Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2021
Exécuté par famille (administrateur) sur AIRBOURNE (Hewlett-Packard HP Pavilion g6 Notebook PC) (26-08-2021 12:34:46)
Exécuté depuis C:\Users\famille\Desktop
Profils chargés: famille
Platform: Windows 8.1 (Update) (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Advanced Micro Devices, Inc.) [Fichier non signé] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe <7>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe
(CyberLink -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteUser.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mcbuilder.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.19991_none_fa0fb7959b4c8c91\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Realsil Microelectronics Inc.) [Fichier non signé] C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32721976 2021-02-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\MountPoints2: {81425883-2b5b-11eb-8018-d4c9ef6608af} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\MountPoints2: {a8130ba1-b2ea-11eb-8024-d4c9ef6608af} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\MountPoints2: {aa8cda43-aee2-11ea-800e-d4c9ef6608af} - "G:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\MountPoints2: {b847f4d8-0ad9-11ea-bfff-d4c9ef6608af} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-306210784-2016891843-256434939-1002\...\MountPoints2: {eca5d40c-eaca-11ea-8012-d4c9ef6608af} - "F:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [355840 2012-08-08] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\90.1.9508.212\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\92.1.11471.160\Installer\chrmstp.exe [2021-08-26] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\87.0.7478.88\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.159\Installer\chrmstp.exe [2021-08-25] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2018-03-27]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.717\SSScheduler.exe (McAfee, Inc. -> McAfee, Inc.)
Startup: C:\Users\famille\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 - Capture d’écran et lancement.lnk [2020-05-06]
ShortcutTarget: OneNote 2010 - Capture d’écran et lancement.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKU\S-1-5-21-306210784-2016891843-256434939-1002\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {028D79B2-38FA-4697-ACA8-A71BB6AD184E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFReport.exe
Task: {094CD275-5C71-4753-B57E-5566CA859498} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {0F6DBBD1-1FA5-490B-A482-1F43FCC689E6} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {12DAF030-3A4B-4192-9211-D7AAD2642F33} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2280232 2021-08-17] (Avast Software s.r.o. -> AVAST Software)
Task: {2B5E20B6-A64D-4E5A-9E41-9BFDD77718CA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe
Task: {42202230-D2E4-4CDC-85FF-8388C14CB12A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [0 2021-03-11] ()
Task: {530EDF98-AF94-4E4E-B8B8-2BE4D3F06E92} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2280232 2021-08-17] (Avast Software s.r.o. -> AVAST Software)
Task: {62630537-262A-454B-9CD3-43B2FBCAA317} - System32\Tasks\{690724AE-8056-4346-93F4-52EA68AB62FD} => C:\WINDOWS\system32\pcalua.exe -a C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_pepper.exe -c -maintain pepperplugin
Task: {67105F36-E380-4036-9FA6-A7A3322DE6BF} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {6B6D3EF4-7226-4848-BE85-23D29CFE48B7} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [619448 2021-08-23] (Mozilla Corporation -> Mozilla Foundation)
Task: {737EFCEA-83B9-4692-9AE5-B83E7BDA12D0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe
Task: {796627D5-BCF9-4EE0-8ACC-82C98382FB0D} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
Task: {7C2308E7-DB0A-46FA-A671-C08BFA3F6255} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
Task: {867FEBAC-6AB4-4BD0-A7B8-1B0A9640822F} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
Task: {8B6759EE-1C08-4B8F-955C-774AB5A6544E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {984662ED-8881-4BF0-9D6D-CCD2251BA4C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\File validation => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\HPResignFileLoader.exe
Task: {A4908085-F616-42C2-A964-93E76D0DFFFD} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-03-05] (Piriform Software Ltd -> Piriform)
Task: {A835C9DC-88D3-4045-880F-305CCB827292} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)
Task: {AEEE5125-0910-47A1-A70E-95FBD638BB30} - System32\Tasks\SafeZone scheduled Autoupdate 1475305356 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe
Task: {C3960105-2082-428E-8B0C-5F27E77F9021} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink -> CyberLink)
Task: {C9DCF59E-6B97-4C0C-8641-B8261089C8CA} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {CCADE7CA-0537-4C42-8D65-9943F9F4ECED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {D36D76D6-5869-4043-87DF-C94AC11E0F5C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {D7A879DF-6F9F-48E1-82FA-A48BC2E51861} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe
Task: {D956AE54-1EB8-4956-ABD3-1584BABD2B1C} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {DB21EF32-6BA9-4118-BBC1-BC4FF48961E5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {DF98652E-A98F-412D-AFA6-C96576D38D67} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {E07707E4-2B57-4CD1-9479-00838459F840} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.)
Hosts: 0.0.0.1 mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{718CA6B7-2829-49E5-B71D-65B226634135}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{79ECE81A-978C-436D-A132-9A9D165FCD56}: [DhcpNameServer] 192.168.0.254

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\famille\AppData\Local\Microsoft\Edge\User Data\Default [2021-08-25]
Edge HomePage: Default -> hxxp://www.google.com/
Edge Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\famille\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\phhhmbgggfifgikoihlakngnngdehhfe [2021-08-25]

FireFox:
========
FF DefaultProfile: nu0cr0dn.default
FF ProfilePath: C:\Users\famille\AppData\Roaming\Mozilla\Firefox\Profiles\nu0cr0dn.default [2021-08-25]
FF ProfilePath: C:\Users\famille\AppData\Roaming\Mozilla\Firefox\Profiles\7t9rm9ty.default-release [2021-08-26]
FF Extension: (uBlock Origin) - C:\Users\famille\AppData\Roaming\Mozilla\Firefox\Profiles\7t9rm9ty.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-08-25]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [Fichier non signé]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-27] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-27] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Pas de fichier]

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\famille\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-08-26]
CHR Notifications: Profile 1 -> hxxps://meet.google.com
CHR HomePage: Profile 1 -> hxxp://www.google.com
CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\famille\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-11-11]
CHR Extension: (Avast Online Security) - C:\Users\famille\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2021-02-19]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\famille\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\famille\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-26]
CHR Profile: C:\Users\famille\AppData\Local\Google\Chrome\User Data\System Profile [2020-11-25]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <non trouvé(e)>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <non trouvé(e)>

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [Fichier non signé]
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\92.1.11471.160\elevation_service.exe [1419240 2021-08-17] (Avast Software s.r.o. -> AVAST Software)
R2 HPConnectedRemote; C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35744 2012-10-12] (Hewlett-Packard Company -> Hewlett-Packard)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-14] (Realsil Microelectronics Inc.) [Fichier non signé]
R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7497336 2021-08-25] (Malwarebytes Inc -> Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.717\McCHSvc.exe [405392 2018-03-27] (McAfee, Inc. -> McAfee, Inc.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2012-08-20] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [1001920 2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16928 2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [87760 2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation)
S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X]
S2 HP Support Assistant Service; "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" [X]

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink -> CyberLink)
S3 massfilter_hs; C:\WINDOWS\System32\drivers\massfilter_hs.sys [18456 2012-01-10] (ZTE CORPORATION -> HandSet Incorporated)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210344 2021-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-08-25] (Malwarebytes Inc -> Malwarebytes)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [542208 2012-08-20] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
S3 zghsdiag; C:\WINDOWS\system32\DRIVERS\zghsdiag.sys [129432 2011-07-15] (ZTE CORPORATION -> ZTE Incorporated)
S3 zghsmdm; C:\WINDOWS\system32\DRIVERS\zghsmdm.sys [129432 2011-07-15] (ZTE CORPORATION -> ZTE Incorporated)
S3 zghsnmea; C:\WINDOWS\system32\DRIVERS\zghsnmea.sys [129432 2011-07-15] (ZTE CORPORATION -> ZTE Incorporated)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-08-26 12:05 - 2021-08-26 12:10 - 000044838 _____ C:\Users\famille\Desktop\Addition.txt
2021-08-26 11:58 - 2021-08-26 12:39 - 000023286 _____ C:\Users\famille\Desktop\FRST.txt
2021-08-26 11:36 - 2021-08-26 12:37 - 000000000 ____D C:\FRST
2021-08-26 10:56 - 2021-08-26 10:56 - 002300928 _____ (Farbar) C:\Users\famille\Desktop\FRST64.exe
2021-08-26 10:49 - 2021-08-26 12:33 - 317444096 _____ C:\Users\famille\Downloads\LibreOffice_7.0.6_Win_x64.msi
2021-08-26 10:40 - 2021-08-26 10:40 - 000000885 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2021-08-26 10:40 - 2021-08-26 10:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2021-08-26 10:40 - 2021-08-26 10:40 - 000000000 ____D C:\Program Files\CPUID
2021-08-26 10:39 - 2021-08-26 10:39 - 002092328 _____ (CPUID, Inc. ) C:\Users\famille\Downloads\cpu-z_1.97-en.exe
2021-08-26 10:14 - 2021-08-26 10:14 - 000210344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-08-25 21:26 - 2021-07-13 08:34 - 000376072 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2021-08-25 21:26 - 2021-07-13 08:23 - 000317176 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2021-08-25 19:02 - 2021-08-25 20:14 - 000364262 _____ C:\WINDOWS\ntbtlog.txt
2021-08-25 18:27 - 2021-08-25 18:27 - 012383368 _____ (AVAST Software) C:\Users\famille\Desktop\avastclear.exe
2021-08-25 16:58 - 2021-08-25 17:03 - 000000000 ____D C:\AdwCleaner
2021-08-25 16:56 - 2021-08-25 16:57 - 008553680 _____ (Malwarebytes) C:\Users\famille\Downloads\adwcleaner_8.3.0.exe
2021-08-25 16:40 - 2021-08-26 12:32 - 000000000 ____D C:\Users\famille\AppData\LocalLow\Mozilla
2021-08-25 16:40 - 2021-08-26 10:16 - 000000000 ____D C:\ProgramData\Mozilla
2021-08-25 16:40 - 2021-08-25 16:40 - 000001171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-08-25 16:40 - 2021-08-25 16:40 - 000001061 _____ C:\Users\Public\Desktop\Firefox.lnk
2021-08-25 16:40 - 2021-08-25 16:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-08-25 16:40 - 2021-08-25 16:40 - 000000000 ____D C:\Users\famille\AppData\Roaming\Mozilla
2021-08-25 16:40 - 2021-08-25 16:40 - 000000000 ____D C:\Users\famille\AppData\Local\Mozilla
2021-08-25 16:40 - 2021-08-25 16:40 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-08-25 12:19 - 2021-08-25 12:19 - 000000000 ____D C:\Users\famille\AppData\Local\mbam
2021-08-25 12:17 - 2021-08-25 12:17 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2021-08-25 12:17 - 2021-08-25 12:17 - 000001976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-08-25 12:17 - 2021-08-25 12:17 - 000001964 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-08-25 12:16 - 2021-08-25 12:14 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2021-08-25 12:15 - 2021-08-25 12:15 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-08-25 12:14 - 2021-08-25 12:14 - 000333104 _____ (Mozilla) C:\Users\famille\Downloads\Firefox Installer.exe
2021-08-25 12:12 - 2021-08-25 12:12 - 000000000 ____D C:\Program Files\Malwarebytes
2021-08-25 12:11 - 2021-08-25 12:12 - 002120496 _____ (Malwarebytes) C:\Users\famille\Downloads\MBSetup-119967.119967-consumer.exe

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-08-26 12:28 - 2014-11-11 13:25 - 010565120 ___SH C:\Users\famille\Desktop\Thumbs.db
2021-08-26 11:51 - 2013-09-15 17:58 - 000000000 ____D C:\Program Files (x86)\Google
2021-08-26 11:23 - 2013-09-15 15:46 - 000003596 _____ C:\WINDOWS\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-306210784-2016891843-256434939-1002
2021-08-26 11:22 - 2021-04-29 11:06 - 000003732 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly)
2021-08-26 11:22 - 2018-09-17 11:55 - 000002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2021-08-26 11:22 - 2018-09-17 11:55 - 000002404 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2021-08-26 10:39 - 2013-11-24 18:47 - 000000000 ____D C:\Program Files\CCleaner
2021-08-26 10:09 - 2014-11-09 22:24 - 000000000 __RDO C:\Users\famille\OneDrive
2021-08-25 22:04 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-25 22:04 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf
2021-08-25 22:03 - 2013-08-22 16:44 - 000568352 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-08-25 21:54 - 2013-08-22 17:36 - 000000000 ___RD C:\WINDOWS\ToastData
2021-08-25 21:54 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-08-25 21:47 - 2013-09-16 17:24 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-08-25 21:36 - 2013-09-16 17:24 - 133215968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-08-25 21:36 - 2012-07-26 09:59 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-08-25 21:00 - 2014-11-09 22:12 - 000003948 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{8D31B2EE-FBF7-49DF-BBE3-1D4236602B1C}
2021-08-25 20:54 - 2013-09-15 17:54 - 000000000 ____D C:\ProgramData\AVAST Software
2021-08-25 20:52 - 2013-09-15 17:55 - 000000000 ____D C:\Program Files\AVAST Software
2021-08-25 18:59 - 2013-08-22 15:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI
2021-08-25 18:49 - 2018-04-07 18:10 - 000000000 ____D C:\Users\famille\AppData\Local\AVAST Software
2021-08-25 17:04 - 2013-09-15 15:40 - 000000000 ____D C:\Users\famille\AppData\Local\Hewlett-Packard
2021-08-25 17:04 - 2012-10-20 15:31 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2021-08-25 17:04 - 2012-10-20 15:20 - 000000000 ____D C:\Program Files (x86)\CyberLink
2021-08-25 17:04 - 2012-10-20 15:07 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2021-08-25 17:03 - 2013-09-15 15:37 - 000000000 ____D C:\Users\famille\AppData\Roaming\Hewlett-Packard
2021-08-25 16:40 - 2013-09-28 18:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2021-08-25 16:22 - 2015-02-24 18:23 - 000000000 ____D C:\Users\famille\AppData\Roaming\FCBfan
2021-08-25 14:15 - 2020-07-14 16:23 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-08-25 14:15 - 2020-07-14 16:23 - 000002206 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-08-25 12:44 - 2018-09-20 17:19 - 000000000 ____D C:\Users\famille\AppData\Local\CrashDumps
2021-08-25 12:39 - 2018-08-23 13:39 - 000004168 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-08-25 12:34 - 2013-09-15 17:58 - 000003504 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-08-25 12:34 - 2013-09-15 17:58 - 000003376 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-08-25 12:32 - 2020-07-14 16:22 - 000003534 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-08-25 12:32 - 2020-07-14 16:21 - 000003406 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore

==================== Fichiers à la racine de certains dossiers ========

2013-11-16 19:23 - 2019-03-15 10:56 - 000008704 _____ () C:\Users\famille\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-09-08 09:31 - 2018-09-08 09:31 - 000000000 _____ () C:\Users\famille\AppData\Local\{AECC5376-54E2-46FD-A5D7-A7B339BBBCCB}
2021-04-03 10:56 - 2021-04-03 10:56 - 000000000 _____ () C:\Users\famille\AppData\Local\{CC143D37-14CA-4D45-B9AB-BCBC3CA53749}
2021-04-03 10:56 - 2021-04-03 10:56 - 000000000 _____ () C:\Users\famille\AppData\Local\{D1D71F22-62AA-4A47-8DB1-1FD012FB7289}

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


LastRegBack: 2021-08-26 11:30
==================== Fin de FRST.txt ========================