Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-08-2021 Exécuté par pccecile (administrateur) sur HOME (Hewlett-Packard 100-230ef) (04-08-2021 20:39:54) Exécuté depuis C:\Users\monie\Desktop Profils chargés: pccecile & MSSQL$EBP & MSSQL$SQLEXPRESS Platform: Windows 8.1 (Update) (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe () [Fichier non signé] C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices Inc.) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <8> (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe (McAfee, Inc. -> McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL12.EBP\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL12.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.19991_none_fa0fb7959b4c8c91\TiWorker.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Nicolas Coolman -> Nicolas Coolman) [Fichier non signé] C:\Users\monie\AppData\Roaming\ZHP\ZHPSuite.exe (Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Softex Inc.) [Fichier non signé] C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2793016 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [154680 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [154680 2013-09-05] (Softex Incorporated -> Hewlett-Packard) HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13663448 2014-01-13] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-4180182672-2111010225-3483030272-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd -> Piriform Ltd) HKU\S-1-5-21-4180182672-2111010225-3483030272-1001\...\MountPoints2: {1c1aa8d8-75d3-11eb-82af-28e3472eec32} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4180182672-2111010225-3483030272-1001\...\MountPoints2: {5ec4fbd8-d5c4-11e5-827e-2c44fd2df91e} - "F:\LG_PC_Programs.exe" HKU\S-1-5-21-4180182672-2111010225-3483030272-1001\...\MountPoints2: {af627023-fa4c-11ea-82a6-2c44fd2df91e} - "F:\startme.exe" HKU\S-1-5-21-4180182672-2111010225-3483030272-500\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd -> Piriform Ltd) HKU\S-1-5-21-4180182672-2111010225-3483030272-500\...\RunOnce: [HP Download and Install Assistant] => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPDIA.exe [1341784 2020-08-20] (HP Inc. -> HP Inc.) HKU\S-1-5-21-4180182672-2111010225-3483030272-500\...\MountPoints2: {5ec4fbd8-d5c4-11e5-827e-2c44fd2df91e} - "F:\LG_PC_Programs.exe" HKLM\...\Windows x64\Print Processors\SSP2MPC: C:\Windows\System32\spool\prtprocs\x64\ssp2mpc.dll [33792 2009-09-01] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [404992 2013-08-09] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [120072 2016-04-29] (pdfforge GmbH -> pdfforge GmbH) HKLM\...\Print\Monitors\SSP2M Langmon: C:\WINDOWS\system32\ssp2ml6.dll [22016 2009-09-01] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.107\Installer\chrmstp.exe [2021-07-28] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2021-05-28] (Adobe Inc. -> Adobe Systems, Inc.) HKLM\Software\...\Authentication\Credential Providers: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2013-09-05] (Softex Inc..) [Fichier non signé] HKLM\Software\...\Authentication\Credential Provider Filters: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2013-09-05] (Softex Inc..) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {046F10DC-334D-4E49-93F0-9E2E029B055A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-07] (Google Inc -> Google Inc.) Task: {106972E6-BAD0-4986-902E-4618F465E365} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-4180182672-2111010225-3483030272-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe Task: {15A1E887-CE97-41E7-9CC9-0EB61F149838} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-4180182672-2111010225-3483030272-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe Task: {220575E4-82B7-4EDA-BFFE-C437863CCF4F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-20] (HP Inc. -> HP Inc.) Task: {28624E9C-DE95-4CCC-9816-0588225A0E8A} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-4180182672-2111010225-3483030272-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {2AC3220D-AF23-47C9-BB4F-FD2F49535930} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink Corp. -> CyberLink) Task: {42345401-84A4-413F-B82C-315FC384341E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\BingPopup\BingPopup.exe [555640 2021-03-25] (HP Inc. -> HP Inc.) Task: {507001D4-778D-4B55-9EB7-AA15D87EE21A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {50B27929-B122-405A-AFAF-BAD40BF8762C} - System32\Tasks\CLVDLauncher => c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008 2013-03-12] (CyberLink Corp. -> CyberLink Corp.) Task: {600B41E3-AAC3-4222-839E-45CFAC84BE72} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-17] (HP Inc. -> HP Inc.) Task: {67725D88-00CE-49CF-AF7B-14D3D4B3F56A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [326320 2021-06-16] (HP Inc. -> HP Inc.) Task: {6CBB81B1-2553-427D-9F65-93DA4365487F} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-4180182672-2111010225-3483030272-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {7E7416AC-834A-496C-AF64-1F094D7EB950} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-20] (HP Inc. -> HP Inc.) Task: {93774F51-EE00-49D3-910C-77BB2AFFBD76} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd -> Piriform Ltd) Task: {A06E5EC9-383C-47A2-964D-3B943F1C3643} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {B0E13A49-EE8B-403E-A579-B4D130336A46} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [135000 2020-08-20] (HP Inc. -> HP Inc.) Task: {CA2D7295-36A4-4854-8AB2-80E9E4960315} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {DAF77E30-0D79-42E1-BF20-BD4393C1EF92} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {EF06AA0C-3F7B-459D-9B85-D8BF4CF923D2} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-4180182672-2111010225-3483030272-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe Task: {F7600A49-3575-4AF4-8CD8-38CA353757F4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-07] (Google Inc -> Google Inc.) Task: {F8397422-DC28-42BA-BAC6-B7AD3B1C8FBC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - resources updates => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-20] (HP Inc. -> HP Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForpccecile.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{88B80CAA-1312-4044-87A8-BA5E57916EC7}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\monie\AppData\Local\Microsoft\Edge\User Data\Default [2020-10-25] FireFox: ======== FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Profile 8 CHR Profile: C:\Users\monie\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-10-04] CHR Profile: C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3 [2017-10-04] CHR Extension: (Google Slides) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-15] CHR Extension: (Docs) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-15] CHR Extension: (Google Drive) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-15] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-15] CHR Extension: (YouTube) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-15] CHR Extension: (Google Search) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-15] CHR Extension: (Google Sheets) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-15] CHR Extension: (Google Wallet) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-15] CHR Extension: (Gmail) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-15] CHR Profile: C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 8 [2021-08-04] CHR Extension: (Docs) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15] CHR Extension: (Désactivation de Google Analytics) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2015-01-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-06] CHR Extension: (Chrome Media Router) - C:\Users\monie\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-02] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]