Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2021 01
Exécuté par Bernard (administrateur) sur BERNARD-PC (ASUS All Series) (08-06-2021 14:42:09)
Exécuté depuis C:\Users\Bernard\Downloads
Profils chargés: Bernard
Platform: Windows 10 Home Version 21H1 19043.1023 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

() [Fichier non signé] C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe
() [Fichier non signé] C:\Program Files\ASUS Xonar DGX Audio\Customapp\MXmon.exe
() [Fichier non signé] C:\Windows\System\HsMgr64.exe
() [Fichier non signé] C:\Windows\SysWOW64\HsMgr.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Brother Industries, ltd. -> brother Industries Ltd) C:\Windows\SysWOW64\brss01a.exe
(Brother Industries, ltd. -> brother Industries Ltd) C:\Windows\SysWOW64\brsvc01a.exe
(CMedia) [Fichier non signé] C:\Program Files\ASUS Xonar DGX Audio\Customapp\AsusAudioCenter.exe
(Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3>
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\123.4.4832\QtWebEngineProcess.exe <3>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.20122.11121.0_x64__8wekyb3d8bbwe\Music.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> ) C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [Cmaudio8788] => C:\WINDOWS\Syswow64\cmicnfgp.dll [8769536 2011-05-12] (C-Media Corporation) [Fichier non signé]
HKLM\...\Run: [Cmaudio8788GX] => C:\WINDOWS\syswow64\HsMgr.exe [200704 2008-07-11] () [Fichier non signé]
HKLM\...\Run: [Cmaudio8788GX64] => C:\WINDOWS\system\HsMgr64.exe [282112 2008-07-11] () [Fichier non signé]
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322120 2017-04-19] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [8172320 2021-05-22] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1917571891-3703816493-1998226089-1000\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2108800 2021-06-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1917571891-3703816493-1998226089-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [50041472 2021-03-12] (Google LLC -> )
HKU\S-1-5-21-1917571891-3703816493-1998226089-1000\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1610728 2018-07-04] (Digital Wave Ltd -> Digital Wave Ltd)
HKU\S-1-5-21-1917571891-3703816493-1998226089-1000\...\Run: [Google Update] => C:\Users\Bernard\AppData\Local\Google\Update\1.3.36.82\GoogleUpdateCore.exe [217432 2021-04-21] (Google LLC -> Google LLC)
HKU\S-1-5-21-1917571891-3703816493-1998226089-1000\...\MountPoints2: {57319979-fd59-11ea-8b94-40167ea90e3d} - "G:\startme.exe"
HKLM\...\Windows x64\Print Processors\BRMFC PRINT: C:\Windows\System32\spool\prtprocs\x64\brmfpp4.dll [41984 2009-05-19] (Brother Industries, ltd. -> Brother Industries ,Ltd)
HKLM\...\Windows x64\Print Processors\TeamViewer_PrintProcessor: C:\Windows\System32\spool\prtprocs\x64\TeamViewer_PrintProcessor.dll [20208 2017-04-25] (TeamViewer GmbH -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.77\Installer\chrmstp.exe [2021-06-06] (Google LLC -> Google LLC)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {03D2F9A8-69BC-4C96-B4B4-5C6536FBAD2A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {06B49FB8-8E48-444E-824E-5FD72BFB823B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {191D58B6-8516-4566-83AE-5D3E0CFB6FF0} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [817472 2017-11-08] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {2185DBC1-B954-44F4-B137-391E0CA6F7AA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [690616 2021-06-06] (Mozilla Corporation -> Mozilla Foundation)
Task: {33E6CC72-293D-46F1-AC07-D5E15A600F0D} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-16] (Dropbox, Inc -> Dropbox, Inc.)
Task: {5E8766B2-5E68-47DB-9657-506DE7FDA38F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9BC9CCFB-8A3E-4F3E-B8B8-AD20F93469D2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1917571891-3703816493-1998226089-1000Core => C:\Users\Bernard\AppData\Local\Google\Update\GoogleUpdate.exe [155432 2019-10-11] (Google Inc -> Google LLC)
Task: {9F029476-B24B-45E5-A93A-24D6FD63424B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {A91BD5F1-1F75-4FB3-8D72-CED291D06DF2} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-16] (Dropbox, Inc -> Dropbox, Inc.)
Task: {ABD99197-C817-4626-9F47-037D87EF1675} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-16] (Google Inc -> Google Inc.)
Task: {C23EF4C9-6EA5-42EB-8602-C7A5C98CCE92} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-16] (Google Inc -> Google Inc.)
Task: {E769606D-97DB-4AEF-BF21-74943601E68A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1917571891-3703816493-1998226089-1000UA => C:\Users\Bernard\AppData\Local\Google\Update\GoogleUpdate.exe [155432 2019-10-11] (Google Inc -> Google LLC)
Task: {EECCCA33-D4B3-43A4-ACA5-4EAB4340E068} - System32\Tasks\HPCustParticipation HP ENVY 5000 series => C:\Program Files\HP\HP ENVY 5000 series\Bin\HPCustPartic.exe [6660744 2018-04-19] (Hewlett Packard -> HP Inc.)
Task: {F296E29F-C52A-442D-8E4A-B97301F2EA9E} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {F8E0C1A3-490F-4408-ABAB-E080ABE7F7AA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MpCmdRun.exe [644888 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FAF5B16F-85C7-4FED-9FAF-A7AC2A8D087C} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4526952 2021-06-06] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\Intel PTT EK Recertification.job => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{c8669a2c-3acc-436e-8114-856769b15788}: [DhcpNameServer] 212.27.40.240 212.27.40.241

Edge:
=======
DownloadDir: C:\Users\Bernard\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-1917571891-3703816493-1998226089-1000 -> about:start
Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2020-02-15]
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge DefaultProfile: Profile 2
Edge Profile: C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-08]
Edge Profile: C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2021-02-24]
Edge Profile: C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2021-06-08]
Edge DownloadDir: Profile 2 -> C:\Users\Bernard\Downloads
Edge HomePage: Profile 2 -> hxxps://www.google.fr/?gfe_rd=cr&ei=dxOpWO3XCIuBaKPdjtgM&gws_rd=ssl
Edge StartupUrls: Profile 2 -> "hxxp://www.google.fr/"
Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2021-05-26]
Edge Extension: (Fox On The Run for TTV) - C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\kkeendaopmjefnjnjidncnchhieloclc [2021-05-25]
Edge Profile: C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Profile 3 [2021-06-08]
Edge Profile: C:\Users\Bernard\AppData\Local\Microsoft\Edge\User Data\Profile 5 [2021-06-08]

FireFox:
========
FF DefaultProfile: lq5a5p4z.default-1615355808711
FF ProfilePath: C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711 [2021-06-08]
FF DownloadDir: C:\Users\Bernard\Downloads
FF Homepage: Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711 -> hxxps://www.google.fr/
FF Extension: (AdBlocker Ultimate) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\adblockultimate@adblockultimate.net.xpi [2021-03-10]
FF Extension: (Outlook 2013 blue) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{009315d2-5c82-45da-b49c-71be8f114ed3}.xpi [2021-03-10]
FF Extension: (Classic Blue) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{065a1db8-6bba-4e1e-bcdc-d3dd53b68828}.xpi [2021-03-10]
FF Extension: (tranquil blue) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{0d1802ae-eebf-4526-855b-1879b45e66cb}.xpi [2021-03-10]
FF Extension: (John Mayer blue) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{29764ee0-25a3-45dd-854a-b59f05380e01}.xpi [2021-03-10]
FF Extension: (Puple Gold) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{3bae7b55-f2cd-41f8-90d7-cbc1f2748ca3}.xpi [2021-03-10]
FF Extension: (Blue Carbon Fiber) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{5ab03bdd-3d91-4c73-801e-607ca27458d0}.xpi [2021-03-10]
FF Extension: (Dream of Waves) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{a07400bb-b55c-4435-906d-5b6d8303f4c1}.xpi [2021-03-10]
FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Profiles\lq5a5p4z.default-1615355808711\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-05-24]
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\dtplugin\npDeployJava1.dll [2021-06-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\plugin2\npjp2.dll [2021-06-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-27] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default [2021-06-08]
CHR Notifications: Default -> hxxps://get.convertorsearch.com; hxxps://maximus-time.com
CHR HomePage: Default -> hxxps://www.google.com/
CHR DefaultSearchURL: Default -> hxxps://res-1.cdn.office.net/assets/mail/pwa/v1/pngs/Outlook.48x48x32.png
CHR Extension: (Docs) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-17]
CHR Extension: (Google Drive) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-01]
CHR Extension: (YouTube) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-17]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-05-24]
CHR Extension: (Outlook) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\eigpmdhekjlgjgcppnanaanbdmnlnagl [2021-04-09]
CHR Extension: (Sheets) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-17]
CHR Extension: (Google Docs hors connexion) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-24]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-01]
CHR Extension: (Chrome Media Router) - C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-06]
CHR Profile: C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-10-11]
CHR Profile: C:\Users\Bernard\AppData\Local\Google\Chrome\User Data\System Profile [2021-03-19]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936456 2015-05-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 Brother XP spl Service; C:\WINDOWS\SysWOW64\brsvc01a.exe [57344 2004-06-14] (Brother Industries, ltd. -> brother Industries Ltd)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-16] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-05-16] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44328 2021-05-22] (Dropbox, Inc -> Dropbox, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.104.0523.0001\FileSyncHelper.exe [3660648 2021-06-06] (Microsoft Corporation -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.104.0523.0001\OneDriveUpdaterService.exe [4264808 2021-06-06] (Microsoft Corporation -> Microsoft Corporation)
R2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [10752 2018-05-16] () [Fichier non signé]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\NisSrv.exe [2644760 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.4-0\MsMpEng.exe [136656 2021-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-11-20] (ASUSTeK Computer Inc. -> )
S3 asmthub3; C:\WINDOWS\System32\drivers\asmthub3.sys [140032 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
S3 asmtxhci; C:\WINDOWS\System32\drivers\asmtxhci.sys [424192 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
R3 cmudaxp; C:\WINDOWS\system32\drivers\cmudaxp.sys [2735616 2015-10-16] (C-MEDIA ELECTRONICS INC. -> C-Media Inc)
S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [32384 2018-03-07] (Sony Mobile Communications AB -> Sony Mobile Communications)
R3 MpKslcccfa31f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7753B9E1-B5AC-406F-906F-212DC5ABEECE}\MpKslDrv.sys [107744 2021-06-08] (Microsoft Windows -> Microsoft Corporation)
S3 Ser2pl; C:\WINDOWS\System32\drivers\ser2pl64.sys [97280 2010-03-12] (Microsoft Windows Hardware Compatibility Publisher -> Prolific Technology Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425208 2021-06-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-06-06] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-06-07 17:58 - 2021-06-07 17:58 - 000045171 _____ C:\Users\Bernard\Downloads\Addition_07-06-2021 17.11.45.txt
2021-06-07 17:58 - 2021-06-07 17:58 - 000045171 _____ C:\Users\Bernard\Downloads\Addition_07-06-2021 17.11.45(2).txt
2021-06-07 17:58 - 2021-06-07 17:58 - 000045171 _____ C:\Users\Bernard\Downloads\Addition_07-06-2021 17.11.45(1).txt
2021-06-07 17:10 - 2021-06-07 17:11 - 000045171 _____ C:\Users\Bernard\Downloads\Addition.txt
2021-06-07 17:09 - 2021-06-08 14:42 - 000024031 _____ C:\Users\Bernard\Downloads\FRST.txt
2021-06-07 17:09 - 2021-06-08 14:42 - 000000000 ____D C:\FRST
2021-06-07 17:02 - 2021-06-07 17:02 - 002300416 _____ (Farbar) C:\Users\Bernard\Downloads\FRST64.exe
2021-06-07 10:56 - 2021-06-07 10:56 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-06-07 10:56 - 2021-06-07 10:56 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-06-07 10:56 - 2021-06-07 10:56 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-06-07 10:56 - 2021-06-07 10:56 - 001823792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-06-07 10:56 - 2021-06-07 10:56 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-06-07 10:56 - 2021-06-07 10:56 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-06-07 10:56 - 2021-06-07 10:56 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-06-07 10:56 - 2021-06-07 10:56 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-06-07 10:56 - 2021-06-07 10:56 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-06-07 10:56 - 2021-06-07 10:56 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-06-07 10:56 - 2021-06-07 10:56 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-06-07 10:56 - 2021-06-07 10:56 - 000097280 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-06-07 10:56 - 2021-06-07 10:56 - 000011327 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-06-07 10:55 - 2021-06-07 10:55 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-06-07 10:55 - 2021-06-07 10:55 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-06-07 10:55 - 2021-06-07 10:55 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-06-07 10:55 - 2021-06-07 10:55 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-06-07 10:55 - 2021-06-07 10:55 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-06-06 17:42 - 2021-06-06 17:42 - 000081991 _____ C:\Users\Bernard\Downloads\F1092236271001.pdf
2021-06-06 17:42 - 2021-06-06 17:42 - 000081991 _____ C:\Users\Bernard\Downloads\F1092236271001 (2).pdf
2021-06-06 17:42 - 2021-06-06 17:42 - 000081991 _____ C:\Users\Bernard\Downloads\F1092236271001 (1).pdf
2021-06-06 11:55 - 2021-06-06 11:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-06-06 11:12 - 2021-06-06 15:08 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-05-27 04:06 - 2021-05-27 04:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2021-05-22 15:52 - 2021-05-22 15:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2021-05-22 15:52 - 2021-05-22 15:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2021-05-22 15:52 - 2021-05-22 15:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2021-05-22 15:52 - 2021-05-22 15:52 - 000044328 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2021-05-17 05:13 - 2021-06-08 14:31 - 000164640 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2021-05-17 05:13 - 2021-06-08 14:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2021-05-17 05:13 - 2021-05-17 05:13 - 000000000 ____D C:\Users\Bernard\AppData\Roaming\Sun
2021-05-17 05:12 - 2021-06-08 14:31 - 000000000 ____D C:\Program Files (x86)\Java
2021-05-17 05:12 - 2021-05-17 05:12 - 000000000 ____D C:\ProgramData\Oracle

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2021-06-08 14:40 - 2016-11-18 10:43 - 000000000 ____D C:\Users\Bernard\AppData\LocalLow\Mozilla
2021-06-08 14:37 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-06-08 14:24 - 2019-01-29 22:35 - 000000000 ____D C:\ProgramData\Mozilla
2021-06-08 14:15 - 2020-06-12 18:13 - 000004172 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FC649805-BB17-41A6-9143-2E48431170CA}
2021-06-08 14:14 - 2018-05-16 14:15 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2021-06-08 14:14 - 2015-07-28 20:46 - 000000000 __SHD C:\Users\Bernard\IntelGraphicsProfiles
2021-06-08 04:25 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-06-07 19:09 - 2020-06-12 18:08 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-06-07 13:59 - 2020-06-12 18:11 - 001772726 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-06-07 13:59 - 2019-12-07 16:49 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat
2021-06-07 13:59 - 2019-12-07 16:49 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat
2021-06-07 11:26 - 2020-06-12 18:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-06-07 11:26 - 2020-06-12 18:08 - 000008192 ___SH C:\DumpStack.log.tmp
2021-06-07 11:26 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-06-07 11:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-06-07 11:01 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-06-07 11:00 - 2020-06-12 18:08 - 000317808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-06-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-06-07 10:58 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-06-07 08:45 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-06-07 08:18 - 2018-05-17 15:34 - 000000000 ____D C:\Users\Bernard\Documents\TOUT MES FICHIERS PDF
2021-06-07 08:17 - 2018-12-11 05:18 - 000000000 ___RD C:\Users\Bernard\Documents\DIFFEREND VOISIN.pdf et autres formats
2021-06-07 02:19 - 2020-06-12 17:50 - 000000000 ____D C:\Users\Bernard
2021-06-06 16:45 - 2020-08-20 10:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2021-06-06 15:08 - 2019-10-09 04:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-06-06 11:55 - 2020-11-26 21:29 - 000001308 _____ C:\Users\Bernard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\firefox.lnk
2021-06-06 10:53 - 2021-04-26 01:24 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2021-06-06 10:51 - 2020-06-20 08:39 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-06-06 10:51 - 2018-05-16 16:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-06-06 10:46 - 2020-06-23 11:18 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2021-06-06 10:46 - 2020-06-23 11:18 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-06-06 10:46 - 2015-07-29 13:40 - 000000000 ___RD C:\Users\Bernard\OneDrive
2021-05-27 04:06 - 2018-05-16 18:33 - 000000000 ____D C:\Program Files (x86)\Dropbox
2021-05-27 03:50 - 2020-11-26 21:31 - 000001164 _____ C:\Users\Bernard\Desktop\firefox.v.83.0.lnk
2021-05-26 19:30 - 2018-05-16 19:03 - 000000000 ____D C:\Users\Bernard\AppData\Roaming\vlc
2021-05-14 18:47 - 2018-05-16 18:33 - 000001210 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2021-05-14 18:47 - 2018-05-16 18:33 - 000001206 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2021-05-12 08:48 - 2020-06-12 18:13 - 000004270 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2021-05-12 08:48 - 2020-06-12 18:13 - 000004038 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2021-05-12 08:46 - 2018-05-16 22:07 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-05-12 08:45 - 2018-05-16 22:07 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-05-12 08:41 - 2020-08-07 11:52 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Fichiers à la racine de certains dossiers ========

2019-01-17 20:06 - 2019-11-26 04:54 - 000009216 _____ () C:\Users\Bernard\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================