Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 22-03-2020
Exécuté par gabin (administrateur) sur GABIN-PC (25-03-2020 21:34:58)
Exécuté depuis C:\Users\gabin\Desktop
Profils chargés: gabin (Profils disponibles: gabin)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Safe Mode (with Networking)
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\RunOnce: [GrpConv] => grpconv -o
HKU\S-1-5-21-3378400512-3742978869-4124080925-1000\...\Run: [GoogleChromeAutoLaunch_0F99F6DEC87293F7E5D4465D7BF5D429] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.106\Installer\chrmstp.exe [2020-02-13] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-07-31] (Adobe Inc. -> Adobe Systems, Inc.)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {0F3E7E5F-F7D8-4E23-9193-DE809F9D8E37} - System32\Tasks\{793948F3-DE12-4CE0-A6C6-6D5C4F844663} => C:\Windows\system32\pcalua.exe -a F:\m2tw\Disk1\setup.exe -d F:\m2tw\Disk1
Task: {10ED6D88-4C96-4F49-8747-ADFAF3207661} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {7951DC61-63D7-43E8-BEE6-015117D0038E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {8595AD0E-DBD4-4EF6-84D2-74C7CA42FBC3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
Task: {A054159B-0A1C-44A7-9723-4ABE607D08F6} - System32\Tasks\Uninstaller_SkipUac_gabin => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [5122320 2018-08-27] (IObit Information Technology -> IObit)
Task: {C3E1431D-F78C-42B8-AF24-7E9AD70A545C} - System32\Tasks\{70926C58-27EF-40A0-A67B-4F9E8900D6EB} => C:\Windows\system32\pcalua.exe -a "E:\Medieval II Total War + Kingdoms\Patches\setup.exe" -d "E:\Medieval II Total War + Kingdoms\Patches"
Task: {C9B53734-BA3E-4D10-B175-213CF5B06840} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {D86653DB-D05B-4C10-82B1-5BE857B99F19} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [5122320 2018-08-27] (IObit Information Technology -> IObit)
Task: {E6AFD36D-6685-42FE-BBEC-5A56A53C1933} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [1174016 2010-11-21] (Microsoft Windows -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Pas de fichier
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{1BBAE512-8488-42A4-A17C-4C689010CB43}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{BB0D4BCE-96E4-4A99-A4DB-06E2BA10103A}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{C273AB59-FC43-41E9-9A5A-118F31FFC98B}: [DhcpNameServer] 212.27.40.240 212.27.40.241

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-3378400512-3742978869-4124080925-1000 -> DefaultScope {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3324764&octid=EB_ORIGINAL_CTID&ISID=M12225D67-C052-4276-91AC-69302BF2A882&SearchSource=58&CUI=&UM=8&UP=SP3C204129-B395-49EC-BA94-B41C80380CC9&q={searchTerms}&D=032015&SSPV=SP2220TA_sp_ie
SearchScopes: HKU\S-1-5-21-3378400512-3742978869-4124080925-1000 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3324764&octid=EB_ORIGINAL_CTID&ISID=M12225D67-C052-4276-91AC-69302BF2A882&SearchSource=58&CUI=&UM=8&UP=SP3C204129-B395-49EC-BA94-B41C80380CC9&q={searchTerms}&D=032015&SSPV=SP2220TA_sp_ie
SearchScopes: HKU\S-1-5-21-3378400512-3742978869-4124080925-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
SearchScopes: HKU\S-1-5-21-3378400512-3742978869-4124080925-1000 -> {82D05E07-40B4-48C6-AA0A-E0EAC96E4D23} URL = hxxps://www.google.com/search?q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-07-19] (IObit Information Technology -> IObit)
BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-01] (Atheros Communications Inc. -> Atheros Commnucations) [Fichier non signé]
Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
Toolbar: HKU\S-1-5-21-3378400512-3742978869-4124080925-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier

FireFox:
========
FF DefaultProfile: 5nxaogm1.default
FF ProfilePath: C:\Users\gabin\AppData\Roaming\Mozilla\Firefox\Profiles\5nxaogm1.default [2020-03-25]
FF NewTab: Mozilla\Firefox\Profiles\5nxaogm1.default -> hxxp://www.bing.com/?pc=COSP&ptag=D092918-AF46C85AB1CFE40C584F&form=CONMHP&conlogo=CT3332019
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\gabin\AppData\Roaming\Mozilla\Firefox\Profiles\5nxaogm1.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-02-12]
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: (PDF Architect 4 Creator) - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-03-20] [] [non signé]
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC -> DivX, LLC.)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [Pas de fichier]
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [Pas de fichier]
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [Pas de fichier]
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [Pas de fichier]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [Pas de fichier]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
FF Plugin HKU\S-1-5-21-3378400512-3742978869-4124080925-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=3 -> C:\Users\gabin\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2020-02-09] (Google Inc (TEST) -> Epic Privacy Browser) [Fichier non signé]
FF Plugin HKU\S-1-5-21-3378400512-3742978869-4124080925-1000: @updates.epicbrowser.com/Epic Privacy Browser Installer;version=9 -> C:\Users\gabin\AppData\Local\Epic Privacy Browser\Installer\1.3.27.13\npEpicUpdate3.dll [2020-02-09] (Google Inc (TEST) -> Epic Privacy Browser) [Fichier non signé]

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default [2020-02-18]
CHR HomePage: Default -> hxxps://www.google.fr/
CHR Extension: (Docs) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15]
CHR Extension: (Google Drive) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-20]
CHR Extension: (YouTube) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-20]
CHR Extension: (GeoGebra Classique) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2017-09-16]
CHR Extension: (Recherche Google) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-01]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-05-18]
CHR Extension: (Bureau à distance Google Chrome) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2017-11-26]
CHR Extension: (Google Docs hors connexion) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-20]
CHR Extension: (AdBlock) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-05-18]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-06]
CHR Extension: (Ad-Block Super) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohockbpmoaiagfkknmebefengnoejemj [2015-08-15]
CHR Extension: (Gmail) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-01]
CHR Extension: (Chrome Media Router) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-05-18]
CHR Profile: C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-03-25]
CHR Extension: (Slides) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-05]
CHR Extension: (Docs) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-05]
CHR Extension: (Google Drive) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-27]
CHR Extension: (YouTube) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-27]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-03-25]
CHR Extension: (Sheets) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-05]
CHR Extension: (Join) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flejfacjooompmliegamfbpjjdlhokhj [2020-03-25]
CHR Extension: (Bureau à distance Google Chrome) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-08-23]
CHR Extension: (Google Docs hors connexion) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-25]
CHR Extension: (goo.gl URL Shortener (Unofficial)) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2017-09-27]
CHR Extension: (Todoist pour Chrome) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jldhpllghnbhlbpcmnajkpdmadaolakh [2020-02-08]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-08]
CHR Extension: (Gmail) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-23]
CHR Extension: (Chrome Media Router) - C:\Users\gabin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-25]
CHR Profile: C:\Users\gabin\AppData\Local\Google\Chrome\User Data\System Profile [2020-02-18]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [246784 2015-08-04] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc. -> Apple Inc.)
S4 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [76448 2011-03-01] (Atheros Communications Inc. -> Atheros Commnucations) [Fichier non signé]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7356680 2018-10-09] (BattlEye Innovations e.K. -> )
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\80.0.3987.18\remoting_host.exe [73200 2019-12-17] (Google LLC -> Google Inc.)
S4 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [775296 2018-04-27] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 ICEsoundService; C:\Windows\system32\ICEsoundService64.exe [806352 2018-11-07] (ICEpower a/s -> ICEpower)
S4 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [149776 2018-06-28] (IObit Information Technology -> IObit)
S4 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-09] (IObit Information Technology -> IObit)
S4 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
S4 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
S4 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-01-15] (pdfforge GmbH -> pdfforge GmbH)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-01-17] (Even Balance, Inc. -> )
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
S4 iPod Service; "C:\Program Files\iPod\bin\iPodService.exe" [X]
S4 jswpsapi; C:\Program Files (x86)\NETGEAR\WNDA3100\jswpsapi.exe [X]
S4 MozillaMaintenance; "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" [X]
S4 Origin Client Service; "E:\Origin\OriginClientService.exe" [X]
S4 Origin Web Helper Service; "E:\Origin\OriginWebHelperService.exe" [X]
S4 PDF Architect 4 Manager; "C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe" [X]
S4 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [X]

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [21622784 2015-08-04] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [665088 2015-08-04] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [128488 2011-06-02] (MCCI Internal Testing Software -> ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [401896 2011-06-02] (MCCI Internal Testing Software -> ASMedia Technology Inc)
S3 ATHDFU; C:\Windows\System32\Drivers\AthDfu.sys [51872 2011-03-01] (Atheros Communications Inc. -> Windows (R) Win 7 DDK provider)
S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [96256 2015-07-15] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [37976 2014-12-25] (Comodo Security Solutions, Inc. -> Windows (R) Win 7 DDK provider) [Fichier non signé]
S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-29] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-29] (Disc Soft Ltd -> Disc Soft Ltd)
S3 FTDIBUS; C:\Windows\System32\drivers\ftdibus.sys [129448 2017-09-19] (Future Technology Devices International Ltd -> Future Technology Devices International Ltd.)
S3 FTSER2K; C:\Windows\System32\drivers\ftser2k.sys [89792 2017-09-19] (Future Technology Devices International Ltd -> Future Technology Devices International Ltd.)
S1 HMD; C:\Windows\System32\DRIVERS\hmd.sys [14888 2014-06-26] (Comodo Security Solutions, Inc. -> )
S3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IUProcessFilter.sys [19312 2018-05-12] (IObit Information Technology -> IObit)
S3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win7_amd64\IURegistryFilter.sys [25488 2018-05-15] (IObit Information Technology -> IObit)
S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
S3 RTVLANPT; C:\Windows\System32\DRIVERS\RtVlan60.sys [29472 2010-01-14] (Realtek Semiconductor Corp -> Windows (R) Codename Longhorn DDK provider)
R0 SCMNdisP; C:\Windows\System32\DRIVERS\scmndisp.sys [25312 2007-01-19] (NETGEAR -> Windows (R) Codename Longhorn DDK provider)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 VLAN; C:\Windows\System32\DRIVERS\RtVLAN60.sys [29472 2010-01-14] (Realtek Semiconductor Corp -> Windows (R) Codename Longhorn DDK provider)
S3 Denuvo Kuser Data Driver 1.0.0.7; \??\D:\Total.War.Saga.Thrones.of.Britannia.v1.0.11578\Total.War.Saga.Thrones.of.Britannia\Denuvo64.sys [X]
S1 epp; \??\C:\EEK\bin64\epp.sys [X]
S4 IObitUnlocker; \??\D:\IObit Unlocker\IObitUnlocker.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ===================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-03-25 21:34 - 2020-03-25 21:35 - 000021906 _____ C:\Users\gabin\Desktop\FRST.txt
2020-03-25 21:34 - 2020-03-25 21:35 - 000000000 ____D C:\FRST
2020-03-25 21:34 - 2020-03-25 21:34 - 000000000 ____D C:\Users\gabin\Desktop\FRST-OlderVersion

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-03-25 21:34 - 2020-02-17 16:52 - 002279936 _____ (Farbar) C:\Users\gabin\Desktop\FRST64.exe
2020-03-25 15:05 - 2011-04-12 10:16 - 000747320 _____ C:\Windows\system32\perfh00C.dat
2020-03-25 15:05 - 2011-04-12 10:16 - 000149844 _____ C:\Windows\system32\perfc00C.dat
2020-03-25 15:05 - 2009-07-14 06:13 - 001668256 _____ C:\Windows\system32\PerfStringBackup.INI
2020-03-25 15:05 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2020-03-25 14:59 - 2014-11-17 21:54 - 001754442 _____ C:\Windows\ntbtlog.txt
2020-03-25 14:58 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-03-25 14:23 - 2015-03-01 15:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2020-03-25 14:23 - 2014-06-03 14:21 - 000000000 ____D C:\Users\gabin\AppData\Local\CrashDumps
2020-03-25 14:22 - 2014-06-02 17:24 - 000000000 ____D C:\Program Files (x86)\ASUS
2020-03-25 14:22 - 2014-06-02 17:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-03-25 14:20 - 2017-01-18 15:59 - 000000000 ____D C:\Users\gabin\AppData\LocalLow\Mozilla

==================== Fichiers à la racine de certains dossiers ========

2020-02-17 16:07 - 2020-02-17 16:10 - 365469048 _____ () C:\Users\gabin\EmsisoftEmergencyKit.exe
2018-10-12 23:20 - 2020-02-15 00:27 - 000000152 _____ () C:\Users\gabin\AppData\Roaming\WB.CFG
2016-05-09 19:43 - 2016-05-09 19:43 - 000001830 _____ () C:\Users\gabin\AppData\Local\recently-used.xbel
2020-02-17 22:50 - 2020-02-17 22:50 - 000000000 _____ () C:\Users\gabin\AppData\Local\{4F07DA83-3C54-4CDF-8883-678F945669C3}

==================== FLock ==============================

2019-08-21 14:31 C:\Windows\Minidump\082319-15693-01.dmp
2018-12-01 18:06 C:\Windows\Minidump\120118-10093-01.dmp
2018-12-01 19:43 C:\Windows\Minidump\120118-12058-01.dmp
2018-12-01 18:39 C:\Windows\Minidump\120118-19328-01.dmp
2018-12-02 17:37 C:\Windows\Minidump\120218-10249-01.dmp
2018-12-02 15:59 C:\Windows\Minidump\120218-10951-01.dmp
2018-12-02 16:41 C:\Windows\Minidump\120218-11512-01.dmp
2018-12-01 20:11 C:\Windows\Minidump\120218-21933-01.dmp
2018-12-02 18:36 C:\Windows\Minidump\120318-10545-01.dmp
2018-12-04 17:08 C:\Windows\Minidump\121018-20763-01.dmp
2018-12-15 11:42 C:\Windows\Minidump\121518-9828-01.dmp
2018-12-17 13:08 C:\Windows\Minidump\121718-10171-01.dmp
2018-12-17 20:44 C:\Windows\Minidump\121718-10732-01.dmp
2018-12-18 19:58 C:\Windows\Minidump\123018-10592-01.dmp

==================== FCheck ================================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

FCheck: C:\Windows\SysWOW64\ise_installer_temp.exe [2017-09-16] <==== ATTENTION (zéro octet Fichier/Dossier)

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


LastRegBack: 2020-02-09 03:53
==================== Fin de FRST.txt ========================