Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-05-2023 01
Exécuté par HP (administrateur) sur DEEPWEB (Hewlett-Packard HP ProBook 4540s) (17-05-2023 20:37:38)
Exécuté depuis C:\Users\HP\Downloads\Programs\FRST64.exe
Profils chargés: HP
Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.2965 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files (x86)\Internet Download Manager\IDMan.exe ->) (Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFSrvWsc.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(explorer.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(explorer.exe ->) (Tonec Inc.) [Fichier non signé] C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (DigitalPersona, Inc. -> DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(services.exe ->) (Hewlett-Packard Company) [Fichier non signé] C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(services.exe ->) (IDT, Inc.) [Fichier non signé] C:\Program Files\IDT\WDM\stacsv64.exe
(services.exe ->) (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(services.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe
(services.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Data Recovery\IDRService.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [220056 2023-05-17] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2021-04-09] (IDT, Inc.) [Fichier non signé]
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6984632 2023-02-08] (IObit CO., LTD -> IObit)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8520168 2021-05-04] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) <==== ATTENTION
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [Opera Browser Assistant] => C:\Users\HP\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4042912 2021-04-27] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [uTorrent] => C:\Users\HP\AppData\Roaming\uTorrent\uTorrent.exe [2091560 2021-09-27] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [ut] => C:\Users\HP\AppData\Roaming\uTorrent\uTorrent.exe [2091560 2021-09-27] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [MicrosoftEdgeAutoLaunch_AC3B7AF181558E407F159DB8A5D4AA84] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4056016 2023-03-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5878784 2022-12-03] (Tonec Inc.) [Fichier non signé]
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Run: [Advanced SystemCare] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [5385280 2023-05-08] (IObit CO., LTD -> IObit)
HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\...\Print\Monitors\HP 642a Status Monitor: C:\WINDOWS\system32\hpinksts642aLM.dll [467256 2019-05-20] (HP Inc -> HP Inc.)
HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [355840 2012-08-08] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
HKLM\...\Print\Monitors\PDFC: C:\WINDOWS\system32\pdfc_port.dll [21008 2012-07-17] (PDF Complete -> PDF Complete, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\113.0.5672.93\Installer\chrmstp.exe [2023-05-12] (Google LLC -> Google LLC)
HKLM\Software\...\Winlogon\GPExtensions: [{8D90E7E9-6F48-4e24-85E0-596C8E6C4639}] -> c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCmsGPOClient.dll [2012-08-24] (DigitalPersona, Inc. -> DigitalPersona, Inc.)
HKLM\Software\...\Winlogon\GPExtensions: [{D75A25CD-0CCA-4C3C-A5E6-94039CC03B72}] -> c:\Windows\system32\DPLic.dll [2012-08-24] (DigitalPersona, Inc. -> DigitalPersona, Inc.)
Lsa: [Notification Packages] DPPassFilter scecli
GroupPolicy-Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Tâches planifiées (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {09E4AB9F-E2D5-4A66-911A-46349DE78D80} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [5444104 2023-05-08] (IObit CO., LTD -> IObit)
Task: {0B955FA2-3D70-4A28-8E46-0BA3FBD0A560} - System32\Tasks\Opera scheduled assistant Autoupdate 1620132851 => C:\Users\HP\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-05-26] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\HP\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {0DC0DAD2-F84F-429D-B085-411AE7CDE2D5} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {15F99AE1-5671-47F8-9EC4-DAD343D0E622} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-06-01] (Google Inc -> Google LLC)
Task: {1918182F-BC58-4FA6-8F0D-528B182C32DB} - System32\Tasks\IMF_SkipUAC_HP => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6984632 2023-02-08] (IObit CO., LTD -> IObit)
Task: {2583F063-768D-4A9F-AB96-02E731158A34} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {287EB61E-849D-44F1-BF41-56B2A8081F95} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {294C69F3-A87D-4665-817D-BF027A4F381A} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4884888 2023-05-17] (Avast Software s.r.o. -> AVAST Software)
Task: {2A5FEE90-299A-428B-AF16-41D9C00A8BB3} - System32\Tasks\iTop Data Recovery Update => C:\Program Files (x86)\iTop Data Recovery\AutoUpdate.exe [3132672 2022-11-19] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {2A6E2577-CA01-48E8-96D5-CFD329ECD8B6} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676256 2023-03-17] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {2E80CDB2-EA03-4A40-9DBD-27322E0E4A3E} - System32\Tasks\HPCeeScheduleForHP => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704 2010-09-14] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {4097EAC9-AB45-4375-8361-CCBC675BCBE1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [524192 2012-08-15] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {40DC410E-78F7-4523-9C7A-8D6B34210863} - System32\Tasks\iTopVPN_Scheduler_HP => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [6735424 2022-11-23] (Chengdu ShanHe Information Technology Co., Ltd. -> iTop Inc.)
Task: {4241A790-C7E7-4F0F-9072-B983C4CF6CC3} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3246848 2022-11-02] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {4395CEC6-C82E-479E-ADDF-BDC9367DF375} - System32\Tasks\Opera scheduled Autoupdate 1620132826 => C:\Users\HP\AppData\Local\Programs\Opera\launcher.exe [2199760 2021-05-26] (Opera Software AS -> Opera Software)
Task: {44753A7E-3FA2-4C7F-BE70-364F7A7335A9} - System32\Tasks\ASC_SkipUac_HP => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [10938376 2023-05-10] (IObit CO., LTD -> IObit)
Task: {496836F2-7E49-4A69-A5D7-FA191DDC6E9A} - System32\Tasks\iTop Screen Recorder UAC => C:\Program Files\iTop Screen Recorder\iScrInit.exe [1386240 2022-11-21] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {4A1DA780-9D20-4AF0-A415-DCADF022CC39} - System32\Tasks\iTop Screen Recorder Startup => C:\Program Files\iTop Screen Recorder\IScrRec.exe [15646464 2022-12-05] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {55BE5A71-8E8D-43C5-A719-AFDBDFEE55FE} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {5DE9FE4E-C67B-4B80-B2F7-8F85D2C51827} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\10.3.0\AutoUpdate.exe [2516968 2023-02-10] (IObit CO., LTD -> IObit)
Task: {661A82E3-963B-43A9-9558-CCD0D0169B43} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [524192 2012-08-15] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {6657BFCF-CFA0-4383-B469-43E158005B48} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-06-01] (Google Inc -> Google LLC)
Task: {676D5B72-F9FA-474B-A9BA-BE597A67952A} - System32\Tasks\iTop PDF Launch SkipUAC (HP) => C:\Program Files\iTop PDF\Launcher.exe [3060480 2022-11-17] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {70D7FC04-251C-44F3-A5BC-36BB4916641C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [590752 2012-08-08] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {7B857988-3067-4E13-8891-998F430972F7} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {7FC84836-A7B7-414C-955A-17EA147BE8D6} - System32\Tasks\iTop PDF ExpRt => C:\Program Files\iTop PDF\exprgt.exe [2275544 2022-07-21] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {8170D106-3F1C-4396-B165-0753337AF8FA} - System32\Tasks\iTop Data Recovery SkipUAC (HP) => C:\Program Files (x86)\iTop Data Recovery\iTopDataRecovery.exe [3609856 2022-12-09] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {8F0BCC00-06C3-40D1-B90B-B2855B71642E} - System32\Tasks\iTop Screen Recorder SkipUAC (HP) => C:\Program Files\iTop Screen Recorder\IScrRec.exe [15646464 2022-12-05] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {90AD4A70-744A-42C3-8977-79255F385A8D} - System32\Tasks\Driver Booster SkipUAC (HP) => C:\Program Files (x86)\IObit\Driver Booster\10.3.0\DriverBooster.exe [9018328 2023-02-28] (IObit CO., LTD -> IObit)
Task: {91E2958F-302F-4BA8-9C1E-D30521A30718} - System32\Tasks\Uninstaller_SkipUac_HP => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [6705688 2021-04-08] (IObit CO., LTD -> IObit)
Task: {93475D54-325C-486E-BD3E-A03C050AA966} - System32\Tasks\iTop PDF SkipUAC (HP) => C:\Program Files\iTop PDF\iTopPDF.exe [149315840 2022-11-23] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {9768ABD2-EB67-498E-A669-15A536AF817A} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {9EAA4C21-A727-417B-98B5-6852170660E9} - System32\Tasks\iTopVPN_Update_HP => C:\Program Files (x86)\iTop VPN\atud.exe [3172928 2022-10-24] (Chengdu ShanHe Information Technology Co., Ltd. -> iTop Inc.)
Task: {A47FAE96-AAE6-4A13-B131-B36A74E6EBA3} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\10.3.0\Scheduler.exe [157784 2023-02-10] (IObit CO., LTD -> IObit)
Task: {A8666DBA-60EE-45DE-8779-8CDFA6AE84F8} - System32\Tasks\iTop PDF Update => C:\Program Files\iTop PDF\AutoUpdate.exe [3222784 2022-11-15] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {B5A343F7-377F-4ACD-A8D2-B4D500535626} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {C415FE0E-DDCB-44E0-A459-B9164B72424B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {C8A51A21-C646-4B17-8A50-48F27AD4ADEB} - System32\Tasks\iTopVPN_SkipUAC_HP => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [6735424 2022-11-23] (Chengdu ShanHe Information Technology Co., Ltd. -> iTop Inc.)
Task: {D5959306-9616-4FF7-AFAC-A1EBB51B4090} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E5F1251F-C5AE-4893-B9EB-9551AC26820E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2135448 2023-04-26] (Avast Software s.r.o. -> Avast Software)
Task: {FDD39D7C-A2B5-489E-921B-AB9D6EC13C97} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-03-17] (Mozilla Corporation -> Mozilla Foundation)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\HPCeeScheduleForHP.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{576c9113-6c8e-4638-9b50-c301f5e4f653}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\HP\AppData\Local\Microsoft\Edge\User Data\Default [2023-05-17]
Edge Extension: (Edge relevant text changes) - C:\Users\HP\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-05-17]
Edge HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2022-12-03]
FireFox:
========
FF DefaultProfile: nuy5b4qk.default
FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\nuy5b4qk.default [2023-03-07]
FF user.js: detected! => C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\nuy5b4qk.default\user.js [2023-03-16]
FF Homepage: Mozilla\Firefox\Profiles\nuy5b4qk.default -> hxxps://poshukach.com?fr=ps&gp=496724&altserp=1
FF NewTab: Mozilla\Firefox\Profiles\nuy5b4qk.default -> hxxps://poshukach.com?fr=ps&gp=496724&altserp=1
FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\caqbhg3b.default-release-1651332363335 [2023-05-17]
FF user.js: detected! => C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\caqbhg3b.default-release-1651332363335\user.js [2023-03-16]
FF Extension: (SaveFrom.net Helper) - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\caqbhg3b.default-release-1651332363335\Extensions\helper@savefrom.net.xpi [2022-04-30]
FF Extension: (SaveFrom.net Helper) - C:\Program Files\Mozilla Firefox\distribution\extensions\helper@savefrom.net.xpi [2021-02-05]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: (Extension DigitalPersona) - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2013-07-23] [] [non signé]
FF HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\HP\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\HP\AppData\Roaming\IDM\idmmzcc5 [2023-04-26] [] [non signé]
FF HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] []
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\Microsoft Office\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.14 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: digitalpersona.com/ChromeDPAgent -> c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\components\npChromeDPAgent.dll [2012-08-25] (DigitalPersona, Inc. -> DigitalPersona, Inc.)
Chrome:
=======
CHR Profile: C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default [2023-05-17]
CHR Notifications: Default -> hxxps://erfsoft.ru; hxxps://holtoakie.com; hxxps://sulseerg.com; hxxps://www.youtube.com; hxxps://www27.lowrihouston.pro; hxxps://www43.davisonbarker.pro; hxxps://www46.lowrihouston.pro; hxxps://www72.lowrihouston.pro; hxxps://www80.davisonbarker.pro
CHR StartupUrls: Default -> "hxxp://google.com/"
CHR Extension: (Torrent Scanner) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2023-03-07]
CHR Extension: (Sombre Thème pour Google Chrome) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\annfbnbieaamhaimclajlajpijgkdblo [2023-03-07]
CHR Extension: (OrangeMonkey) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekmeppjgajofkpiofbebgcbohbmfldaf [2023-02-21]
CHR Extension: (Apps) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\iglfjaeojcakllgbfalclepdncgidelo [2023-04-26]
CHR Extension: (IDM Integration Module) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2023-04-30]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-01]
CHR HKU\S-1-5-21-2237275449-2487376758-1513769350-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-12-03]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [iglfjaeojcakllgbfalclepdncgidelo] - C:\Users\HP\AppData\Local\ServiceApp\apps-helper\apps.crx [2023-04-26]
CHR HKLM-x32\...\Chrome\Extension: [ncffjdbbodifgldkcbhmiiljfcnbgjab] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\ChromeExt\dpchrome.crx [2012-08-25]
Opera:
=======
OPR Profile: C:\Users\HP\AppData\Roaming\Opera Software\Opera Stable [2023-03-16]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\HP\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-05-04]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82640 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R2 AdvancedSystemCareService16; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1879616 2023-05-08] (IObit CO., LTD -> IObit)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8821656 2023-05-17] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [584600 2023-05-17] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [585112 2023-05-17] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-31] (Avast Software s.r.o. -> AVAST Software)
S3 CCBService; C:\Program Files\Chaos Group\Chaos Cosmos\cbservice.exe [41343600 2021-06-06] (ChaosGroup) [Fichier non signé]
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [488824 2012-08-24] (DigitalPersona, Inc. -> DigitalPersona, Inc.)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company -> Hewlett-Packard Company)
R2 fpCsEvtSvc; C:\WINDOWS\system32\fpCSEvtSvc.exe [22528 2021-04-09] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [85504 2012-08-15] (Hewlett-Packard Company) [Fichier non signé]
S3 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-08-29] (Hewlett-Packard Company -> Hewlett-Packard Company)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2619832 2023-02-06] (IObit CO., LTD -> IObit)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [158992 2020-10-19] (IObit Information Technology -> IObit)
R2 iTopDataRecoveryService3; C:\Program Files (x86)\iTop Data Recovery\IDRService.exe [1948928 2022-12-09] (ORANGE VIEW LIMITED -> iTop Inc.)
S3 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134624 2012-07-17] (PDF Complete -> PDF Complete Inc)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [336256 2023-05-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2021-04-09] (IDT, Inc.) [Fichier non signé]
S3 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [82944 2021-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S3 VRLService; C:\Program Files\Chaos Group\VRLService\OLS\vrol.exe [20151256 2021-06-06] (Chaos Software Ltd. -> )
S3 vrswrm-service; C:\Program Files\Chaos Group\V-Ray\Swarm 1.4\register-service.exe [90176 2021-06-06] (Chaos Software Ltd. -> ) [Fichier non signé]
S3 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-05-04] (LAVASOFT SOFTWARE CANADA INC -> ) <==== ATTENTION
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe [3216064 2023-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe [133544 2023-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [47904 2022-12-14] (IObit CO., LTD -> IObit)
R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [46552 2022-12-14] (IObit CO., LTD -> IObit)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [31360 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [235880 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391800 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297824 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [95904 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-12-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39592 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [270472 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [556104 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105232 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80408 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [942936 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [703280 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [212672 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319552 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 clwvd; C:\WINDOWS\System32\drivers\clwvd.sys [40944 2012-08-28] (CyberLink -> CyberLink Corporation)
S3 cpuz150; C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [44832 2023-05-14] (CPUID S.A.R.L.U. -> CPUID)
R3 cpuz154; C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [40976 2023-05-17] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
S3 DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company -> Hewlett-Packard Company)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 Imf8HpRegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpRegFilter.sys [41848 2022-10-24] (IObit Information Technology -> IObit)
R1 IMFCameraProtect; C:\WINDOWS\system32\drivers\IMFCameraProtect.sys [42360 2022-10-24] (IObit Information Technology -> IObit)
R3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\IMFDownProtect.sys [40920 2022-10-24] (IObit CO., LTD -> IObit)
R3 IMFEFSFileControl; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\IMFEFSFileControl.sys [40824 2022-10-24] (IObit Information Technology -> IObit)
R3 IMFForceDelete123; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\IMFForceDelete.sys [20008 2022-10-24] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
R3 ImfHpFileFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpFileFilter.sys [45432 2022-10-24] (IObit Information Technology -> IObit)
S3 ImfRealScanner; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfRealScanner.sys [53232 2022-10-24] (IObit CO., LTD -> IObit)
S3 ImfRegistryFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfRegistryFilter.sys [42360 2022-10-24] (IObit Information Technology -> IObit)
R3 iobit_monitor_server2021; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [33256 2022-12-14] (IObit CO., LTD -> IObit)
R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [43896 2020-07-31] (IObit Information Technology -> IObit)
R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37112 2020-07-31] (IObit Information Technology -> IObit)
R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [51128 2020-07-31] (IObit Information Technology -> IObit)
S3 SNP2UVC; C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] (Sonix Technology CO., LTD -> )
R3 SNP2UVCW10; C:\WINDOWS\system32\DRIVERS\snUVCg2.sys [2528352 2021-04-09] (Sonix Technology CO., LTD -> Sonix Tech. Co., Ltd.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2021-04-09] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49616 2023-05-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [498944 2023-05-06] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2021-04-09] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99608 2023-05-06] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP)
S3 cpuz145; \??\C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [X]
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2023-05-17 20:36 - 2023-05-17 20:39 - 000000000 ____D C:\FRST
2023-05-17 19:53 - 2023-05-17 19:53 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2023-05-17 19:52 - 2023-05-17 16:06 - 000313240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2023-05-17 19:25 - 2023-05-17 19:25 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-05-17 19:25 - 2023-05-17 19:25 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde
2023-05-17 17:14 - 2023-05-17 17:15 - 052383086 _____ C:\Users\HP\Downloads\Use_Passw0rd_2023.rar
2023-05-17 17:05 - 2023-05-17 17:05 - 000000000 ___HD C:\$WinREAgent
2023-05-17 17:04 - 2023-05-17 17:05 - 002441232 _____ (Wiper Software, UAB) C:\Users\HP\Downloads\WiperSoft-installer.exe
2023-05-17 16:36 - 2023-05-17 16:36 - 000577536 _____ C:\WINDOWS\system32\config\DEFAULT.iobit
2023-05-17 16:36 - 2023-05-17 16:36 - 000077824 _____ C:\WINDOWS\system32\config\SAM.iobit
2023-05-17 16:36 - 2023-05-17 16:36 - 000049152 _____ C:\WINDOWS\system32\config\SECURITY.iobit
2023-05-17 16:35 - 2023-05-17 16:36 - 096768000 _____ C:\WINDOWS\system32\config\SOFTWARE.iobit
2023-05-17 16:18 - 2023-05-17 16:18 - 000003274 _____ C:\WINDOWS\system32\Tasks\ASC_PerformanceMonitor
2023-05-17 16:17 - 2023-05-17 16:17 - 000003058 _____ C:\WINDOWS\system32\Tasks\ASC_SkipUac_HP
2023-05-17 16:17 - 2023-05-17 16:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2023-05-17 16:17 - 2023-05-17 16:17 - 000000000 ____D C:\ProgramData\{7D4F950D-61ED-482D-A05D-43620B49B610}
2023-05-15 03:22 - 2023-05-15 03:22 - 000002826 _____ C:\Users\HP\Downloads\fond-vagues-or_1284-43064.avif
2023-05-15 03:21 - 2023-05-15 03:21 - 000032351 _____ C:\Users\HP\Downloads\effet-texte-bronze_125540-1003.avif
2023-05-15 03:19 - 2023-05-15 03:20 - 001373060 _____ C:\Users\HP\Downloads\12686000_SL-013021-40210-01.eps
2023-05-15 03:19 - 2023-05-15 03:19 - 000352871 _____ C:\Users\HP\Downloads\4769606_2521611.ai
2023-05-15 03:17 - 2023-05-15 03:17 - 009762854 _____ C:\Users\HP\Downloads\1015001_6314.eps
2023-05-15 03:16 - 2023-05-15 03:16 - 000079483 _____ C:\Users\HP\Downloads\effet-texte-dore-creatif_23-2149049735.avif
2023-05-15 03:15 - 2023-05-15 03:15 - 001046580 _____ C:\Users\HP\Downloads\9105998_26151.eps
2023-05-12 18:18 - 2023-05-12 18:18 - 000026952 _____ (Wiper Software) C:\WINDOWS\system32\wiperrm.exe
2023-05-12 18:13 - 2023-05-14 23:40 - 000000000 ____D C:\Users\HP\AppData\Roaming\WiperSoft
2023-05-12 18:11 - 2023-05-14 23:40 - 000000000 ____D C:\Program Files\WiperSoft
2023-05-12 13:54 - 2023-05-16 18:16 - 000000000 ____D C:\Users\HP\Downloads\icones
2023-05-10 02:49 - 2023-05-12 14:38 - 000000000 ____D C:\Users\HP\Downloads\Compressed
2023-05-06 23:24 - 2023-05-17 20:31 - 000003428 _____ C:\WINDOWS\SysWOW64\pubfreeware.ini
2023-05-06 17:40 - 2023-05-17 19:37 - 000000336 _____ C:\WINDOWS\Tasks\HPCeeScheduleForHP.job
2023-05-06 17:40 - 2023-05-17 02:11 - 000002768 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForHP
2023-05-06 17:40 - 2023-05-06 17:40 - 000000000 ____H C:\Users\HP\BIT51AE.tmp
2023-04-26 02:40 - 2023-04-26 02:40 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2023-04-26 02:40 - 2023-04-26 02:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2023-04-26 01:32 - 2023-04-26 01:32 - 001185640 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2023-04-26 01:24 - 2023-04-26 01:24 - 000000000 ____D C:\Users\HP\AppData\Local\ServiceApp
==================== Un mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2023-05-17 20:45 - 2021-06-01 09:25 - 000000000 ____D C:\Program Files (x86)\Google
2023-05-17 20:33 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-05-17 20:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-05-17 20:32 - 2021-05-04 18:37 - 000000000 ____D C:\Users\HP\AppData\Local\CrashDumps
2023-05-17 20:30 - 2020-11-18 23:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-05-17 20:30 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-05-17 20:25 - 2021-05-31 21:24 - 000000000 ____D C:\Users\HP\AppData\Local\Avast Software
2023-05-17 20:00 - 2021-06-01 09:32 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-05-17 19:58 - 2020-11-19 00:47 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-05-17 19:55 - 2021-05-04 13:58 - 000000000 ____D C:\ProgramData\Avast Software
2023-05-17 19:54 - 2021-05-04 14:26 - 000002096 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Antivirus Gratuit.lnk
2023-05-17 19:52 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-05-17 19:48 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-05-17 19:47 - 2021-04-09 03:42 - 000000000 ____D C:\Users\HP\AppData\Roaming\IObit
2023-05-17 19:46 - 2021-04-02 13:44 - 000000000 __SHD C:\Users\HP\IntelGraphicsProfiles
2023-05-17 19:44 - 2021-04-02 17:21 - 001926206 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-05-17 19:44 - 2019-12-07 15:50 - 000833160 _____ C:\WINDOWS\system32\perfh00C.dat
2023-05-17 19:44 - 2019-12-07 15:50 - 000167890 _____ C:\WINDOWS\system32\perfc00C.dat
2023-05-17 19:43 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2023-05-17 19:38 - 2020-11-18 23:44 - 000461688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-05-17 19:37 - 2021-04-23 21:16 - 000008192 ___SH C:\DumpStack.log.tmp
2023-05-17 19:37 - 2021-04-09 04:16 - 000000000 ____D C:\ProgramData\Synaptics
2023-05-17 19:37 - 2021-04-09 03:44 - 000000000 ____D C:\Program Files (x86)\IObit
2023-05-17 19:37 - 2020-11-19 00:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-05-17 19:36 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-05-17 19:27 - 2019-12-07 15:50 - 000000000 ____D C:\WINDOWS\SysWOW64\fr
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2023-05-17 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-05-17 19:26 - 2019-12-07 15:53 - 000000000 ___SD C:\WINDOWS\system32\AppV
2023-05-17 19:26 - 2019-12-07 15:50 - 000000000 ____D C:\WINDOWS\system32\fr
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-05-17 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2023-05-17 19:25 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-05-17 19:25 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemApps
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-05-17 19:25 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-05-17 19:25 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2023-05-17 19:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-05-17 18:22 - 2020-11-19 00:46 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-05-17 17:33 - 2021-10-22 11:59 - 000000000 ____D C:\Users\HP\AppData\Roaming\IDM
2023-05-17 16:58 - 2021-04-02 20:05 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2023-05-17 16:49 - 2021-05-18 05:36 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-05-17 16:25 - 2021-05-18 05:35 - 159583304 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-05-17 16:18 - 2021-04-09 03:45 - 000000000 ____D C:\ProgramData\ProductData
2023-05-17 16:11 - 2021-04-09 03:42 - 000000000 ____D C:\ProgramData\IObit
2023-05-17 15:58 - 2021-04-30 19:49 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-05-17 03:31 - 2021-10-22 11:59 - 000000000 ____D C:\Users\HP\AppData\Roaming\DMCache
2023-05-17 03:30 - 2021-04-22 19:39 - 000000000 ____D C:\Users\HP\AppData\Roaming\vlc
2023-05-17 02:11 - 2023-03-23 00:39 - 000002740 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (HP)
2023-05-17 02:11 - 2023-03-23 00:39 - 000002568 _____ C:\WINDOWS\system32\Tasks\Driver Booster Scheduler
2023-05-17 02:11 - 2023-03-23 00:39 - 000002554 _____ C:\WINDOWS\system32\Tasks\Driver Booster Update
2023-05-17 02:11 - 2022-12-23 02:06 - 000002634 _____ C:\WINDOWS\system32\Tasks\iTop PDF Update
2023-05-17 02:11 - 2022-12-23 02:06 - 000002626 _____ C:\WINDOWS\system32\Tasks\iTop PDF ExpRt
2023-05-17 02:11 - 2022-12-23 02:06 - 000002474 _____ C:\WINDOWS\system32\Tasks\iTop PDF Launch SkipUAC (HP)
2023-05-17 02:11 - 2022-12-23 02:06 - 000002458 _____ C:\WINDOWS\system32\Tasks\iTop PDF SkipUAC (HP)
2023-05-17 02:11 - 2021-06-01 09:25 - 000003526 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-05-17 02:11 - 2021-06-01 09:25 - 000003302 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-05-17 02:11 - 2021-05-04 14:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2023-05-17 02:11 - 2021-04-23 21:42 - 000002390 _____ C:\WINDOWS\system32\Tasks\Uninstaller_SkipUac_HP
2023-05-17 02:11 - 2020-11-19 00:46 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-05-17 02:11 - 2020-11-19 00:46 - 000003394 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-05-15 04:26 - 2021-04-23 21:28 - 000000000 ____D C:\Users\HP
2023-05-13 20:37 - 2021-04-09 04:51 - 000000000 ____D C:\Users\HP\AppData\LocalLow\Mozilla
2023-05-13 20:29 - 2023-03-06 14:40 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-05-12 23:27 - 2023-04-16 14:22 - 000000000 ____D C:\Users\HP\Downloads\Video
2023-05-12 15:45 - 2021-04-24 02:43 - 000000000 ____D C:\Users\HP\AppData\Local\PlaceholderTileLogoFolder
2023-05-12 15:42 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2023-05-12 14:25 - 2021-04-01 20:05 - 000000000 ____D C:\Users\HP\AppData\Local\Packages
2023-05-12 14:19 - 2020-11-19 00:48 - 000000000 ____D C:\ProgramData\Packages
2023-05-09 21:53 - 2021-04-12 15:22 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\Excel
2023-05-07 18:42 - 2021-04-25 21:32 - 000000000 ____D C:\Users\HP\Desktop\songs
2023-05-06 23:03 - 2020-11-19 00:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-04-27 01:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-04-26 02:54 - 2021-10-22 11:58 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager
==================== Fichiers à la racine de certains dossiers ========
2021-06-06 12:19 - 2021-06-06 12:19 - 000000045 _____ () C:\Program Files\KeyShot 9.url
2019-11-04 11:50 - 2019-11-04 11:50 - 000491640 _____ (Luxion) C:\Program Files\uninstall.exe
2023-04-07 23:00 - 2023-04-07 23:00 - 000000000 _____ () C:\Users\HP\AppData\Local\{0A4D2498-16CA-4B9C-B579-01990A00C251}
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== Fin de FRST.txt ========================