cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11-01-2023
Exécuté par Virgile (administrateur) sur DESKTOP-782BPRU (Gigabyte Technology Co., Ltd. X570 UD) (13-01-2023 16:32:32)
Exécuté depuis C:\Users\Virgile\Downloads
Profils chargés: Virgile
Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.2486 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCopyAccelerator.exe
(C:\Users\Virgile\AppData\Local\Programs\nordpass\NordPass.exe ->) (nordvpn s.a. -> ) C:\Users\Virgile\AppData\Local\Programs\nordpass\resources\nordpass-background-app.exe
(cmd.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe <10>
(F.lux Software LLC -> f.lux Software LLC) C:\Users\Virgile\AppData\Local\FluxSoftware\Flux\flux.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <14>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <8>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <10>
(nordvpn s.a. -> NordPass Team) C:\Users\Virgile\AppData\Local\Programs\nordpass\NordPass.exe <5>
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_6692a0f51b62daa3\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22102.229.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [881440 2019-06-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2022-09-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Policies\Explorer: [NoAutorun] 1
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Run: [f.lux] => C:\Users\Virgile\AppData\Local\FluxSoftware\Flux\flux.exe [1515848 2021-06-18] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Run: [electron.app.NordPass] => C:\Users\Virgile\AppData\Local\Programs\nordpass\NordPass.exe [148927392 2022-12-29] (nordvpn s.a. -> NordPass Team)
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Run: [MicrosoftEdgeAutoLaunch_2AE965E7EC757741D0911C816C64E225] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3879368 2023-01-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Policies\Explorer: [NoAutorun] 1
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Policies\Explorer\DisallowRun: [1] powershell_ise.exe
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\Policies\Explorer\DisallowRun: [2] powershell.exe
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\MountPoints2: {17253252-eb6c-11ea-8d8c-b42e99c18e62} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\MountPoints2: {17253577-eb6c-11ea-8d8c-b42e99c18e62} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\MountPoints2: {21aa9caf-85af-11eb-8dce-b42e99c18e62} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\MountPoints2: {a94a50af-607e-11eb-8dc6-b42e99c18e62} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3915513439-1608200645-2481432781-1001\...\MountPoints2: {a94a50d6-607e-11eb-8dc6-b42e99c18e62} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\Canon TS5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDQ.DLL [482816 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5100 series: C:\Windows\system32\CNMLMDQ.DLL [1302016 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5100 series XPS: C:\Windows\system32\CNMXLMDQ.DLL [1304064 2017-03-23] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\HP E511 Status Monitor: C:\Windows\system32\hpinkstsE511LM.dll [393352 2017-03-09] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.75\Installer\chrmstp.exe [2023-01-13] (Google LLC -> Google LLC)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {1C51D415-F4A3-448A-BA9D-353C64E4CEBF} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-10-17] (Nvidia Corporation -> NVIDIA Corporation)
Task: {29C620F6-1D73-4CB8-B0CD-6028C8EF4D93} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-09] (Google LLC -> Google LLC)
Task: {2F8DC5F6-079A-47FF-AACC-96471CB522F9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {3B21475D-C399-44C1-890C-3B3DF0474B87} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {3E36227D-50DE-4B25-B413-67D70320F54F} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {40AE3C3E-D401-4F21-9793-27B355D36F24} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {4220F866-FF8A-4E70-8F78-AC6F0D6C38AC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {431B3312-B3FB-4EDE-890C-9F061B7F84FF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {50C31061-4B2B-4754-96BE-73C624CAC70B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-08-30] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {6A483FB7-3C9A-4137-BB98-8364B555CE40} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {6DB97527-D4FE-4236-9F7E-1A6F0947B701} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6FF01162-F03D-4297-81D8-F7EC9AC0EEDE} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3915513439-1608200645-2481432781-1002 => C:\Users\Virgile\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier)
Task: {86C0C82C-DA87-4ABB-A185-FE8BB1AB1265} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {93243C1C-8CFE-4EE2-8201-8BC3EAB2BF6D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-06-09] (Google LLC -> Google LLC)
Task: {93B077E2-7CB9-40BE-B0E7-87A5331A3D39} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E4D6E181-1D01-4B82-A402-2CD982F50965} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
Task: {F9C7D8F4-C60B-4216-BC89-5263C8B92BF9} - System32\Tasks\Microsoft\Windows\RestartManager\{A9BC0180-86CC-44a4-8B0E-F0F9F730F4AA} => C:\Windows\system32\rmclient.exe [18432 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.47.98
Tcpip\..\Interfaces\{5c8d2e57-cf15-4d12-b995-e474b589fefd}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{6082cfae-3e87-4d8f-984c-38e208cc63a2}: [DhcpNameServer] 192.168.47.98
Tcpip\..\Interfaces\{96b6396c-7145-4e41-828b-2e55ae35d804}: [DhcpNameServer] 192.168.1.1
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-13]
Edge Notifications: Default -> hxxps://www.pixid-services.net
Edge HomePage: Default -> hxxp://www.google.fr/
Edge StartupUrls: Default -> "hxxps://www.google.fr/"
Edge Extension: (Outlook) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-18]
Edge Extension: (NordPass® Password Manager & Digital Vault) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fooolghllnmhmmndgjiamiiodkpenpbb [2023-01-10]
Edge Extension: (Word) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-18]
Edge Extension: (Excel) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-18]
Edge Extension: (PowerPoint) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-18]
Edge Extension: (AdGuard AdBlocker) - C:\Users\Virgile\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pdffkfellgipmhklpdmokmckkkfcopbh [2022-12-21]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.351.2 -> C:\Program Files (x86)\Java\jre1.8.0_351\bin\dtplugin\npDeployJava1.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.351.2 -> C:\Program Files (x86)\Java\jre1.8.0_351\bin\plugin2\npjp2.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default [2023-01-13]
CHR Notifications: Default -> hxxps://drive.google.com; hxxps://meet.google.com
CHR HomePage: Default -> hxxp://www.google.fr/
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Extension: (Alcapod) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\akalemdmelifjhonifgahjofcehpcpke [2020-06-09]
CHR Extension: (AdGuard AdBlocker) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-12-23]
CHR Extension: (WOT pour la sécurité des sites Web et une navigation sûre) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2022-12-05]
CHR Extension: (ASIFY) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\biehagnkgckkagkbpncoieiknahmngdg [2022-12-16]
CHR Extension: (Lighthouse) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\blipmdconlkpinefehnmjammfjpmpbjk [2022-02-14]
CHR Extension: (DownAlbum) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgjnhhjpfcdhbhlcmmjppicjmgfkppok [2020-07-28]
CHR Extension: (iMacros for Chrome) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2021-05-05]
CHR Extension: (Checkbot: SEO, Web Speed & Security Tester 🚀) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dagohlmlhagincbfilmkadjgmdnkjinl [2022-12-10]
CHR Extension: (NoFollow) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfogidghaigoomjdeacndafapdijmiid [2021-06-30]
CHR Extension: (Tags for YouTube™) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dggphokdgjikekfiakjcpidcclbmkfga [2020-12-01]
CHR Extension: (Je suis suivi) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpcbpcaikekjcbeoppbimpmhbjgmlopd [2020-06-09]
CHR Extension: (Email Exporter) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecnfbegpagpeocjegnecbifjepfcpnhe [2022-07-05]
CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-12-23]
CHR Extension: (uBlock) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2022-10-20]
CHR Extension: (Facebook Pixel Helper) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2020-10-01]
CHR Extension: (NordPass® Password Manager & Digital Vault) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\fooolghllnmhmmndgjiamiiodkpenpbb [2023-01-03]
CHR Extension: (Google Docs hors connexion) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-22]
CHR Extension: (SEO Minion) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\giihipjfimkajhlcilipnjeohabimjhi [2022-12-12]
CHR Extension: (Tailwind – AI marketing content assistant) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkbhgdhhefdphpikedbinecandoigdel [2023-01-13]
CHR Extension: (Keywords Everywhere - Keyword Tool) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbapdpeemoojbophdfndmlgdhppljgmp [2022-12-05]
CHR Extension: (Twitter Follower) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcghlfjkhaigchnbbkbcgadlnckobaei [2022-10-21]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2022-12-21]
CHR Extension: (Hunter - Email Finder Extension) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgmhmanijnjhaffoampdlllchpolkdnj [2022-10-22]
CHR Extension: (Audit SEO & analyse de site web par WooRank) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlngmmdolgbdnnimbmblfhhndibdipaf [2022-12-14]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-12-13]
CHR Extension: (LinkLead.io) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jemdjmifknnfepbepnbnlkgobmnanogk [2020-06-09]
CHR Extension: (Ninja Cookie) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifeafcpcjjgnlcnkffmeegehmnmkefl [2021-04-21]
CHR Extension: (Shareaholic pour Google Chrome) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmipnjdeifmobkhgogdnomkihhgojep [2022-07-20]
CHR Extension: (Tag Assistant Legacy (by Google)) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2021-09-25]
CHR Extension: (Social Video Downloader) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnnoammpigcglgbhcbbdpnekbcddahe [2021-02-11]
CHR Extension: (AMZ Seller Browser) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgpelgeohjghmccooegimcfhanlnngc [2022-04-05]
CHR Extension: (Evernote Web) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2020-06-09]
CHR Extension: (Mass follow for Twitter) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmanfkmmgfigbnjibfemdnnfjboficn [2020-06-09]
CHR Extension: (Loom – Screen Recorder & Screen Capture) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\liecbddmkiiihnedobmlmillhodjkdmb [2022-11-08]
CHR Extension: (TubeBuddy) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkhmbddkmdggbhaaaodilponhnccicb [2023-01-11]
CHR Extension: (Everliker | Assistant for Instagram) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbohdphjekodehfnilakihailcpjcdkm [2021-06-14]
CHR Extension: (Website SEO Checker: Free Audit & Analysis) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nljcdkjpjnhlilgepggmmagnmebhadnk [2022-02-20]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Data Scraper - Easy Web Scraping) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nndknepjnldbdbepjfgmncbggmopgden [2023-01-03]
CHR Extension: (Podawaa - Get more Engagement on LinkedIn) - C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppgndohgacfggdpbcdlgibdkdknimfmn [2022-06-03]
CHR Profile: C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-12-09]
CHR Profile: C:\Users\Virgile\AppData\Local\Google\Chrome\User Data\System Profile [2022-12-09]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Avec liste blanche) ===================


===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 ew_usbccgpfilter; C:\Windows\System32\drivers\ew_usbccgpfilter.sys [18944 2020-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2022-12-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239544 2023-01-13] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MpKsl59c58e43; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{631B0ED8-14CD-4ED1-B270-215943569965}\MpKslDrv.sys [214280 2023-01-13] (Microsoft Windows -> Microsoft Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S1 pango_netfilter2; C:\Windows\System32\drivers\pango_netfilter2.sys [94872 2021-02-16] (Pango Inc. -> Pango Inc)
S3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [44032 2023-01-12] (Microsoft Corporation) [Fichier non signé]
S3 usbscan; C:\Windows\system32\DRIVERS\usbscan.sys [49152 2020-05-11] (Microsoft Corporation) [Fichier non signé]
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49568 2022-12-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [473376 2022-12-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99616 2022-12-09] (Microsoft Windows -> Microsoft Corporation)
S3 hsstap; \SystemRoot\System32\drivers\hsstap.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Trois mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2023-01-13 16:32 - 2023-01-13 16:33 - 000025415 _____ C:\Users\Virgile\Downloads\FRST.txt
2023-01-13 16:32 - 2023-01-13 16:32 - 000000000 ____D C:\FRST
2023-01-13 16:29 - 2023-01-13 16:29 - 000310104 _____ C:\Users\Virgile\Documents\ZHPDiag.txt
2023-01-13 16:29 - 2023-01-13 16:29 - 000310104 _____ C:\Users\Virgile\Desktop\ZHPDiag.txt
2023-01-13 16:22 - 2023-01-13 16:31 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\ZHP
2023-01-13 16:22 - 2023-01-13 16:22 - 000000867 _____ C:\Users\Virgile\Desktop\ZHPSuite.lnk
2023-01-13 16:22 - 2023-01-13 16:22 - 000000000 ____D C:\Users\Virgile\AppData\Local\ZHP
2023-01-13 15:42 - 2023-01-13 15:42 - 002296976 _____ (Emsisoft Ltd) C:\Users\Virgile\Downloads\EmsisoftAntiMalwareWebSetup_d90d051e-5a9d-4b88-8beb-5d077ea3b3be.exe
2023-01-13 15:09 - 2023-01-13 15:10 - 006953824 _____ (VS Revo Group ) C:\Users\Virgile\Downloads\revosetup (1).exe
2023-01-13 15:01 - 2023-01-13 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoom
2023-01-13 15:01 - 2023-01-13 15:01 - 000000000 ____D C:\Program Files (x86)\Zoom
2023-01-13 15:00 - 2023-01-13 15:01 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Evernote
2023-01-13 15:00 - 2023-01-13 15:00 - 000000000 ____D C:\ProgramData\evernote-client-updater
2023-01-13 14:56 - 2023-01-13 14:56 - 029003528 _____ (Adlice Software ) C:\Users\Virgile\Downloads\UCheck_setup.exe
2023-01-13 14:53 - 2023-01-13 14:53 - 002376704 _____ (Farbar) C:\Users\Virgile\Downloads\FRST64.exe
2023-01-13 14:41 - 2023-01-13 14:44 - 003510472 _____ (Nicolas Coolman) C:\Users\Virgile\Downloads\ZHPSuite.exe
2023-01-13 13:57 - 2023-01-13 16:01 - 000041920 _____ C:\Windows\system32\Drivers\truesight.sys
2023-01-13 13:57 - 2023-01-13 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2023-01-13 13:57 - 2023-01-13 16:00 - 000000000 ____D C:\Program Files\RogueKiller
2023-01-13 13:57 - 2023-01-13 14:13 - 000000000 ____D C:\ProgramData\RogueKiller
2023-01-13 13:56 - 2023-01-13 13:57 - 044681696 _____ (Adlice Software ) C:\Users\Virgile\Downloads\RogueKiller_setup.exe
2023-01-13 13:51 - 2023-01-13 13:51 - 000329432 _____ C:\active_protection.txt
2023-01-13 13:51 - 2023-01-13 13:51 - 000038064 _____ C:\urls.set
2023-01-13 13:47 - 2023-01-13 13:47 - 000000000 ____D C:\Users\Virgile\AppData\Local\mbam
2023-01-13 13:45 - 2023-01-13 13:45 - 002542312 _____ (Malwarebytes) C:\Users\Virgile\Downloads\MBSetup (14).exe
2023-01-13 13:21 - 2023-01-13 13:21 - 001427176 _____ (Google LLC) C:\Users\Virgile\Downloads\ChromeSetup.exe
2023-01-12 17:16 - 2023-01-12 17:16 - 004749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000572928 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2023-01-12 17:16 - 2023-01-12 17:16 - 000308224 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\SCardDlg.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\SCardBi.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2023-01-12 17:16 - 2023-01-12 17:16 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2023-01-12 17:11 - 2023-01-12 17:11 - 000000000 ___HD C:\$WinREAgent
2023-01-12 10:35 - 2023-01-12 10:35 - 000004040 _____ C:\Windows\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-3915513439-1608200645-2481432781-1001_3
2023-01-10 13:14 - 2023-01-10 13:14 - 000000045 _____ C:\Users\Virgile\Documents\chiffre d'affaire décembre.txt
2023-01-10 12:44 - 2023-01-10 12:44 - 000136254 _____ C:\Users\Virgile\Downloads\2022202302281.pdf
2023-01-09 15:46 - 2023-01-09 15:46 - 000067121 _____ C:\Users\Virgile\Downloads\Bulletin_2022_11_EN8 (1).pdf
2023-01-09 10:06 - 2023-01-09 10:06 - 000067955 _____ C:\Users\Virgile\Downloads\Bulletin_2022_12_EN8.pdf
2023-01-06 14:53 - 2023-01-06 14:53 - 000259615 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031 (5).xml
2022-12-28 09:52 - 2022-12-28 09:52 - 000000000 ____D C:\Users\Virgile\Documents\Zoom
2022-12-26 11:38 - 2022-12-26 11:38 - 000021403 _____ C:\Users\Virgile\Downloads\DetailDesPaiements (1).pdf
2022-12-23 12:40 - 2022-12-23 12:40 - 000444867 _____ C:\Users\Virgile\Downloads\DEMANDE DE MODIFICATION D'ADHESION HABITATION.pdf
2022-12-23 12:40 - 2022-12-23 12:40 - 000389980 _____ C:\Users\Virgile\Downloads\PCK53.pdf
2022-12-20 19:43 - 2022-12-20 19:43 - 000259990 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031 (4).xml
2022-12-20 19:02 - 2022-12-20 19:02 - 000259990 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031 (3).xml
2022-12-20 18:03 - 2023-01-13 14:08 - 000000000 ____D C:\Program Files\Malwarebytes
2022-12-20 18:02 - 2022-12-20 18:02 - 002542312 _____ (Malwarebytes) C:\Users\Virgile\Downloads\MBSetup (13).exe
2022-12-20 18:02 - 2022-12-20 18:02 - 002542312 _____ (Malwarebytes) C:\Users\Virgile\Downloads\MBSetup (12).exe
2022-12-20 18:01 - 2022-12-20 18:01 - 003305672 _____ (Nicolas Coolman) C:\Users\Virgile\Downloads\ZHPCleaner.exe
2022-12-20 17:19 - 2022-12-20 17:19 - 002226419 _____ C:\Users\Virgile\Downloads\TCPView (1).zip
2022-12-20 11:01 - 2022-12-20 11:01 - 000998698 _____ C:\Users\Virgile\Downloads\genererPdf.do
2022-12-20 10:35 - 2022-12-20 10:35 - 000257596 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031 (2).xml
2022-12-19 22:04 - 2022-12-19 22:04 - 000000715 _____ C:\Users\Virgile\Downloads\Releve-113273352-BOUTEILLER-VIRGILE.csv-2022.csv
2022-12-16 22:06 - 2022-12-16 22:06 - 000476838 _____ C:\Users\Virgile\Downloads\Complément (autre pièce) Vos déclarations URSSAF pour 2022 ou le justificatif de radiation.pdf
2022-12-16 21:55 - 2022-12-16 21:55 - 000943616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2022-12-14 15:24 - 2022-12-14 15:24 - 000305272 _____ C:\Users\Virgile\Downloads\Doc155555555.pdf
2022-12-14 15:19 - 2022-12-14 15:19 - 000394143 _____ C:\Users\Virgile\Downloads\tinified (3).zip
2022-12-14 15:03 - 2022-12-14 15:03 - 000565565 _____ C:\Users\Virgile\Downloads\tinified (2).zip
2022-12-12 12:06 - 2022-12-12 12:06 - 000008625 _____ C:\Users\Virgile\Documents\formation digital texte.txt
2022-12-12 10:58 - 2022-12-12 10:58 - 015947715 _____ C:\Users\Virgile\Downloads\Droit de Revente: Vendre un Produit Sans L'Avoir Créé.mp4
2022-12-11 22:30 - 2022-12-11 22:30 - 000000093 _____ C:\Users\Virgile\Documents\paie - chiffre d'affaire novembre.txt
2022-12-11 21:30 - 2022-12-11 21:30 - 000024161 _____ C:\Users\Virgile\Downloads\3834_20221130 (1).pdf
2022-12-11 21:21 - 2022-12-11 21:21 - 000067121 _____ C:\Users\Virgile\Downloads\Bulletin_2022_11_EN8.pdf
2022-12-10 09:37 - 2022-12-10 09:48 - 000000076 _____ C:\Users\Virgile\Documents\tffffffffffffffffffffffffffff.txtffffffffffffffffffffffffffff
2022-12-09 20:39 - 2022-12-09 20:39 - 001258447 _____ C:\Users\Virgile\Downloads\blog-12-09-2022.xml
2022-12-09 20:39 - 2022-12-09 20:39 - 000256397 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031 (1).xml
2022-12-08 11:49 - 2022-12-08 11:49 - 000024161 _____ C:\Users\Virgile\Downloads\3834_20221130.pdf
2022-12-06 18:26 - 2022-12-06 18:26 - 000289137 _____ C:\Users\Virgile\Downloads\113273352-107003706405.pdf
2022-12-03 10:21 - 2022-11-28 18:06 - 002237024 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2022-12-03 10:21 - 2022-11-28 18:06 - 002237024 _____ C:\Windows\system32\vulkaninfo.exe
2022-12-03 10:21 - 2022-11-28 18:06 - 001642592 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-12-03 10:21 - 2022-11-28 18:06 - 001642592 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-12-03 10:21 - 2022-11-28 18:06 - 001487888 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2022-12-03 10:21 - 2022-11-28 18:06 - 001444448 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2022-12-03 10:21 - 2022-11-28 18:06 - 001444448 _____ C:\Windows\system32\vulkan-1.dll
2022-12-03 10:21 - 2022-11-28 18:06 - 001227304 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2022-12-03 10:21 - 2022-11-28 18:06 - 001168992 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2022-12-03 10:21 - 2022-11-28 18:06 - 001168992 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-12-03 10:21 - 2022-11-28 18:02 - 000851984 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2022-12-03 10:21 - 2022-11-28 18:02 - 000673320 _____ C:\Windows\system32\nvofapi64.dll
2022-12-03 10:21 - 2022-11-28 18:02 - 000506904 _____ C:\Windows\SysWOW64\nvofapi.dll
2022-12-03 10:21 - 2022-11-28 18:01 - 002163720 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2022-12-03 10:21 - 2022-11-28 18:01 - 001619984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2022-12-03 10:21 - 2022-11-28 18:01 - 001531896 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2022-12-03 10:21 - 2022-11-28 18:01 - 001191928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2022-12-03 10:21 - 2022-11-28 18:01 - 000737776 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2022-12-03 10:21 - 2022-11-28 18:00 - 012453904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2022-12-03 10:21 - 2022-11-28 18:00 - 010220552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2022-12-03 10:21 - 2022-11-28 18:00 - 005891088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2022-12-03 10:21 - 2022-11-28 18:00 - 005856792 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2022-12-03 10:21 - 2022-11-28 18:00 - 003334664 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2022-12-03 10:21 - 2022-11-28 18:00 - 000457720 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2022-12-03 10:21 - 2022-11-28 17:59 - 005816344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2022-12-03 10:21 - 2022-11-28 17:58 - 000853504 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2022-12-03 10:21 - 2022-11-28 17:57 - 006514432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2022-12-03 10:21 - 2022-11-26 10:26 - 000100741 _____ C:\Windows\system32\nvinfo.pb
2022-11-28 20:33 - 2022-11-28 20:33 - 000250473 _____ C:\Users\Virgile\Downloads\theme-772878283088146358.xml
2022-11-25 15:46 - 2022-11-25 15:46 - 000254910 _____ C:\Users\Virgile\Downloads\theme-7582006855423365031.xml
2022-11-22 15:47 - 2022-11-22 15:47 - 000020758 _____ C:\Users\Virgile\Downloads\fond3.jpeg
2022-11-22 13:34 - 2022-11-22 13:34 - 001118242 _____ C:\Users\Virgile\Downloads\Justificatif de domicile 19 nov. 2022.pdf
2022-11-21 12:02 - 2022-11-21 12:02 - 000029282 _____ C:\Users\Virgile\Downloads\Formulaire 69877 - Formations digitales.txt
2022-11-17 17:02 - 2022-11-17 17:02 - 000279124 _____ C:\Users\Virgile\Downloads\Livre-comment-trouver-une-pépite-ESP-_3_.epub
2022-11-17 14:28 - 2022-11-17 14:28 - 001898511 _____ C:\Users\Virgile\Downloads\Livre comment trouver une pépite ESP (3).pdf
2022-11-17 14:16 - 2022-11-17 14:16 - 067551729 _____ C:\Users\Virgile\Downloads\audiobook_AQAAAEBCs0rzGM_1.zip
2022-11-17 14:13 - 2022-11-17 14:13 - 045631813 _____ C:\Users\Virgile\Downloads\audiobook_AQAAAEBCc24zPM_1 (1).zip
2022-11-17 14:05 - 2022-11-17 14:06 - 045631813 _____ C:\Users\Virgile\Downloads\audiobook_AQAAAEBCc24zPM_1.zip
2022-11-15 18:55 - 2022-11-16 10:31 - 000000000 ____D C:\Program Files\RUXIM
2022-11-15 11:49 - 2022-11-15 11:49 - 000159804 _____ C:\Users\Virgile\Downloads\urssaf-justificatif-declaration-2022-T1-20221115-11h49.pdf
2022-11-15 11:49 - 2022-11-15 11:49 - 000159083 _____ C:\Users\Virgile\Downloads\urssaf-justificatif-declaration-2022-T2-20221115-11h49.pdf
2022-11-15 11:49 - 2022-11-15 11:49 - 000159081 _____ C:\Users\Virgile\Downloads\urssaf-justificatif-declaration-2022-T3-20221115-11h49.pdf
2022-11-10 15:12 - 2022-12-14 15:04 - 000412774 _____ C:\Users\Virgile\Downloads\Doc1.pdf
2022-11-09 10:23 - 2022-11-09 10:23 - 001021439 _____ C:\Users\Virgile\Downloads\bain-prophetique-de-vos-pieds-et-mains.pdf
2022-11-08 14:19 - 2022-11-08 14:19 - 000028243 _____ C:\Users\Virgile\Downloads\3834_20221031.pdf
2022-10-31 10:32 - 2022-10-31 10:32 - 000200611 _____ C:\Users\Virgile\Downloads\document (6).pdf
2022-10-31 10:31 - 2022-10-31 10:31 - 000201245 _____ C:\Users\Virgile\Downloads\document (5).pdf
2022-10-30 10:05 - 2022-10-30 10:05 - 000159077 _____ C:\Users\Virgile\Downloads\déclaration de CA_T3_2022.pdf
2022-10-30 09:47 - 2022-10-30 09:47 - 000004322 _____ C:\Users\Virgile\Downloads\kooneo-20221030-094757.pdf
2022-10-30 09:47 - 2022-10-30 09:47 - 000000287 _____ C:\Users\Virgile\Downloads\kooneo-20221030-094742.csv
2022-10-30 09:37 - 2022-10-30 09:37 - 000007753 _____ C:\Users\Virgile\Downloads\kooneo-20221030-093708.pdf
2022-10-30 09:36 - 2022-10-30 09:36 - 000000482 _____ C:\Users\Virgile\Downloads\kooneo-20221030-093655.csv
2022-10-30 09:16 - 2022-10-30 09:16 - 000000422 _____ C:\Users\Virgile\Downloads\kooneo-20221030-091628.csv
2022-10-30 09:08 - 2022-10-30 09:08 - 000012078 _____ C:\Users\Virgile\Downloads\KDP_Payments_39a96528-5654-4074-8749-ef2cb06efd6e.xlsx
2022-10-27 18:45 - 2022-07-14 00:32 - 000060112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2022-10-22 12:57 - 2022-10-22 12:57 - 000159802 _____ C:\Users\Virgile\Downloads\déclaration de CA_T1_2022.pdf
2022-10-22 12:57 - 2022-10-22 12:57 - 000159082 _____ C:\Users\Virgile\Downloads\déclaration de CA_T2_2022.pdf
2022-10-22 12:37 - 2022-10-22 12:37 - 000000000 ____D C:\Users\Virgile\Downloads\salaires

==================== Trois mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2023-01-13 16:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-01-13 16:07 - 2020-06-09 20:59 - 000000000 ____D C:\Program Files (x86)\Google
2023-01-13 16:06 - 2020-06-09 21:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2023-01-13 15:48 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2023-01-13 15:24 - 2020-06-07 16:10 - 000000000 ____D C:\Users\Virgile
2023-01-13 15:18 - 2020-06-07 16:54 - 000000000 ____D C:\ProgramData\Package Cache
2023-01-13 15:17 - 2020-06-11 11:50 - 000000000 ____D C:\Program Files (x86)\Canon
2023-01-13 15:16 - 2020-06-11 13:00 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Canon
2023-01-13 15:03 - 2022-09-06 18:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2023-01-13 15:03 - 2022-09-06 18:58 - 000000000 ____D C:\Program Files\Calibre2
2023-01-13 15:03 - 2022-09-01 08:36 - 000000000 ____D C:\Users\Virgile\Bibliothèque calibre
2023-01-13 15:03 - 2022-09-01 08:35 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\calibre
2023-01-13 15:03 - 2021-01-14 20:51 - 000001038 _____ C:\Users\Virgile\Desktop\Telegram.lnk
2023-01-13 15:03 - 2021-01-14 20:51 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Telegram Desktop
2023-01-13 15:03 - 2021-01-14 20:51 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop
2023-01-13 15:01 - 2020-07-30 12:43 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Zoom
2023-01-13 15:00 - 2020-06-15 14:04 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-01-13 15:00 - 2020-06-15 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-01-13 15:00 - 2020-06-15 14:04 - 000000000 ____D C:\Program Files\WinRAR
2023-01-13 15:00 - 2020-06-09 22:03 - 000000000 ____D C:\Program Files (x86)\Evernote
2023-01-13 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF
2023-01-13 14:32 - 2020-06-07 17:05 - 000000000 ____D C:\ProgramData\NVIDIA
2023-01-13 14:31 - 2021-10-15 15:09 - 000000000 ____D C:\Users\Virgile\AppData\Roaming\NordPass
2023-01-13 14:25 - 2021-10-02 17:06 - 014248944 _____ (SurfRight B.V.) C:\Users\Virgile\Downloads\HitmanPro_x64.exe
2023-01-13 14:13 - 2022-09-16 19:51 - 000000000 ____D C:\AdwCleaner
2023-01-13 14:13 - 2021-10-02 17:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2023-01-13 14:13 - 2020-06-07 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2023-01-13 14:08 - 2020-07-02 15:48 - 000000000 ____D C:\ProgramData\Malwarebytes
2023-01-13 14:03 - 2021-03-08 10:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaTrader
2023-01-13 14:03 - 2020-10-23 19:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2023-01-13 14:00 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2023-01-13 13:59 - 2020-06-07 16:13 - 001681370 _____ C:\Windows\system32\PerfStringBackup.INI
2023-01-13 13:59 - 2019-12-07 15:49 - 000755174 _____ C:\Windows\system32\perfh00C.dat
2023-01-13 13:59 - 2019-12-07 15:49 - 000141980 _____ C:\Windows\system32\perfc00C.dat
2023-01-13 13:52 - 2020-06-07 16:07 - 000008192 ___SH C:\DumpStack.log.tmp
2023-01-13 13:52 - 2020-06-07 16:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-01-13 13:51 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2023-01-13 13:16 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-01-13 13:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2023-01-12 18:09 - 2020-06-07 16:07 - 000377216 _____ C:\Windows\system32\FNTCACHE.DAT
2023-01-12 18:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2023-01-12 18:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2023-01-12 18:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-01-12 18:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2023-01-12 17:18 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2023-01-12 16:56 - 2020-06-07 16:07 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-01-11 21:24 - 2020-06-09 21:22 - 000000000 ____D C:\Windows\system32\MRT
2023-01-11 21:21 - 2020-06-09 21:22 - 150199536 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-01-09 13:46 - 2020-06-07 17:06 - 000000000 ____D C:\Users\Virgile\AppData\Local\NVIDIA
2022-12-28 09:54 - 2020-08-28 21:27 - 000003690 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-12-28 09:54 - 2020-08-28 21:27 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-12-20 17:45 - 2020-06-09 22:03 - 000000000 ____D C:\Users\Virgile\AppData\Local\CrashDumps
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemApps
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning
2022-12-16 22:08 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System

==================== Fichiers à la racine de certains dossiers ========

2020-09-17 17:29 - 2022-03-22 18:17 - 000007168 _____ () C:\Users\Virgile\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2021-11-09 17:22 - 2021-11-09 17:22 - 000003546 _____ () C:\Users\Virgile\AppData\Local\recently-used.xbel
2020-06-09 22:51 - 2020-06-09 22:51 - 000000017 _____ () C:\Users\Virgile\AppData\Local\resmon.resmoncfg

==================== SigCheckExt =========================

2020-06-10 14:37 - 2019-12-07 10:08 - 000289792 _____ (Microsoft Corporation) C:\Utilman.exe
2023-01-12 17:16 - 2023-01-12 17:16 - 000196608 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000308224 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2020-06-15 14:04 - 2019-05-28 14:03 - 000198656 _____ (FXBlue) C:\Windows\system32\FXBlueExcelRTD64.dll
2022-01-21 14:11 - 2013-04-07 18:09 - 000148992 _____ ( ) C:\Windows\system32\Lagarith.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\SCardBi.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\SCardDlg.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 000572928 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2023-01-12 17:16 - 2023-01-12 17:16 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2020-06-15 14:04 - 2019-05-23 14:51 - 000161792 _____ (FXBlue) C:\Windows\SysWOW64\FXBlueExcelRTD.dll
1999-09-05 06:23 - 1999-09-05 06:23 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls2.dll
2020-06-07 16:11 - 2021-04-14 12:24 - 002877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2022-12-16 21:55 - 2022-12-16 21:55 - 000943616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2023-01-12 17:16 - 2023-01-12 17:16 - 004749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2022-12-16 21:55 - 2022-12-16 21:55 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2020-09-02 12:57 - 2020-12-05 11:31 - 002149184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFUpdate_01009.dll
2023-01-13 14:53 - 2023-01-13 14:53 - 002376704 _____ (Farbar) C:\Users\Virgile\Downloads\FRST64.exe
2020-07-06 15:01 - 2020-07-06 15:01 - 092830805 _____ C:\Users\Virgile\Downloads\inkscape-1.0-x64.exe
2022-12-20 18:01 - 2022-12-20 18:01 - 003305672 _____ (Nicolas Coolman) C:\Users\Virgile\Downloads\ZHPCleaner.exe
2023-01-13 14:41 - 2023-01-13 14:44 - 003510472 _____ (Nicolas Coolman) C:\Users\Virgile\Downloads\ZHPSuite.exe
2021-11-04 09:44 - 2018-07-17 02:20 - 046901221 ____N C:\Users\Virgile\Documents\Setup.exe

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


==================== BCD ================================

Gestionnaire de d‚marrage du microprogramme
-------------------------------------------
identificateur {fwbootmgr}
displayorder {bootmgr}
{adb5db1c-a8d8-11ea-88b8-e4d6c0873e26}
timeout 1

Gestionnaire de d‚marrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {adb5db1f-a8d8-11ea-88b8-e4d6c0873e26}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30

Application logicielle (101fffff)
--------------------------------
identificateur {adb5db1c-a8d8-11ea-88b8-e4d6c0873e26}
description Samsung SSD 860 QVO 1TB

Chargeur de d‚marrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \Windows\system32\winload.efi
description Windows 10
locale fr-FR
loadoptions DENABLE_INTEGRITY_CHECKS
inherit {bootloadersettings}
recoverysequence {adb5db21-a8d8-11ea-88b8-e4d6c0873e26}
displaymessageoverride Recovery
recoveryenabled Yes
testsigning No
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \Windows
resumeobject {adb5db1f-a8d8-11ea-88b8-e4d6c0873e26}
nx OptIn
bootmenupolicy Standard

Chargeur de d‚marrage Windows
-----------------------------
identificateur {adb5db21-a8d8-11ea-88b8-e4d6c0873e26}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{adb5db22-a8d8-11ea-88b8-e4d6c0873e26}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale fr-fr
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{adb5db22-a8d8-11ea-88b8-e4d6c0873e26}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes

Reprendre … partir de la mise en veille prolong‚e
-------------------------------------------------
identificateur {adb5db1f-a8d8-11ea-88b8-e4d6c0873e26}
device partition=C:
path \Windows\system32\winresume.efi
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
recoverysequence {adb5db21-a8d8-11ea-88b8-e4d6c0873e26}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No

Testeur de m‚moire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostics m‚moire Windows
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes

ParamŠtres EMS
--------------
identificateur {emssettings}
bootems No

ParamŠtres du d‚bogueur
-----------------------
identificateur {dbgsettings}
debugtype Local

Erreurs de m‚moire RAM
----------------------
identificateur {badmemory}

ParamŠtres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}

ParamŠtres du chargeur de d‚marrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}

ParamŠtres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200

ParamŠtres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}

Options de p‚riph‚rique
-----------------------
identificateur {adb5db22-a8d8-11ea-88b8-e4d6c0873e26}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité