cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Exécuté par cipher (administrateur) sur DESKTOP-O88EPTV (Acer Predator PH315-52) (10-09-2022 10:48:11)
Exécuté depuis C:\Users\cipher\Desktop
Profils chargés: cipher
Plate-forme: Microsoft Windows 10 Professionnel Version 21H2 19044.1889 (X64) Langue: Français (France)
Navigateur par défaut: Opera
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Origin\Origin.exe ->) (Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe <22>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2>
(C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\cipher\AppData\Local\Programs\Opera\90.0.4480.84\opera_crashreporter.exe
(C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe ->) (Overwolf Ltd -> Overwolf LTD) E:\Overwolf\Overwolf.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Utility Toolbox\cnqtbapp.exe
(cmd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe <2>
(Discord Inc. -> Discord Inc.) C:\Users\cipher\AppData\Local\Discord\app-1.0.9006\Discord.exe <6>
(drivers\RivetNetworks\Killer\xTendUtilityService.exe ->) (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe
(E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.204.0.1\OverwolfHelper.exe
(E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.204.0.1\OverwolfHelper64.exe
(E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Users\cipher\AppData\Local\Overwolf\ProcessCache\0.204.0.1\cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj\curseforge.exe
(E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) E:\Overwolf\0.204.0.1\OverwolfBrowser.exe <3>
(E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) E:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <6>
(explorer.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe
(explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (ROCCAT GmbH Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe
(explorer.exe ->) (The NW.js Community) [Fichier non signé] C:\Users\cipher\AppData\Roaming\opensubtitles-uploader\opensubtitles-uploader.exe <7>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSvc64.exe
(iMobie Inc. -> iMobie Inc.) C:\Program Files (x86)\iMobie\AnyTrans\AirBackupHelper.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHDCPSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_5.68.30003.0_x64__8wekyb3d8bbwe\gamingservices.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_5.68.30003.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe
(services.exe ->) (Plarium Global Ltd -> ) C:\Users\cipher\AppData\Local\PlariumPlay\8.0.0-0.0.3\PlariumPlayClientService\PlariumPlayClientService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSysSvc64.exe
(Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.192.647.0_x86__zpdnekdrzrea0\Spotify.exe <6>
(svchost.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(svchost.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) D:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe
(taskhostw.exe ->) (Opera Norway AS -> Opera Software) C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe <68>

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSvc64.exe [1464728 2019-01-31] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [9336528 2022-03-03] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1082592 2020-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3071192 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [CanonQuickToolbox] => C:\Program Files (x86)\Canon\Quick Utility Toolbox\cnqtbapp.exe [2270120 2020-10-27] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [708840 2022-04-26] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [AirBackupHelper] => C:\Program Files (x86)\iMobie\AnyTrans\AirBackupHelper.exe [2740872 2022-06-09] (iMobie Inc. -> iMobie Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234600 2022-08-20] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Discord] => C:\Users\cipher\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1089880 2022-08-26] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [EpicGamesLauncher] => E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32681424 2022-09-06] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Overwolf] => E:\Overwolf\OverwolfLauncher.exe [1802584 2022-08-04] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3149616 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [opensubtitles-uploader] => C:\Users\cipher\AppData\Roaming\opensubtitles-uploader\opensubtitles-uploader.exe [2402304 2022-01-19] (The NW.js Community) [Fichier non signé] <==== ATTENTION
HKLM\...\Windows x64\Print Processors\Canon MB2700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDD0.DLL [30720 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MB2700 series: C:\Windows\system32\CNCALD0.DLL [254464 2015-11-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MB2700 series: C:\Windows\system32\CNMLMD0.DLL [436736 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2021-09-04]
ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (Voyetra Turtle Beach, Inc. -> ROCCAT)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Roccat Talk.lnk [2021-09-07]
ShortcutTarget: Roccat Talk.lnk -> C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (ROCCAT GmbH Co., Ltd.) [Fichier non signé]

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {04CF84DE-0114-4A73-AE1B-167B2A915FF3} - System32\Tasks\Opera scheduled assistant Autoupdate 1596096035 => C:\Users\cipher\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\cipher\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {097CCD2B-0DF9-4F00-84E3-9CF46C8D2DE9} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {133FBE78-B467-45AB-89B4-9DB636DEF2D2} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342080 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry
Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog
Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector
Task: {19649117-C833-4240-A906-43CA575355CE} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {214A7E0A-30DF-4B83-9252-0D578F1AB34F} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {31F417BC-876C-4C28-9484-BE354B72E717} - System32\Tasks\Opera scheduled Autoupdate 1596096032 => C:\Users\cipher\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software)
Task: {55AAF4CA-DB63-43CB-8DE6-378865010052} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [31903104 2022-08-31] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
Task: {56BEC16F-48A6-4369-834A-AED963414DC6} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD)
Task: {7CCC324E-E113-4381-85B0-4C31B5B86ADC} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1645704 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
Task: {958D4189-825F-483D-95C0-1CDA547789FC} - System32\Tasks\ROCCAT DEVICE SERVICE => D:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe [442888 2021-04-19] (Voyetra Turtle Beach, Inc. -> ROCCAT)
Task: {A9918167-E8C0-4CEF-9C04-C509307651AF} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [257312 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
Task: {AF86B8A8-1256-499D-9785-42D409A29D20} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {B7026B21-F2E5-49F9-9C6F-64652709A468} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {BC2CDCFB-8B16-4ECB-9F3F-9E4C7A84289F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {C353E073-FEC2-4404-A9AC-945A25770906} - System32\Tasks\chrome zoom => cmd /c powershell -WindowStyle Hidden -E "CgAKACQAZwBWAEEAUgA9ACQAbgB1AGwAbAA7AAoAJABzAHQAcgBfAGUAbgBjAF8AQQBzAGMAPQBbAFMAeQBzAHQAZQBtAC4AVABlAHgAdAAuAEUAbgBjAG8AZABpAG4AZwBdADoAOgBBAFMAQwBJAEkAOwAKAAoAJABsAF8AdgBhAHIAIAA9ACAAIgAxADkAIgA7AAoACgAkAHIAZQBtAFAAYQByACAAPQAgACIAVwB5AEkAeABNAFQAZwB5AE0AVABnAH (l'élément de données a 5363 caractères en plus). <==== ATTENTION
Task: {D7A4FA81-DFE2-451B-B65D-25E7EC23CC74} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {DC88AFB6-FAB6-4B63-8482-D021133A1404} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {FF68C989-1B59-410E-BF9D-7B1A0F508528} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{ef7e6e94-3266-4f78-bf2b-ac88c7eb2c64}: [DhcpNameServer] 192.168.0.254
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\cipher\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-13]
Edge Extension: (Avira Safe Shopping) - C:\Users\cipher\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2022-07-19]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\dtplugin\npDeployJava1.dll [2022-05-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\plugin2\npjp2.dll [2022-05-09] (Oracle America, Inc. -> Oracle Corporation)

Chrome:
=======
CHR Profile: C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default [2022-09-07]
CHR Extension: (Slides) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-09]
CHR Extension: (Docs) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-09]
CHR Extension: (Google Drive) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-09]
CHR Extension: (YouTube) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-09]
CHR Extension: (Avira Password Manager) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2021-08-09]
CHR Extension: (Avira Safe Shopping) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2021-08-09]
CHR Extension: (Sheets) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-09]
CHR Extension: (Google Docs hors connexion) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-09]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-09]
CHR Extension: (Gmail) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-09]
CHR Extension: (Chrome Media Router) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-09]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]

Opera:
=======
OPR Profile: C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable [2022-09-10]
OPR DownloadDir: E:\Mes Téléchargements
OPR Notifications: Opera Stable -> hxxps://creator.nightcafe.studio
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-05]
OPR Extension: (Twitch Previews) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\ghngjhgepijgppcajcajlndjofnncecf [2022-09-07]
OPR Extension: (Opera Crypto Wallet) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-07-16]
OPR Extension: (Youtube & Twitch - Alerts) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\hkahddfidmjhlnddcipglpgkjiannnbn [2022-07-09]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-11]
OPR Extension: (Instant Gaming) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\lbnoedlobifdhbpjkcfhcbdcjhampmne [2022-03-14]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3004688 2022-07-22] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [386864 2022-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [265416 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [284136 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8930120 2022-02-22] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1134624 2022-07-31] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-08-24] (EasyAntiCheat Oy -> Epic Games, Inc.)
R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8563200 2022-09-09] (Avira Operations GmbH -> Avira Operations GmbH)
S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8563200 2022-09-09] (Avira Operations GmbH -> Avira Operations GmbH)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2357880 2021-07-21] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> )
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2616424 2019-06-17] (Rivet Networks LLC -> Rivet Networks)
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [10827744 2022-03-03] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD)
R2 Plarium Play Client Service; C:\Users\cipher\AppData\Local\PlariumPlay\8.0.0-0.0.3\PlariumPlayClientService\PlariumPlayClientService.exe [99912 2022-08-25] (Plarium Global Ltd -> )
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2022-03-06] (Even Balance, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10450928 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72808 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72816 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 AcerAirplaneModeController; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [30168 2020-05-12] (Acer Incorporated -> Acer Incorporated)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [230520 2022-06-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [11941392 2022-08-03] (EasyAntiCheat Oy -> EasyAntiCheat Oy)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [162432 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.)
R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [100128 2022-06-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [50248 2022-01-25] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [24024 2022-06-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH)
R2 rtp_filesystem_filter; C:\WINDOWS\System32\DRIVERS\rtp_filesystem_filter.sys [205768 2022-09-01] (Avira Operations GmbH -> Avira Operations GmbH)
R1 rtp_process_monitor; C:\WINDOWS\system32\DRIVERS\rtp_process_monitor.sys [187496 2022-09-01] (Avira Operations GmbH -> Avira Operations GmbH)
R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [45672 2022-08-26] (Avira Operations GmbH -> Avira Operations GmbH)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8746536 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49568 2021-08-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [434424 2021-08-10] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-10] (Microsoft Windows -> Microsoft Corporation)
S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-09-10 10:48 - 2022-09-10 10:48 - 000032298 _____ C:\Users\cipher\Desktop\FRST.txt
2022-09-10 10:48 - 2022-09-10 10:48 - 000000000 ____D C:\FRST
2022-09-10 10:47 - 2022-09-10 10:47 - 002371072 _____ (Farbar) C:\Users\cipher\Desktop\FRST64.exe
2022-09-09 17:22 - 2022-09-09 17:22 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Broken Arms Games Srls
2022-09-09 16:39 - 2022-09-09 16:39 - 000014808 _____ C:\WINDOWS\system32\Tasks\chrome zoom
2022-09-08 19:50 - 2022-09-08 19:50 - 000000000 ____D C:\Users\cipher\AppData\Local\chrome_profile
2022-09-07 20:33 - 2022-09-07 20:33 - 000003794 _____ C:\WINDOWS\system32\Tasks\AviraSystemSpeedupVerify
2022-09-05 17:41 - 2022-09-05 17:41 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance
2022-09-05 17:41 - 2022-09-05 17:41 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog
2022-09-05 17:41 - 2022-09-05 17:41 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray
2022-09-04 12:20 - 2022-09-04 12:20 - 000000000 ____D C:\Users\cipher\Documents\Outerverse
2022-09-03 19:58 - 2022-09-03 19:58 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Craneballs
2022-09-03 19:58 - 2022-09-03 19:58 - 000000000 ____D C:\Users\cipher\AppData\Local\GOG.com
2022-09-03 19:45 - 2022-09-03 19:45 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\AwakenRealms
2022-09-03 19:06 - 2022-09-03 19:06 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\LEGO SYSTEM A_S
2022-09-03 19:02 - 2022-09-03 19:02 - 000002913 _____ C:\Users\cipher\Desktop\Planet Nomads.lnk
2022-09-03 19:01 - 2022-09-03 19:01 - 000003220 _____ C:\Users\cipher\Desktop\Builder's Journey.lnk
2022-09-03 19:01 - 2022-09-03 19:01 - 000002931 _____ C:\Users\cipher\Desktop\NPLH.lnk
2022-09-03 17:22 - 2022-09-03 17:21 - 000001569 _____ C:\Users\cipher\Desktop\Stray.lnk
2022-09-03 11:55 - 2022-09-03 11:55 - 000000000 ____D C:\Users\cipher\AppData\Local\Hk_project
2022-09-02 22:17 - 2022-09-02 22:17 - 000001607 _____ C:\Users\cipher\Desktop\ALT F4.lnk
2022-09-02 21:23 - 2022-09-02 21:23 - 000000000 ____D C:\Users\cipher\AppData\Local\ALTF4_F
2022-09-01 14:05 - 2022-09-01 14:05 - 000000000 ____D C:\Users\cipher\AppData\Local\ElevatedDiagnostics
2022-09-01 14:01 - 2022-09-01 14:02 - 000000000 ____D C:\Users\cipher\Documents\NFS Most Wanted
2022-09-01 13:55 - 2022-09-01 13:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need For Speed Most Wanted Remaster Edition
2022-09-01 13:54 - 2022-09-01 13:54 - 000000000 ____D C:\Program Files (x86)\DODI-Repacks
2022-09-01 13:31 - 2022-09-01 13:31 - 000000000 ____D C:\Users\cipher\AppData\Local\opensubtitles-uploader
2022-09-01 13:29 - 2022-09-01 13:35 - 000000000 ____D C:\Users\cipher\AppData\Roaming\opensubtitles-uploader
2022-09-01 10:23 - 2022-09-01 10:23 - 000000000 ____D C:\Users\Public\Documents\Steam
2022-09-01 10:21 - 2022-09-01 10:21 - 000003142 _____ C:\Users\cipher\Desktop\SatisFactory.lnk
2022-08-31 20:41 - 2022-08-31 20:42 - 000000000 ____D C:\Users\cipher\AppData\Local\FactoryGame
2022-08-31 17:18 - 2022-08-31 17:28 - 000000000 ____D C:\Users\cipher\Documents\Universe Sandbox
2022-08-31 17:18 - 2022-08-31 17:18 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Giant Army
2022-08-31 17:17 - 2022-08-31 17:17 - 000001795 _____ C:\Users\Public\Desktop\Universe Sandbox.lnk
2022-08-31 17:17 - 2022-08-31 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universe Sandbox [GOG.com]
2022-08-30 09:43 - 2022-08-30 09:43 - 000000000 ____D C:\Users\cipher\AppData\Local\Biomutant
2022-08-30 09:42 - 2022-08-30 09:42 - 000001677 _____ C:\Users\Public\Desktop\Biomutant.lnk
2022-08-30 09:42 - 2022-08-30 09:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biomutant [GOG.com]
2022-08-28 10:27 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\Documents\AnyTrans
2022-08-25 19:34 - 2022-08-25 19:34 - 000000000 ____D C:\Users\cipher\AppData\Local\ToastNotificationManagerCompat
2022-08-25 19:33 - 2022-08-25 19:34 - 000000000 ____D C:\Users\cipher\AppData\Local\PlariumPlay
2022-08-24 10:46 - 2022-08-24 10:46 - 000000000 ____D C:\Users\cipher\AppData\Local\MultiVersus
2022-08-24 10:46 - 2022-08-24 10:46 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS
2022-08-23 13:14 - 2022-08-23 13:14 - 000002293 _____ C:\Users\cipher\Desktop\teardown.lnk
2022-08-19 22:16 - 2022-08-19 22:16 - 000002499 _____ C:\Users\cipher\Desktop\MaD2.lnk
2022-08-19 15:26 - 2022-08-19 15:26 - 000002645 _____ C:\Users\cipher\Desktop\Horizon Zero Dawn.lnk
2022-08-19 11:28 - 2022-08-19 11:28 - 000003442 _____ C:\Users\cipher\Desktop\Getting Over It.lnk
2022-08-18 19:07 - 2022-08-18 19:07 - 000000000 ____D C:\Users\cipher\AppData\Local\Fallout76
2022-08-18 18:38 - 2022-08-18 18:38 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Bennett Foddy
2022-08-18 17:33 - 2022-08-18 17:33 - 000000223 _____ C:\Users\cipher\Desktop\Fallout 76.url
2022-08-17 22:31 - 2022-08-17 22:31 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2022-08-17 22:31 - 2022-08-17 22:31 - 000000000 ____D C:\Users\cipher\Documents\Horizon Zero Dawn
2022-08-17 16:05 - 2022-08-17 16:05 - 000001814 _____ C:\Users\Public\Desktop\SPORE™.lnk
2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\Users\cipher\Documents\My Spore Creations
2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Spore
2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPORE™ Collection [GOG.com]
2022-08-17 15:53 - 2022-08-17 15:53 - 001575742 ____N (Igor Pavlov) C:\Users\cipher\Desktop\7z2201-x64.exe
2022-08-17 15:53 - 2022-08-17 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2022-08-17 15:53 - 2022-08-17 15:53 - 000000000 ____D C:\Program Files\7-Zip
2022-08-16 19:57 - 2022-09-07 14:10 - 000000000 ____D C:\Users\cipher\AppData\Local\Teardown
2022-08-16 19:57 - 2022-08-16 19:57 - 000000000 ____D C:\Users\cipher\Documents\Teardown
2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\ProgramData\Apple
2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files\Common Files\Apple
2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files\Bonjour
2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files (x86)\Bonjour
2022-08-12 11:11 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\AppData\Roaming\iMobie
2022-08-12 11:11 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\AppData\Local\iMobie_Inc
2022-08-12 11:11 - 2022-08-16 14:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie
2022-08-12 11:11 - 2022-08-12 11:12 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Apple Computer
2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\Users\Public\Thunder Network
2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\ProgramData\Thunder Network
2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\Program Files (x86)\iMobie

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-09-10 10:47 - 2020-07-30 15:34 - 000000000 ____D C:\Users\cipher\AppData\Roaming\discord
2022-09-10 10:46 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-09-10 10:45 - 2022-07-02 21:53 - 000000000 ____D C:\ProgramData\Origin
2022-09-10 10:45 - 2021-08-11 11:44 - 000000000 ____D C:\Program Files (x86)\Steam
2022-09-10 02:48 - 2022-01-26 17:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-10 02:48 - 2021-08-13 12:23 - 000000000 ____D C:\Users\cipher\AppData\Local\Discord
2022-09-09 22:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-09 22:16 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-09 17:29 - 2020-07-30 12:18 - 000000000 ____D C:\Users\cipher\AppData\Local\CrashDumps
2022-09-09 12:39 - 2021-08-12 10:41 - 000000000 ____D C:\ProgramData\NVIDIA
2022-09-08 16:48 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-07 21:24 - 2022-07-02 21:52 - 000000000 ____D C:\Users\cipher\AppData\Local\Origin
2022-09-07 18:37 - 2020-07-30 10:40 - 000000000 ____D C:\Users\cipher\AppData\Local\Battle.net
2022-09-07 16:00 - 2022-01-26 17:46 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-07 16:00 - 2019-12-07 16:50 - 000792972 _____ C:\WINDOWS\system32\perfh00C.dat
2022-09-07 16:00 - 2019-12-07 16:50 - 000150102 _____ C:\WINDOWS\system32\perfc00C.dat
2022-09-07 16:00 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-07 15:56 - 2022-06-15 19:50 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2022-09-07 15:54 - 2021-03-05 21:31 - 000001863 _____ C:\Users\cipher\Desktop\CurseForge.lnk
2022-09-07 15:53 - 2022-01-26 17:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-07 15:53 - 2021-08-09 19:12 - 000000000 __SHD C:\Users\cipher\IntelGraphicsProfiles
2022-09-07 15:53 - 2021-08-09 17:34 - 000000000 ____D C:\Intel
2022-09-07 15:53 - 2021-08-09 17:23 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-07 15:53 - 2021-03-05 21:28 - 000000000 ____D C:\Users\cipher\AppData\Local\Overwolf
2022-09-07 15:53 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-09-07 15:52 - 2022-06-29 19:42 - 009406432 _____ C:\WINDOWS\system32\rtp.db
2022-09-07 13:46 - 2022-01-26 17:49 - 000004240 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1596096032
2022-09-07 13:46 - 2020-07-30 10:00 - 000001404 _____ C:\Users\cipher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk
2022-09-05 17:47 - 2020-08-10 18:12 - 000000000 ____D C:\Users\cipher\AppData\Local\D3DSCache
2022-09-05 17:45 - 2021-08-09 17:28 - 000000000 ____D C:\Users\cipher\AppData\Local\Packages
2022-09-05 17:41 - 2022-01-26 17:49 - 000003478 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update
2022-09-05 17:41 - 2021-08-13 08:34 - 000001078 _____ C:\Users\Public\Desktop\Avira.lnk
2022-09-05 17:41 - 2021-08-13 08:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2022-09-04 21:03 - 2021-08-09 17:24 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-03 11:55 - 2020-08-14 15:33 - 000000000 ____D C:\Users\cipher\AppData\Local\UnrealEngine
2022-09-02 20:13 - 2021-11-21 12:19 - 000153040 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 002835920 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 000443856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 000198120 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-09-02 20:13 - 2021-11-10 20:24 - 000067024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2022-09-02 18:40 - 2020-11-01 13:28 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Twitch
2022-09-01 18:54 - 2022-01-26 17:49 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4112475713-5470514-2756610412-1001
2022-09-01 18:54 - 2022-01-26 17:49 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4112475713-5470514-2756610412-1001
2022-09-01 18:54 - 2022-01-26 17:45 - 000002416 _____ C:\Users\cipher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-01 14:01 - 2021-08-09 17:28 - 000000000 ____D C:\Users\cipher\AppData\Local\VirtualStore
2022-09-01 11:28 - 2022-06-29 19:41 - 000205768 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filesystem_filter.sys
2022-09-01 11:28 - 2022-06-29 19:41 - 000187496 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_process_monitor.sys
2022-08-31 17:17 - 2021-08-11 11:51 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-31 17:16 - 2022-08-04 16:58 - 000000000 ____D C:\GOG Games
2022-08-31 16:44 - 2021-08-12 13:30 - 000000000 ____D C:\Users\cipher\Documents\My Games
2022-08-28 10:27 - 2022-07-02 21:53 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Origin
2022-08-28 10:27 - 2021-08-15 22:04 - 000000000 ____D C:\Program Files (x86)\Battle.net
2022-08-28 10:25 - 2022-06-15 19:38 - 000000000 ____D C:\Program Files\Riot Vanguard
2022-08-26 13:46 - 2020-08-11 09:08 - 000000000 ____D C:\Users\cipher\AppData\Roaming\.minecraft
2022-08-26 09:26 - 2022-06-29 19:41 - 000045672 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_traverse.sys
2022-08-25 19:47 - 2022-01-26 17:49 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2022-01-26 17:49 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-08-25 19:47 - 2021-08-12 10:41 - 000001439 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2022-08-25 19:47 - 2021-08-12 10:41 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-08-25 19:47 - 2021-08-10 09:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-08-25 19:47 - 2021-08-10 09:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-08-25 19:44 - 2020-12-28 15:27 - 000000000 ____D C:\Users\cipher\AppData\Local\WarThunder
2022-08-24 10:46 - 2022-06-25 08:51 - 000000000 ____D C:\Users\cipher\AppData\Roaming\EasyAntiCheat
2022-08-20 19:53 - 2022-07-24 10:26 - 000000000 ____D C:\Program Files (x86)\Origin Games
2022-08-17 20:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-08-17 11:25 - 2022-01-26 17:49 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-17 11:25 - 2022-01-26 17:49 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-16 14:23 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-08-11 23:43 - 2022-07-23 19:02 - 000000000 ____D C:\Program Files (x86)\Origin
2022-08-11 11:34 - 2020-09-06 18:37 - 000002228 _____ C:\Users\cipher\Desktop\Discord.lnk
2022-08-11 11:32 - 2022-01-26 17:44 - 000442424 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-08-11 11:31 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-08-11 11:31 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr

==================== Fichiers à la racine de certains dossiers ========

2021-09-11 08:52 - 2021-07-13 08:52 - 000000032 ____R () C:\ProgramData\hash.dat
2022-01-26 15:46 - 2022-01-26 15:47 - 000039048 _____ () C:\Users\cipher\AppData\Local\HDGraph.log
2022-07-05 20:26 - 2022-07-05 20:27 - 000005281 _____ () C:\Users\cipher\AppData\Local\krita-sysinfo.log
2022-07-05 20:26 - 2022-07-05 20:35 - 000001839 _____ () C:\Users\cipher\AppData\Local\krita.log
2022-07-05 20:35 - 2022-07-05 20:35 - 000000039 _____ () C:\Users\cipher\AppData\Local\kritadisplayrc
2022-07-05 20:26 - 2022-07-05 20:35 - 000016213 _____ () C:\Users\cipher\AppData\Local\kritarc
2020-10-26 12:47 - 2022-08-25 19:33 - 000021189 _____ () C:\Users\cipher\AppData\Local\PlariumPlay.log
2020-09-30 16:21 - 2020-09-30 16:21 - 000005838 _____ () C:\Users\cipher\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité