Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-12-2021 Exécuté par Lili (administrateur) sur LILI-PC (SAMSUNG ELECTRONICS CO., LTD. P700A3C) (02-01-2022 12:54:31) Exécuté depuis C:\Users\Public\Documents\Downloads Profils chargés: Lili Plate-forme: Microsoft Windows 7 Édition Familiale Premium Service Pack 1 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4> (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Corel Corporation -> WinZip Computing) C:\Program Files\WinZip\WzPreloader.exe (CyberLink -> ) [Fichier non signé] C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (CyberLink -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink -> CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe (Digital Wave Ltd -> Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (Gramblr -> ) [Fichier non signé] C:\Program Files\Gramblr\gramblr.exe (Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\Speech\Common\sapisvr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\osk.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wisptis.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <29> (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\Samsung\Easy Settings\SmartRestarter.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Play Touch\Touch Launcher\LauncherStarter.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Play Touch\Touch Launcher\LauncherStarterCmd.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Play Touch\Touch Launcher\SSPT_Launcher.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe (Samsung Electronics CO., LTD. -> Samsung Electronics) [Fichier non signé] C:\Program Files (x86)\Samsung\Easy Settings\EasyButtonManager.exe (Samsung Electronics CO., LTD. -> Samsung Electronics) [Fichier non signé] C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe (Samsung Electronics CO., LTD. -> SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12480616 2012-04-24] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302392 2020-05-20] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-08-19] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Pas de fichier) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-913222433-2202362906-1151143381-1000\...\Run: [HP Photosmart 5520 series (NET)] => C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKU\S-1-5-21-913222433-2202362906-1151143381-1000\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3770504 2017-04-06] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-913222433-2202362906-1151143381-1000\...\Run: [Speech Recognition] => C:\windows\Speech\Common\sapisvr.exe [44544 2009-07-14] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-913222433-2202362906-1151143381-1000\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1814336 2019-05-30] (Digital Wave Ltd -> Digital Wave Ltd) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\windows\system32\CNMLMCS.DLL [406528 2015-03-15] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon BJNP Port: C:\windows\system32\CNMN6PPM.DLL [375296 2015-03-17] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\HP B111 Status Monitor: C:\windows\system32\hpinkstsB111LM.dll [331664 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP D711 Status Monitor: C:\windows\system32\hpinkstsD711LM.dll [393352 2017-03-27] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP ENVY 4520 series): C:\windows\system32\HPDiscoPMD711.dll [840328 2017-04-06] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Photosmart 5520 series): C:\windows\system32\HPDiscoPMB111.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-16] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2011-08-25] (Broadcom Corporation -> Broadcom Corporation.) HKLM\Software\...\Authentication\Credential Providers: [{617083FF-67CD-47B8-A68D-A6940FECB093}] -> C:\Program Files\Samsung\Touch Logon\TouchLogonProvider.dll [2012-05-02] (Samsung Electronics CO., LTD.) [Fichier non signé] HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2011-03-28] (Microsoft Corporation -> Microsoft Corp.) HKLM\Software\...\Authentication\Credential Provider Filters: [{617083FF-67CD-47B8-A68D-A6940FECB093}] -> C:\Program Files\Samsung\Touch Logon\TouchLogonProvider.dll [2012-05-02] (Samsung Electronics CO., LTD.) [Fichier non signé] Lsa: [Notification Packages] scecli ConfigFilter Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-11-13] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Préchargeur.lnk [2021-02-10] ShortcutTarget: WinZip Préchargeur.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {063672B8-6F93-46CC-B70C-1604A07ECE8E} - System32\Tasks\HPCustParticipation HP ENVY 4520 series => C:\Program Files\HP\HP ENVY 4520 series\Bin\HPCustPartic.exe [6438536 2017-04-06] (Hewlett Packard -> HP Inc.) Task: {0AE22222-737D-4721-90FA-ED906B811F2C} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {0DD15ADE-6F16-43E6-BA2C-0C4339C82E23} - System32\Tasks\Easy Software Manager Agent => C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe [2797648 2012-04-24] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {1238CE6B-D27D-412A-85A3-A4C1035795A2} - System32\Tasks\SmartRestarter => C:\Program Files (x86)\Samsung\Easy Settings\SmartRestarter.exe [2232712 2012-04-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) [Fichier non signé] Task: {13A3245D-A8C1-4262-A902-D30EAD74F33B} - System32\Tasks\{24552CF4-E8B9-4E60-9FF2-E8FB62D42D61} => C:\windows\system32\pcalua.exe -a C:\Users\Lili\Downloads\ImageResizerPowertoySetup.exe -d C:\Users\Lili\Downloads Task: {19A869FF-2DFA-4C65-A273-375222A1C10E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {1DAC6D0D-47B8-4DE1-B579-80DD10E295C1} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task "E7CF176E110C211B" Task: {203DE480-4148-4C57-A597-4422E528CC19} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software) Task: {256CB139-4ED8-4F83-AD06-C9FD3EA14685} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-08-19] (Corel Corporation -> Corel Corporation) Task: {2D23FB03-42A5-4088-827D-9C31FA7F473C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe) Task: {3225DC5B-0BA4-4719-B650-35BA125743B6} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2012-02-16] (CyberLink -> CyberLink) Task: {3423C9F6-065C-42FD-9A7F-3FD48D3799D1} - System32\Tasks\WLANStartup => C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe [1605512 2012-04-03] (Samsung Electronics CO., LTD. -> Samsung Electronics) [Fichier non signé] Task: {3FE653C5-A729-4806-844A-35151B1B5CFB} - System32\Tasks\EasySupportCenter => C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe [5458000 2012-05-07] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {492D2D84-3FA9-4240-9EE4-4C32E0B80F05} - System32\Tasks\HPCustPartic.exe_{A5A68D97-99D0-4D5E-B2DD-7762CBC98D90} => C:\Program Files\HP\HP ENVY 4520 series\Bin\HPCustPartic.exe [6438536 2017-04-06] (Hewlett Packard -> HP Inc.) Task: {4A3883CE-D8F0-49E2-9B34-6045256E27D4} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (Pas de fichier) Task: {572394BA-831B-418D-B7A3-CF570DF52E35} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4466256 2012-01-28] (Samsung Electronics CO., LTD. -> SEC) Task: {62AC0292-EFC8-4FB1-83BD-FD6F2E5CFA67} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-30] (Avast Software s.r.o. -> Avast Software) Task: {69A12AB1-70DA-4688-AA4F-F5F577AD7A0C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2016-05-15] (Google Inc -> Google Inc.) Task: {6DD78E35-514D-429F-9BFE-3CCC5E2A2962} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-08-19] (Corel Corporation -> Corel Corporation) Task: {6E9337DB-2C28-4ABB-B0CD-74996E07E09B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2016-05-15] (Google Inc -> Google Inc.) Task: {7729AF57-2154-4FB6-A564-F4BF770D6F2F} - System32\Tasks\LauncherStarter => C:\Program Files (x86)\Samsung\Play Touch\Touch Launcher\LauncherStarter.exe [1675856 2012-05-08] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {8122A874-CEAB-406E-8A96-BC3F247FAC03} - System32\Tasks\NCH Software\PrismDowngrade => C:\Program Files (x86)\NCH Software\Prism\prism.exe [3460096 2021-07-16] (NCH Software, Inc. -> NCH Software) Task: {838B8196-551C-471E-9525-CBA49A5E29FF} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [783240 2012-03-29] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) [Fichier non signé] Task: {B2E1AF57-0393-41C5-84F5-094F0D56EADD} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2859928 2020-08-19] (Corel Corporation -> Corel Corporation) Task: {C0F23E9C-B9B6-4740-8F02-3724444F2834} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.) Task: {C5BF06BB-9C42-44C1-AB93-CF3E3DA8D0EB} - System32\Tasks\SCCSpeedBoot => C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe [3457928 2012-03-29] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) [Fichier non signé] Task: {CD9E6292-4320-4739-ABAA-2F34B6C88D64} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [1639304 2012-03-29] (Samsung Electronics CO., LTD. -> Samsung Electronics) [Fichier non signé] Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player NPAPI Notifier" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\advSRS5" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\Easy Software Manager Agent" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\EasyButtonManager" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\EasySpeedUpManager" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\EasySupportCenter" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\HPCustPartic.exe_{A5A68D97-99D0-4D5E-B2DD-7762CBC98D90}" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\HPCustParticipation HP ENVY 4520 series" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\LauncherStarter" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\LauncherStarter2" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\MovieColorEnhancer" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\SCCSpeedBoot" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\SmartRestarter" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\WinZip Update Notifier 1" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(19): schtasks.exe -> /Change /TN "\WinZip Update Notifier 2" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(20): schtasks.exe -> /Change /TN "\WinZip Update Notifier 3" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(21): schtasks.exe -> /Change /TN "\WLANStartup" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(22): schtasks.exe -> /Change /TN "\{24552CF4-E8B9-4E60-9FF2-E8FB62D42D61}" /ENABLE Task: {DA86A804-0BE5-4032-A3B3-A31DD6FC1802} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(23): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE Task: {E7E9F151-3D7D-4C49-88F7-1D119E1E8391} - System32\Tasks\EasyButtonManager => C:\Program Files (x86)\Samsung\Easy Settings\EasyButtonManager.exe [753544 2012-03-29] (Samsung Electronics CO., LTD. -> Samsung Electronics) [Fichier non signé] Task: {EB92A915-80B6-4AF9-865E-A440038D18FF} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe) Task: {ECB06132-F98D-4071-B032-FA55A1ADEDE8} - System32\Tasks\LauncherStarter2 => C:\Program Files (x86)\Samsung\Play Touch\Touch Launcher\LauncherStarterCmd.exe [3320400 2012-05-08] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {F66ABDAF-9ABC-452B-A5E6-53AB9482C422} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2011-03-28] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 10 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392 2011-03-28] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 10 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{95C1A6E8-69AA-4119-A1FF-33D9D4053B19}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Lili\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-07] FireFox: ======== FF DefaultProfile: ipokhn19.default-1492722254157-1620054633701 FF ProfilePath: C:\Users\Lili\AppData\Roaming\Mozilla\Firefox\Profiles\ipokhn19.default-1492722254157-1620054633701 [2022-01-02] FF Notifications: Mozilla\Firefox\Profiles\ipokhn19.default-1492722254157-1620054633701 -> hxxps://fr.aliexpress.com; hxxps://www.pinterest.fr; hxxps://www.easyparapharmacie.com FF Extension: (Decodex) - C:\Users\Lili\AppData\Roaming\Mozilla\Firefox\Profiles\ipokhn19.default-1492722254157-1620054633701\Extensions\lemonde-decodex@lemonde.fr.xpi [2021-08-18] FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\4.0.50917.0\npctrl.dll [2010-09-16] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default [2021-04-23] CHR Notifications: Default -> hxxps://fr.aliexpress.com CHR Extension: (Docs) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-10] CHR Extension: (Google Drive) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-30] CHR Extension: (YouTube) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-02] CHR Extension: (Google Docs hors connexion) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-12-02] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-07-24] CHR Extension: (Gmail) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24] CHR Extension: (Chrome Media Router) - C:\Users\Lili\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-30] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-05-20] (Apple Inc. -> Apple Inc.) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-20] (Avast Software s.r.o. -> AVAST Software) S4 clr_optimization_v2.0.50727_64; C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [90776 2014-03-20] (Microsoft Corporation -> Microsoft Corporation) S2 clr_optimization_v4.0.30319_64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [158912 2019-03-28] (Microsoft Dynamic Code Publisher -> Microsoft Corporation) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-05-30] (Digital Wave Ltd -> Digital Wave Ltd.) R2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [10020432 2019-12-20] (Gramblr -> ) [Fichier non signé] R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-11-30] (CyberLink -> ) [Fichier non signé] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096 2011-03-28] (Microsoft Corporation -> Microsoft Corp.) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\UniConverter\Transfer\DriverInstall.exe [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 asmthub3; C:\windows\System32\DRIVERS\asmthub3.sys [129000 2011-09-14] (MCCI Internal Testing Software -> ASMedia Technology Inc) R3 asmtxhci; C:\windows\System32\DRIVERS\asmtxhci.sys [394216 2011-09-14] (MCCI Internal Testing Software -> ASMedia Technology Inc) R0 aswArDisk; C:\windows\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\windows\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R3 aswNetNd6; C:\windows\System32\DRIVERS\aswNetNd6.sys [38152 2021-03-16] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\windows\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\windows\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software) R3 clwvd; C:\windows\System32\DRIVERS\clwvd.sys [31216 2012-02-16] (CyberLink -> CyberLink Corporation) R3 EloMTUsb; C:\windows\System32\DRIVERS\EloSawJr.sys [192080 2011-03-31] (Tyco Electronics -> Tyco Electronics) R3 KGPenDev; C:\windows\System32\DRIVERS\KGPenDev.sys [37904 2020-06-18] (KOGA TOUCH CO., LTD -> Koga Touch Co.,Ltd) R3 KGTchEx; C:\windows\System32\DRIVERS\KGTchEx.sys [48888 2020-08-13] (KOGA TOUCH CO., LTD -> Koga Touch Co.,Ltd) R1 SABI; C:\windows\system32\Drivers\SABI.sys [13824 2011-09-22] (Microsoft Windows Hardware Compatibility Publisher -> SAMSUNG ELECTRONICS) S3 ssudmdm; C:\windows\System32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 USBAAPL64; C:\windows\System32\Drivers\usbaapl64.sys [54784 2018-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 usbohci; C:\windows\system32\drivers\usbohci.sys [25600 2011-03-25] (Microsoft Corporation) [Fichier non signé] S3 usbuhci; C:\windows\system32\drivers\usbuhci.sys [30720 2011-03-25] (Microsoft Corporation) [Fichier non signé] S3 WDC_SAM; C:\windows\System32\DRIVERS\wdcsam64_prewin8.sys [31920 2018-02-26] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-01-02 12:52 - 2022-01-02 12:55 - 000000000 ____D C:\FRST 2022-01-01 23:00 - 2022-01-02 12:55 - 000000000 ____D C:\Users\Lili\Documents\COMMENT CA MARCHE 2022-01-01 22:30 - 2022-01-01 22:38 - 000000000 ____D C:\Users\Lili\Documents\ACHAT ORDINATEUR PORTABLE 2022-01-01 22:21 - 2022-01-01 22:21 - 000000000 ____D C:\Users\Lili\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Périphériques Bluetooth 2022-01-01 22:14 - 2022-01-01 22:14 - 000000000 ____D C:\Users\Lili\AppData\Local\{F1D71154-51C4-4D40-9DDF-02C61A287486} 2022-01-01 21:18 - 2022-01-01 21:18 - 000000000 ____D C:\Users\Lili\Documents\Nouveau dossier (3) 2022-01-01 21:16 - 2022-01-01 21:16 - 000000000 ____D C:\Users\Lili\Documents\Nouveau dossier (2) 2021-12-30 20:31 - 2021-12-30 20:32 - 000276728 _____ C:\windows\Minidump\123021-28906-01.dmp 2021-12-29 14:56 - 2021-12-29 14:57 - 000325208 _____ C:\windows\Minidump\122921-19297-01.dmp 2021-12-21 09:15 - 2021-12-21 09:15 - 000215432 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2021-12-21 09:15 - 2021-12-21 09:14 - 000340248 _____ (AVAST Software) C:\windows\system32\aswBoot.exe 2021-12-20 19:33 - 2021-12-20 19:33 - 000000000 ____D C:\Users\Lili\AppData\Local\{7251DF6D-A570-45C9-8607-F9D422189ACA} 2021-12-20 10:44 - 2021-12-21 09:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2021-12-10 09:55 - 2021-12-10 09:55 - 000276728 _____ C:\windows\Minidump\121021-22869-01.dmp 2021-12-09 09:54 - 2021-12-09 09:54 - 000000675 _____ C:\Users\Lili\Desktop\Lili - Raccourci.lnk ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-01-02 12:02 - 2018-03-22 09:59 - 000000000 ____D C:\Users\Lili\AppData\Local\AVAST Software 2022-01-02 11:57 - 2016-05-15 18:26 - 000000000 ____D C:\Program Files (x86)\Google 2022-01-02 11:42 - 2009-07-14 05:45 - 000032384 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2022-01-02 11:42 - 2009-07-14 05:45 - 000032384 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2022-01-02 11:41 - 2012-05-23 03:47 - 000747644 _____ C:\windows\system32\perfh00C.dat 2022-01-02 11:41 - 2012-05-23 03:47 - 000150168 _____ C:\windows\system32\perfc00C.dat 2022-01-02 11:41 - 2009-07-14 06:13 - 001669584 _____ C:\windows\system32\PerfStringBackup.INI 2022-01-02 11:41 - 2009-07-14 04:20 - 000000000 ____D C:\windows\inf 2022-01-02 11:40 - 2019-02-08 13:23 - 000000000 ____D C:\ProgramData\Mozilla 2022-01-02 11:39 - 2016-11-18 10:55 - 000000000 ____D C:\Users\Lili\AppData\LocalLow\Mozilla 2022-01-02 11:32 - 2018-06-10 14:30 - 000000000 ____D C:\ProgramData\Gramblr 2022-01-02 11:32 - 2009-07-14 06:08 - 000000006 ____H C:\windows\Tasks\SA.DAT 2022-01-02 11:18 - 2015-11-13 19:30 - 000000000 ____D C:\ProgramData\AVAST Software 2022-01-01 22:35 - 2016-07-22 12:19 - 002622976 ___SH C:\Users\Lili\Documents\Thumbs.db 2022-01-01 21:26 - 2015-11-13 20:03 - 000000000 ____D C:\Users\Lili\AppData\Local\Adobe 2021-12-31 13:26 - 2017-02-20 20:53 - 000418304 ___SH C:\Users\Lili\Desktop\Thumbs.db 2021-12-30 20:31 - 2021-05-29 09:58 - 880281976 _____ C:\windows\MEMORY.DMP 2021-12-30 20:31 - 2017-07-06 19:25 - 000000000 ____D C:\windows\Minidump 2021-12-29 08:17 - 2017-06-10 15:18 - 000000000 ____D C:\Users\Lili\AppData\Roaming\XnView 2021-12-28 10:09 - 2015-11-13 19:38 - 000000000 ____D C:\Users\Lili\Documents\ANNONCES LE BON COIN 2021-12-25 21:43 - 2015-11-13 19:39 - 000000000 ____D C:\Users\Lili\Documents\COURRIER POUPETTE ET MOI 2021-12-25 18:42 - 2021-03-16 14:46 - 000004168 _____ C:\windows\system32\Tasks\Avast Emergency Update 2021-12-23 08:10 - 2015-11-13 20:16 - 000000000 ____D C:\Users\Lili\Documents\LILIANE 2021-12-23 08:01 - 2021-05-20 20:20 - 000000032 _____ C:\Users\Lili\Documents\BoltPDF 2021-12-22 11:39 - 2020-04-20 10:00 - 000000000 ____D C:\Users\Lili\Documents\Youcam 2021-12-21 09:15 - 2021-03-16 14:46 - 000545176 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000540056 _____ (AVAST Software) C:\windows\system32\Drivers\aswNetHub.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000318760 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000252992 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000186280 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000108912 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000100416 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000083976 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys 2021-12-21 09:15 - 2021-03-16 14:46 - 000042416 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys 2021-12-21 09:14 - 2021-03-16 14:46 - 000853800 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys 2021-12-21 09:14 - 2021-03-16 14:46 - 000369216 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys 2021-12-21 09:14 - 2021-03-16 14:46 - 000223176 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys 2021-12-21 09:14 - 2021-03-16 14:46 - 000036784 _____ (AVAST Software) C:\windows\system32\Drivers\aswArDisk.sys 2021-12-21 09:08 - 2019-04-23 10:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-12-20 19:39 - 2015-11-13 19:39 - 000000000 ____D C:\Users\Lili\Documents\CYRIL 2021-12-20 17:08 - 2021-07-27 10:29 - 000000000 ____D C:\windows\system32\Tasks\Mozilla 2021-12-15 09:27 - 2016-12-13 10:53 - 000000000 ____D C:\windows\system32\MRT 2021-12-15 09:20 - 2016-12-13 10:52 - 137938848 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe 2021-12-13 10:18 - 2021-02-10 14:02 - 000003526 _____ C:\windows\system32\Tasks\WinZip Update Notifier 2 2021-12-13 10:18 - 2021-02-10 14:02 - 000003524 _____ C:\windows\system32\Tasks\WinZip Update Notifier 3 2021-12-13 10:18 - 2021-02-10 14:02 - 000003524 _____ C:\windows\system32\Tasks\WinZip Update Notifier 1 2021-12-13 10:18 - 2019-01-22 18:49 - 000003552 _____ C:\windows\system32\Tasks\HPCustParticipation HP ENVY 4520 series 2021-12-13 10:18 - 2019-01-22 18:49 - 000002932 _____ C:\windows\system32\Tasks\HPCustPartic.exe_{A5A68D97-99D0-4D5E-B2DD-7762CBC98D90} 2021-12-13 10:18 - 2018-03-13 14:45 - 000004630 _____ C:\windows\system32\Tasks\Adobe Flash Player NPAPI Notifier 2021-12-13 10:18 - 2017-06-10 15:12 - 000003150 _____ C:\windows\system32\Tasks\{24552CF4-E8B9-4E60-9FF2-E8FB62D42D61} 2021-12-13 10:18 - 2017-05-04 13:21 - 000004496 _____ C:\windows\system32\Tasks\Adobe Flash Player Updater 2021-12-13 10:18 - 2016-05-15 18:26 - 000003504 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-12-13 10:18 - 2016-05-15 18:26 - 000003376 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-12-13 10:18 - 2015-11-13 20:08 - 000004476 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task 2021-12-13 10:18 - 2012-05-22 10:57 - 000003104 _____ C:\windows\system32\Tasks\LauncherStarter2 2021-12-13 10:18 - 2012-05-22 10:57 - 000003102 _____ C:\windows\system32\Tasks\LauncherStarter 2021-12-13 10:18 - 2012-05-22 10:31 - 000003214 _____ C:\windows\system32\Tasks\advSRS5 2021-12-13 10:18 - 2012-05-22 10:31 - 000003064 _____ C:\windows\system32\Tasks\EasySupportCenter 2021-12-13 10:18 - 2012-05-22 10:30 - 000003542 _____ C:\windows\system32\Tasks\SCCSpeedBoot 2021-12-13 10:18 - 2012-05-22 10:30 - 000003500 _____ C:\windows\system32\Tasks\EasySpeedUpManager 2021-12-13 10:18 - 2012-05-22 10:30 - 000003448 _____ C:\windows\system32\Tasks\SmartRestarter 2021-12-13 10:18 - 2012-05-22 10:30 - 000003442 _____ C:\windows\system32\Tasks\WLANStartup 2021-12-13 10:18 - 2012-05-22 10:30 - 000003228 _____ C:\windows\system32\Tasks\EasyButtonManager 2021-12-13 10:18 - 2012-05-22 10:30 - 000003226 _____ C:\windows\system32\Tasks\MovieColorEnhancer 2021-12-13 10:18 - 2012-05-22 10:30 - 000003218 _____ C:\windows\system32\Tasks\Easy Software Manager Agent 2021-12-12 10:35 - 2015-12-05 15:11 - 000000000 ____D C:\windows\system32\Tasks\AVAST Software 2021-12-05 18:57 - 2017-05-17 11:27 - 000000000 ____D C:\windows\system32\Tasks\NCH Software 2021-12-05 18:25 - 2009-07-14 04:20 - 000000000 ____D C:\windows\system32\NDF ==================== Fichiers à la racine de certains dossiers ======== 2018-06-09 19:58 - 2021-05-14 19:32 - 000003584 _____ () C:\Users\Lili\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2020-12-04 18:19 - 2020-12-04 18:19 - 000005311 _____ () C:\Users\Lili\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2021-12-28 09:32 ==================== Fin de FRST.txt ========================