cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27-12-2021
Exécuté par loicp (administrateur) sur DESKTOP-5F729TO (Micro-Star International Co., Ltd MS-7B38) (03-01-2022 11:03:02)
Exécuté depuis C:\Users\loicp\Desktop
Profils chargés: loicp
Plate-forme: Microsoft Windows 10 Famille Version 21H1 19043.1415 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\protectedservice.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_697983dd21312b3c\Display.NvContainer\NVDisplay.Container.exe <2>

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1087376 2022-01-02] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4267432 2021-12-16] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33618400 2022-01-02] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\Run: [Discord] => C:\Users\loicp\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1802072 2021-12-15] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\loicp\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\loicp\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\RunOnce: [Uninstall 21.220.1024.0005\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\loicp\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\amd64"
HKU\S-1-5-21-1451893863-2680350518-2795618049-1001\...\RunOnce: [Uninstall 21.220.1024.0005] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\loicp\AppData\Local\Microsoft\OneDrive\21.220.1024.0005"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2022-01-02] (Google LLC -> Google LLC)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {11CC593B-426E-436A-9EC8-3DDCDD113EBC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-02] (Google LLC -> Google LLC)
Task: {12BBA0C0-6C01-4F3B-ABF0-0A83B02A1D7D} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2648424 2021-10-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {5F530897-111E-475C-B890-010C0190356F} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2484056 2021-12-15] (Overwolf Ltd -> Overwolf LTD)
Task: {86B51A69-5B82-43B1-BA0C-C2DDA27753B6} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [254640 2021-12-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {B2A79420-1823-494E-9248-7AEAE1E46DE7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-02] (Google LLC -> Google LLC)
Task: {BC719C85-A3EC-49F2-9DB9-C355CB93D359} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1657440 2021-12-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {C4A679EB-B8AF-4005-B15D-E24792547E93} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry
Task: {C4A679EB-B8AF-4005-B15D-E24792547E93} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog
Task: {C4A679EB-B8AF-4005-B15D-E24792547E93} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector
Task: {DC54F5A9-9656-44F8-ABE8-7B5C69C752C2} - System32\Tasks\AviraSystemSpeedupUpdate => C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [30215736 2022-01-03] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
Task: {F2837A46-0080-4DFF-A3BC-92F14E69CEDF} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{8d27c1e6-4213-4eea-ab5d-c3507b0478ef}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{a5020637-52e6-45e5-91d7-863b956bf180}: [DhcpNameServer] 192.168.42.129

Edge:
=======
Edge Profile: C:\Users\loicp\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-02]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]

Chrome:
=======
CHR Profile: C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default [2022-01-03]
CHR Extension: (Slides) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-01-02]
CHR Extension: (Docs) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2022-01-02]
CHR Extension: (Google Drive) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-02]
CHR Extension: (YouTube) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-01-02]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-01-02]
CHR Extension: (Sheets) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-01-02]
CHR Extension: (Google Docs hors connexion) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-02]
CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-01-02]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-02]
CHR Extension: (Gmail) - C:\Users\loicp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-02]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1206648 2021-06-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntivirProtectedService; C:\Program Files (x86)\Avira\Antivirus\ProtectedService.exe [538000 2021-06-25] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [485048 2021-06-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [485048 2021-06-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [574672 2021-07-06] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2998096 2021-11-23] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [384480 2021-08-19] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [263984 2021-12-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [263472 2021-12-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2021-10-01] (Epic Games Inc. -> Epic Games, Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2484056 2021-12-15] (Overwolf Ltd -> Overwolf LTD)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\NisSrv.exe [2876152 2022-01-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2111.5-0\MsMpEng.exe [128360 2022-01-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_697983dd21312b3c\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_697983dd21312b3c\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 AmdSMBusSdk; C:\WINDOWS\System32\drivers\amdembsmbus.sys [42808 2021-04-07] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
R3 amdWDT; C:\WINDOWS\System32\drivers\amdwdt.sys [42624 2021-08-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [78936 2019-06-07] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S0 avelam; C:\WINDOWS\System32\drivers\avelam.sys [22848 2021-06-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [209088 2021-10-22] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [199312 2021-02-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [46704 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [89736 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [45472 2019-03-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-02-05] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-02-05] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [226560 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hwusb_cdcacm; C:\WINDOWS\System32\drivers\hw_cdcacm.sys [127360 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [42856 2016-03-27] (Open Source Developer, Benjamin Höglinger-Stelzer -> Nefarius Software Solutions)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2022-01-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [435432 2022-01-02] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2022-01-02] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Trois mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-01-03 11:03 - 2022-01-03 11:03 - 000016379 _____ C:\Users\loicp\Desktop\FRST.txt
2022-01-03 11:02 - 2022-01-03 11:03 - 000000000 ____D C:\FRST
2022-01-03 10:59 - 2022-01-03 10:59 - 000247811 _____ C:\Users\loicp\Desktop\ZHPDiag.txt
2022-01-03 10:57 - 2022-01-03 10:57 - 002311168 _____ (Farbar) C:\Users\loicp\Desktop\FRST64.exe
2022-01-03 10:54 - 2022-01-03 10:59 - 000000000 ____D C:\Users\loicp\AppData\Roaming\ZHP
2022-01-03 10:54 - 2022-01-03 10:54 - 000000865 _____ C:\Users\loicp\Desktop\ZHPSuite.lnk
2022-01-03 10:54 - 2022-01-03 10:54 - 000000000 ____D C:\Users\loicp\AppData\Local\ZHP
2022-01-03 10:53 - 2022-01-03 10:53 - 003478168 _____ (Nicolas Coolman) C:\Users\loicp\Desktop\ZHPSuite.exe
2022-01-03 10:47 - 2022-01-03 10:47 - 000000000 ____D C:\ProgramData\HP
2022-01-03 10:03 - 2022-01-03 10:03 - 000000000 ____D C:\Users\Public\Security Sessions
2022-01-03 09:57 - 2022-01-03 09:57 - 000003374 _____ C:\WINDOWS\system32\Tasks\Avira_Antivirus_Systray
2022-01-03 09:57 - 2022-01-03 09:57 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2022-01-03 09:57 - 2021-10-22 08:45 - 000209088 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2022-01-03 09:57 - 2021-06-25 13:59 - 000022848 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avelam.sys
2022-01-03 09:57 - 2021-02-09 18:03 - 000199312 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2022-01-03 09:57 - 2019-06-07 14:09 - 000078936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avdevprot.sys
2022-01-03 09:57 - 2019-03-20 18:50 - 000089736 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2022-01-03 09:57 - 2019-03-20 18:50 - 000046704 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2022-01-03 09:57 - 2019-03-20 18:50 - 000045472 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys
2022-01-03 09:54 - 2022-01-03 10:04 - 000000000 ____D C:\Users\loicp\AppData\Local\Avira
2022-01-03 09:54 - 2022-01-03 09:54 - 000003776 _____ C:\WINDOWS\system32\Tasks\AviraSystemSpeedupUpdate
2022-01-03 09:54 - 2022-01-03 09:54 - 000000000 ____D C:\Users\Public\Speedup Sessions
2022-01-03 09:53 - 2022-01-03 10:04 - 000000000 ____D C:\ProgramData\Avira
2022-01-03 09:53 - 2022-01-03 09:57 - 000000000 ____D C:\Program Files (x86)\Avira
2022-01-03 09:53 - 2022-01-03 09:53 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance
2022-01-03 09:53 - 2022-01-03 09:53 - 000003634 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update
2022-01-03 09:53 - 2022-01-03 09:53 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog
2022-01-03 09:53 - 2022-01-03 09:53 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray
2022-01-03 09:53 - 2022-01-03 09:53 - 000001154 _____ C:\Users\Public\Desktop\Avira.lnk
2022-01-03 09:53 - 2022-01-03 09:53 - 000000000 ____D C:\WINDOWS\SysWOW64\statReporter
2022-01-03 09:53 - 2022-01-03 09:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2022-01-03 09:52 - 2022-01-03 09:52 - 005511904 _____ (Avira Operations GmbH & Co. KG) C:\Users\loicp\Downloads\avira_fr_sptl1_211835297-1641199937__pavws.exe
2022-01-02 23:58 - 2022-01-02 23:58 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Paradox Interactive
2022-01-02 23:58 - 2022-01-02 23:58 - 000000000 ____D C:\Users\loicp\AppData\Local\Introversion
2022-01-02 23:57 - 2022-01-02 23:57 - 000000390 _____ C:\Users\loicp\Desktop\Prison Architect.url
2022-01-02 23:57 - 2022-01-02 23:57 - 000000000 ____D C:\Users\loicp\AppData\Local\Paradox Interactive
2022-01-02 23:54 - 2022-01-02 23:54 - 000000364 _____ C:\Users\loicp\Desktop\DARQ.url
2022-01-02 23:40 - 2022-01-02 23:40 - 000000000 ____D C:\Users\loicp\AppData\LocalLow\Dodge Roll
2022-01-02 23:38 - 2022-01-02 23:38 - 000000348 _____ C:\Users\loicp\Desktop\Enter the Gungeon.url
2022-01-02 23:37 - 2022-01-02 23:55 - 000000000 ____D C:\Program Files\Epic Games
2022-01-02 17:40 - 2022-01-02 17:40 - 000000000 ____D C:\Users\loicp\AppData\Roaming\NVIDIA
2022-01-02 14:16 - 2022-01-03 09:19 - 000002321 _____ C:\Users\loicp\Desktop\Warcraft Logs Companion.lnk
2022-01-02 14:16 - 2022-01-03 09:19 - 000002321 _____ C:\Users\loicp\Desktop\CurseForge.lnk
2022-01-02 14:16 - 2022-01-02 14:16 - 000004384 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task
2022-01-02 14:16 - 2022-01-02 14:16 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf
2022-01-02 14:16 - 2022-01-02 14:16 - 000000000 ____D C:\ProgramData\Overwolf
2022-01-02 14:16 - 2022-01-02 14:16 - 000000000 ____D C:\Program Files (x86)\Overwolf
2022-01-02 14:14 - 2022-01-03 09:48 - 000000000 ____D C:\Users\loicp\AppData\Roaming\discord
2022-01-02 14:14 - 2022-01-03 09:19 - 000000000 ____D C:\Users\loicp\AppData\Local\Discord
2022-01-02 14:14 - 2022-01-02 14:14 - 000002231 _____ C:\Users\loicp\Desktop\Discord.lnk
2022-01-02 14:14 - 2022-01-02 14:14 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2022-01-02 14:13 - 2022-01-03 09:19 - 000000000 ____D C:\Users\loicp\AppData\Local\Overwolf
2022-01-02 14:13 - 2022-01-02 14:14 - 000000000 ____D C:\Users\loicp\AppData\Local\SquirrelTemp
2022-01-02 14:13 - 2022-01-02 14:13 - 001472608 _____ (Overwolf Ltd.) C:\Users\loicp\Downloads\CurseForge - Installer.exe
2022-01-02 14:12 - 2022-01-02 14:13 - 082973864 _____ (Discord Inc.) C:\Users\loicp\Downloads\DiscordSetup.exe
2022-01-02 10:58 - 2022-01-02 10:58 - 000000000 ____D C:\Users\loicp\AppData\Roaming\WinRAR
2022-01-02 10:58 - 2022-01-02 10:58 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-01-02 10:58 - 2022-01-02 10:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-01-02 10:58 - 2022-01-02 10:58 - 000000000 ____D C:\Program Files\WinRAR
2022-01-02 10:57 - 2022-01-03 01:51 - 000000000 ____D C:\ProgramData\NVIDIA
2022-01-02 10:57 - 2022-01-02 10:57 - 000000000 ____D C:\WINDOWS\system32\lxss
2022-01-02 10:57 - 2022-01-02 10:57 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2022-01-02 10:57 - 2022-01-02 10:57 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-01-02 10:55 - 2021-12-15 13:16 - 000038016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2022-01-02 10:54 - 2021-12-15 21:58 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-01-02 10:54 - 2021-12-15 21:58 - 001450200 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-01-02 10:54 - 2021-12-15 21:57 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-01-02 10:54 - 2021-12-15 21:57 - 001874648 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-01-02 10:54 - 2021-12-15 21:57 - 001466024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-01-02 10:54 - 2021-12-15 21:57 - 001209312 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-01-02 10:54 - 2021-12-15 21:57 - 001112336 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-01-02 10:54 - 2021-12-15 21:57 - 001112336 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-01-02 10:54 - 2021-12-15 21:57 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-01-02 10:54 - 2021-12-15 21:57 - 000966416 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-01-02 10:54 - 2021-12-15 21:54 - 000658344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2022-01-02 10:54 - 2021-12-15 21:52 - 005732320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2022-01-02 10:53 - 2021-12-15 21:54 - 001524392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2022-01-02 10:53 - 2021-12-15 21:54 - 000802216 _____ C:\WINDOWS\system32\nvofapi64.dll
2022-01-02 10:53 - 2021-12-15 21:54 - 000679384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2022-01-02 10:53 - 2021-12-15 21:54 - 000636840 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2022-01-02 10:53 - 2021-12-15 21:54 - 000565416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 002116520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 001597552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 001175512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 000982952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 000794024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2022-01-02 10:53 - 2021-12-15 21:53 - 000708776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2022-01-02 10:53 - 2021-12-15 21:52 - 008725160 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2022-01-02 10:53 - 2021-12-15 21:52 - 007843968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2022-01-02 10:53 - 2021-12-15 21:52 - 004938880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2022-01-02 10:53 - 2021-12-15 21:52 - 002852280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2022-01-02 10:53 - 2021-12-15 21:52 - 000452224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2022-01-02 10:53 - 2021-12-15 21:51 - 000851936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2022-01-02 10:53 - 2021-12-15 21:50 - 006438112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2022-01-02 10:53 - 2021-12-15 13:16 - 000085698 _____ C:\WINDOWS\system32\nvinfo.pb
2022-01-02 10:52 - 2022-01-02 10:52 - 000000000 ____D C:\Users\loicp\AppData\Local\AMD
2022-01-02 10:51 - 2022-01-02 10:51 - 000000000 ____D C:\Program Files\AMD
2022-01-02 10:47 - 2022-01-02 11:02 - 000000000 ____D C:\Users\loicp\AppData\Local\NVIDIA
2022-01-02 10:47 - 2022-01-02 10:52 - 000000000 ____D C:\AMD
2022-01-02 10:47 - 2022-01-02 10:47 - 000000000 ____D C:\Users\loicp\AppData\Roaming\AMD
2022-01-02 10:47 - 2022-01-02 10:47 - 000000000 ____D C:\Users\loicp\AppData\Local\setup
2022-01-02 10:47 - 2022-01-02 10:47 - 000000000 ____D C:\Users\loicp\AppData\Local\cache
2022-01-02 10:47 - 2022-01-02 10:47 - 000000000 ____D C:\Program Files (x86)\AMD
2022-01-02 10:41 - 2022-01-02 10:51 - 000000000 ____D C:\ProgramData\Package Cache
2022-01-02 10:41 - 2022-01-02 10:41 - 000000000 ____D C:\Users\loicp\AppData\Local\NVIDIA Corporation
2022-01-02 10:11 - 2022-01-02 23:58 - 000000000 ____D C:\Users\loicp\AppData\Local\Epic Games
2022-01-02 10:11 - 2022-01-02 10:11 - 000000000 ____D C:\Users\loicp\AppData\Local\UnrealEngineLauncher
2022-01-02 10:11 - 2022-01-02 10:11 - 000000000 ____D C:\Users\loicp\AppData\Local\UnrealEngine
2022-01-02 10:11 - 2022-01-02 10:11 - 000000000 ____D C:\Users\loicp\AppData\Local\EpicGamesLauncher
2022-01-02 10:10 - 2022-01-02 10:41 - 000000000 ____D C:\ProgramData\Epic
2022-01-02 10:10 - 2022-01-02 10:15 - 020425326 _____ C:\Users\loicp\Downloads\9084_hda_uad_win10_rs4_rs5_19h1_20h1_x64_whql_svid_1462(33846).7z
2022-01-02 10:10 - 2022-01-02 10:10 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2022-01-02 10:10 - 2022-01-02 10:10 - 000001258 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2022-01-02 10:10 - 2022-01-02 10:10 - 000000000 ____D C:\Program Files (x86)\Epic Games
2022-01-02 10:03 - 2022-01-02 10:04 - 000000000 ____D C:\Users\loicp\AppData\Local\Steam
2022-01-02 09:58 - 2022-01-03 09:48 - 000000000 ____D C:\Program Files (x86)\Steam
2022-01-02 09:58 - 2022-01-02 09:58 - 000001036 _____ C:\Users\Public\Desktop\Steam.lnk
2022-01-02 09:58 - 2022-01-02 09:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-01-02 06:19 - 2022-01-02 06:19 - 000000000 ___HD C:\$WinREAgent
2022-01-02 04:33 - 2022-01-02 04:34 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-02 04:22 - 2022-01-02 04:22 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-01-02 04:22 - 2022-01-02 04:22 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-01-02 04:22 - 2022-01-02 04:22 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-01-02 02:43 - 2022-01-02 02:43 - 000001082 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2022-01-02 02:43 - 2022-01-02 02:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2022-01-02 02:31 - 2022-01-02 02:31 - 000000000 ____D C:\Users\loicp\AppData\Local\Comms
2022-01-02 02:22 - 2022-01-02 19:32 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2022-01-02 02:21 - 2022-01-02 02:21 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2022-01-02 02:20 - 2022-01-03 09:39 - 000000000 ____D C:\Users\loicp\AppData\Local\Battle.net
2022-01-02 02:20 - 2022-01-02 02:21 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Battle.net
2022-01-02 02:20 - 2022-01-02 02:20 - 000000946 _____ C:\Users\Public\Desktop\Battle.net.lnk
2022-01-02 02:20 - 2022-01-02 02:20 - 000000000 ____D C:\Users\loicp\AppData\Local\CEF
2022-01-02 02:20 - 2022-01-02 02:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2022-01-02 02:19 - 2022-01-02 02:19 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-02 02:19 - 2022-01-02 02:19 - 000002280 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-02 02:19 - 2022-01-02 02:19 - 000000000 ____D C:\Program Files\Google
2022-01-02 02:17 - 2022-01-03 10:21 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-02 02:17 - 2022-01-02 10:19 - 000000000 ____D C:\Users\loicp\AppData\Local\Google
2022-01-02 02:17 - 2022-01-02 02:21 - 000000000 ____D C:\Program Files (x86)\Battle.net
2022-01-02 02:17 - 2022-01-02 02:17 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-02 02:17 - 2022-01-02 02:17 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-02 02:17 - 2022-01-02 02:17 - 000000000 ____D C:\Users\loicp\AppData\Local\Blizzard Entertainment
2022-01-02 02:16 - 2022-01-03 09:19 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1451893863-2680350518-2795618049-1001
2022-01-02 02:16 - 2022-01-02 02:16 - 000000000 ___HD C:\OneDriveTemp
2022-01-02 02:16 - 2022-01-02 02:16 - 000000000 ____D C:\ProgramData\Battle.net
2022-01-02 02:15 - 2022-01-03 10:49 - 000000000 ____D C:\Users\loicp\AppData\Local\PlaceholderTileLogoFolder
2022-01-02 02:15 - 2022-01-03 09:19 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1451893863-2680350518-2795618049-1001
2022-01-02 02:15 - 2022-01-03 09:19 - 000000000 ___RD C:\Users\loicp\OneDrive
2022-01-02 02:15 - 2022-01-02 02:15 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-01-02 02:14 - 2022-01-03 10:49 - 000000000 ____D C:\ProgramData\Packages
2022-01-02 02:14 - 2022-01-02 20:56 - 000000000 ____D C:\Users\loicp\AppData\Local\D3DSCache
2022-01-02 02:14 - 2022-01-02 02:14 - 000000000 ____D C:\Users\loicp\AppData\Local\Publishers
2022-01-02 02:13 - 2022-01-03 10:49 - 000000000 ____D C:\Users\loicp\AppData\Local\Packages
2022-01-02 02:13 - 2022-01-02 11:00 - 000000000 ____D C:\Users\loicp\AppData\Local\ConnectedDevicesPlatform
2022-01-02 02:13 - 2022-01-02 02:15 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-01-02 02:13 - 2022-01-02 02:13 - 000000000 ___RD C:\Users\loicp\3D Objects
2022-01-02 02:13 - 2022-01-02 02:13 - 000000000 ____D C:\Users\loicp\AppData\Roaming\Adobe
2022-01-02 02:13 - 2022-01-02 02:13 - 000000000 ____D C:\Users\loicp\AppData\Local\VirtualStore
2022-01-02 02:10 - 2022-01-02 20:56 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-01-02 02:09 - 2022-01-03 09:19 - 000002421 _____ C:\Users\loicp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-02 02:09 - 2022-01-02 02:15 - 000000000 ____D C:\Users\loicp
2022-01-02 02:09 - 2022-01-02 02:09 - 000000020 ___SH C:\Users\loicp\ntuser.ini
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Voisinage réseau
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Voisinage d'impression
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Modèles
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Mes documents
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Menu Démarrer
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Documents\Mes vidéos
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Documents\Mes images
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\Documents\Ma musique
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2022-01-02 02:09 - 2022-01-02 02:09 - 000000000 _SHDL C:\Users\loicp\AppData\Local\Historique
2022-01-02 02:08 - 2022-01-02 02:08 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Public\Documents\Mes images
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Voisinage réseau
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Modèles
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Mes documents
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Menu Démarrer
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Documents\Mes images
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\Default User
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Users\All Users
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\ProgramData\Modèles
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\ProgramData\Menu Démarrer
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\ProgramData\Bureau
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Program Files\Fichiers communs
2022-01-02 02:05 - 2022-01-02 02:05 - 000000000 _SHDL C:\Documents and Settings
2022-01-02 02:03 - 2022-01-02 12:13 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-02 02:03 - 2022-01-02 12:13 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-02 02:03 - 2022-01-02 11:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-02 02:03 - 2022-01-02 10:57 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2022-01-02 02:03 - 2022-01-02 10:55 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-01-02 02:03 - 2022-01-02 04:18 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-01-02 02:03 - 2022-01-02 02:10 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-02 02:03 - 2022-01-02 02:10 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-02 02:03 - 2022-01-02 02:03 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2022-01-02 02:03 - 2022-01-02 02:03 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2022-01-02 02:03 - 2022-01-02 02:03 - 000000000 ____D C:\ProgramData\Razer
2022-01-02 02:02 - 2022-01-03 10:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-02 02:02 - 2022-01-02 10:59 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-02 02:02 - 2022-01-02 02:03 - 000258768 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-01-02 02:02 - 2022-01-02 02:02 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-01-02 01:57 - 2022-01-02 02:05 - 000000000 ____D C:\WINDOWS\Panther
2022-01-02 01:54 - 2022-01-02 02:13 - 000000000 ____D C:\Program Files (x86)\Razer
2022-01-02 01:54 - 2022-01-02 01:54 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-01-02 01:54 - 2022-01-02 01:54 - 000000000 ____D C:\WINDOWS\Setup
2022-01-02 01:54 - 2022-01-02 01:54 - 000000000 ____D C:\WINDOWS\AMDTAs
2022-01-02 01:53 - 2022-01-02 20:56 - 000791594 _____ C:\WINDOWS\system32\perfh00C.dat
2022-01-02 01:53 - 2022-01-02 20:56 - 000149760 _____ C:\WINDOWS\system32\perfc00C.dat
2022-01-02 01:53 - 2022-01-02 02:07 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-01-02 01:53 - 2022-01-02 01:53 - 000351124 _____ C:\WINDOWS\system32\perfi00C.dat
2022-01-02 01:53 - 2022-01-02 01:53 - 000040694 _____ C:\WINDOWS\system32\perfd00C.dat
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fr
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\fr
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\OCR
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\addins
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\ProgramData\ssh
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files\MSBuild
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-01-02 01:53 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\winrm
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\WCN
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\slmgr
2022-01-02 01:52 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2022-01-02 01:52 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2022-01-02 01:52 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
2022-01-02 01:52 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\system32\0409
2022-01-02 01:52 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\DigitalLocker
2022-01-02 01:50 - 2022-01-02 01:55 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-01-02 01:50 - 2022-01-02 01:48 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2022-01-02 01:50 - 2022-01-02 01:48 - 000215943 _____ C:\WINDOWS\system32\dssec.dat
2022-01-02 01:50 - 2022-01-02 01:48 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2022-01-02 01:50 - 2022-01-02 01:48 - 000017635 _____ C:\WINDOWS\system32\Drivers\etc\services
2022-01-02 01:50 - 2022-01-02 01:48 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2022-01-02 01:50 - 2022-01-02 01:48 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config
2022-01-02 01:50 - 2022-01-02 01:48 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config
2022-01-02 01:50 - 2022-01-02 01:48 - 000001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2022-01-02 01:50 - 2022-01-02 01:48 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2022-01-02 01:50 - 2022-01-02 01:48 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2022-01-02 01:50 - 2022-01-02 01:48 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT
2022-01-02 01:50 - 2022-01-02 01:48 - 000000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2022-01-02 01:50 - 2022-01-02 01:48 - 000000219 _____ C:\WINDOWS\system.ini
2022-01-02 01:50 - 2022-01-02 01:48 - 000000092 _____ C:\WINDOWS\win.ini
2022-01-02 01:49 - 2022-01-03 10:49 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-02 01:49 - 2022-01-03 10:47 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-02 01:49 - 2022-01-03 10:47 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-02 01:49 - 2022-01-03 09:57 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-01-02 01:49 - 2022-01-03 09:53 - 000000000 ___RD C:\Program Files (x86)
2022-01-02 01:49 - 2022-01-02 11:00 - 000000000 ____D C:\WINDOWS\ServiceState
2022-01-02 01:49 - 2022-01-02 04:18 - 000000000 ____D C:\Program Files\Windows Defender
2022-01-02 01:49 - 2022-01-02 04:12 - 000000000 ____D C:\WINDOWS\appcompat
2022-01-02 01:49 - 2022-01-02 02:30 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-01-02 01:49 - 2022-01-02 02:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-01-02 01:49 - 2022-01-02 02:09 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-01-02 01:49 - 2022-01-02 02:07 - 000000000 ____D C:\WINDOWS\system32\spool
2022-01-02 01:49 - 2022-01-02 02:07 - 000000000 ____D C:\ProgramData\USOPrivate
2022-01-02 01:49 - 2022-01-02 02:05 - 000000000 ____D C:\Program Files\Windows NT
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ___SD C:\WINDOWS\system32\dsc
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\SystemResources
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\setup
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\MUI
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\system32\Com
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\WINDOWS\IME
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files\Common Files\System
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-01-02 01:49 - 2022-01-02 01:53 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-01-02 01:49 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-01-02 01:49 - 2022-01-02 01:52 - 000000000 ____D C:\WINDOWS\Help
2022-01-02 01:49 - 2022-01-02 01:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-01-02 01:49 - 2022-01-02 01:52 - 000000000 ____D C:\Program Files (x86)\Windows NT
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 __RSD C:\WINDOWS\Media
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 __RHD C:\Users\Public\Libraries
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ___SD C:\WINDOWS\system32\Nui
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ti-et
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ta-lk
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ta-in
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\si-lk
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\my-mm
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\Keywords
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\icsxml
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ias
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\downlevel
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\Bthprops
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\am-et
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\Registration
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\Provisioning
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\L2Schemas
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\IdentityCRL
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\Cursors
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2022-01-02 01:49 - 2022-01-02 01:50 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 __SHD C:\Program Files\Windows Sidebar
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ___SD C:\WINDOWS\system32\Configuration
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Web
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\WaaS
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Vss
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\tracing
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\TAPI
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SystemApps
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\winevt
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\ras
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\PointOfService
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\Macromed
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\Ipmi
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\IME
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\DriverState
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\config\TxR
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\config\Journal
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\System
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SKB
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\security
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\schemas
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\SchCache
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Resources
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\rescache
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\PLA
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Performance
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\ModemLogs
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\InputMethod
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Globalization
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Containers
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\Branding
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\ProgramData\USOShared
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\Program Files\Windows Security
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\Program Files\Windows Portable Devices
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\Program Files\ModifiableWindowsApps
2022-01-02 01:49 - 2022-01-02 01:49 - 000000000 ____D C:\Program Files\Common Files\Services
2022-01-02 01:48 - 2022-01-03 10:47 - 000000000 ____D C:\WINDOWS\INF
2022-01-02 01:44 - 2022-01-02 10:59 - 077070336 _____ C:\WINDOWS\system32\config\SOFTWARE
2022-01-02 01:44 - 2022-01-02 10:59 - 013369344 _____ C:\WINDOWS\system32\config\SYSTEM
2022-01-02 01:44 - 2022-01-02 10:59 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT
2022-01-02 01:44 - 2022-01-02 10:59 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2022-01-02 01:44 - 2022-01-02 10:59 - 000131072 _____ C:\WINDOWS\system32\config\SAM
2022-01-02 01:44 - 2022-01-02 10:59 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY
2022-01-02 01:44 - 2022-01-02 06:24 - 000000000 ____D C:\WINDOWS\servicing
2022-01-02 01:44 - 2022-01-02 06:24 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-02 01:44 - 2022-01-02 02:26 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-01-02 01:44 - 2022-01-02 01:49 - 000000000 ____D C:\WINDOWS\system32\SMI
2022-01-02 01:38 - 2022-01-02 01:57 - 000000000 ___HD C:\$SysReset
2021-12-27 19:09 - 2021-10-28 23:14 - 000079840 _____ (Razer Inc) C:\WINDOWS\system32\RazerS3Coinstaller.dll
2021-12-16 10:15 - 2021-12-16 10:15 - 000272384 ____N C:\WINDOWS\system32\TpmTool.exe
2021-12-16 10:15 - 2021-12-16 10:15 - 000223744 ____N C:\WINDOWS\SysWOW64\TpmTool.exe
2021-12-16 10:15 - 2021-12-16 10:15 - 000162816 ____N C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-12-16 10:15 - 2021-12-16 10:15 - 000011979 ____N C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-11-10 20:30 - 2021-11-10 20:30 - 000060928 ____N C:\WINDOWS\system32\runexehelper.exe
2021-10-14 08:53 - 2021-10-14 08:53 - 000706536 ____N C:\WINDOWS\system32\TextShaping.dll
2021-10-14 08:53 - 2021-10-14 08:53 - 000611960 ____N C:\WINDOWS\SysWOW64\TextShaping.dll
2021-10-14 08:53 - 2021-10-14 08:53 - 000288768 ____N C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2021-10-14 08:53 - 2021-10-14 08:53 - 000098304 ____N C:\WINDOWS\system32\Drivers\cimfs.sys
2021-10-08 11:06 - 2021-10-08 11:06 - 000004698 _____ C:\WINDOWS\Info.xml

==================== Trois mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-01-02 01:48 - 2021-04-09 22:15 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2022-01-02 01:47 - 2019-12-07 10:10 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2021-12-15 21:50 - 2021-04-11 16:17 - 007586784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-12-15 13:16 - 2021-04-11 16:17 - 000125568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys

==================== SigCheckExt =========================

2022-01-03 10:57 - 2022-01-03 10:57 - 002311168 _____ (Farbar) C:\Users\loicp\Desktop\FRST64.exe
2022-01-03 10:53 - 2022-01-03 10:53 - 003478168 _____ (Nicolas Coolman) C:\Users\loicp\Desktop\ZHPSuite.exe

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


==================== BCD ================================

Gestionnaire de d‚marrage du microprogramme
-------------------------------------------
identificateur {fwbootmgr}
displayorder {bootmgr}
{2b2e8410-d221-11e8-9bd2-facb6cbf9f95}
{2b2e8411-d221-11e8-9bd2-facb6cbf9f95}
{2b2e840f-d221-11e8-9bd2-facb6cbf9f95}
timeout 1

Gestionnaire de d‚marrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume2
path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {9e114f05-6b66-11ec-a33b-96bdda2ea5e4}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30

Application logicielle (101fffff)
--------------------------------
identificateur {2b2e840f-d221-11e8-9bd2-facb6cbf9f95}
description Hard Drive

Application logicielle (101fffff)
--------------------------------
identificateur {2b2e8410-d221-11e8-9bd2-facb6cbf9f95}
description UEFI: PXE IP4 Realtek PCIe GBE Family Controller

Application logicielle (101fffff)
--------------------------------
identificateur {2b2e8411-d221-11e8-9bd2-facb6cbf9f95}
description UEFI: PXE IP6 Realtek PCIe GBE Family Controller

Chargeur de d‚marrage Windows
-----------------------------
identificateur {4866c4fc-997a-11eb-b4c9-b500787ce0d3}
device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{4866c4fd-997a-11eb-b4c9-b500787ce0d3}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale fr-FR
inherit {bootloadersettings}
displaymessage Recovery
displaymessageoverride PushButtonReset
osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{4866c4fd-997a-11eb-b4c9-b500787ce0d3}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes

Chargeur de d‚marrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \WINDOWS\system32\winload.efi
description Windows 10
locale fr-FR
inherit {bootloadersettings}
recoverysequence {4866c4fc-997a-11eb-b4c9-b500787ce0d3}
displaymessageoverride Recovery
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {9e114f05-6b66-11ec-a33b-96bdda2ea5e4}
nx OptIn
bootmenupolicy Standard

Reprendre … partir de la mise en veille prolong‚e
-------------------------------------------------
identificateur {9e114f05-6b66-11ec-a33b-96bdda2ea5e4}
device partition=C:
path \WINDOWS\system32\winresume.efi
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
recoverysequence {4866c4fc-997a-11eb-b4c9-b500787ce0d3}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No

Testeur de m‚moire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume2
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostics m‚moire Windows
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes

ParamŠtres EMS
--------------
identificateur {emssettings}
bootems No

ParamŠtres du d‚bogueur
-----------------------
identificateur {dbgsettings}
debugtype Local

Erreurs de m‚moire RAM
----------------------
identificateur {badmemory}

ParamŠtres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}

ParamŠtres du chargeur de d‚marrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}

ParamŠtres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200

ParamŠtres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}

Options de p‚riph‚rique
-----------------------
identificateur {4866c4fd-997a-11eb-b4c9-b500787ce0d3}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume1
ramdisksdipath \Recovery\WindowsRE\boot.sdi

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité