Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-10-2023 Exécuté par JR (administrateur) sur DESKTOP-QICOKRL (Hewlett-Packard HP Pavilion dv6 Notebook PC) (04-11-2023 06:47:14) Exécuté depuis C:\Users\JR\Downloads\FRST64.exe Profils chargés: JR Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3324 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe (C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <18> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe (services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\ProgramData\Wondershare\Service\InstallAssistService.exe (svchost.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2013-05-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954352 2016-04-27] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [367456 2023-10-08] (Apple Inc. -> Apple Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-2526620891-68815841-958254413-1001\...\Run: [MicrosoftEdgeAutoLaunch_934AFE781EA44486A74BD106AF69BFE3] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3891768 2023-11-02] (Microsoft Corporation -> Microsoft Corporation) AppInit_DLLs: C:\WINDOWS\system32\DriverStore\FileRepository\nvhm.inf_amd64_ebea877f10dfbbc7\nvinitx.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvhm.inf_amd64_ebea877f10dfbbc7\nvinitx.dll [208800 2018-03-28] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\system32\DriverStore\FileRepository\nvhm.inf_amd64_ebea877f10dfbbc7\nvinit.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvhm.inf_amd64_ebea877f10dfbbc7\nvinit.dll [182264 2018-03-28] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {825161D0-B3EA-4E4D-A33D-EE56F1BE87B8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {3B21DD72-1D8F-481E-AF95-3A4E28A0993A} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-13] (Adobe Inc. -> Adobe) Task: {92AEA9F5-A428-4469-9F09-E3F070C1F113} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-13] (Adobe Inc. -> Adobe) Task: {ADCCF4B9-8BB5-4760-BEFA-D670C99B1861} - System32\Tasks\Avira_FallbackUpdater => C:\WINDOWS\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start AviraFallbackUpdater Delayed=false Task: {0DB0667E-7AE9-46ED-B193-05484AB96144} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry Task: {0DB0667E-7AE9-46ED-B193-05484AB96144} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog Task: {0DB0667E-7AE9-46ED-B193-05484AB96144} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector Task: {A0CBC9C4-4BEF-4194-A77F-C6DFAF445738} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [262024 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) Task: {C58FAF78-A156-4B1C-ABBA-819CDA9D018C} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1814672 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) Task: {7B564974-D393-491D-A055-742EF577D1AF} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {9E6E3F2C-AE22-417A-83D1-B3055597AD4B} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [37168176 2023-10-13] (Avira Operations GmbH -> Avira Operations GmbH) Task: {548E27B4-77F2-4092-A498-022923D7BD05} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => %windir%\system32\EOSNotify.exe (Pas de fichier) Task: {AEA39338-245A-4AF4-A0F3-01D0EBE583BB} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistant => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV20:{} (Pas de fichier) Task: {2483257D-9098-497E-A1C5-9A75EEBCD296} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantAllUsersRun => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV20:{} /AllUsersRun (Pas de fichier) Task: {B83BEC13-0989-4136-A7CF-6F1B234E15E4} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantCalendarRun => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV20:{} /CalendarRun (Pas de fichier) Task: {B1DC6C91-628F-461A-92BD-571F73598849} - System32\Tasks\Microsoft\Windows\UpdateAssistant\UpdateAssistantWakeupRun => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:NHV20:{} /WakeupRun (Pas de fichier) Task: {5243A6F8-E470-4317-8CE1-73927B9EAAC1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistant => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:EosWu:{} (Pas de fichier) Task: {CD7FB56F-5905-45FE-971F-36E1CCB8C8B4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateAssistantCalendarRun => %windir%\UpdateAssistant\UpdateAssistant.exe /ClientID Win10Upgrade:VNL:EosWu:{} /CalendarRun (Pas de fichier) Task: {6E5425D4-C156-4115-B3F4-745724EC7C8A} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => "%ProgramFiles%\RUXIM\PLUGscheduler.exe" (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{961722e7-692f-4682-9e48-d1a9afb4cfde}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{c692e01f-00fe-4299-afc4-ced1732e92a7}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{c962b037-4612-4cd8-8c58-bb78c0fd3e86}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{dcdc6131-d650-4d58-96ff-97908c26697e}: [DhcpNameServer] 192.168.249.236 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\JR\AppData\Local\Microsoft\Edge\User Data\Default [2023-11-04] Edge StartupUrls: Default -> "hxxps://www.bing.com/" Edge Extension: (Google Docs hors connexion) - C:\Users\JR\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-10] Edge Extension: (Edge relevant text changes) - C:\Users\JR\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-10] FireFox: ======== FF DefaultProfile: ar94xsbe.default-1698641429935 FF ProfilePath: C:\Users\JR\AppData\Roaming\Mozilla\Firefox\Profiles\ar94xsbe.default-1698641429935 [2023-10-30] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-13] (Adobe Inc. -> ) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-10-09] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-13] (Adobe Inc. -> ) Chrome: ======= CHR Profile: C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default [2023-10-25] CHR Extension: (Slides) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-07] CHR Extension: (Docs) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-07] CHR Extension: (Google Drive) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (YouTube) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-07] CHR Extension: (Sheets) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-07] CHR Extension: (Google Docs hors connexion) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-24] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-07] CHR Extension: (Gmail) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24] CHR Extension: (Chrome Media Router) - C:\Users\JR\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-25] CHR Profile: C:\Users\JR\AppData\Local\Google\Chrome\User Data\System Profile [2020-10-26] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-13] (Adobe Inc. -> Adobe) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2023-10-02] (Apple Inc. -> Apple Inc.) S2 AviraFallbackUpdater; C:\Program Files (x86)\Avira\Fallback Updater\Avira.Spotlight.FallbackUpdater.exe [6576104 2023-10-14] (Avira Operations GmbH -> Avira Operations GmbH) R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3000232 2022-02-18] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [389096 2023-09-06] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [266936 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [297392 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [11214240 2023-11-02] (Avira Operations GmbH -> Avira Operations GmbH) S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [11214240 2023-11-02] (Avira Operations GmbH -> Avira Operations GmbH) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2013-05-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [269200 2020-09-27] (Wondershare Technology Co.,Ltd -> Wondershare) S2 ElevationService; C:\Program Files (x86)\Wondershare\drfone\Addins\Recovery\ElevationService.exe [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [39272 2023-06-27] (Apple Inc. -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) R0 BdNet; C:\WINDOWS\System32\DRIVERS\BdNet.sys [190712 2023-03-16] (Avira Operations GmbH -> Avira Operations GmbH) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [233560 2023-05-31] (Avira Operations GmbH -> Avira Operations GmbH) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-02-28] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-02-28] (Disc Soft Ltd -> Disc Soft Ltd) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2018-08-16] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [112184 2023-01-21] (Avira Operations GmbH -> Avira Operations GmbH) S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [28616 2023-07-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH) R1 rtp_filter; C:\WINDOWS\System32\DRIVERS\rtp_filter.sys [359560 2023-10-25] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [41776 2023-07-12] (Avira Operations GmbH -> Avira Operations GmbH) R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [540160 2013-05-25] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-08-22] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP) S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X] S4 RSP2STOR; \SystemRoot\system32\DRIVERS\RtsP2Stor.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-11-04 06:47 - 2023-11-04 06:50 - 000019245 _____ C:\Users\JR\Downloads\FRST.txt 2023-11-04 06:44 - 2023-11-04 06:48 - 000000000 ____D C:\FRST 2023-11-04 06:43 - 2023-11-04 06:43 - 002383872 _____ (Farbar) C:\Users\JR\Downloads\FRST64.exe 2023-11-04 05:25 - 2023-11-04 05:25 - 000005225 _____ C:\Users\JR\Downloads\contacts.vcf 2023-11-04 05:24 - 2023-11-04 05:24 - 000005624 _____ C:\Users\JR\Downloads\contacts (1).csv 2023-11-03 14:39 - 2023-11-03 14:39 - 000006972 _____ C:\Users\JR\Downloads\contacts.csv 2023-11-01 04:41 - 2023-11-01 04:41 - 000000000 ____D C:\Users\JR\AppData\Roaming\Microsoft\CLR Security Config 2023-11-01 04:41 - 2023-11-01 04:41 - 000000000 ____D C:\Users\JR\AppData\Local\Elguevel_Software 2023-11-01 04:39 - 2023-11-01 04:39 - 000002659 _____ C:\Users\Public\Desktop\Clean Up.lnk 2023-11-01 04:39 - 2023-11-01 04:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elguevel software 2023-11-01 04:39 - 2023-11-01 04:39 - 000000000 ____D C:\Program Files (x86)\Clean Up 2023-11-01 04:36 - 2023-11-01 04:36 - 000000000 ____D C:\Users\JR\Downloads\cleanup (2) 2023-11-01 04:35 - 2023-11-01 04:36 - 000389806 _____ C:\Users\JR\Downloads\cleanup (2).zip 2023-11-01 04:21 - 2023-11-01 04:21 - 000000069 _____ C:\Users\JR\Downloads\eicar.com_-2.txt 2023-10-30 11:15 - 2023-11-01 08:08 - 000000000 ____D C:\Users\JR\Desktop\Préparation photo life print 2023-10-28 03:25 - 2023-10-28 03:25 - 000000000 ___HD C:\$WinREAgent 2023-10-26 08:23 - 2023-10-26 08:23 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance 2023-10-26 08:23 - 2023-10-26 08:23 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog 2023-10-26 08:23 - 2023-10-26 08:23 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray 2023-10-25 18:07 - 2023-10-25 18:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2023-10-25 18:05 - 2023-10-25 18:07 - 000000000 ____D C:\Program Files\iTunes 2023-10-25 11:41 - 2023-11-01 07:02 - 000000000 ____D C:\Users\JR\Desktop\Téléchargement 2023-10-15 13:01 - 2023-10-28 04:45 - 000000000 ____D C:\WINDOWS\Panther 2023-10-14 01:04 - 2023-10-14 01:04 - 000000000 ____D C:\ProgramData\PLUG 2023-10-13 23:12 - 2023-10-13 23:12 - 000003792 _____ C:\WINDOWS\system32\Tasks\AviraSystemSpeedupVerify ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-11-04 06:27 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-11-04 06:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-11-04 06:25 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-11-04 06:23 - 2020-10-22 20:02 - 000000000 ____D C:\Users\Public\Security Sessions 2023-11-04 04:49 - 2020-11-07 17:59 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-11-03 20:09 - 2020-10-26 10:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-11-03 20:09 - 2019-01-17 20:52 - 000000000 ____D C:\ProgramData\NVIDIA 2023-11-03 16:29 - 2020-10-26 10:34 - 000000000 ____D C:\Users\JR 2023-11-02 17:24 - 2019-01-17 12:15 - 000000000 ____D C:\Users\JR\AppData\Local\Packages 2023-10-31 04:11 - 2020-11-07 17:59 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-10-31 04:11 - 2020-11-07 17:59 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-10-30 18:07 - 2020-10-26 10:41 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-10-30 18:07 - 2019-12-07 15:49 - 000793016 _____ C:\WINDOWS\system32\perfh00C.dat 2023-10-30 18:07 - 2019-12-07 15:49 - 000150146 _____ C:\WINDOWS\system32\perfc00C.dat 2023-10-30 18:07 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-10-30 05:51 - 2023-02-24 17:34 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-10-30 04:57 - 2019-03-29 11:49 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2023-10-29 04:20 - 2019-03-29 12:10 - 000000000 ____D C:\Users\JR\AppData\Local\ConnectedDevicesPlatform 2023-10-28 12:33 - 2019-03-29 12:00 - 000000000 ____D C:\Users\JR\AppData\Roaming\Microsoft\Protect 2023-10-28 12:33 - 2019-01-17 12:15 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-10-28 10:26 - 2020-10-26 10:58 - 000028578 _____ C:\WINDOWS\diagwrn.xml 2023-10-28 10:26 - 2020-10-26 10:58 - 000028578 _____ C:\WINDOWS\diagerr.xml 2023-10-28 06:28 - 2019-02-21 11:19 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2023-10-28 06:26 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-10-28 06:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2023-10-28 06:06 - 2019-12-07 16:30 - 000000000 ___HD C:\$WINDOWS.~BT 2023-10-27 20:10 - 2023-02-21 18:39 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2526620891-68815841-958254413-1001 2023-10-27 20:10 - 2020-10-26 11:00 - 000003368 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2526620891-68815841-958254413-1001 2023-10-27 20:10 - 2020-10-26 10:34 - 000002404 _____ C:\Users\JR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-27 19:17 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-10-27 03:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-10-27 02:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-10-26 10:33 - 2020-10-26 11:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-10-26 10:33 - 2020-10-26 10:25 - 000008192 ___SH C:\DumpStack.log.tmp 2023-10-26 08:23 - 2021-04-18 11:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2023-10-26 08:23 - 2020-10-26 11:00 - 000003474 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update 2023-10-25 07:45 - 2023-04-24 09:21 - 000359560 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filter.sys 2023-10-25 07:45 - 2023-03-08 11:21 - 001006688 _____ C:\WINDOWS\system32\rtp.db 2023-10-22 14:34 - 2023-03-09 09:31 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2023-10-22 14:31 - 2023-03-09 09:30 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-10-20 17:32 - 2019-09-21 20:43 - 000000000 ____D C:\Users\JR\AppData\Roaming\vlc 2023-10-16 14:20 - 2019-11-22 19:24 - 000000000 ____D C:\Users\JR\AppData\Local\D3DSCache 2023-10-16 12:44 - 2020-03-13 17:53 - 000000000 ____D C:\Users\JR\AppData\Local\WhatsApp 2023-10-15 13:03 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-10-14 07:28 - 2023-02-23 19:58 - 000003706 _____ C:\WINDOWS\system32\Tasks\Avira_FallbackUpdater 2023-10-13 21:04 - 2019-01-30 22:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-10-13 21:04 - 2019-01-30 22:46 - 000000000 ____D C:\Program Files\rempl 2023-10-13 20:58 - 2019-01-30 22:52 - 181553176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-10-13 20:53 - 2020-10-22 21:44 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-10-13 10:38 - 2020-03-13 17:53 - 000000000 ____D C:\Users\JR\AppData\Roaming\WhatsApp 2023-10-13 09:44 - 2019-03-29 12:28 - 000000000 ____D C:\ProgramData\Packages 2023-10-10 08:10 - 2020-10-26 10:25 - 000268072 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-10-10 08:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-10-10 08:02 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-10-10 08:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-10-10 08:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================