 2020-01-25 15:01 - 2017-09-20 22:16 - 006323088 _____ C:\Windows\system32\perfh00C.dat 2020-01-25 15:01 - 2017-09-20 22:16 - 001767122 _____ C:\Windows\system32\perfc00C.dat 2020-01-25 15:01 - 2017-04-18 00:26 - 012491544 _____ C:\Windows\system32\PerfStringBackup.INI 2020-01-25 10:44 - 2019-11-11 15:13 - 000033792 __SHC C:\Users\celine\Downloads\Thumbs.db 2020-01-25 09:14 - 2019-06-29 11:43 - 000226304 __SHC C:\Users\celine\Desktop\Thumbs.db 2020-01-24 21:07 - 2017-12-14 15:06 - 000000000 ___DC C:\Users\celine\AppData\Local\Packages 2020-01-24 21:07 - 2017-03-18 22:03 - 000000000 ___HD C:\Program Files\WindowsApps 2020-01-24 21:07 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\AppReadiness 2020-01-24 19:27 - 2019-11-25 12:01 - 000252928 ___SH C:\Users\MaelSco\Desktop\Thumbs.db 2020-01-24 16:45 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\LiveKernelReports 2020-01-24 12:21 - 2019-11-23 14:40 - 000000000 ____D C:\Users\MaelSco 2020-01-24 11:55 - 2019-01-03 10:45 - 000000252 ____C C:\Users\celine\AppData\LocalLow\rbxcsettings.rbx 2020-01-23 20:23 - 2019-04-25 19:17 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-01-23 14:52 - 2019-12-09 10:32 - 000003584 ___SH C:\Users\MaelSco\Downloads\Thumbs.db 2020-01-23 14:52 - 2019-12-02 15:00 - 000000000 ____D C:\Users\MaelSco\AppData\Local\CrashDumps 2020-01-23 14:43 - 2017-04-18 00:22 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-01-23 14:24 - 2019-12-13 14:30 - 000001210 _____ C:\Users\MaelSco\Desktop\Command Prompt.lnk 2020-01-23 12:00 - 2019-12-16 12:32 - 000000000 ____D C:\Users\MaelSco\AppData\Local\ElevatedDiagnostics 2020-01-23 11:52 - 2019-11-23 14:40 - 000000000 ____D C:\Users\MaelSco\AppData\Local\Packages 2020-01-23 08:34 - 2019-12-13 14:31 - 000001785 _____ C:\Users\MaelSco\Desktop\Calendrier.lnk 2020-01-22 18:23 - 2018-09-13 15:39 - 000000000 ___DC C:\Users\celine\AppData\Local\CrashDumps 2020-01-19 13:10 - 2018-03-02 13:35 - 000000000 ____D C:\ProgramData\CanonIJPLM 2020-01-18 08:48 - 2019-05-04 16:25 - 000164864 __SHC C:\Users\celine\Documents\Thumbs.db 2020-01-17 15:39 - 2019-10-19 13:12 - 000000000 ____D C:\67ffa5c94736290fe53a4355e3c5665f 2020-01-17 15:26 - 2019-12-16 08:26 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4 2020-01-17 09:50 - 2017-04-18 00:21 - 000438720 _____ C:\Windows\system32\FNTCACHE.DAT 2020-01-15 16:14 - 2017-12-15 13:09 - 000000000 ____D C:\Windows\system32\MRT 2020-01-15 16:01 - 2017-12-15 13:09 - 120202352 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2020-01-14 14:42 - 2019-12-09 09:53 - 000004170 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{93FBF30F-BC60-4D61-89DB-563128FE9E6C} 2020-01-14 14:23 - 2017-04-18 01:12 - 000000000 ____D C:\Windows\Panther 2020-01-11 10:05 - 2019-11-09 16:28 - 000003646 _____ C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask 2020-01-07 10:58 - 2017-03-18 21:51 - 000000000 ____D C:\Windows\CbsTemp 2020-01-07 10:25 - 2018-08-05 11:49 - 000000000 ___DC C:\Users\celine\AppData\LocalLow\Temp 2020-01-04 16:51 - 2017-12-16 20:47 - 000000587 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2020-01-04 16:49 - 2019-08-14 08:48 - 000000000 ___DC C:\Users\celine\AppData\Local\Roblox ==================== Fichiers à la racine de certains dossiers ======== 2019-11-28 14:21 - 2019-11-28 14:21 - 000007602 _____ () C:\Users\MaelSco\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================