Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Exécuté par Francoise (administrateur) sur LAPTOP-005PNI0L (HP HP Laptop 17-ca1xxx) (06-09-2022 18:56:36)
Exécuté depuis C:\Users\Francoise\Desktop
Profils chargés: Francoise
Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.1889 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\BridgeCommunication.exe
(DriverStore\FileRepository\u0371593.inf_amd64_b73e088b9313971a\B371498\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0371593.inf_amd64_b73e088b9313971a\B371498\atieclxx.exe
(ETDCtrl.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDTouch.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrlHelper.exe
(explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0371593.inf_amd64_b73e088b9313971a\B371498\atiesrxx.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_29c6c876bdaf5af9\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\SysInfoCap.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Panda Security S.L. -> Panda Security S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(services.exe ->) (WildTangent, Inc. -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe
(svchost.exe ->) (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1082144 2020-04-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [168456 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31072 2008-10-25] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3781016564-2944584169-260864522-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [536152 2022-08-24] (HP Inc. -> HP Inc.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series XPS: C:\WINDOWS\system32\CNMXLMCT.DLL [409088 2015-03-12] (CANON INC.) [Fichier non signé]
HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [375296 2015-03-17] (CANON INC.) [Fichier non signé]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {34ADEFE8-89DB-43BC-8C0B-14BB34D69F6D} - pas de chemin du fichier
Task: {36A78C3E-A142-4F86-903E-AE26291F646C} - \Microsoft\Windows\Autochk\Proxy -> Pas de fichier <==== ATTENTION
Task: {4B0CEE5F-A5CE-44C1-8E46-88BFB2299CA5} - System32\Tasks\CCleanerSkipUAC - Francoise => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5100A477-348F-48CA-A0F9-BA0C7018AC24} - pas de chemin du fichier
Task: {5FBCC0F6-9657-497F-AB13-DB02D7A722AF} - pas de chemin du fichier
Task: {719C1B55-2D75-45E8-B346-C9109BECB5CF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149512 2022-08-17] (HP Inc. -> HP Inc.)
Task: {87094343-6C1F-4855-A6B9-305BA74AB761} - pas de chemin du fichier
Task: {87FAC093-C889-4ED1-B5BA-2E472D36E7B2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)
Task: {8D7C2394-6315-4D7D-98E3-FBD7807C6B70} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {90D88F3F-150D-4A0E-87A3-86AD10A2D8E9} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.)
Task: {916DBEB2-7449-4AB4-811D-0A4CDA770EED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [847392 2022-08-17] (HP Inc. -> HP Inc.)
Task: {952FA0B8-22C1-40F7-AB95-C5097F26B4EA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
Task: {AB7C0BD9-C2F5-4C0D-9ECB-9E014F3817D0} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {C51CC6C4-0A86-4E6A-899B-8E2E8D66D7CE} - pas de chemin du fichier
Task: {E5FD47FA-0C02-4AC5-8F65-0CD29FC2BB4E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {E90CB846-A192-45C5-9AE1-06787D40D459} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2022-08-17] (HP Inc. -> HP Inc.)
Task: {F8329090-54A7-46B8-B862-A6BD962F6D1A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1149512 2022-08-17] (HP Inc. -> HP Inc.)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{7876f93e-a463-4732-b4f1-50beb181aeb7}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{d962a00e-62c3-4546-bbce-04e1aae6d5ce}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF DefaultProfile: objq84iy.default
FF ProfilePath: C:\Users\Francoise\AppData\Roaming\Mozilla\Firefox\Profiles\objq84iy.default [2022-08-25]
FF ProfilePath: C:\Users\Francoise\AppData\Roaming\Mozilla\Firefox\Profiles\hpgkqlto.default-release-1662392490173 [2022-09-06]
FF DownloadDir: C:\Users\Francoise\Desktop
FF Extension: (uBlock Origin) - C:\Users\Francoise\AppData\Roaming\Mozilla\Firefox\Profiles\hpgkqlto.default-release-1662392490173\Extensions\uBlock0@raymondhill.net.xpi [2022-09-06]
FF Extension: (Noctourniquet (orange)) - C:\Users\Francoise\AppData\Roaming\Mozilla\Firefox\Profiles\hpgkqlto.default-release-1662392490173\Extensions\{76493516-f52d-4706-9c34-c5194048f65d}.xpi [2022-09-05]
FF Plugin-x32: @videolan.org/vlc,version=3.0.14 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-06-05] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\AppHelperCap.exe [771072 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\DiagsCap.exe [769536 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\NetworkCap.exe [766464 2022-07-31] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_ca8cb2046afa6b22\x64\SysInfoCap.exe [770048 2022-07-31] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_29c6c876bdaf5af9\x64\TouchpointAnalyticsClientService.exe [489696 2022-05-26] (HP Inc. -> HP Inc.)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8726344 2022-08-25] (Malwarebytes Inc. -> Malwarebytes)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [96632 2021-05-26] (Panda Security S.L. -> Panda Security, S.L.)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> )
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.)
R2 pselamsvc; C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe [189288 2020-07-09] (Panda Security S.L. -> Panda Security S.L.)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [59440 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1689984 2022-03-29] (WildTangent, Inc. -> )
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project)
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [127936 2019-05-13] (Alcorlink Corp. -> )
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [25592 2021-09-16] (HP Inc. -> HP Inc.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-08-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 NNSDNS; C:\WINDOWS\system32\DRIVERS\NNSDNS.sys [141088 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [212768 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [125728 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [132384 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [111296 2020-11-23] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [152864 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [102688 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135456 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [347424 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [353376 2021-05-25] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123168 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [327968 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [195872 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
S0 psinelam; C:\WINDOWS\System32\DRIVERS\psinelam.sys [23480 2021-07-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [171072 2021-06-10] (WatchGuard Technologies, Inc. -> Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [216864 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [148768 2020-12-27] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [160544 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [130336 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.)
R3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72984 2019-02-20] (Panda Security S.L. -> Panda Security, S.L.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [37280 2021-11-23] (HP Inc. -> HP)
U3 aspnet_state; pas de ImagePath

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-09-06 18:56 - 2022-09-06 18:57 - 000018510 _____ C:\Users\Francoise\Desktop\FRST.txt
2022-09-06 18:56 - 2022-09-06 18:56 - 000000000 ____D C:\FRST
2022-09-06 18:55 - 2022-09-06 18:55 - 002371072 _____ (Farbar) C:\Users\Francoise\Desktop\FRST64.exe
2022-09-06 18:45 - 2022-09-06 18:45 - 001328196 _____ C:\WINDOWS\Minidump\090622-30890-01.dmp
2022-09-06 10:23 - 2022-09-06 18:44 - 816225728 ____N C:\WINDOWS\MEMORY.DMP
2022-09-06 10:23 - 2022-09-06 10:23 - 001554004 _____ C:\WINDOWS\Minidump\090622-40140-01.dmp
2022-09-05 17:47 - 2022-09-05 17:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-09-05 17:47 - 2022-09-05 17:47 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-09-05 17:47 - 2022-09-05 17:47 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-09-05 17:47 - 2022-09-05 17:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-05 16:48 - 2022-09-05 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2022-09-05 16:48 - 2022-09-05 16:49 - 000000000 ____D C:\Program Files (x86)\Microsoft Works
2022-09-05 16:48 - 2022-09-05 16:48 - 000000000 ____D C:\WINDOWS\PCHEALTH
2022-09-05 16:48 - 2022-09-05 16:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2022-09-05 16:46 - 2022-09-05 16:48 - 000000000 ____D C:\WINDOWS\SHELLNEW
2022-09-05 16:46 - 2022-09-05 16:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-09-05 16:46 - 2022-09-05 16:46 - 000000000 __RHD C:\MSOCache
2022-09-05 16:46 - 2022-09-05 16:46 - 000000000 ____D C:\Users\Francoise\AppData\Local\Microsoft Help
2022-09-04 20:05 - 2022-09-04 20:06 - 000000000 ____D C:\Users\Francoise\Desktop\Creaks_v1.0.9-Razor1911
2022-09-04 11:07 - 2022-09-04 11:07 - 000000112 ___SH C:\bootTel.dat
2022-09-01 16:04 - 2022-09-01 16:04 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2022-09-01 16:03 - 2022-09-05 22:23 - 000000000 ____D C:\Users\Francoise\AppData\Local\JDownloader 2.0
2022-09-01 15:37 - 2022-09-01 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2022-09-01 15:37 - 2022-09-01 15:37 - 000000000 ____D C:\Program Files\7-Zip
2022-09-01 15:33 - 2022-09-01 15:34 - 000000000 ____D C:\Users\Francoise\Desktop\5e à ranger
2022-09-01 15:18 - 2022-09-05 17:56 - 000000000 ____D C:\ProgramData\Package Cache
2022-09-01 15:18 - 2022-09-01 15:52 - 000000000 ____D C:\PhotoFiltre11
2022-09-01 15:18 - 2022-09-01 15:18 - 000000722 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 11.lnk
2022-09-01 15:17 - 2022-09-01 16:07 - 000000000 ____D C:\Users\Francoise\AppData\Local\SumatraPDF
2022-09-01 15:17 - 2022-09-01 15:17 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk
2022-09-01 15:17 - 2022-09-01 15:17 - 000002098 _____ C:\Users\Francoise\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk
2022-09-01 14:42 - 2022-09-01 14:47 - 000000000 ____D C:\Users\Francoise\Desktop\Armoire
2022-08-25 18:16 - 2022-09-06 18:39 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\vlc
2022-08-25 18:14 - 2022-08-25 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-08-25 18:13 - 2022-08-25 18:13 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2022-08-25 18:02 - 2022-08-25 18:02 - 000000000 ____D C:\ProgramData\Piriform
2022-08-25 17:59 - 2022-08-25 17:59 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\Panda Security
2022-08-25 17:59 - 2021-07-23 05:54 - 000023480 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\psinelam.sys
2022-08-25 17:59 - 2021-06-10 00:27 - 000171072 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINFile.sys
2022-08-25 17:59 - 2021-05-25 05:01 - 000353376 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsprv.sys
2022-08-25 17:59 - 2020-12-27 12:35 - 000148768 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProc.sys
2022-08-25 17:59 - 2020-12-02 12:21 - 000216864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys
2022-08-25 17:59 - 2020-12-02 12:21 - 000195872 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys
2022-08-25 17:59 - 2020-12-02 12:21 - 000160544 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys
2022-08-25 17:59 - 2020-12-02 12:21 - 000130336 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000347424 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsprot.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000327968 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsstrm.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000212768 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttp.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000152864 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspicc.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000141088 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsdns.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000135456 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspop3.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000132384 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsids.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000125728 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttps.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000123168 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnssmtp.sys
2022-08-25 17:59 - 2020-12-02 12:20 - 000102688 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys
2022-08-25 17:59 - 2019-02-20 07:31 - 000072984 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys
2022-08-25 17:58 - 2022-08-25 18:00 - 000002265 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome.lnk
2022-08-25 17:58 - 2022-08-25 17:59 - 000000000 ____D C:\Program Files (x86)\Panda Security
2022-08-25 17:58 - 2022-08-25 17:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome
2022-08-25 17:52 - 2022-08-25 17:59 - 000000000 ____D C:\ProgramData\Panda Security
2022-08-25 17:52 - 2022-08-25 17:52 - 000000000 ____D C:\Users\Francoise\AppData\Local\OneDrive
2022-08-25 17:48 - 2022-08-25 17:48 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2022-08-25 17:45 - 2022-08-25 17:45 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\WildTangent
2022-08-25 17:45 - 2022-08-25 17:45 - 000000000 ____D C:\ProgramData\WildTangent
2022-08-25 17:39 - 2022-08-25 17:39 - 000000000 ____D C:\Users\Francoise\AppData\Local\mbam
2022-08-25 17:38 - 2022-08-25 17:38 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-08-25 17:38 - 2022-08-25 17:38 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2022-08-25 17:38 - 2022-08-25 17:38 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2022-08-25 17:38 - 2022-08-25 17:38 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2022-08-25 17:38 - 2022-08-25 17:38 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-08-25 17:37 - 2022-08-25 17:37 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-08-25 17:37 - 2022-08-25 17:37 - 000000000 ____D C:\Program Files\Malwarebytes
2022-08-25 17:36 - 2022-09-06 18:46 - 000000000 ____D C:\Program Files\CCleaner
2022-08-25 17:36 - 2022-09-06 09:02 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-08-25 17:36 - 2022-08-25 17:36 - 000002920 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Francoise
2022-08-25 17:36 - 2022-08-25 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2022-08-25 17:19 - 2022-09-06 18:47 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-08-25 17:19 - 2022-09-06 18:46 - 000000000 ____D C:\Users\Francoise\AppData\LocalLow\Mozilla
2022-08-25 17:19 - 2022-08-25 17:19 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\Mozilla
2022-08-25 17:19 - 2022-08-25 17:19 - 000000000 ____D C:\Users\Francoise\AppData\Local\Mozilla
2022-08-25 14:58 - 2022-08-25 14:58 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-08-25 14:58 - 2022-08-25 14:58 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-08-25 14:58 - 2022-08-25 14:58 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-08-25 14:58 - 2022-08-25 14:58 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-08-25 14:57 - 2022-08-25 14:57 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-08-25 14:57 - 2022-08-25 14:57 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-08-25 14:57 - 2022-08-25 14:57 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-08-25 14:57 - 2022-08-25 14:57 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-08-25 14:47 - 2022-08-25 14:47 - 000000000 ___HD C:\$WinREAgent

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-09-06 18:51 - 2021-04-14 19:20 - 001705930 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-06 18:51 - 2019-12-07 16:49 - 000756416 _____ C:\WINDOWS\system32\perfh00C.dat
2022-09-06 18:51 - 2019-12-07 16:49 - 000142186 _____ C:\WINDOWS\system32\perfc00C.dat
2022-09-06 18:51 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-06 18:45 - 2022-07-14 21:34 - 000000000 ____D C:\WINDOWS\Minidump
2022-09-06 18:44 - 2021-04-14 19:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-06 18:44 - 2021-04-14 19:11 - 000000000 ____D C:\Users\Francoise
2022-09-06 18:44 - 2021-04-14 19:10 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-06 18:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-09-06 18:44 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-06 18:44 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-06 18:39 - 2020-11-21 19:26 - 000000000 ____D C:\Users\Francoise\AppData\Local\D3DSCache
2022-09-06 18:37 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-09-06 18:32 - 2021-02-02 22:57 - 000000000 ____D C:\Users\Francoise\AppData\Local\CrashDumps
2022-09-06 18:30 - 2022-05-04 15:52 - 000000000 ____D C:\Users\Francoise\Desktop\Cours Nicolas
2022-09-05 17:28 - 2021-04-14 19:10 - 000559536 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-09-05 16:55 - 2019-12-15 11:00 - 000000000 ____D C:\Program Files\Microsoft Office
2022-09-05 16:55 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-09-05 16:54 - 2020-11-21 19:25 - 000000000 ____D C:\Users\Francoise\AppData\Local\Packages
2022-09-01 16:18 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-01 15:35 - 2022-05-07 20:28 - 000000000 ____D C:\Users\Francoise\Desktop\Photos
2022-09-01 15:34 - 2022-06-07 11:18 - 000000000 ____D C:\Users\Francoise\Desktop\Fimz
2022-09-01 14:58 - 2021-04-14 19:10 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-01 14:48 - 2021-04-14 19:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-09-01 14:35 - 2022-06-07 11:21 - 000000000 ____D C:\Users\Francoise\Desktop\Photos pour dessins
2022-09-01 14:35 - 2022-05-08 21:43 - 000000000 ____D C:\Users\Francoise\Desktop\Belles Photos
2022-09-01 14:35 - 2022-05-04 15:57 - 000000000 ____D C:\Users\Francoise\Desktop\Suiseki
2022-08-27 22:29 - 2020-11-22 11:35 - 000000000 ____D C:\Users\Francoise\AppData\Local\PlaceholderTileLogoFolder
2022-08-25 18:08 - 2020-11-22 11:42 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-08-25 18:03 - 2021-04-04 12:37 - 000000000 ___DC C:\WINDOWS\Panther
2022-08-25 17:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2022-08-25 17:55 - 2020-06-27 11:48 - 000000000 ____D C:\Program Files (x86)\ExpressVPN
2022-08-25 17:51 - 2020-11-22 11:32 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2022-08-25 17:49 - 2021-01-23 23:24 - 000000000 ____D C:\ProgramData\Avast Software
2022-08-25 17:45 - 2020-06-27 11:50 - 000000000 ____D C:\ProgramData\McAfee
2022-08-25 17:45 - 2020-06-27 11:50 - 000000000 ____D C:\Program Files\McAfee
2022-08-25 17:44 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-25 17:44 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-08-25 17:40 - 2020-06-27 11:49 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games
2022-08-25 17:40 - 2020-06-27 11:49 - 000000000 ____D C:\Program Files (x86)\WildTangent Games
2022-08-25 17:39 - 2021-02-18 21:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gestan
2022-08-25 17:39 - 2021-01-27 21:46 - 000000000 ____D C:\Users\Francoise\AppData\Local\GeoGebra_6
2022-08-25 17:39 - 2020-11-22 02:49 - 000000000 ____D C:\Program Files\HP
2022-08-25 17:38 - 2021-04-05 21:19 - 000000000 ____D C:\Program Files (x86)\Canon
2022-08-25 17:28 - 2021-01-23 23:34 - 000000000 ____D C:\Users\Francoise\AppData\Local\Google
2022-08-25 17:28 - 2021-01-23 23:32 - 000000000 ____D C:\Program Files (x86)\Google
2022-08-25 17:26 - 2021-04-05 21:58 - 000000000 ___HD C:\ProgramData\CanonIJScan
2022-08-25 17:26 - 2021-04-05 21:57 - 000000000 ____D C:\Users\Francoise\AppData\Roaming\Canon
2022-08-25 17:21 - 2021-04-14 19:38 - 000000000 ____D C:\WINDOWS\HoloShell
2022-08-25 17:21 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-08-25 17:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-08-25 15:01 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-08-25 14:57 - 2021-04-14 19:11 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-08-25 13:09 - 2020-11-22 11:37 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-08-25 13:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-08-25 13:07 - 2020-11-22 11:36 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-08-24 23:56 - 2021-04-14 19:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================