Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 08-09-2021 Exécuté par Solange Tridat (administrateur) sur SOLANGE (Hewlett-Packard HP Pavilion 17 Notebook PC) (08-09-2021 15:39:22) Exécuté depuis C:\Users\virginie86\Desktop Profils chargés: Solange Tridat Platform: Windows 10 Home Version 1909 18363.1556 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices, Inc.) [Fichier non signé] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Andrea Electronics -> Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\WINDOWS\System32\DbxSvc.exe (Facebook, Inc. -> ) C:\Users\virginie86\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <14> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP) C:\WINDOWS\System32\hpservice.exe (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\virginie86\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12107.1001.15.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\CredentialUIBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\WWAHost.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\WINDOWS\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\WINDOWS\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\WINDOWS\System32\SynTPEnhService.exe (The CefSharp Authors) [Fichier non signé] C:\Users\virginie86\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.exe <2> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11236136 2021-01-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617784 2021-01-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [654088 2015-02-17] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [8091424 2021-08-31] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-2295552405-2395065072-1697586285-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35144320 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2295552405-2395065072-1697586285-1002\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8520168 2021-02-24] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) HKU\S-1-5-21-2295552405-2395065072-1697586285-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKLM\...\Windows x64\Print Processors\Canon TS3100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDR.DLL [482816 2017-03-13] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS3100 series: C:\WINDOWS\system32\CNMLMDR.DLL [1302016 2017-03-13] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\HP BC11 Status Monitor: C:\WINDOWS\system32\hpinkstsBC11LM.dll [329576 2012-04-02] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [365568 2012-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\93.0.4577.63\Installer\chrmstp.exe [2021-09-08] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{538C240D-3DEE-4032-AB4C-08A3A6EB0861}] -> C:\Program Files (x86)\CyberLink\YouCam\CLCredProv\x64\CLCredProv.dll [2014-10-28] (CyberLink Corp. -> CyberLink) Startup: C:\Users\virginie86\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FacebookGamesNotifier.exe.lnk [2016-06-14] ShortcutTarget: FacebookGamesNotifier.exe.lnk -> C:\Users\virginie86\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe (Facebook, Inc. -> ) BootExecute: autocheck autochk * SmartDefragBootTime.exe GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {069E56F4-AF16-4353-B941-2A73ED765400} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {094CD275-5C71-4753-B57E-5566CA859498} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {0D058D43-1233-42AD-B9D7-6FE73B2203CA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0F6DBBD1-1FA5-490B-A482-1F43FCC689E6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {1324FEE6-89C3-4A0A-8620-3014529CB917} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit) Task: {174195AB-AEC2-40D1-A332-A509908AFD7E} - System32\Tasks\Uninstaller_SkipUac_Solange_Tridat => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe Task: {19C5A513-6A93-472E-9519-6EBE60B5A036} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\RUXIMDisplay => C:\Program Files\ruxim\ruximics.exe [477512 2021-06-30] (Microsoft Windows -> Microsoft Corporation) Task: {1AD1C4A3-4636-40EF-B12C-3BCFBA985200} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {1B9E760F-2AEE-42DD-9E8E-5F36299D16F6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {2371CDB1-3330-4308-BEDC-A525A85FABE7} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {2ACDE6E6-FC9C-4D32-9CC2-9F3B58A582CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-17] (HP Inc. -> HP Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {37A3B80D-F198-451B-938D-0EB97828B868} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {39629DC0-55F2-4F62-BA42-C516328AD00E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {3ECB8E06-94C6-44C9-8CD7-563085474524} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224 2014-10-28] (CyberLink Corp. -> CyberLink Corp.) Task: {593723E1-692B-4F21-8836-196BFF7D7013} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\8.4.0\Scheduler.exe [156696 2021-03-29] (IObit CO., LTD -> IObit) Task: {5B1C1B31-3D1E-4318-9609-848BF3CDEC8E} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\8.4.0\AutoUpdate.exe [2285592 2021-03-31] (IObit CO., LTD -> IObit) Task: {5C3BB2BA-9103-45DA-9538-28B4638979DF} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {5D74B8C5-623B-4D94-8BF4-8F4740D11497} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {61937388-9538-40C3-8901-9AD3FA651C7C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {797928CC-C129-4CF5-837D-361F83DA689D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\RUXIMSync => C:\Program Files\ruxim\ruximics.exe [477512 2021-06-30] (Microsoft Windows -> Microsoft Corporation) Task: {803E6CE2-490C-4921-BBA6-3BA1A63C7156} - System32\Tasks\Driver Booster SkipUAC (Solange Tridat) => C:\Program Files (x86)\IObit\Driver Booster\8.4.0\DriverBooster.exe [8242200 2021-04-06] (IObit CO., LTD -> IObit) Task: {867EA778-E3B9-4144-84B9-36131297AB9B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {8776B116-1B48-4278-8B2C-DF63FA1E995D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {87CB825F-87C7-4A9A-BB2C-C046DD29FCD3} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe Task: {8B6759EE-1C08-4B8F-955C-774AB5A6544E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {8EADD1ED-0255-4B3E-A2C1-87CD8534448B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136304 2021-03-30] (HP Inc. -> HP Inc.) Task: {900E32AD-7137-4802-9923-250B36925FBE} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {994E4F2A-2E42-4DE1-8A80-A68A650AB20A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\BingPopup\BingPopup.exe [555640 2021-03-25] (HP Inc. -> HP Inc.) Task: {A32921FB-654E-4ABC-AAD7-766CC7ABA1E7} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\Explorer.exe /NoUACCheck Task: {A3B8DE5B-B6F6-43D9-B3BE-9B257AA667D1} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {A82B2715-CE81-4BBF-A696-D71416EED6F1} - System32\Tasks\Microsoft\Windows\WaaSMedic\MaintenanceWork => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} Task: {A8F8B58C-F045-4339-88BD-86AD6B240380} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {AE1F58B0-F737-4415-983B-5500F9589E8D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - resources updates => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {B13B39D4-B109-4C3C-8DFD-DCB682F2C0AC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {B66FFCAD-0916-4808-A344-628B4D276629} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {BBFB83EE-2E15-424D-89E5-71C372FFF46B} - System32\Tasks\CCleanerSkipUAC - Solange Tridat => C:\Program Files\CCleaner\CCleaner.exe [29211264 2021-08-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {BF187738-63A8-4A00-8718-C31865C6B8DA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-08-16] (Piriform Software Ltd -> Piriform) Task: {C3AEAE12-DE19-48CC-8546-3125CEBE6199} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {C7F27355-CEF6-4548-BEDD-A991339871D0} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2016-11-07] (HP Inc. -> HP Inc.) Task: {C9DCF59E-6B97-4C0C-8641-B8261089C8CA} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {CE6E2FB6-0DD0-44E5-9244-E756F22775DC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-17] (HP Inc. -> HP Inc.) Task: {CF85D827-C520-4E0A-8EE6-9B51841F7D1F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [326320 2021-07-15] (HP Inc. -> HP Inc.) Task: {D0286F83-4916-4F01-879E-F2992B1B760D} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3477528 2021-05-26] (IObit CO., LTD -> IObit) Task: {D38DFEC7-3B6B-4E10-9E6B-5D43623DD122} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-16] (Dropbox, Inc -> Dropbox, Inc.) Task: {D42D2F46-D274-4257-A00B-2544FB6222A8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-29] (Google Inc -> Google Inc.) Task: {D841766D-846A-4FBF-9364-A70E048863E3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {DB21EF32-6BA9-4118-BBC1-BC4FF48961E5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {E374803E-8C50-4181-A2C9-0F1A600DBC91} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E605D681-33AD-4C0C-9775-A57DE1C367D3} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {E9EA35EE-43A2-40C2-9FFC-EB5E696F973D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MpCmdRun.exe [673816 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EBB83A72-EA33-4593-B915-52A0FF9A8BBF} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {EC37F7FE-B459-4FD0-9C13-924D39EB0324} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {F2111D81-0DAA-48C1-BED9-C88A9B5A6172} - System32\Tasks\IMF_SkipUAC_Solange Tridat => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe Task: {F6353B82-DB6B-4D11-B5D9-A83474368460} - System32\Tasks\Sump Task (One-Time) => C:\Program Files (x86)\IObit\Driver Booster\8.4.0\sump.exe Task: {F89EC0E5-12BF-4C03-9F7B-77B471D14E66} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-16] (Dropbox, Inc -> Dropbox, Inc.) Task: {F9F9EB31-EDB6-4BB8-AA2D-F958B58C0982} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5949976 2021-05-27] (IObit CO., LTD -> IObit) Task: {FCE22948-520E-4A1B-AE08-3D5F788308CD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-29] (Google Inc -> Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6be9b503-13a6-4c33-9a8c-44f89c74af80}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6ebbcf34-8f6a-4afb-bed7-a8be1edb360a}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{ffdb5c64-a932-4b89-867d-6fc6a46af2f7}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\virginie86\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-07] FireFox: ======== FF DefaultProfile: oxmcoktu.default FF ProfilePath: C:\Users\virginie86\AppData\Roaming\Mozilla\Firefox\Profiles\oxmcoktu.default [2021-09-08] FF Homepage: Mozilla\Firefox\Profiles\oxmcoktu.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IO170906&iDate=2020-11-07 06:10:37&bName= FF NewTab: Mozilla\Firefox\Profiles\oxmcoktu.default -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IO170906&iDate=2020-11-07 06:10:37&bName= FF Notifications: Mozilla\Firefox\Profiles\oxmcoktu.default -> hxxps://www.instagram.com FF Extension: (Avast Passwords) - C:\Users\virginie86\AppData\Roaming\Mozilla\Firefox\Profiles\oxmcoktu.default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2020-02-13] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json] FF Extension: (Avast Online Security) - C:\Users\virginie86\AppData\Roaming\Mozilla\Firefox\Profiles\oxmcoktu.default\Extensions\wrc@avast.com.xpi [2020-09-27] FF SearchPlugin: C:\Users\virginie86\AppData\Roaming\Mozilla\Firefox\Profiles\oxmcoktu.default\searchplugins\My Bing Search.xml [2020-12-13] FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [Fichier non signé] FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Fichier non signé] FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) Chrome: ======= CHR DefaultProfile: Profile 2 CHR Profile: C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2 [2021-09-08] CHR Notifications: Profile 2 -> hxxps://a.notif.cc; hxxps://fr-me.com; hxxps://fr.rosegal.com; hxxps://mail.google.com; hxxps://twitter.com; hxxps://www.facebook.com; hxxps://www.fnac.com; hxxps://www.maximiles.com; hxxps://www.moolineo.com; hxxps://www.tiktok.com; hxxps://www.youtube.com CHR StartupUrls: Profile 2 -> "hxxp://Vosteran.com/?f=7&a=vst_ggfc_14_52_ch&cd=2XzuyEtN2Y1L1QzutDtDtCzytBtCyD0E0A0C0FyB0E0DtC0BtN0D0Tzu0StCtDzytDtN1L2XzutAtFyCtFtCyDtFtAtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyBtCyC0A0C0EyDyDtG0EtDyD0CtG0AtA0AtDtGyEtCyDyDtGtB0A0A0C0ByDyB0C0EyD0A0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AzzzyzyzyzzyDyDtG0EtD0AzytGyEtDyCyDtGzzzzyD0BtGzzyD0DyDzyyD0DtCtDyEtC0B2Q&cr=1396445052&ir=","hxxp://vosteran.com/?f=7&a=vst_ggfc_15_03_ch&cd=2XzuyEtN2Y1L1QzutDtDtCzytBtCyD0E0A0C0FyB0E0DtC0BtN0D0Tzu0StCtCtDzztN1L2XzutAtFyBtFtCtFyEtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2StAzzzzyE0CzyyEtBtG0Ezz0E0CtGyDyB0B0AtG0F0CtC0FtGyBzz0EyC0Fzz0EtDzzyB0B0D2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0AzzzyzyzyzzyDyDtG0EtD0AzytGyEtDyCyDtGzzzzyD0BtGzzyD0DyDzyyD0DtCtDyEtC0B2Q&cr=579592619&ir=" CHR NewTab: Profile 2 -> Active:"chrome-extension://jekkhdbkcbpelmgeekmdjnfapnecfmha/defaultHomePage.html" CHR DefaultSearchURL: Profile 2 -> hxxps://www.bing.com/search?q={searchTerms}&pc=COS2&ptag=D110720-N0640A366AA8DC38&form=CONBDF&conlogo=CT3335786 CHR DefaultSearchKeyword: Profile 2 -> bing® CHR DefaultNewTabURL: Profile 2 -> hxxps://www.bing.com/chrome/newtab?pc=COS2&ptag=D110720-N0630A366AA8DC38&form=CONMHP&conlogo=CT3335786 CHR DefaultSuggestURL: Profile 2 -> hxxp://api.bing.com/osjson.aspx?query={searchTerms} CHR Extension: (Slides) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-23] CHR Extension: (Docs) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-23] CHR Extension: (Google Drive) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (YouTube) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-23] CHR Extension: (uBlock Origin) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-07-31] CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-11-11] CHR Extension: (Sheets) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-23] CHR Extension: (Google Docs hors connexion) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-24] CHR Extension: (Recettes: le marque-page de recettes en ligne) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\giceanipjojfnkbciljjblakfkihbjdb [2018-06-23] CHR Extension: (Bing) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\jekkhdbkcbpelmgeekmdjnfapnecfmha [2021-05-12] CHR Extension: (HP Network Check Launcher) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2021-08-17] CHR Extension: (TikTok) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nlalbmkafgmoifbeooblidblkmlhhpnc [2021-05-11] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Search Manager) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pilplloabdedfmialnfchjomjmpjcoej [2020-06-12] CHR Extension: (Gmail) - C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24] CHR Profile: C:\Users\virginie86\AppData\Local\Google\Chrome\User Data\System Profile [2021-09-07] CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] CHR HKU\S-1-5-21-2295552405-2395065072-1697586285-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AERTFilters; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [98208 2016-03-04] (Andrea Electronics -> Andrea Electronics Corporation) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [Fichier non signé] S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-16] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [129808 2021-08-16] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44328 2021-08-31] (Dropbox, Inc -> Dropbox, Inc.) R2 hpsrv; C:\WINDOWS\system32\Hpservice.exe [38752 2016-09-26] (HP Inc. -> HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [379736 2020-08-20] (HP Inc. -> HP Inc.) R2 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [608520 2015-02-17] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> ) R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-02-24] (LAVASOFT SOFTWARE CANADA INC -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-04] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) R3 cpuz145; C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [49968 2021-09-08] (CPUID -> CPUID) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-10-06] (Martin Malik - REALiX -> REALiX(tm)) S3 Imf8HpRegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpRegFilter.sys [41848 2019-12-17] (IObit Information Technology -> IObit) S3 ImfHpFileFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpFileFilter.sys [45432 2019-12-17] (IObit Information Technology -> IObit) R3 MpKsl814505f1; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{11D50AC5-68D6-4A3D-835A-DA07C838DA76}\MpKslDrv.sys [47352 2021-09-08] (Microsoft Windows -> Microsoft Corporation) R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [347736 2020-11-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) R3 rtbth; C:\WINDOWS\System32\drivers\rtbth.sys [1219200 2015-06-03] (MEDIATEK INC. -> Ralink Technology, Corp.) R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit Information Technology -> IObit) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-08-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-08-04] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-04] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-09-08 15:39 - 2021-09-08 15:40 - 000033271 _____ C:\Users\virginie86\Desktop\FRST.txt 2021-09-08 15:36 - 2021-09-08 15:36 - 002302976 _____ (Farbar) C:\Users\virginie86\Desktop\FRST64.exe 2021-09-08 15:04 - 2021-09-08 15:04 - 000003658 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2021-09-08 14:20 - 2021-09-08 14:20 - 000000017 _____ C:\Users\virginie86\AppData\Local\resmon.resmoncfg 2021-09-07 18:16 - 2021-09-07 18:15 - 001176834 _____ C:\Users\virginie86\Desktop\Taxe fonciere SCI (2).pdf 2021-09-07 18:14 - 2021-09-07 16:44 - 000907315 _____ C:\Users\virginie86\Desktop\Taxe fonciere SCI (1).pdf 2021-09-04 06:50 - 2021-09-04 06:51 - 000000000 ___HD C:\$WINDOWS.~BT 2021-09-04 06:47 - 2021-09-04 06:47 - 000101184 _____ C:\Users\virginie86\Desktop\facture-Facture TGS -09-03-21.pdf 2021-09-02 11:10 - 2021-09-04 07:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-08-31 01:57 - 2021-08-31 01:57 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2021-08-31 01:57 - 2021-08-31 01:57 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2021-08-31 01:57 - 2021-08-31 01:57 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2021-08-31 01:57 - 2021-08-31 01:57 - 000044328 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2021-08-30 10:52 - 2021-08-30 10:52 - 000058686 _____ C:\Users\virginie86\Desktop\Recu chasse.pdf 2021-08-30 10:51 - 2021-08-30 10:51 - 000134177 _____ C:\Users\virginie86\Desktop\Chasse.pdf 2021-08-23 08:38 - 2021-08-23 08:38 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2295552405-2395065072-1697586285-1002 2021-08-23 08:38 - 2021-08-23 08:38 - 000002481 _____ C:\Users\virginie86\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-08-23 08:32 - 2021-08-23 12:29 - 000000000 ____D C:\Program Files\ruxim 2021-08-19 15:33 - 2021-09-08 13:55 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-08-19 15:33 - 2021-08-19 15:33 - 000002924 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Solange Tridat 2021-08-19 15:10 - 2021-08-19 15:10 - 000003376 _____ C:\WINDOWS\system32\Tasks\Sump Task (One-Time) ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-09-08 15:40 - 2021-03-12 10:31 - 000000000 ____D C:\FRST 2021-09-08 15:38 - 2015-12-29 21:43 - 000000000 ____D C:\Program Files (x86)\Google 2021-09-08 15:33 - 2018-06-06 22:08 - 000000000 ____D C:\Program Files\CCleaner 2021-09-08 15:30 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-09-08 15:21 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-09-08 15:04 - 2020-09-20 08:28 - 000000000 ____D C:\Users\virginie86\AppData\LocalLow\IObit 2021-09-08 15:04 - 2020-09-20 08:28 - 000000000 ____D C:\ProgramData\IObit 2021-09-08 15:04 - 2020-09-20 08:28 - 000000000 ____D C:\Program Files (x86)\IObit 2021-09-08 15:04 - 2020-09-20 08:27 - 000000000 ____D C:\Users\virginie86\AppData\Roaming\IObit 2021-09-08 14:49 - 2019-08-12 19:02 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-09-08 13:57 - 2015-12-23 12:54 - 000000000 ____D C:\Users\virginie86\Documents\Youcam 2021-09-08 13:51 - 2019-08-12 19:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-09-08 13:50 - 2019-03-19 06:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-09-08 13:50 - 2016-02-20 15:42 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2021-09-08 07:52 - 2019-08-12 19:38 - 000004174 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{6FBCB9FD-3521-459A-8E29-CB8A6CA8FCE8} 2021-09-07 18:40 - 2019-08-12 19:12 - 000000000 ____D C:\Users\virginie86 2021-09-07 18:36 - 2016-01-02 20:14 - 000000000 ____D C:\Users\virginie86\AppData\Local\CrashDumps 2021-09-07 18:33 - 2020-09-20 08:29 - 000000000 ____D C:\ProgramData\ProductData 2021-09-07 16:52 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2021-09-05 12:03 - 2019-06-18 19:59 - 000000000 ____D C:\Users\virginie86\Desktop\Doc Emilie 2021-09-05 10:46 - 2020-06-13 15:53 - 000000000 ____D C:\ProgramData\CanonIJPLM 2021-09-04 07:18 - 2021-05-11 15:27 - 000000000 ____D C:\Users\virginie86\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2021-09-04 07:18 - 2021-04-26 21:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 8 2021-09-04 07:18 - 2020-11-01 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Devis Factures 2021-09-04 07:18 - 2020-10-14 17:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon TS3100 series Manuel à l'écran 2021-09-04 07:18 - 2020-09-20 08:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2021-09-04 07:18 - 2019-09-07 12:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-09-04 07:18 - 2019-03-19 14:00 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\InputMethod 2021-09-04 07:18 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-09-04 07:18 - 2018-06-17 21:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2021-09-04 07:18 - 2018-06-16 14:36 - 000000000 ____D C:\ProgramData\Packages 2021-09-04 07:18 - 2018-06-06 22:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-09-04 07:18 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-09-04 07:18 - 2018-03-13 23:20 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-09-04 07:18 - 2017-07-16 17:55 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos 2021-09-04 07:18 - 2017-07-16 17:55 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2021-09-04 07:18 - 2017-07-16 17:55 - 000000000 ____D C:\Program Files\AMD 2021-09-04 07:18 - 2017-07-16 17:54 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2021-09-04 07:18 - 2017-06-19 10:58 - 000000000 ____D C:\Program Files\UNP 2021-09-04 07:18 - 2016-08-11 19:03 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2 2021-09-04 07:18 - 2016-06-14 22:21 - 000000000 ____D C:\Users\virginie86\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2021-09-04 07:18 - 2015-12-26 13:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2021-09-04 07:18 - 2015-12-23 08:14 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services 2021-09-04 07:18 - 2015-12-23 00:44 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-09-04 07:18 - 2013-08-22 17:36 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-09-04 07:18 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2021-09-04 07:18 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2021-09-04 07:18 - 2013-04-11 02:16 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat 2021-09-04 07:18 - 2013-03-21 20:39 - 000000000 ____D C:\WINDOWS\en-GB 2021-09-04 07:18 - 2013-03-21 13:35 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2021-09-04 07:18 - 2013-03-21 13:31 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2021-09-04 07:18 - 2013-03-21 13:26 - 000000000 ____D C:\WINDOWS\fr 2021-09-04 07:18 - 2013-03-21 13:21 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe 2021-09-04 07:18 - 2013-03-21 13:20 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2021-09-04 07:18 - 2013-03-21 13:18 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2021-09-04 07:17 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2021-09-04 07:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-09-04 07:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Registration 2021-09-04 07:01 - 2019-08-12 10:19 - 000000000 ___DC C:\WINDOWS\Panther 2021-09-02 22:17 - 2019-08-12 19:36 - 000274323 _____ C:\WINDOWS\diagwrn.xml 2021-09-02 22:17 - 2019-08-12 19:36 - 000274323 _____ C:\WINDOWS\diagerr.xml 2021-09-02 17:50 - 2020-06-18 19:52 - 000000000 ____D C:\Users\virginie86\Desktop\IMAGES 2021-09-02 17:37 - 2021-01-16 09:48 - 000805383 _____ C:\Users\virginie86\Desktop\Nouveau Texte OpenDocument.odt 2021-09-02 11:11 - 2016-12-18 11:50 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-09-01 11:04 - 2019-03-19 06:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-08-31 08:30 - 2016-01-13 21:42 - 000803176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-08-23 08:32 - 2018-11-17 08:53 - 000000000 ____D C:\Program Files\rempl 2021-08-19 22:13 - 2020-10-28 08:19 - 000000000 ____D C:\WINDOWS\Minidump 2021-08-17 18:47 - 2016-12-18 11:50 - 000001220 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job 2021-08-17 18:47 - 2016-12-18 11:50 - 000001216 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job 2021-08-16 08:25 - 2019-08-12 19:38 - 000004280 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2021-08-16 08:25 - 2019-08-12 19:38 - 000004050 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2021-08-12 13:43 - 2017-12-11 10:10 - 000000000 ____D C:\Users\virginie86\AppData\Local\Packages 2021-08-12 08:13 - 2015-12-27 12:46 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-08-12 08:08 - 2015-12-27 12:45 - 133215968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-08-11 07:58 - 2021-08-06 07:06 - 000000000 ____D C:\Users\virginie86\Desktop\COVID ==================== Fichiers à la racine de certains dossiers ======== 2017-12-17 09:50 - 2017-12-17 09:50 - 000000068 _____ () C:\Users\virginie86\AppData\Local\dRGbjwzPwa 2017-12-18 10:50 - 2017-12-18 10:50 - 000000068 _____ () C:\Users\virginie86\AppData\Local\knqtwz2222 2021-09-08 14:20 - 2021-09-08 14:20 - 000000017 _____ () C:\Users\virginie86\AppData\Local\resmon.resmoncfg 2017-12-12 20:50 - 2017-12-14 21:50 - 000000052 _____ () C:\Users\virginie86\AppData\Local\ubIjQrYzgN ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================