Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 26-05-2022
Exécuté par holiv (administrateur) sur LAPTOP-86CJ2G5I (ASUSTeK COMPUTER INC. X705UA) (26-05-2022 19:13:40)
Exécuté depuis C:\Users\holiv\Desktop
Profils chargés: holiv
Plate-forme: Microsoft Windows 10 Famille Version 21H2 19044.1706 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.Splendid_1.0.15.0_x64__qmba6cd70vzyy\ACMON.exe
(Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe ->) (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxEM.exe
(DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxEM.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\GfxDownloadWrapper.exe
(explorer.exe ->) (ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSBatteryHealthCharging_1.0.7.0_x86__qmba6cd70vzyy\ASUS Battery Health Charging\BhcMgr.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(services.exe ->) (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_c52b34f1b30918c5\RstMwService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_f75fa513cf0ccec1\esif_uf.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHeciSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(sihost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe
(svchost.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxext.exe
(svchost.exe ->) (McAfee LLC.) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2203.4603.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1704_none_7de951067ca990f6\TiWorker.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-05-22] (Brother Industries, Ltd.) [Fichier non signé]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.) [Fichier non signé]
HKU\S-1-5-21-3723304340-3720256485-3145797386-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2637200 2022-05-17] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\102.0.5005.61\Installer\chrmstp.exe [2022-05-25] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {13CEE55F-FFE1-4A8C-BBB5-69587095C6CE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {37226033-79B0-4401-B754-7F7CAA78BC8D} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [67472 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {3FA92FCB-0E7D-4CFA-B7EE-0864D14552F4} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23244744 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {6764EFB1-6B92-4D6D-9F30-B8CFE34A6305} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618080 2020-08-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {7527FF8B-0FA1-439A-B8E6-39C363B7C1C4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144792 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {7A337612-4956-4C18-8836-54E74332EA36} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [149712 2021-10-14] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {88501E85-8320-43D7-8058-760BE4A1E406} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23244744 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {8FAC6E3B-82C0-49CB-8238-DEA31DAABD65} - System32\Tasks\GoogleUpdateTaskMachineCore{A73929FF-D1F6-4E80-8D3B-02502305F6AF} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-17] (Google LLC -> Google LLC)
Task: {979BD136-6D5D-4CB3-B45F-4787B627F722} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4215696 2022-05-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9D0E2F2E-E6E2-4A01-90A6-40935FCFCA7A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144792 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {A601BCBE-CDA6-41D8-95A9-2AB8D8EAD330} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B3B497DC-5940-4F97-B6BD-550AA530D129} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5005001-BE78-4F5D-A9B7-B0AEF7756C55} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [609592 2018-07-10] (ASUSTek Computer Inc. -> )
Task: {B855C281-4F14-4ADE-B10A-676171D9C09F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304592 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {B99282DD-EF77-46B1-82BE-A7E35F0B80B7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304592 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {BE6799FE-1B1E-4E7D-B9B0-D4F9CD3D81AD} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618080 2020-08-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {C360FD17-B067-4692-93AA-3CD99D6DC879} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3723304340-3720256485-3145797386-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4215696 2022-05-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4694F59-664F-46E5-808B-BDB00E22CA40} - System32\Tasks\GoogleUpdateTaskMachineUA{14599BC4-EA07-4C8E-95D7-6CB6C1D902E8} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-02-17] (Google LLC -> Google LLC)
Task: {C7CF9AE2-4361-4D62-B185-776F12F185D1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [925848 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D86B3DF9-E92B-49D1-BDC6-02A624241E86} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {DC9C6FA6-DBFC-40FD-BD9F-05FDC1069056} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {EB8CE7EA-024B-4845-B9E3-718EAE92F29F} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4724096 2022-01-06] (McAfee, LLC -> McAfee, LLC)
Task: {F7F8E77D-4492-443A-BED7-CC8F56438870} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{13ea06d8-68b5-4b20-8f5b-ac04f0bfc671}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{54229d8f-9dcb-45b9-886c-68871e69bcce}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\holiv\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-25]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-03-05] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default [2022-05-26]
CHR Notifications: Default -> hxxps://www.wyylde.com
CHR Extension: (Free OpenVPN Server Finder) - C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmonbbaipgkkooachioonbkjbbddclpe [2022-02-17]
CHR Extension: (Google Docs hors connexion) - C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-05-11]
CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2022-03-15]
CHR Extension: (DotVPN — a Better way to VPN) - C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpiecbcckbofpmkkkdibbllpinceiihk [2022-05-11]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-17]
CHR Profile: C:\Users\holiv\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-05-26]
CHR Profile: C:\Users\holiv\AppData\Local\Google\Chrome\User Data\System Profile [2022-05-26]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Fichier non signé]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988424 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
S2 DevActSvc; C:\Program Files (x86)\ASUS\ASUS Device Activation\DevActSvc.exe [318584 2021-01-08] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.089.0426.0003\FileSyncHelper.exe [3406224 2022-05-17] (Microsoft Corporation -> Microsoft Corporation)
R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [299320 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.089.0426.0003\OneDriveUpdaterService.exe [3843472 2022-05-17] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-05-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-05-26] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 AdvancedSystemCareService13; "C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCService.exe" [X]

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R3 AsusPTPDrv; C:\Windows\System32\drivers\AsusPTPFilter.sys [113496 2021-01-14] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2020-11-21] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 cpuz152; C:\Windows\temp\cpuz152\cpuz152_x64.sys [35840 2022-05-11] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 HIDSwitch; C:\Windows\System32\drivers\AsRadioControl.sys [32696 2020-11-18] (ASUSTek Computer Inc. -> ASUS)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49600 2022-05-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [443664 2022-05-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90384 2022-05-26] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x64.sys [X]
S3 iobit_monitor_server; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\Monitor_win10_x64.sys [X]
S3 iobit_monitor_server2021; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\Monitor_win10_x64.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-05-26 18:59 - 2022-05-26 19:00 - 000000000 ____D C:\Tools Sécurité
2022-05-26 18:58 - 2022-05-26 18:58 - 008551608 _____ (Malwarebytes) C:\Users\holiv\Desktop\adwcleaner.exe
2022-05-26 18:56 - 2022-05-26 18:56 - 002811112 _____ (kernel-panik) C:\Users\holiv\Desktop\kprm_2.9.3.exe
2022-05-26 18:43 - 2022-05-26 18:45 - 000030284 _____ C:\Users\holiv\Desktop\Addition.txt
2022-05-26 18:41 - 2022-05-26 19:15 - 000019890 _____ C:\Users\holiv\Desktop\FRST.txt
2022-05-26 18:41 - 2022-05-26 19:14 - 000000000 ____D C:\FRST
2022-05-26 18:40 - 2022-05-26 18:40 - 002367488 _____ (Farbar) C:\Users\holiv\Desktop\FRST64.exe
2022-05-26 11:19 - 2022-05-26 11:19 - 000000000 ____D C:\Users\holiv\AppData\Local\CrashDumps
2022-05-25 13:24 - 2022-05-25 13:30 - 272674177 _____ C:\Users\holiv\Downloads\WEDDING OF LAETITIA .mp4
2022-05-24 17:37 - 2022-05-24 17:37 - 000547671 _____ C:\Users\holiv\Downloads\La voile qui nous porte, qui tient la voile _.pdf
2022-05-23 14:14 - 2022-05-23 14:15 - 000622895 _____ C:\Users\holiv\Downloads\document.pdf
2022-05-23 14:12 - 2022-05-23 14:12 - 003351626 _____ C:\Users\holiv\Downloads\Bulletins Niel Kayiranga 5eme et 4eme18042022.pdf
2022-05-19 20:00 - 2022-05-19 20:00 - 000492233 _____ C:\Users\holiv\Downloads\Passeport Savera HORNIMPUNDU SAMYN.pdf
2022-05-18 17:57 - 2022-05-18 17:57 - 000298492 _____ C:\Users\holiv\Downloads\Gmail.zip
2022-05-18 13:51 - 2022-05-18 13:51 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime
2022-05-17 15:46 - 2022-05-17 15:46 - 000285464 _____ C:\Users\holiv\Downloads\ASSURANCES_DEPOTS N° 004560000022128_20220517 (1).pdf
2022-05-17 15:44 - 2022-05-17 15:44 - 000285464 _____ C:\Users\holiv\Downloads\ASSURANCES_DEPOTS N° 004560000022128_20220517.pdf
2022-05-16 17:07 - 2022-05-19 11:59 - 000003482 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2022-05-16 17:07 - 2022-05-16 17:07 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2022-05-16 17:07 - 2022-05-16 17:07 - 000002063 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2022-05-16 17:07 - 2022-05-16 17:07 - 000000000 ____D C:\Users\holiv\AppData\LocalLow\Adobe
2022-05-16 17:07 - 2022-05-16 17:07 - 000000000 ____D C:\Users\holiv\AppData\Local\SolidDocuments
2022-05-16 17:06 - 2022-05-16 17:06 - 000000000 ____D C:\Program Files\Adobe
2022-05-16 17:05 - 2022-05-16 17:07 - 000000000 ____D C:\ProgramData\Adobe
2022-05-16 17:05 - 2022-05-16 17:06 - 000000000 ____D C:\Program Files\Common Files\Adobe
2022-05-16 17:04 - 2022-05-16 17:07 - 000000000 ____D C:\Users\holiv\AppData\Local\Adobe
2022-05-14 11:39 - 2022-05-14 11:39 - 002035668 _____ C:\Users\holiv\Downloads\Emailing the_amended_list_of_ict_equipement_to_be_exempted_from_value_added_tax_signed_on_14_aug_2019__1_.pdf
2022-05-14 11:16 - 2022-05-14 11:16 - 000130595 _____ C:\Users\holiv\Downloads\Courrier_CFE_40374379.pdf
2022-05-14 11:05 - 2022-05-14 11:05 - 000072730 _____ C:\Users\holiv\Downloads\attestationPaiement (6).pdf
2022-05-14 11:03 - 2022-05-14 11:04 - 000072689 _____ C:\Users\holiv\Downloads\attestationPaiement (5).pdf
2022-05-11 20:16 - 2022-05-11 20:16 - 000011799 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-05-11 20:15 - 2022-05-11 20:15 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-05-11 20:15 - 2022-05-11 20:15 - 000093696 _____ C:\Windows\system32\Drivers\cimfs.sys
2022-05-11 20:07 - 2022-05-11 20:07 - 000000000 ___HD C:\$WinREAgent
2022-05-11 15:47 - 2022-05-11 15:47 - 000189543 _____ C:\Users\holiv\Downloads\Courrier GMF (1).pdf
2022-05-10 16:13 - 2022-05-10 16:13 - 000094168 _____ C:\Users\holiv\Downloads\Relevé d'information.pdf
2022-05-10 16:10 - 2022-05-10 16:10 - 000189515 _____ C:\Users\holiv\Downloads\Courrier GMF.pdf
2022-05-10 15:44 - 2022-05-10 15:44 - 000052238 _____ C:\Users\holiv\Downloads\F5220669047003.pdf
2022-05-06 21:03 - 2022-05-06 21:03 - 000030087 _____ C:\Users\holiv\Downloads\main levée de paiement direct 02-05-22.pdf
2022-05-06 20:56 - 2022-05-06 20:56 - 000029696 _____ C:\Users\holiv\Downloads\INVOICE FOR TZ.XLS
2022-05-05 09:44 - 2022-05-05 09:44 - 000661431 _____ C:\Users\holiv\Downloads\Carte Grise Peugeot 3008 CA-946-LR verso.pdf
2022-05-04 12:32 - 2022-05-04 12:32 - 000228665 _____ C:\Users\holiv\Downloads\Fiche de livraison de carton_Clients-complet-03-03-2022.pdf
2022-05-02 19:16 - 2022-05-02 19:16 - 000372538 _____ C:\Users\holiv\Downloads\Avis de paiement direct CNAV au 1-4-22 (1).pdf
2022-05-02 19:12 - 2022-05-02 19:12 - 000372538 _____ C:\Users\holiv\Downloads\Avis de paiement direct CNAV au 1-4-22.pdf
2022-04-29 04:08 - 2022-04-29 04:08 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-04-28 15:00 - 2022-04-28 15:00 - 000041029 _____ C:\Users\holiv\Downloads\aeoi-portal-updates (2).xlsx
2022-04-28 13:18 - 2022-04-28 13:18 - 000072689 _____ C:\Users\holiv\Downloads\attestationPaiement (4).pdf
2022-04-26 19:24 - 2022-04-26 19:24 - 000176317 _____ C:\Users\holiv\Downloads\TABLEAU_DE_GARANTIES_2111.pdf
2022-04-26 19:24 - 2022-04-26 19:24 - 000037449 _____ C:\Users\holiv\Downloads\bulletin-adh-retraitexpat-solo-nonsigne-104942.pdf
2022-04-26 18:19 - 2022-04-26 18:19 - 000238719 _____ C:\Users\holiv\Downloads\recu_FI2021.pdf

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-05-26 19:13 - 2022-02-17 20:33 - 000000000 ____D C:\Program Files (x86)\Google
2022-05-26 19:12 - 2021-08-13 07:32 - 000000000 ___RD C:\Users\holiv\OneDrive
2022-05-26 19:12 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-05-26 19:11 - 2021-08-13 07:30 - 000000000 __SHD C:\Users\holiv\IntelGraphicsProfiles
2022-05-26 19:11 - 2021-08-13 06:34 - 000000000 ___HD C:\Intel
2022-05-26 19:11 - 2020-11-21 14:38 - 000008192 ___SH C:\DumpStack.log.tmp
2022-05-26 19:11 - 2020-11-21 14:38 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-05-26 19:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-05-26 19:11 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-05-26 19:02 - 2020-11-21 14:38 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-05-26 18:56 - 2021-08-13 06:36 - 001681370 _____ C:\Windows\system32\PerfStringBackup.INI
2022-05-26 18:56 - 2020-11-21 14:06 - 000757872 _____ C:\Windows\system32\perfh00C.dat
2022-05-26 18:56 - 2020-11-21 14:06 - 000142626 _____ C:\Windows\system32\perfc00C.dat
2022-05-26 18:56 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-05-26 18:51 - 2022-04-21 14:41 - 000000000 ____D C:\Program Files (x86)\IObit
2022-05-26 18:51 - 2022-03-08 12:17 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-05-26 18:51 - 2022-02-28 13:18 - 000000000 ____D C:\ProgramData\Avast Software
2022-05-26 18:28 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-05-26 18:27 - 2022-04-21 14:43 - 000000000 ____D C:\ProgramData\ProductData
2022-05-26 18:27 - 2020-11-21 14:43 - 000000000 ____D C:\Program Files\Microsoft Office
2022-05-26 11:18 - 2020-11-21 14:38 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-05-25 09:01 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-05-25 08:12 - 2022-02-17 20:34 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-05-25 08:12 - 2022-02-17 20:34 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-05-22 14:01 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-05-22 12:25 - 2020-11-21 14:40 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-05-19 11:59 - 2022-03-05 21:51 - 000002716 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-05-19 11:59 - 2022-02-17 20:33 - 000003594 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{14599BC4-EA07-4C8E-95D7-6CB6C1D902E8}
2022-05-19 11:59 - 2022-02-17 20:33 - 000003370 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{A73929FF-D1F6-4E80-8D3B-02502305F6AF}
2022-05-19 11:59 - 2021-08-13 07:33 - 000003070 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3723304340-3720256485-3145797386-1001
2022-05-19 11:59 - 2021-08-13 06:42 - 000002650 _____ C:\Windows\system32\Tasks\McAfee Remediation (Prepare)
2022-05-19 11:59 - 2021-08-13 06:37 - 000002924 _____ C:\Windows\system32\Tasks\ATK Package 36D18D69AFC3
2022-05-19 11:59 - 2021-08-13 06:37 - 000002214 _____ C:\Windows\system32\Tasks\ATK Package A22126881260
2022-05-19 11:59 - 2021-08-13 06:35 - 000002346 _____ C:\Windows\system32\Tasks\RtHDVBg_ListenToDevice
2022-05-19 11:59 - 2021-08-13 06:35 - 000002302 _____ C:\Windows\system32\Tasks\RTKCPL
2022-05-19 11:59 - 2020-11-21 14:40 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-05-19 11:59 - 2020-11-21 14:40 - 000003394 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-05-17 15:47 - 2022-02-18 17:58 - 000000000 ____D C:\Users\holiv\Documents\Banque LCL OC
2022-05-17 15:02 - 2022-03-05 21:51 - 000002172 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-05-16 17:07 - 2021-08-13 07:30 - 000000000 ____D C:\Users\holiv\AppData\Roaming\Adobe
2022-05-16 17:07 - 2021-08-13 07:30 - 000000000 ____D C:\Users\holiv\AppData\Local\Packages
2022-05-11 21:46 - 2020-11-21 14:38 - 000440072 _____ C:\Windows\system32\FNTCACHE.DAT
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-05-11 21:45 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-05-11 20:04 - 2022-02-17 22:00 - 000000000 ____D C:\Windows\system32\MRT
2022-05-11 20:01 - 2022-02-17 22:00 - 145501456 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-05-02 21:06 - 2022-02-18 17:57 - 000000000 ____D C:\Users\holiv\Documents\01-RWANDA
2022-04-29 04:08 - 2022-02-17 21:59 - 000001148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-04-26 18:04 - 2022-02-18 18:26 - 000000000 ____D C:\Users\holiv\Documents\Retraite

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================