Résultats de correction de Farbar Recovery Scan Tool (x64) Version: 30-08-2022 Exécuté par Arthur (06-09-2022 13:20:14) Run:2 Exécuté depuis B:\Users\Arthur\Downloads Profils chargés: Arthur Mode d'amorçage: Normal ============================================== fixlist contenu: ***************** Start:: CreateRestorePoint: CloseProcesses: AV: Kaspersky Security Cloud (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky Security Cloud (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58} HKU\S-1-5-21-2915673651-3359095848-1392956588-1001\Software\Classes\regfile: regedit.exe "%1" HKLM\...\Run: [CL-26-B9B91793-990E-4851-BD8A-8151D5D22444] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-26-B9B91793-990E-4851-BD8A-8151D5D22444\setuplauncher.exe" /run:Installer.exe /args:"/setup-folder:"CL-26-B9B91793-990E-4851-BD8A-8151D5D (l'élément de données a 7 caractères en plus). (Pas de fichier) C:\Program Files\Common Files\Bitdefender Task: {206634FA-3752-4D42-8371-F41729CF9836} - System32\Tasks\muggeridgemuggeridge => C:\Program Files (x86)\Louvre\breughel.exe jmaguc (Pas de fichier) Task: {356BB0F9-428A-471B-BC99-0DF09E67F28F} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (Pas de fichier) Task: {41A41BBF-932B-40F2-A7CB-0C384ABA9DDF} - System32\Tasks\bowler-pennabowler-penna => C:\Program Files (x86)\defenseman\corregidor.exe jmaguc (Pas de fichier) Task: {4997ADE4-A4CC-4632-9C31-D6BC61AF468F} - System32\Tasks\mujahidmujahid => C:\Program Files (x86)\Neorealism\freakish.exe jmaguc (Pas de fichier) Task: {680DEC56-A137-4B1C-B98E-69A3F04DA1D6} - System32\Tasks\constitutional_genocidalconstitutional_genocidal => C:\Program Files (x86)\Norwegians\breughel.exe jmaguc (Pas de fichier) Task: {7A1A1E6F-F388-4355-9FDA-B5D71F9978A6} - System32\Tasks\lene trumpetslene trumpets => C:\Program Files (x86)\Norwegians\corregidor.exe jmaguc (Pas de fichier) Task: {C0187BE1-73FA-4547-92D3-F8FFA88A327E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Pas de fichier) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Pas de fichier) Task: {F1A376D6-79A3-4788-8858-E16F6FE372CF} - System32\Tasks\k42444647k42444647 => C:\Program Files (x86)\livers\livers.exe jmaguc (Pas de fichier) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction GroupPolicy: Restriction ? Policies: C:\ProgramData\NTUSER.pol: Restriction ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip32.dll -> Pas de fichier ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Arthur\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Arthur\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Arthur\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip32.dll -> Pas de fichier ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Arthur\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Pas de fichier ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip32.dll -> Pas de fichier cmd: netsh advfirewall reset EmptyTemp: End:: ***************** Erreur: (0) Impossible de créer un point de restauration. Processus fermé avec succès. "AV: Kaspersky Security Cloud (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}" => non trouvé(e) "FW: Kaspersky Security Cloud (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58}" => non trouvé(e) HKU\S-1-5-21-2915673651-3359095848-1392956588-1001\Software\Classes\regfile => non trouvé(e) "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\CL-26-B9B91793-990E-4851-BD8A-8151D5D22444" => non trouvé(e) "C:\Program Files\Common Files\Bitdefender" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{206634FA-3752-4D42-8371-F41729CF9836}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\muggeridgemuggeridge" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\muggeridgemuggeridge" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{356BB0F9-428A-471B-BC99-0DF09E67F28F}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\ASUS\P508PowerAgent_sdk" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\P508PowerAgent_sdk" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41A41BBF-932B-40F2-A7CB-0C384ABA9DDF}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\bowler-pennabowler-penna" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bowler-pennabowler-penna" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4997ADE4-A4CC-4632-9C31-D6BC61AF468F}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\mujahidmujahid" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\mujahidmujahid" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{680DEC56-A137-4B1C-B98E-69A3F04DA1D6}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\constitutional_genocidalconstitutional_genocidal" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\constitutional_genocidalconstitutional_genocidal" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A1A1E6F-F388-4355-9FDA-B5D71F9978A6}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\lene trumpetslene trumpets" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\lene trumpetslene trumpets" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C0187BE1-73FA-4547-92D3-F8FFA88A327E}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F1A376D6-79A3-4788-8858-E16F6FE372CF}" => non trouvé(e) "C:\WINDOWS\System32\Tasks\k42444647k42444647" => non trouvé(e) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\k42444647k42444647" => non trouvé(e) WinSetupMon => service non trouvé(e). HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => valeur restauré(es) avec succès HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => valeur restauré(es) avec succès "C:\WINDOWS\system32\GroupPolicy\Machine" => non trouvé(e) "C:\ProgramData\NTUSER.pol" => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => non trouvé(e) HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) => non trouvé(e) HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\MEGA (Context menu) => non trouvé(e) HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) => non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => non trouvé(e) HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) => non trouvé(e) HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxDTCM => non trouvé(e) HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip => non trouvé(e) ========= netsh advfirewall reset ========= Ok. ========= Fin de CMD: ========= =========== EmptyTemp: ========== FlushDNS => terminé(e) BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 6306576 B Java, Discord, Steam htmlcache => 0 B Windows/system/drivers => 24515 B Edge => 0 B Chrome => 136280382 B Brave => 757610 B Firefox => 223976 B Opera => 771 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 82226 B NetworkService => 85766 B Arthur => 30720522 B RecycleBin => 21990 B EmptyTemp: => 166.4 MB données temporaires supprimées. ================================ Le système a dû redémarrer. ==== Fin de Fixlog 13:20:24 ====