Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-07-2021 01 Exécuté par Jeremy (administrateur) sur DESKTOP-1BDLUTN (ASUS System Product Name) (19-07-2021 22:24:30) Exécuté depuis C:\Users\Jeremy\OneDrive\Bureau Profils chargés: Jeremy Platform: Windows 10 Pro Version 21H1 19043.1083 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe (Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe (ASUSTeK Computer Inc. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2> (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <2> (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.45\atkexComSvc.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe (ASUSTEK COMPUTER INCORPORATION -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.CpuIdRemote64.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe (LC Technology International, Inc -> Corsair) C:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2106.14307.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxAccounts.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.6282.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.6282.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7fe82d451e6cd40f\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe (TODO: ) [Fichier non signé] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AIOFanSDK\ArmouryAIOFanServer.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1081648 2021-03-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [CORSAIR iCUE Software] => C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE Launcher.exe [410152 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKU\S-1-5-21-1848497563-412458496-2945524756-1001\...\Run: [Discord] => C:\Users\Jeremy\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1848497563-412458496-2945524756-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-16] (Valve -> Valve Corporation) HKU\S-1-5-21-1848497563-412458496-2945524756-1001\...\Run: [BakkesMod] => C:\Program Files\BakkesMod\BakkesMod.exe [16070656 2021-01-06] () [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {09080362-2425-4ADD-8B4B-7CE1482C076B} - System32\Tasks\ASUS\ArmouryAIOFanServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AIOFanSDK\ArmouryAIOFanServer.exe [1039360 2020-11-10] (TODO: ) [Fichier non signé] Task: {27CDB9B3-A609-436A-9ADE-C1AC78A0F2CF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {296FAF92-42FA-430D-8E60-4C93EE8B6A58} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe Task: {3307A8F6-0F3A-4812-966E-498231D7FDF6} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {33306BD6-0140-4081-BF9F-09A1C40ECF4E} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [45540760 2021-01-13] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {4B03DD89-FA63-4088-987B-0DD64FC39E94} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {54E12EA9-D35A-4D6E-A3DB-BED4AA287263} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe Task: {58A05E61-E0C2-4DF3-B7BB-54B1489F4BF4} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d713acbfed720e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-03-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {6129ECF5-D2E0-4BBB-BDCA-64462A3548BA} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-03-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {7575B623-772C-4BDA-857F-3339E17F9C2C} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7D7DA959-AA4D-4694-B530-92F39ECAE173} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {7F0B33AA-2FFB-4A84-A482-8E5855CEE263} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1848497563-412458496-2945524756-500 => C:\Users\Jeremy\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {8E6884EA-DE59-4E0A-B8BF-E6F292A1C8C4} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [2025488 2021-01-22] (ASUSTeK Computer Inc. -> ASUS) Task: {8F600840-D740-4113-A9BB-AF55BAA77C1A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9CB09318-DC39-4528-AF78-21C35BF7AA97} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B7F59F36-495E-4EC0-B729-0515253F47A8} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [677624 2019-11-21] (Advanced Micro Devices INC. -> ) Task: {C2E6533B-25A7-4B7B-8A6A-22864D8CAA2C} - System32\Tasks\ASUS\NoiseCancelingEngine.exe => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1238328 2021-01-21] (ASUSTeK Computer Inc. -> ASUS) Task: {C87C647A-CB2B-4A02-8BDC-C69DE1CBD78A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3336560 2021-04-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D5326812-28D3-45B5-854D-84A0A66C7834} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D81270A3-FF3E-4627-B67C-87F101B7F572} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DA6089E2-3F11-42FF-98C0-C539F51759B3} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DD5FA9D7-936E-49AB-97A1-A8B5D7236029} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {DDE5D21D-F3AF-4626-9E66-8112F6F9F118} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E65455DB-8DA7-456E-89D1-EB393117FBC8} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [791608 2021-03-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) Task: {E9332194-808E-442E-A485-5889253C2009} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7127399b-6fa3-40c3-86a2-5c9638315d65}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default [2021-07-19] Edge Notifications: Default -> hxxps://app.napster.com; hxxps://cinema-net.xooit.be Edge HomePage: Default -> hxxp://www.google.fr/ Edge StartupUrls: Default -> "hxxps://www.google.fr/" Edge Extension: (Outlook) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2021-03-08] Edge Extension: (Microsoft Defender Browser Protection) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2021-05-09] Edge Extension: (McAfee® WebAdvisor) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2021-06-24] Edge Extension: (IGRAAL - Cashback & codes promo) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm [2021-07-19] Edge Extension: (Word) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2021-03-08] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-07-08] Edge Extension: (Excel) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2021-03-08] Edge Extension: (ClearURLs) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mdkdmaickkfdekbjdoojfalpbkgaddei [2021-05-09] Edge Extension: (PowerPoint) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2021-03-08] Edge Extension: (AdGuard AdBlocker) - C:\Users\Jeremy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pdffkfellgipmhklpdmokmckkkfcopbh [2021-06-09] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.45\atkexComSvc.exe [442416 2021-01-11] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-03-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [313008 2020-11-19] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-03-08] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [591176 2021-03-08] (ASUSTeK Computer Inc. -> ) S2 AsusUpdateCheck; C:\Windows\System32\AsusUpdateCheck.exe [838760 2021-07-19] (ASUSTeK Computer Inc. -> ) R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [616344 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe [421928 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe [80936 2020-12-29] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairSSDToolBox; C:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe [2798632 2019-06-07] (LC Technology International, Inc -> Corsair) R2 DTSAPO3Service; C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe [222104 2021-03-09] (DTS, Inc. -> ) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.) R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [3053656 2021-01-11] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7462200 2021-07-11] (Malwarebytes Inc -> Malwarebytes) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2219416 2021-05-25] (Rockstar Games, Inc. -> Rockstar Games) R2 ROG Live Service; C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe [5463128 2021-01-18] (ASUSTEK COMPUTER INCORPORATION -> ASUSTek COMPUTER INC.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5394864 2021-07-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ss_conn_launcher_service; C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe [183816 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-11-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [919992 2020-11-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13261608 2021-05-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe [2665432 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe [136640 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7fe82d451e6cd40f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7fe82d451e6cd40f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 Asusgio2; C:\Windows\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> ) R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [43920 2020-12-16] (ASUSTeK Computer Inc. -> ) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2020-11-19] (Microsoft Corporation) [Fichier non signé] S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [60312 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAccess3B84E98236B28D4E075D5737DF9F567A1FB76E8A; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys [21752 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [45984 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [21920 2020-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz150; C:\Windows\temp\cpuz150\cpuz150_x64.sys [44832 2021-07-19] (CPUID S.A.R.L.U. -> CPUID) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [159800 2021-04-22] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R1 GLCKIO2; C:\Windows\system32\drivers\GLCKIO2.sys [29368 2019-04-24] (ASUSTeK Computer Inc. -> ) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220752 2021-07-11] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-05-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-06-08] (Malwarebytes Inc -> Malwarebytes) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) S3 SaiK0728; C:\Windows\system32\DRIVERS\SaiK0728.sys [129024 2008-01-21] (Microsoft Windows Hardware Compatibility Publisher -> Saitek) R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [168968 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [45064 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 tap-tb-0901; C:\Windows\System32\drivers\tap-tb-0901.sys [38656 2020-09-23] (TunnelBear, Inc. -> The OpenVPN Project) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49560 2021-07-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [425192 2021-07-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [76008 2021-07-09] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-19 22:24 - 2021-07-19 22:24 - 000000000 ____D C:\FRST 2021-07-19 21:06 - 2021-07-19 21:07 - 000000000 ____D C:\Windows\Minidump 2021-07-19 21:06 - 2021-07-19 21:06 - 692921182 _____ C:\Windows\MEMORY.DMP 2021-07-19 21:06 - 2021-07-19 21:06 - 001322100 _____ C:\Windows\Minidump\071921-6437-01.dmp 2021-07-19 20:43 - 2021-07-19 20:43 - 000000112 ___SH C:\bootTel.dat 2021-07-18 19:06 - 2021-07-19 22:05 - 000000000 ____D C:\Program Files\WinRAR 2021-07-18 19:06 - 2021-07-18 19:06 - 000000000 ____D C:\Users\Jeremy\AppData\Roaming\WinRAR 2021-07-11 18:21 - 2021-07-11 18:21 - 000220752 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-07-07 20:33 - 2021-07-07 20:33 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-06-23 18:26 - 2021-06-23 18:26 - 002371072 _____ C:\Windows\system32\rdpnano.dll 2021-06-23 18:26 - 2021-06-23 18:26 - 001823304 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-06-23 18:26 - 2021-06-23 18:26 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-06-23 18:26 - 2021-06-23 18:26 - 001314128 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2021-06-23 18:26 - 2021-06-23 18:26 - 000570880 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2021-06-23 18:26 - 2021-06-23 18:26 - 000452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2021-06-23 18:26 - 2021-06-23 18:26 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-06-23 18:26 - 2021-06-23 18:26 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-06-23 18:26 - 2021-06-23 18:26 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2021-06-23 18:25 - 2021-06-23 18:25 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-06-23 18:25 - 2021-06-23 18:25 - 000097792 _____ C:\Windows\system32\Drivers\cimfs.sys ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-07-19 22:25 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-07-19 22:23 - 2021-03-08 00:19 - 000000000 ____D C:\Users\Jeremy\AppData\Roaming\discord 2021-07-19 22:15 - 2021-03-08 00:19 - 000000000 ____D C:\Users\Jeremy\AppData\Local\Discord 2021-07-19 22:13 - 2021-03-08 00:20 - 000000000 ____D C:\Program Files (x86)\Steam 2021-07-19 22:05 - 2021-06-05 12:08 - 000000000 ____D C:\Users\Jeremy\AppData\Local\FiveM 2021-07-19 22:05 - 2021-06-04 20:10 - 000000000 ____D C:\Users\Jeremy\AppData\Roaming\CitizenFX 2021-07-19 22:05 - 2021-03-10 18:04 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ___SD C:\Windows\system32\AppV 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Portable Devices 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-07-19 22:05 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2021-07-19 22:05 - 2019-12-07 16:51 - 000000000 ____D C:\Windows\system32\OpenSSH 2021-07-19 22:05 - 2019-12-07 16:50 - 000000000 ____D C:\Windows\SysWOW64\fr 2021-07-19 22:05 - 2019-12-07 16:50 - 000000000 ____D C:\Windows\system32\fr 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\dsc 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\migwiz 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\InstallShield 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\downlevel 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Sysprep 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\downlevel 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Com 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Containers 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2021-07-19 22:05 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-07-19 22:05 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing 2021-07-19 22:03 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\registration 2021-07-19 22:02 - 2021-04-06 17:28 - 000000000 ____D C:\Users\Jeremy\AppData\Roaming\Deezloader Remix 2021-07-19 22:02 - 2021-03-08 01:50 - 000000000 ____D C:\Program Files (x86)\ASUS 2021-07-19 22:02 - 2021-03-07 22:36 - 000000000 ____D C:\ProgramData\ASUS 2021-07-19 21:16 - 2021-03-07 22:50 - 001771910 _____ C:\Windows\system32\PerfStringBackup.INI 2021-07-19 21:16 - 2019-12-07 16:50 - 000792000 _____ C:\Windows\system32\perfh00C.dat 2021-07-19 21:16 - 2019-12-07 16:50 - 000150166 _____ C:\Windows\system32\perfc00C.dat 2021-07-19 21:16 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2021-07-19 21:13 - 2020-11-19 01:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-07-19 21:13 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-07-19 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2021-07-19 21:12 - 2021-03-08 00:19 - 000000000 ____D C:\ProgramData\NVIDIA 2021-07-19 21:10 - 2021-03-18 21:22 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-07-19 21:09 - 2021-03-13 23:10 - 000003144 _____ C:\Windows\system32\Tasks\MSIAfterburner 2021-07-19 21:09 - 2021-03-07 22:36 - 000877320 _____ C:\Windows\system32\wpbbin.exe 2021-07-19 21:09 - 2021-03-07 22:36 - 000838760 _____ C:\Windows\system32\AsusUpdateCheck.exe 2021-07-19 21:09 - 2021-03-07 22:36 - 000008192 ___SH C:\DumpStack.log.tmp 2021-07-19 21:09 - 2020-11-19 01:44 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-07-19 21:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2021-07-19 21:09 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI 2021-07-19 21:07 - 2021-03-07 22:39 - 000000000 ____D C:\Users\Jeremy 2021-07-19 21:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports 2021-07-19 21:07 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2021-07-19 21:06 - 2020-11-19 00:44 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-07-19 20:57 - 2021-03-10 20:02 - 000000000 ____D C:\Users\Jeremy\AppData\Local\CrashDumps 2021-07-18 13:34 - 2021-04-06 17:31 - 000000000 ____D C:\Users\Jeremy\Deezloader Music 2021-07-13 22:12 - 2021-03-07 23:46 - 000000000 ____D C:\Windows\system32\MRT 2021-07-13 22:11 - 2021-03-07 23:46 - 133422552 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-07-11 18:21 - 2021-05-09 10:59 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-07-10 14:25 - 2021-05-21 19:21 - 000000000 ____D C:\Users\Jeremy\AppData\Local\Ubisoft Game Launcher 2021-07-09 21:15 - 2020-11-19 01:44 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-07-02 23:25 - 2020-11-19 01:46 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-07-02 23:25 - 2020-11-19 01:46 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-06-28 19:47 - 2021-06-04 20:09 - 000000000 ____D C:\Users\Jeremy\AppData\Local\DigitalEntitlements 2021-06-26 12:13 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF 2021-06-23 21:58 - 2020-11-19 00:44 - 000268392 _____ C:\Windows\system32\FNTCACHE.DAT 2021-06-23 21:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2021-06-23 21:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================