Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-06-2021 Exécuté par dvg (administrateur) sur ANONYMOUSSE (Acer Aspire X3950) (01-07-2021 11:54:13) Exécuté depuis G:\tlch Profils chargés: dvg Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Accer) [Fichier non signé] C:\OEM\USBDECTION\FixIt.exe (Acer Incorporated -> ) C:\OEM\USBDECTION\USBS3S4Detection.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GregHSRW.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4> (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe (FSL) [Fichier non signé] C:\Program Files (x86)\FSL\SuperFinder\SuperFinder.exe (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft) [Fichier non signé] C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2> (OrdinarySoft -> OrdinarySoft) C:\Program Files\Start Menu X\StartMenuX.exe (Pierre MOATI) [Fichier non signé] C:\Program Files\Mega Bloc Notes\notepad.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-06-30] (NVIDIA Corporation -> NVIDIA Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [123672 2021-06-26] (Avast Software s.r.o. -> AVAST Software) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-1706454822-2514899960-3450297519-1000\...\Run: [StartMenuX] => C:\Program Files\Start Menu X\StartMenuX.exe [9005904 2018-07-27] (OrdinarySoft -> OrdinarySoft) HKU\S-1-5-21-1706454822-2514899960-3450297519-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [34508416 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1706454822-2514899960-3450297519-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-1706454822-2514899960-3450297519-1000\...\MountPoints2: {a35afbbb-0aa1-11e0-87a0-90fba6df767f} - F:\LaunchU3.exe -a HKU\S-1-5-18\...\Run: [SpybotPostWindows10UpgradeReInstall] => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe" HKLM\...\Windows x64\Print Processors\hpzppWN7: C:\Windows\System32\spool\prtprocs\x64\hpzppWN7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\7-PDF Print Monitor: C:\Windows\system32\pdf7.dll [208384 2012-05-06] (7-PDF, Germany - Th. Hodes) [Fichier non signé] HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [221696 2020-10-02] (Bullzip) [Fichier non signé] HKLM\...\Print\Monitors\Nitro PDF Port Monitor: C:\Windows\system32\nitrolocalmon2.dll [29712 2013-07-26] (Nitro PDF Software -> Nitro PDF Software) HKLM\...\Print\Monitors\PDFCreator: C:\Windows\system32\pdfcmnnt.dll [87040 2005-03-12] () [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2021-05-28] (Adobe Inc. -> Adobe Systems, Inc.) HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Startup: C:\Users\dvg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Super Finder XT.lnk [2019-07-04] ShortcutTarget: Super Finder XT.lnk -> C:\Program Files (x86)\FSL\SuperFinder\SuperFinder.exe (FSL) [Fichier non signé] HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {05DD8D3B-A47F-4F72-81E8-5EAF6DCF54D0} - System32\Tasks\{125AB3E7-BBE1-43AC-8B02-9592D6272E22} => C:\Windows\system32\pcalua.exe -a C:\Users\dvg\AppData\Local\Temp\jre-8u201-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ATTENTION Task: {12A72CD3-C474-4E03-880D-62340DBDEA4E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.) Task: {1CE8CF95-9C31-4E2A-A2C9-7B3AC42D662C} - System32\Tasks\GoogleUpdateTaskMachineCore1d2583854c77036 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.) Task: {25A38740-C0B1-4F8F-9F08-BF3721CD7ADE} - System32\Tasks\{3DE5C1F5-E38D-4516-B9B7-A5FE8C7E71EC} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\OpenOffice.org 3\program\simpress.exe" -d "C:\Program Files (x86)\Mozilla Thunderbird" -c C:\Users\dvg\AppData\Local\Temp\JEU_DE_CARTES_ARABE.pps <==== ATTENTION Task: {278B2938-25E5-4600-B237-C750C36E9690} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Pas de fichier <==== ATTENTION Task: {38C79343-D658-4873-AA2D-7E916C472D36} - System32\Tasks\{C5C4E365-5BC0-42DC-8E1C-8D546C0C961C} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C1LUI7VI\JavaSetup8u45.exe" -d C:\Users\dvg\Desktop Task: {3A8E7159-F7DB-440D-9AB7-C4BD75BE0AEC} - \ByteFence -> Pas de fichier <==== ATTENTION Task: {3DB91149-370E-4920-B823-C1D0C0BA55A1} - System32\Tasks\{81C1AA4D-DAB0-419F-8BBB-257385059F00} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BIK41AWU\jre-6u23-windows-i586-iftw[1].exe" -d C:\Users\dvg\Desktop Task: {40B421B1-4E7C-4597-8DA6-D6593B3161F2} - System32\Tasks\{A2999ABB-C61C-4B30-BE33-B486FA931140} => C:\Windows\system32\pcalua.exe -a E:\Driver\Setup.exe -d E:\Driver Task: {40BC1528-265C-408C-81BF-AA8EAD50795A} - System32\Tasks\{427345E0-7B49-4624-A2B8-CA177525B245} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9YQPRJ14\codeblocks-8.02-setup.exe" -d C:\Users\dvg\Desktop Task: {4370E03C-2AE9-423E-ACA1-37686A61E154} - System32\Tasks\{867564E5-F3AB-4CF3-BA08-D9A79C9F90B6} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CP0HH0S\ie6setup[1].exe" -d C:\Users\dvg\Desktop Task: {440E2BA0-A90D-4BFC-B79F-06D87D87B523} - System32\Tasks\{DE0C51E2-4279-434D-9DBA-D6DF0A68877A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\OpenOffice 4\program\\swriter.exe" -d D:\Users\dvg\Documents\balzac\ballesteros -c -o "D:\Users\dvg\Documents\balzac\ballesteros\grégory1.rtf" Task: {451C3010-104F-4B7B-8EC5-AC34F440A8D9} - System32\Tasks\{8651B324-10FE-430F-9415-ACECC268B6F5} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\Desktop\7 Sticky Notes\7StickyNotes.exe" -d "C:\Users\dvg\Desktop\7 Sticky Notes" Task: {45392EB6-2831-4FC7-BD8F-4FD2ABC813D2} - System32\Tasks\{EC5BDBBE-BB70-4869-8449-0B350F9DF39B} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\Desktop\OpenOffice 4.0.1 (fr) Installation Files\setup.exe" -d "C:\Users\dvg\Desktop\OpenOffice 4.0.1 (fr) Installation Files" Task: {489B7E71-32D9-4BD0-B031-6F1ECFDFBDD0} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> Pas de fichier <==== ATTENTION Task: {4D1EE3A1-D317-430A-A7B4-C84AE2DEB201} - System32\Tasks\{CAEB164E-4345-4A78-A052-ECE2B8D81730} => "C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/4.1.0.179.367/fr/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;notincluded Task: {536AC20F-C3B3-439D-8DE1-3123D35BED5A} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [637368 2021-06-26] (Mozilla Corporation -> Mozilla Foundation) Task: {54028641-15A0-4DC8-81E3-B539CE279566} - System32\Tasks\GoogleUpdateTaskMachineUA1d2583854eb24da => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.) Task: {65D071C9-5CB5-4B3E-A6BE-F5F2026E4197} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.) Task: {667B815A-A517-4320-9931-E4844D23FC39} - System32\Tasks\{22184C33-D364-4A4C-90A8-D9B34B65D2A9} => C:\Windows\system32\pcalua.exe -a E:\tlch\unetbootin_6-75_fr_282172.exe -d E:\tlch Task: {6DCE33C1-7167-4E3B-BDC2-5FB2182526E0} - System32\Tasks\{6788740D-457F-4325-A388-5E543031915A} => "c:\program files (x86)\internet explorer\iexplore.exe" http://www.skype.com/go/downloading?source=lightinstaller&ver=4.1.0.179.367&LastError=404 Task: {7AC1EA91-3CE2-4270-8012-B5D7A3779FFD} - System32\Tasks\Wise Registry Cleaner Schedule Task => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [8191816 2021-01-28] (Lespeed Technology Co., Ltd -> WiseCleaner.com) Task: {7DB545D7-3E56-46C4-A238-FA797D4710C9} - System32\Tasks\{07B2CBF8-99F0-4EB7-91EC-527DC22CC203} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XH57O2W3\Ekahau_HeatMapper-Setup[1].exe" -d C:\Users\dvg\Desktop Task: {7F39E71C-0994-422B-B76F-02A0A2B8982B} - System32\Tasks\{E3E58A5E-F228-4762-8728-127AB70C6DD1} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LS8NK3G4\MPSetup.exe" -d C:\Users\dvg\Desktop Task: {86E41B2E-0602-42CD-9B06-8C1B9E72D3B1} - System32\Tasks\{E9FB4734-6968-465C-8DBC-B0D4B5B3DA21} => C:\Windows\system32\pcalua.exe -a E:\AP\Inst_French\Install\PhoTagsXprsInstNOWC-040C.exe -d E:\AP\Inst_French\Install Task: {87B320B6-3C79-4B90-9B0C-82B8BC032D33} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: {87C9CDFE-F38A-4C24-9E89-889E7DD7F3E1} - System32\Tasks\{4B50C432-3B8F-49F9-854B-A621A4FB7993} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\AVG\AVG2015\Notification\Launcher.exe" -d "C:\Program Files (x86)\AVG\AVG2015\Notification" Task: {9BECDBC4-F3D0-4DE6-A522-ED649ABC6FD9} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-06-26] (Avast Software s.r.o. -> Avast Software) Task: {9C1C6A61-3E50-4CD2-B149-654B19AF0C8C} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> Pas de fichier <==== ATTENTION Task: {A25A36C1-B69B-478B-A68E-008B934A2E77} - System32\Tasks\{5C04D1FA-E3F1-4077-8939-ED8915BD7EC6} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\II7BNMQ7\AdAwareWebInstaller_win32_11.1.5354.0.exe" -d C:\Users\dvg\Desktop Task: {A5028621-C6C0-487F-A9D6-9CAE3E35B156} - System32\Tasks\{A391A83D-04FD-4557-B263-090F452D29D0} => C:\Windows\system32\pcalua.exe -a C:\Users\dvg\notes\setup.exe -d C:\Users\dvg\notes Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Pas de fichier <==== ATTENTION Task: {B3BF9943-0185-44CA-98F0-EB1DB67D5E77} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [8776024 2021-03-09] (Lespeed Technology Co., Ltd -> WiseCleaner.com) Task: {B780B16F-1A6E-4ED7-8E90-EDF6D8BC36F7} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe Task: {B7B8ED9B-48D6-4780-A255-B698DD5A853F} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [8776024 2021-03-09] (Lespeed Technology Co., Ltd -> WiseCleaner.com) Task: {BA5CEA0B-EE04-4773-BEEC-F58E630543B4} - System32\Tasks\{A33B5721-994C-49D7-A9CB-E559ED217E50} => G:\tlch\setup.exe [889488 2021-06-29] (TAYLOR NELSON SOFRES, SA -> ) Task: {C57FE942-3FD8-4BE4-8D52-8BCBCBECC083} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4903192 2021-06-26] (Avast Software s.r.o. -> AVAST Software) Task: {C9442084-CF79-4C94-92EC-2C65002A5AD0} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {CD7F0257-510B-402F-8D6D-9A8BBEA38080} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28880512 2021-06-17] (Piriform Software Ltd -> Piriform Software Ltd) Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Pas de fichier <==== ATTENTION Task: {D0DF3DEC-1F9C-449E-B635-30A9AF02C225} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-06-17] (Piriform Software Ltd -> Piriform) Task: {D975C8D8-A5DB-4F03-9056-026BC53BE3A5} - System32\Tasks\Programme de mise à jour en ligne de Adobe => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {E7E9A9A7-9528-465C-B40A-0E0C80708D86} - System32\Tasks\{BFCCE781-2E4E-4C1C-8C4B-1E544E7CBEC7} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2BVQA74C\windows-media-player-11_windows_media_player_11.0_francais_20085.exe" -d C:\Users\dvg\Desktop Task: {E8F13192-2246-473A-84E2-D910F86B32FD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {EE7F9E46-BA70-4E77-8BB2-6843C8CCE635} - System32\Tasks\{D88AE7CE-7808-4B5F-9CC0-52228FB26936} => C:\Windows\system32\pcalua.exe -a C:\Users\dvg\fotofix15\setup.exe -d C:\Users\dvg\fotofix15 Task: {F176D9C2-FC2B-4568-B967-73C458745CAA} - System32\Tasks\{DB491DDD-20EE-45B4-AA25-E29E4D052D47} => G:\tlch\setup.exe [889488 2021-06-29] (TAYLOR NELSON SOFRES, SA -> ) Task: {F2ACB9D1-E350-4BB4-B128-B98D6A1487AB} - System32\Tasks\WiseCleaner\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [8191816 2021-01-28] (Lespeed Technology Co., Ltd -> WiseCleaner.com) Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Pas de fichier <==== ATTENTION Task: {FE48745F-4A4A-4CAD-9C4B-FD7E7C5B9539} - System32\Tasks\{8972151B-62E2-4855-835E-716AF9167454} => C:\Windows\system32\pcalua.exe -a C:\Users\dvg\AppData\Local\Temp\Temp2_synchronizer.zip\Uninst.exe <==== ATTENTION Task: {FE7C016C-1F9E-4EA1-B760-7EF9187B884E} - System32\Tasks\{2A6A5B6F-C926-4591-8F0A-9B5F87B29661} => C:\Windows\system32\pcalua.exe -a "C:\Users\dvg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BK4KSG44\jre-6u25-windows-i586-iftw.exe" -d C:\Users\dvg\Desktop (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Wise Registry Cleaner Schedule Task.job => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{14CB3290-4966-44B0-B8C5-5F747B643BAD}: [DhcpNameServer] 212.27.40.241 212.27.40.242 Tcpip\..\Interfaces\{E7BF208B-5DD9-409B-BD5E-7F5BF77CD02E}: [DhcpNameServer] 192.168.0.254 FireFox: ======== FF DefaultProfile: cw80uxs2.default FF ProfilePath: C:\Users\dvg\AppData\Roaming\Mozilla\Firefox\Profiles\cw80uxs2.default [2021-07-01] FF user.js: detected! => C:\Users\dvg\AppData\Roaming\Mozilla\Firefox\Profiles\cw80uxs2.default\user.js [2020-01-01] FF DownloadDir: C:\Downloads\ajeter FF Homepage: Mozilla\Firefox\Profiles\cw80uxs2.default -> hxxps://www.qwant.com/?q=faire%20de%20qwant%20mon%20moteur%20par%20d%C3%A9faut%20sur%20firefox&t=web FF HomepageOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Disabled: qwantcomforfirefox@jetpack FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Disabled: {24436206-088d-4a1a-8d0e-cf93ca7a2d23} FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Disabled: qwantcomforfirefox@jetpack FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: wikipedia@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: qwant@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: ebay@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: ddg@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: amazon@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: bing@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\cw80uxs2.default -> Enabled: google@search.mozilla.org FF Extension: (Pas de nom) - C:\Users\dvg\AppData\Roaming\Mozilla\Firefox\Profiles\cw80uxs2.default\Extensions\qwantcomforfirefox@jetpack.xpi [2020-12-07] FF Extension: (Search Manager) - C:\Users\dvg\AppData\Roaming\Mozilla\Firefox\Profiles\cw80uxs2.default\Extensions\{24436206-088d-4a1a-8d0e-cf93ca7a2d23}.xpi [2020-01-01] [UpdateUrl:hxxps://qupotomu.com/update?x=restype=ffjson] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2019-05-29] [non signé] FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [Fichier non signé] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [Fichier non signé] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-05-28] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd] Opera: ======= OPR Profile: C:\Users\dvg\AppData\Roaming\Opera Software\Opera Stable [2021-07-01] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.fr/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8249936 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [625432 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [373528 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation -> Microsoft Corporation) R2 NetBalancer Windows Service; C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe [10240 2010-12-10] (Microsoft) [Fichier non signé] R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation -> Microsoft Corporation) R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] (Acer Incorporated -> ) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) S3 WinZip Smart Monitor Service; C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe [1463592 2020-07-09] (Corel Corporation -> Corel Corporation) R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2286976 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.1.7.1\WsAppService.exe [404480 2016-02-17] (Wondershare) [Fichier non signé] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [35720 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [216928 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [366616 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [250392 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [99352 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [41352 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [182600 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [524400 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2021-06-26] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [107848 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [82912 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851192 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [471920 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [215384 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [327536 2021-06-26] (Avast Software s.r.o. -> AVAST Software) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.) S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o. -> AVG Technologies CZ, s.r.o.) S3 DroidCam; C:\Windows\System32\DRIVERS\droidcam.sys [31576 2020-04-24] (DEV47 APPS -> Dev47Apps) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation -> Microsoft Corporation) R3 Nbdrv; C:\Windows\System32\DRIVERS\nbdrv.sys [34280 2010-05-15] (CPUID -> SeriousBit) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation -> Microsoft Corporation) R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2016-11-01] (CACE Technologies, Inc. -> CACE Technologies, Inc.) R3 optousb; C:\Windows\System32\DRIVERS\optousb.sys [27264 2012-06-26] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.) R3 optovcm; C:\Windows\System32\DRIVERS\optovcm.sys [34432 2012-06-26] (Microsoft Windows Hardware Compatibility Publisher -> OPTO ELECTRONICS CO.,LTD.) S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [203320 2012-05-21] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ss_bserd; C:\Windows\System32\DRIVERS\ss_bserd.sys [128000 2010-12-21] (MCCI Corporation -> MCCI Corporation) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> ) S3 VMLiteUSB; C:\Windows\System32\Drivers\VMLiteUSB.sys [150120 2010-08-11] (Remotesoft, Inc. -> VMLite, Inc.) U1 aswbdisk; pas de ImagePath S1 AVGIDSDriver; system32\DRIVERS\avgidsdrivera.sys [X] S0 AVGIDSHA; system32\DRIVERS\avgidsha.sys [X] S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-01 11:53 - 2021-07-01 11:54 - 000000000 ____D C:\FRST 2021-07-01 09:11 - 2021-07-01 09:14 - 000498976 _____ C:\Windows\system32\FNTCACHE.DAT 2021-07-01 08:57 - 2021-07-01 08:57 - 000000000 ____D C:\Windows\msagent 2021-07-01 08:57 - 2021-07-01 08:57 - 000000000 ____D C:\Windows\Lhsp 2021-07-01 08:57 - 2021-07-01 08:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2021-07-01 08:57 - 2021-07-01 08:57 - 000000000 ____D C:\Program Files\Mega Bloc Notes 2021-07-01 08:33 - 2021-07-01 08:56 - 000073728 _____ C:\Windows\unacev2.dll 2021-06-30 09:44 - 2021-06-29 17:27 - 000889488 _____ () C:\Users\dvg\Music\Documents\setup.exe 2021-06-30 05:06 - 2021-06-30 05:06 - 000002902 _____ C:\Windows\system32\Tasks\{A33B5721-994C-49D7-A9CB-E559ED217E50} 2021-06-29 16:41 - 2021-06-29 16:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ConsoClicker 2021-06-29 07:58 - 2021-06-29 16:41 - 000000000 ____D C:\ProgramData\ConsoClicker 2021-06-26 18:50 - 2021-06-28 12:56 - 000002902 _____ C:\Windows\system32\Tasks\{DB491DDD-20EE-45B4-AA25-E29E4D052D47} 2021-06-26 13:36 - 2021-06-26 13:36 - 000000000 ____D C:\Users\dvg\AppData\Roaming\Avast Software 2021-06-26 13:36 - 2021-06-26 13:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2021-06-26 13:34 - 2021-06-29 09:42 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2021-06-26 13:34 - 2021-06-26 13:34 - 000851192 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000524400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000471920 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000339736 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2021-06-26 13:34 - 2021-06-26 13:34 - 000327536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000250392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000216928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000215384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000182600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000107848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000099352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000082912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000041352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000038152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000035720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys 2021-06-26 13:34 - 2021-06-26 13:34 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2021-06-26 13:34 - 2021-06-26 13:33 - 000366616 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys 2021-06-26 13:33 - 2021-06-26 13:33 - 000000000 ____D C:\Program Files\Avast Software 2021-06-26 13:26 - 2021-06-26 13:26 - 000000000 ____D C:\Users\dvg\desactivUAC 2021-06-26 08:13 - 2021-06-26 08:13 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-06-26 08:09 - 2021-06-26 13:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2021-06-25 12:21 - 2021-06-26 13:34 - 000044568 _____ () C:\Windows\system32\Drivers\staport.sys 2021-06-03 12:15 - 2021-06-03 12:15 - 000356930 _____ C:\Users\dvg\Music\Documents\wilsonOri.odg 2021-06-03 08:10 - 2021-06-03 08:38 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-01 10:34 - 2017-04-08 08:17 - 000000000 ____D C:\Users\dvg\AppData\LocalLow\Mozilla 2021-07-01 09:47 - 2018-07-21 08:55 - 000000000 ____D C:\Users\dvg\AppData\Local\AVAST Software 2021-07-01 09:38 - 2009-07-14 06:45 - 000022256 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-07-01 09:38 - 2009-07-14 06:45 - 000022256 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-07-01 09:18 - 2011-01-21 15:29 - 000000000 ____D C:\Program Files\CCleaner 2021-07-01 09:15 - 2016-02-05 12:58 - 000118512 _____ C:\Windows\system32\GDIPFONTCACHEV1.DAT 2021-07-01 09:13 - 2014-12-08 15:02 - 000000000 ____D C:\ProgramData\AVAST Software 2021-07-01 09:12 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-07-01 09:11 - 2007-10-10 10:43 - 000000000 ____D C:\ProgramData\NVIDIA 2021-07-01 09:09 - 2014-07-17 12:39 - 000000000 ____D C:\Users\dvg\AppData\LocalLow\Temp 2021-07-01 08:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2021-07-01 08:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\Help 2021-07-01 08:49 - 2018-09-05 08:40 - 000000000 ____D C:\Users\dvg\AppData\Roaming\Wise Registry Cleaner 2021-06-30 16:55 - 2007-10-10 10:50 - 000000000 ____D C:\Program Files (x86)\Windows Live 2021-06-30 16:43 - 2017-11-03 17:24 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2021-06-30 16:43 - 2010-03-20 01:20 - 000000000 ____D C:\Program Files (x86)\Google 2021-06-30 16:39 - 2017-11-03 17:24 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2021-06-30 16:39 - 2012-11-05 16:12 - 000006227 _____ C:\Windows\wininit.ini 2021-06-30 16:36 - 2010-12-12 14:59 - 000000000 ____D C:\Users\dvg\AppData\Local\Google 2021-06-30 12:15 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2021-06-30 10:50 - 2019-04-06 08:07 - 000000000 ____D C:\Users\dvg\AppData\Local\Deployment 2021-06-29 16:41 - 2016-12-27 21:38 - 000001139 _____ C:\Users\Public\Desktop\ConsoClicker.lnk 2021-06-29 16:41 - 2016-12-27 21:38 - 000001139 _____ C:\ProgramData\Desktop\ConsoClicker.lnk 2021-06-29 16:41 - 2016-12-27 21:38 - 000000000 ____D C:\Program Files (x86)\ConsoClicker 2021-06-28 12:56 - 2021-05-02 09:15 - 000003096 _____ C:\Windows\system32\Tasks\{A391A83D-04FD-4557-B263-090F452D29D0} 2021-06-28 12:56 - 2019-11-03 18:34 - 000003092 _____ C:\Windows\system32\Tasks\{22184C33-D364-4A4C-90A8-D9B34B65D2A9} 2021-06-28 12:56 - 2019-08-11 13:18 - 000003162 _____ C:\Windows\system32\Tasks\{E9FB4734-6968-465C-8DBC-B0D4B5B3DA21} 2021-06-28 12:56 - 2019-08-08 09:12 - 000003060 _____ C:\Windows\system32\Tasks\{A2999ABB-C61C-4B30-BE33-B486FA931140} 2021-06-28 12:56 - 2019-01-18 09:21 - 000003230 _____ C:\Windows\system32\Tasks\{125AB3E7-BBE1-43AC-8B02-9592D6272E22} 2021-06-28 12:56 - 2018-08-21 14:09 - 000002792 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-06-28 12:56 - 2018-02-25 13:32 - 000003186 _____ C:\Windows\system32\Tasks\{8651B324-10FE-430F-9415-ACECC268B6F5} 2021-06-28 12:56 - 2017-10-26 17:00 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-06-28 12:56 - 2016-12-17 09:36 - 000003502 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA1d2583854eb24da 2021-06-28 12:56 - 2016-12-17 09:36 - 000003374 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore1d2583854c77036 2021-06-28 12:56 - 2016-08-14 14:11 - 000003112 _____ C:\Windows\system32\Tasks\{D88AE7CE-7808-4B5F-9CC0-52228FB26936} 2021-06-28 12:56 - 2015-12-03 21:17 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software 2021-06-28 12:56 - 2015-03-21 09:12 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2021-06-26 13:26 - 2010-12-12 14:50 - 000000000 ____D C:\Users\dvg 2021-06-26 13:05 - 2012-07-24 12:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-06-25 12:12 - 2018-09-09 12:29 - 000000000 ____D C:\Users\dvg\AppData\Roaming\XnView 2021-06-25 12:12 - 2011-01-02 17:34 - 000000000 ____D C:\Users\dvg\AppData\Roaming\Dev-Cpp 2021-06-25 12:12 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration 2021-06-15 13:20 - 2020-05-20 08:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2021-06-15 13:20 - 2016-08-08 20:41 - 000000998 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2021-06-15 13:20 - 2016-08-08 20:41 - 000000998 _____ C:\ProgramData\Desktop\Revo Uninstaller.lnk 2021-06-14 09:08 - 2013-08-19 10:05 - 000000000 ____D C:\Windows\system32\MRT 2021-06-14 09:01 - 2010-12-13 13:02 - 132447432 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-06-10 09:01 - 2019-08-15 08:33 - 000002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-06-04 08:18 - 2012-07-24 12:20 - 000000000 ____D C:\ProgramData\Mozilla ==================== Fichiers à la racine de certains dossiers ======== 2012-11-28 14:19 - 2012-11-28 14:19 - 019620864 _____ (Luis Cobian, CobianSoft) C:\Users\dvg\cbSetup.exe 2014-10-08 09:59 - 2014-10-08 09:59 - 000551287 _____ (Guillaume Ryder (http://utilfr42.free.fr) ) C:\Users\dvg\ClavierSetup32.exe 2011-02-11 15:21 - 2011-02-11 15:21 - 001448809 _____ (DOSBox Team) C:\Users\dvg\dosbox_dosbox_0.74_anglais_11037.exe 2015-08-07 21:42 - 2015-08-07 21:42 - 002163900 _____ ( ) C:\Users\dvg\MyAlbumSetupFr.exe 2016-04-25 20:24 - 2016-04-25 20:24 - 006425857 _____ (InstallShield Software Corporation) C:\Users\dvg\pci_fr_smartrecovery.exe 2015-02-12 10:51 - 2015-02-19 17:41 - 007794416 _____ (Icecream Apps ) C:\Users\dvg\pdf_split_and_merge_setup.exe 2013-07-29 20:47 - 2013-07-29 20:47 - 000129536 _____ () C:\Users\Public\AlexaNSISPlugin.5628.dll 2009-03-25 17:04 - 2012-11-28 14:34 - 001551872 _____ () C:\Program Files\Install.exe 2007-10-02 21:08 - 2012-11-28 14:36 - 000002200 _____ () C:\Program Files\Licence.txt 2007-10-02 21:08 - 2012-11-28 14:36 - 000001956 _____ () C:\Program Files\License.txt 2009-04-18 11:53 - 2012-11-28 14:36 - 000001066 _____ () C:\Program Files\LisezMoi.txt 2013-07-16 16:06 - 2013-07-16 16:06 - 123128397 _____ () C:\Program Files\openoffice1.cab 2013-07-16 16:05 - 2013-07-16 16:05 - 002265088 _____ () C:\Program Files\openoffice400.msi 2009-04-18 11:51 - 2012-11-28 14:36 - 000011442 _____ () C:\Program Files\QuoiDeNeuf.txt 2009-04-18 11:53 - 2012-11-28 14:36 - 000001011 _____ () C:\Program Files\ReadMe.txt 2013-07-16 16:05 - 2013-07-16 16:05 - 000475136 _____ () C:\Program Files\setup.exe 2013-07-16 16:05 - 2013-07-16 16:05 - 000000279 _____ () C:\Program Files\setup.ini 2009-04-18 11:46 - 2012-11-28 14:36 - 000364032 _____ () C:\Program Files\Synchronizer.cat 2009-04-18 11:52 - 2012-11-28 14:36 - 000103892 _____ () C:\Program Files\Synchronizer.chm 2009-04-18 11:46 - 2012-11-28 14:36 - 000364032 _____ () C:\Program Files\Synchronizer.enu 2009-04-18 11:46 - 2012-11-28 14:36 - 000364032 _____ () C:\Program Files\Synchronizer.esp 2009-04-18 11:45 - 2012-11-28 14:36 - 002306048 _____ () C:\Program Files\Synchronizer.exe 2009-04-18 11:46 - 2012-11-28 14:36 - 000364544 _____ () C:\Program Files\Synchronizer.fra 2009-04-18 11:46 - 2012-11-28 14:36 - 000364032 _____ () C:\Program Files\Synchronizer.ita 2012-05-03 10:13 - 2012-05-03 10:13 - 001341498 _____ () C:\Program Files\UltraVnc_10962_x86_bin.zip 2009-03-25 17:04 - 2012-11-28 14:36 - 001446400 _____ () C:\Program Files\Uninst.exe 2009-04-18 11:51 - 2012-11-28 14:36 - 000009453 _____ () C:\Program Files\WhatsNew.txt 2005-12-25 20:05 - 2011-11-07 10:59 - 000000582 _____ () C:\Program Files (x86)\BlackLst.ecb 2018-02-28 12:13 - 2018-02-28 12:13 - 000421888 ____N (Nenad Hrg SoftwareOK) C:\Program Files (x86)\DesktopOK.exe 2015-01-26 10:19 - 2016-02-17 09:28 - 000002009 _____ () C:\Program Files (x86)\Eula.txt 2003-11-21 21:08 - 2011-11-07 10:59 - 000000226 _____ () C:\Program Files (x86)\File_id.diz 2016-04-25 20:26 - 2004-06-24 09:43 - 000011424 _____ () C:\Program Files (x86)\formatlist.xml 2017-11-19 02:42 - 2017-11-19 02:42 - 000063220 _____ () C:\Program Files (x86)\French.ini 2018-01-04 20:46 - 2018-01-04 20:46 - 000000232 _____ () C:\Program Files (x86)\leggimi.txt 2005-09-13 01:13 - 2011-11-07 10:59 - 000002318 _____ () C:\Program Files (x86)\license.txt 2016-01-14 18:42 - 2016-01-14 18:42 - 000000171 _____ () C:\Program Files (x86)\liesmich.txt 2005-12-26 03:38 - 2011-11-07 10:59 - 000000000 _____ () C:\Program Files (x86)\Options.ini 2011-09-27 21:29 - 2014-11-13 14:20 - 011400288 _____ (Tracker Software Products Ltd.) C:\Program Files (x86)\PDFXCview.exe 2015-02-12 10:55 - 2015-02-12 10:55 - 007795472 _____ (Icecream Apps ) C:\Program Files (x86)\pdf_split_and_merge_setup.exe 2011-03-14 17:15 - 2012-01-21 09:34 - 000000010 _____ () C:\Program Files (x86)\portable.dat 2016-01-14 18:42 - 2016-01-14 18:42 - 000000202 _____ () C:\Program Files (x86)\readme.txt 2012-01-21 09:34 - 2015-07-11 20:49 - 000000319 _____ () C:\Program Files (x86)\recuva.ini 2011-08-08 17:38 - 2014-11-13 14:20 - 001189792 _____ () C:\Program Files (x86)\resource.dat 2013-07-16 16:05 - 2013-07-16 16:05 - 000475136 _____ () C:\Program Files (x86)\setup.exe 2013-07-16 16:05 - 2013-07-16 16:05 - 000000279 _____ () C:\Program Files (x86)\setup.ini 2016-04-25 20:26 - 2003-09-10 17:13 - 000488120 _____ () C:\Program Files (x86)\smartrecovery_fr.chm 2016-04-25 20:26 - 2004-06-25 08:06 - 000679936 _____ (Convar Deutschland GmbH) C:\Program Files (x86)\SMR.exe 2016-04-25 20:26 - 2003-07-21 18:15 - 000005494 _____ () C:\Program Files (x86)\SMR.ico 2016-04-25 20:26 - 2003-07-21 11:56 - 000038779 _____ () C:\Program Files (x86)\update.gif 2016-04-25 20:26 - 2004-03-05 14:35 - 000008987 _____ () C:\Program Files (x86)\wait.gif 2014-08-17 08:23 - 2014-08-20 08:55 - 000000841 _____ () C:\Users\dvg\AppData\Roaming\Drives Meter_Settings.ini 2016-02-06 08:59 - 2016-02-06 09:03 - 000000111 _____ () C:\Users\dvg\AppData\Roaming\PDFShaper.ini 2014-01-18 15:02 - 2014-01-18 15:02 - 000000108 _____ () C:\Users\dvg\AppData\Roaming\WB.CFG 2019-10-19 11:49 - 2021-02-26 14:09 - 000000254 _____ () C:\Users\dvg\AppData\Roaming\wklnhst.dat 2011-10-08 14:26 - 2019-06-05 14:35 - 000112448 _____ () C:\Users\dvg\AppData\Local\ars.cache 2011-10-08 14:26 - 2019-06-05 14:36 - 001282548 _____ () C:\Users\dvg\AppData\Local\census.cache 2012-03-12 11:45 - 2021-04-21 08:27 - 000043008 _____ () C:\Users\dvg\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2011-05-06 13:41 - 2011-05-06 13:41 - 000000036 _____ () C:\Users\dvg\AppData\Local\housecall.guid.cache 2012-02-08 11:22 - 2012-02-08 11:23 - 000016810 _____ () C:\Users\dvg\AppData\Local\HWVendorDetection.log 2016-02-06 09:03 - 2016-02-06 09:03 - 000000024 _____ () C:\Users\dvg\AppData\Local\pdfshaper.ini 2019-06-24 08:20 - 2019-06-24 08:20 - 000000824 _____ () C:\Users\dvg\AppData\Local\recently-used.xbel 2012-04-10 08:32 - 2015-11-24 13:53 - 000007661 _____ () C:\Users\dvg\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2019-03-27 12:36 ==================== Fin de FRST.txt ========================