Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 09-01-2021
- Exécuté par branr (administrateur) sur DESKTOP-EE0TQ7I (Micro-Star International Co., Ltd. MS-7B24) (12-01-2021 12:42:37)
- Exécuté depuis C:\Users\branr\AppData\Local\Temp\scoped_dir8704_1600291225
- Profils chargés: branr
- Platform: Windows 10 Home Version 2004 19041.685 (X64) Langue: Français (France)
- Navigateur par défaut: Opera
- Mode d'amorçage: Normal
- ==================== Processus (Avec liste blanche) =================
- (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
- (A-Volute -> Nahimic) C:\Windows\System32\NahimicService.exe
- (A-Volute SAS -> A-Volute) C:\Users\branr\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
- (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.CpuIdRemote64.exe
- (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe
- (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe
- (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe
- (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe
- (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe
- (ICEpower a/s -> ICEpower a/s) C:\Windows\System32\ICEsoundService64.exe
- (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spaceman.exe
- (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
- (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
- (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
- (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe <2>
- (Opera Software AS -> Opera Software) C:\Users\branr\AppData\Local\Programs\Opera\73.0.3856.329\opera.exe <20>
- (Opera Software AS -> Opera Software) C:\Users\branr\AppData\Local\Programs\Opera\73.0.3856.329\opera_crashreporter.exe
- (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
- (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
- ==================== Registre (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
- HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1138416 2020-07-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [353776 2020-09-09] (Riot Games, Inc. -> Riot Games, Inc.)
- HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD) [Fichier non signé]
- HKLM-x32\...\Run: [CORSAIR iCUE Software] => C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE Launcher.exe [410152 2020-07-13] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-09-17] (Oracle America, Inc. -> Oracle Corporation)
- HKU\S-1-5-21-2347002101-1604795383-3210086273-1002\...\Run: [branr] => cmd.exe /c start www.dinoraptzor.org
- HKU\S-1-5-21-2347002101-1604795383-3210086273-1002\...\Run: [Opera Browser Assistant] => C:\Users\branr\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3366424 2020-12-08] (Opera Software AS -> Opera Software)
- HKU\S-1-5-21-2347002101-1604795383-3210086273-1002\...\Run: [Windscribe] => "C:\Program Files (x86)\Windscribe\Windscribe.exe" -os_restart
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.141\Installer\chrmstp.exe [2021-01-11] (Google LLC -> Google LLC)
- HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
- HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
- ==================== Tâches planifiées (Avec liste blanche) ============
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- Task: {05D7270F-7F58-4C62-9E76-B89A3BC837C4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {0A95EE03-6210-43A7-891A-7430069B12C8} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
- Task: {17D7605D-2A48-433F-928F-FC7A24BFFF11} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
- Task: {25E2303C-9F3F-4261-873C-7DED37CE9645} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {35CD93B5-E81E-4821-B94B-C63D7B153E94} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [2776440 2020-12-16] (Microsoft Corporation -> Microsoft Corporation)
- Task: {3995FF8D-EABF-4ACB-B607-B44A620B3D16} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {3FF3AFCA-846C-45D9-9371-772BA1ECAA23} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {46742666-522C-4DFD-B56B-FE185236FB06} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {582A8462-7D02-4A51-ACE9-1AE7210C4F98} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {71805387-B059-4CE2-8682-C721FB4C497D} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {7DD0C3C0-DC6A-4D03-83EB-2EF19F4E653B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {8064A60D-C3AE-4056-8EA3-74C7051E2058} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-17] (Google LLC -> Google LLC)
- Task: {827186D7-FE0F-4F8F-8E6E-AE141D5C2994} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {87189DBA-35F1-4518-A67B-13121FF01F16} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {8E78E6F1-E331-46FE-B546-22CE003C46AB} - System32\Tasks\Opera scheduled Autoupdate 1597672313 => C:\Users\branr\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-05] (Opera Software AS -> Opera Software)
- Task: {B7A810B9-9E4E-4C9C-B500-216507B725D4} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {B9B6AA6F-823C-4AD5-B4EE-CFA3BDFD1F3C} - System32\Tasks\branr => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v branr /t REG_SZ /d "cmd.exe /c start www.dinoraptzor.org"
- Task: {DD18937F-4EFC-4C6B-9045-05792CD68C46} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
- Task: {DE63B357-0C26-4087-846C-AFE6DB66D4A9} - System32\Tasks\Opera scheduled Autoupdate 1564150628 => C:\Users\bella\AppData\Local\Programs\Opera\launcher.exe
- Task: {E32BB8BC-660D-4D80-B65B-AC042C85C5A5} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
- Task: {E990BE1A-974F-40C2-A03A-2C33A2685BCE} - System32\Tasks\Opera scheduled assistant Autoupdate 1580059408 => C:\Users\bella\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\bella\AppData\Local\Programs\Opera\assistant" $(Arg0)
- Task: {EA29FFD0-6E91-410A-8D7F-997DCFF5F8DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-17] (Google LLC -> Google LLC)
- Task: {F646C7C6-A2AE-4DE4-926E-38CE269E2B03} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2347002101-1604795383-3210086273-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-12-10] (Microsoft Windows -> )
- Task: {FC62E51D-1A9B-4E36-8CFF-B6FB53C7685E} - System32\Tasks\Opera scheduled assistant Autoupdate 1597672319 => C:\Users\branr\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-05] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\branr\AppData\Local\Programs\Opera\assistant" $(Arg0)
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
- ==================== Internet (Avec liste blanche) ====================
- (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.254
- Tcpip\..\Interfaces\{e0ff5089-e7eb-4ff3-8abd-3dd553198fc1}: [DhcpNameServer] 192.168.0.254
- HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
- Edge:
- ======
- Edge HomeButtonPage: HKU\S-1-5-21-2347002101-1604795383-3210086273-1002 -> hxxp://www.home-explore.com/
- Edge Profile: C:\Users\branr\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-12]
- Edge HomePage: Default -> hxxp://www.home-explore.com/
- Edge StartupUrls: Default -> "hxxp://www.home-explore.com/"
- Edge DefaultSearchURL: Default -> hxxp://www.home-explore.com/search?q={searchTerms}
- Edge DefaultSearchKeyword: Default -> home-explore.com
- FireFox:
- ========
- FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-11-23] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-11-23] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
- Chrome:
- =======
- CHR Profile: C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default [2021-01-12]
- CHR Notifications: Default -> hxxps://www.facebook.com
- CHR Extension: (Slides) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-08-17]
- CHR Extension: (Docs) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-08-17]
- CHR Extension: (Google Drive) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-26]
- CHR Extension: (YouTube) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-08-17]
- CHR Extension: (Sheets) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-08-17]
- CHR Extension: (Google Docs hors connexion) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-01-12]
- CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-08-17]
- CHR Extension: (Gmail) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-26]
- CHR Extension: (Chrome Media Router) - C:\Users\branr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-12]
- CHR HKLM\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd]
- CHR HKU\S-1-5-21-2347002101-1604795383-3210086273-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd]
- CHR HKLM-x32\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd]
- Opera:
- =======
- OPR Notifications: hxxps://www.facebook.com; hxxps://www.fnac.com; hxxps://www.youtube.com
- OPR Extension: (Rich Hints Agent) - C:\Users\branr\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-10-24]
- ==================== Services (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [605080 2020-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
- R2 CorsairLLAService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CueLLAccessService.exe [421928 2020-07-13] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
- R2 CorsairService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe [56872 2020-07-13] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
- S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [19333472 2020-09-22] (FACE IT LIMITED -> )
- S3 FileSyncHelper; C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\FileSyncHelper.exe [2191224 2020-12-16] (Microsoft Corporation -> Microsoft Corporation)
- S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA)
- R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [2719664 2020-11-04] (A-Volute -> Nahimic)
- S3 OneDrive Updater Service; C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\OneDriveUpdaterService.exe [2556280 2020-12-16] (Microsoft Corporation -> Microsoft Corporation)
- S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2523448 2020-12-23] (Electronic Arts, Inc. -> Electronic Arts)
- R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3478336 2020-12-23] (Electronic Arts, Inc. -> Electronic Arts)
- S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1631360 2020-12-08] (Rockstar Games, Inc. -> Rockstar Games)
- S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9803088 2020-09-09] (Riot Games, Inc. -> Riot Games, Inc.)
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
- ===================== Pilotes (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
- S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [60312 2020-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
- R2 CorsairLLAccess3B84E98236B28D4E075D5737DF9F567A1FB76E8A; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys [21752 2020-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
- R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45984 2020-07-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
- R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21920 2020-07-07] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
- R3 cpuz149; C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys [44320 2021-01-12] (CPUID S.A.R.L.U. -> CPUID)
- R0 FACEIT; C:\WINDOWS\System32\Drivers\FACEIT.sys [12006208 2021-01-03] (FACE IT LIMITED -> )
- R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85592 2020-01-17] (A-Volute -> Windows (R) Win 7 DDK provider)
- S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
- S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
- S3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
- S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [5406704 2020-09-09] (Riot Games, Inc. -> Riot Games, Inc.)
- S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows -> Microsoft Corporation)
- ==================== NetSvcs (Avec liste blanche) ===================
- (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
- ==================== Un mois (créés) (Avec liste blanche) =========
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2021-01-12 12:39 - 2021-01-12 12:42 - 000000000 ____D C:\FRST
- 2021-01-12 12:39 - 2021-01-12 12:39 - 002281472 _____ (Farbar) C:\Users\branr\Desktop\FRST64.exe
- 2021-01-12 11:44 - 2021-01-12 11:44 - 000000000 ____D C:\Users\branr\AppData\Local\Windscribe
- 2021-01-07 18:10 - 2021-01-07 18:10 - 000000000 ____D C:\WINDOWS\LastGood
- 2021-01-07 18:08 - 2020-12-02 05:23 - 001027992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
- 2021-01-07 18:08 - 2020-12-02 05:23 - 000674712 _____ C:\WINDOWS\system32\nvofapi64.dll
- 2021-01-07 18:08 - 2020-12-02 05:23 - 000543128 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 002096880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 001585560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 001507224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 001159920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000816368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000813464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000670616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000656112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000590576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000556440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
- 2021-01-07 18:08 - 2020-12-02 05:22 - 000047240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
- 2021-01-07 18:08 - 2020-12-02 05:21 - 007706352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2021-01-07 18:08 - 2020-12-02 05:21 - 006860184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2021-01-07 18:08 - 2020-12-02 05:21 - 004175256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2021-01-07 18:08 - 2020-12-02 05:21 - 002508528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2021-01-07 18:08 - 2020-12-02 05:21 - 000849648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
- 2021-01-07 18:08 - 2020-12-02 05:21 - 000445848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
- 2021-01-07 18:08 - 2020-12-02 05:20 - 005978008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2021-01-07 18:08 - 2020-12-02 04:52 - 000080930 _____ C:\WINDOWS\system32\nvinfo.pb
- 2020-12-23 16:33 - 2020-12-23 16:33 - 000000000 ____D C:\Users\branr\AppData\Local\UnrealEngine
- 2020-12-23 16:33 - 2020-12-23 16:33 - 000000000 ____D C:\Users\branr\AppData\Local\SwGame
- 2020-12-23 16:32 - 2020-12-23 16:32 - 000000000 ____D C:\ProgramData\Electronic Arts
- 2020-12-23 16:29 - 2020-12-23 16:29 - 000001066 _____ C:\Users\Public\Desktop\Origin.lnk
- 2020-12-23 16:29 - 2020-12-23 16:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
- 2020-12-23 16:29 - 2020-12-23 16:29 - 000000000 ____D C:\Program Files (x86)\Origin
- 2020-12-23 16:27 - 2020-12-26 22:13 - 000000000 ____D C:\Users\branr\AppData\Roaming\Origin
- 2020-12-23 16:27 - 2020-12-26 21:26 - 000000000 ____D C:\Users\branr\AppData\Local\Origin
- 2020-12-23 16:27 - 2020-12-23 16:27 - 000000000 ____D C:\Users\branr\.QtWebEngineProcess
- 2020-12-23 16:27 - 2020-12-23 16:27 - 000000000 ____D C:\Users\branr\.Origin
- 2020-12-23 16:26 - 2020-12-26 22:14 - 000000000 ____D C:\ProgramData\Origin
- 2020-12-23 05:53 - 2020-12-23 05:53 - 000000203 _____ C:\Users\branr\Desktop\STAR WARS Jedi Fallen Order™.url
- 2020-12-15 11:14 - 2020-12-15 11:14 - 000002386 _____ C:\Users\branr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nahimic Companion.lnk
- 2020-12-15 11:14 - 2020-12-15 11:14 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
- 2020-12-15 11:14 - 2020-12-15 11:14 - 000000000 ____D C:\Users\branr\AppData\Local\NhNotifSys
- 2020-12-13 12:49 - 2020-12-13 17:14 - 000000000 ____D C:\Users\branr\Desktop\Nouveau dossier
- ==================== Un mois (modifiés) ==================
- (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
- 2021-01-12 12:39 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
- 2021-01-12 12:34 - 2020-08-18 12:24 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2021-01-12 12:34 - 2019-12-07 15:49 - 000791594 _____ C:\WINDOWS\system32\perfh00C.dat
- 2021-01-12 12:34 - 2019-12-07 15:49 - 000149760 _____ C:\WINDOWS\system32\perfc00C.dat
- 2021-01-12 12:28 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2021-01-12 12:28 - 2019-07-26 15:16 - 000000000 ____D C:\ProgramData\NVIDIA
- 2021-01-12 12:27 - 2020-11-24 10:57 - 000000000 ____D C:\Intel
- 2021-01-12 12:27 - 2020-08-18 12:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2021-01-12 12:26 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
- 2021-01-12 12:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
- 2021-01-12 12:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2021-01-12 11:54 - 2020-02-18 17:39 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
- 2021-01-12 11:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2021-01-12 11:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
- 2021-01-12 11:37 - 2019-10-27 11:34 - 000000085 _____ C:\WINDOWS\wininit.ini
- 2021-01-12 11:37 - 2019-10-27 10:52 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
- 2021-01-12 11:01 - 2020-08-18 12:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2021-01-12 09:22 - 2020-04-29 15:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2021-01-11 23:47 - 2020-08-17 14:48 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2021-01-11 23:47 - 2020-08-17 14:48 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2021-01-09 10:47 - 2020-08-18 12:20 - 000004232 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1597672313
- 2021-01-09 10:47 - 2020-08-17 14:51 - 000001409 _____ C:\Users\branr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk
- 2021-01-09 03:59 - 2020-06-16 15:45 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2021-01-09 03:59 - 2020-06-16 15:45 - 000002263 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
- 2021-01-07 20:04 - 2020-08-18 12:20 - 000004232 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1564150628
- 2021-01-07 18:11 - 2019-07-28 13:00 - 000000000 ____D C:\Users\branr\AppData\Local\CrashDumps
- 2021-01-07 18:10 - 2019-07-26 15:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2021-01-03 17:51 - 2020-09-03 22:03 - 012006208 _____ C:\WINDOWS\system32\Drivers\FACEIT.sys
- 2021-01-03 17:51 - 2020-08-18 12:15 - 000000000 ____D C:\Users\branr
- 2021-01-03 17:51 - 2019-09-03 12:12 - 000000000 ____D C:\Program Files\FACEIT AC
- 2021-01-03 10:00 - 2019-08-12 05:41 - 000000000 ____D C:\Users\branr\AppData\Local\ElevatedDiagnostics
- 2020-12-27 13:36 - 2020-11-18 19:18 - 000000000 ____D C:\Users\branr\AppData\Local\Battle.net
- 2020-12-27 13:11 - 2020-11-20 16:48 - 000000000 ____D C:\Program Files (x86)\Hearthstone
- 2020-12-23 16:32 - 2020-08-19 16:33 - 000000000 ____D C:\Users\branr\AppData\Local\D3DSCache
- 2020-12-18 10:33 - 2019-10-27 19:01 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
- 2020-12-16 19:46 - 2020-08-18 12:20 - 000003206 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
- 2020-12-16 19:46 - 2019-10-27 19:01 - 000002212 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2020-12-16 19:46 - 2019-07-26 18:31 - 000000000 ___RD C:\Users\branr\OneDrive
- 2020-12-15 04:14 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
- 2020-12-13 12:46 - 2020-08-18 12:20 - 000004460 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1580059408
- ==================== SigCheck ============================
- (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
- ==================== Fin de FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement