cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 23.02.2024
Exécuté par mthev (administrateur) sur DESKTOP-CD6TEAN (HP HP Spectre x360 Convertible 13-ac0XX) (25-02-2024 10:43:52)
Exécuté depuis C:\Users\mthev\OneDrive\Desktop\FRST64.exe
Profils chargés: mthev
Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.4046 (X64) Langue: Français (France)
Navigateur par défaut: FF
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ai.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.AlwaysOnTop.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.ColorPickerUI.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.CropAndLock.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.FancyZones.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.PowerOCR.exe
(C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\WinUI3Apps\PowerToys.Peek.UI.exe
(C:\Program Files\PowerToys\WinUI3Apps\PowerToys.Peek.UI.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\121.0.2277.128\msedgewebview2.exe <12>
(C:\ProgramData\myCANAL\nssm.exe ->) (Groupe Canal+ -> ) C:\ProgramData\myCANAL\myCANAL.Service.exe
(explorer.exe ->) (2E3F8BD7-B1C7-4523-8A31-C3BC9C3DFA31 -> Tran Ky Nam) C:\Program Files\WindowsApps\63996TranKyNam.aText_1.39.0.0_neutral__wfd09jcz50d5g\aText\aText.exe
(explorer.exe ->) (Gadwin, Ltd. -> Gadwin Systems) C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <36>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Open Source Developer, Derick Payne -> Rizonesoft) C:\Program Files\Rizonesoft\Firemin\Firemin_X64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wimserv.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(prevhost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.PdfPreviewHandler.exe
(RuntimeBroker.exe ->) (CERTIF_NICOLAS_COOLMAN -> Nicolas Coolman) [Fichier non signé] C:\Users\mthev\AppData\Roaming\ZHP\ZHPSuite.exe
(services.exe ->) () [Fichier non signé] C:\ProgramData\myCANAL\nssm.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(services.exe ->) (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2>
(svchost.exe ->) (HP Inc. -> ) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.025.0204.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2311.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Windows.Media.BackgroundPlayback.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Wox) [Fichier non signé] C:\Users\mthev\AppData\Local\Wox\app-1.4.1196\Wox.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9213440 2017-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Session] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489408 2017-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2265096 2022-10-10] (voidtools -> voidtools)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784 2016-06-20] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324592 2017-10-31] (HP Inc. -> HP)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe [59669792 2024-02-13] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe [59669792 2024-02-13] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-962103061-607530579-3897627773-1000\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe [59669792 2024-02-13] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-962103061-607530579-3897627773-1000\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2598928 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [Mattermost] => C:\Users\mthev\AppData\Local\Programs\mattermost-desktop\Mattermost.exe [166016048 2023-10-03] (Mattermost, Inc. -> Mattermost, Inc.)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2598928 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe [59669792 2024-02-13] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [MicrosoftEdgeAutoLaunch_B752FC1101939731331181BFA7155482] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4067896 2024-02-23] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [Discord] => C:\Users\mthev\AppData\Local\Discord\Update.exe [1525016 2022-10-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [org.whispersystems.signal-desktop] => C:\Users\mthev\AppData\Local\Programs\signal-desktop\Signal.exe --start-in-tray (Pas de fichier)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [electron.app.Loom] => C:\Users\mthev\AppData\Local\Programs\Loom\Loom.exe [149080088 2023-12-14] (Loom, Inc. -> Loom, Inc.)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [Gadwin PrintScreen (64-bit)] => C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe [15216928 2017-09-20] (Gadwin, Ltd. -> Gadwin Systems)
HKU\S-1-5-21-962103061-607530579-3897627773-1001\...\Run: [com.squirrel.slack.slack] => C:\Users\mthev\AppData\Local\slack\slack.exe [310576 2024-01-31] (Slack Technologies, LLC -> Slack Technologies Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\86.0.9.0\GoogleDriveFS.exe [59669792 2024-02-13] (Google LLC -> Google, Inc.)
HKLM\...\Print\Monitors\UDC: C:\WINDOWS\system32\udcpm.dll [42456 2017-03-28] (fCoder SIA -> fCoder Group, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.189\Installer\chrmstp.exe [2024-02-22] (Google LLC -> Google LLC)
Startup: C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2023-09-14]
ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Firemin.lnk [2023-08-31]
ShortcutTarget: Firemin.lnk -> C:\Program Files\Rizonesoft\Firemin\Firemin_X64.exe (Open Source Developer, Derick Payne -> Rizonesoft)
Startup: C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wox.lnk [2021-01-03]
ShortcutTarget: Wox.lnk -> C:\Users\mthev\AppData\Local\Wox\Wox.exe (Wox) [Fichier non signé]

==================== Tâches planifiées (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {E2501B21-ACA1-4A9D-876D-E9D3B8C535EC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Pas de fichier)
Task: {0053CFB0-B8E8-4668-B601-6EB405CADE15} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-11-17] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {28A0A941-0910-4EE5-B5D9-4FB21B6ADE3D} - System32\Tasks\G2MUpdateTask-S-1-5-21-962103061-607530579-3897627773-1001 => C:\Users\mthev\AppData\Local\GoToMeeting\19950\g2mupdate.exe [33456 2022-04-24] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {DC76C314-4B42-4CE7-BC5A-1C5EC78B3819} - System32\Tasks\G2MUploadTask-S-1-5-21-962103061-607530579-3897627773-1001 => C:\Users\mthev\AppData\Local\GoToMeeting\19950\g2mupload.exe [33456 2022-04-24] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {ACBE5016-6972-4446-B420-3F2A56372F11} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem124.0.6315.0{B3144076-5F41-48C5-9E43-F8123BDA0DE9} => C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATTENTION
Task: {C494377D-C659-4799-AAA2-3ED323F16FAC} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {8CEF9FC6-EDB7-457E-8763-8B9A56E213B3} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {C55C4940-A1DB-407C-A3E0-8F1800AB5475} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {D28FEDC7-225D-4194-AC0F-5369D303AC57} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {BD2AB059-7844-498B-A955-4BF0499B55EB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {74ABA861-007C-4D04-B3AA-AEB8A13A6A8A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {F41FF543-873A-4534-B41E-B11EEEA98705} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {4E71A673-BC89-4347-8183-0C712B0E0C72} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {C75C4654-CA98-4E6D-8166-820F976C3FFB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\WINDOWS\system32\cmd.exe [289792 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {9F1EA308-2C7B-491D-A0E7-E952D2FF42AC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [314032 2022-01-20] (HP Inc. -> HP Inc.)
Task: {EBC7579E-08C0-44B2-85AA-380B3959651B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136304 2021-03-30] (HP Inc. -> HP Inc.)
Task: {D4D07957-BB5E-4573-98E3-9854AABC4E77} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [930960 2022-05-11] (HP Inc. -> HP Inc.)
Task: {E495BB9A-15AB-48A2-BBBA-D1C7A336E04A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1145440 2022-01-20] (HP Inc. -> HP Inc.)
Task: {252A478C-38D4-47CB-A614-23D193AFFB6D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe /DeviceScanR6 (Pas de fichier)
Task: {4D630FDE-E9C1-4A5E-ADFF-E4E0E0E6EFFF} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1657880 2016-10-04] (HP Inc. -> HP Inc.)
Task: {0F9DEE7F-176D-4619-B477-6B2D0C426F0A} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [456544 2016-11-03] (HP Inc. -> )
Task: {7A1D1098-7B7C-41FE-B142-C9753BAAE218} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [222944 2016-08-15] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {E71083F4-3702-41CE-BADA-77B6A9901B42} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [222944 2016-08-15] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {A1F6747C-5DBC-465F-851F-E894BC7A4890} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2015968 2016-08-15] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {EA8CF406-76D6-457C-BC3A-854A6F6FF881} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28372672 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {6C565EE4-5606-48E2-ABB0-4875A8FC2C4D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28372672 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {3F8B7AE9-AC73-4C73-AC65-88E69B207055} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306328 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {C188114A-1F23-44D9-982B-0C471EA84AEC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306328 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {082462A3-0E5E-4F85-BE37-66BDC3E321B1} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [170128 2024-02-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {1EA1965D-2548-40B0-BBBE-FEC2F7E6B468} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8363546D-B9A9-4954-AFB1-53C607E87528} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5ED3C6BC-FAAB-48BB-B56F-E6D7A82493DC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {23DEF7FA-7609-4279-8985-AF66D15A45CE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {64E5510D-A068-4505-8BCA-82B46DDBE6DE} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-23] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {D798D5DC-50DA-465E-AD2E-88EA0541E3E0} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-962103061-607530579-3897627773-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-23] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {CD104C17-806D-438E-A855-EBBA5C122046} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720 2024-02-23] (Mozilla Corporation -> Mozilla Foundation)
Task: {31749E38-2E9D-438B-8FC4-71B0FDF25B07} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4206512 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {0AA7ACB7-CE5B-4783-9ACE-50208A29FA3A} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-962103061-607530579-3897627773-1000 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4206512 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {327121F1-FAA3-49DF-9B63-494021F08681} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-962103061-607530579-3897627773-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4206512 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {68CDD614-2FFB-443A-A1CD-9ED5944254B1} - System32\Tasks\PowerToys\Autorun for mthev => C:\Program Files\PowerToys\PowerToys.exe [1234464 2023-10-31] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-962103061-607530579-3897627773-1001.job => C:\Users\mthev\AppData\Local\GoToMeeting\19950\g2mupdate.exe
Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-962103061-607530579-3897627773-1001.job => C:\Users\mthev\AppData\Local\GoToMeeting\19950\g2mupload.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 109.0.66.20 109.0.66.10
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}: [DhcpNameServer] 89.2.0.1 89.2.0.2
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}: [DhcpDomain] numericable.fr
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\3414D40555350284540502C497F6E6: [DhcpNameServer] 10.251.255.254 8.8.8.8
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\3414D40555350284540502C497F6E6: [DhcpDomain] campushep-lyon.net
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\3414D4055535D2659637964756572737: [DhcpNameServer] 172.26.254.60
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\3414D4055535D2659637964756572737: [DhcpDomain] campus-charbonnieres.auvergnerhonealpes.fr
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\34F6F607149627: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\356425D223534303: [DhcpNameServer] 89.2.0.1 89.2.0.2
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\356425D223534303: [DhcpDomain] numericable.fr
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\47572616D2679637964756572737: [DhcpNameServer] 192.168.10.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\47572616D2679637964756572737: [DhcpDomain] tuba.local
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\54F43523030344D2633393F53416E6F6E60314: [DhcpNameServer] 192.168.1.2
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\64451402D20234F677F627B696E676: [DhcpNameServer] 172.16.100.1 8.8.8.8
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\64C69687245737: [DhcpNameServer] 10.0.0.1 10.0.0.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\64C69687245737: [DhcpDomain] moovbox.local
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\6627565626F687458656: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\74251494E45435445435F4C4: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\74251494E45435445435F4C4: [DhcpDomain] home
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\744435: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\744435: [DhcpDomain] home
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\75946494D23414E4F4059414: [DhcpNameServer] 192.168.241.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\75966696F5D49485: [DhcpNameServer] 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\85075627961602A5530234F6D607163647F536135663: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\C496675626F687D226264316: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\C496675626F687D226264316: [DhcpDomain] home
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\C4F4D4F594E465944554: [DhcpNameServer] 192.168.20.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\D4149435F4E4D2445435348414D40535: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1b219cf8-74f9-4e86-8193-ad1563228849}\D4149435F4E4D2445435348414D40535: [DhcpDomain] home
Tcpip\..\Interfaces\{963f344f-92e8-4a71-9a6b-0f12a7462096}: [DhcpNameServer] 109.0.66.20 109.0.66.10
Tcpip\..\Interfaces\{cbefb125-f18d-4228-9929-ea9b66a0ab5b}: [DhcpNameServer] 109.0.66.20 109.0.66.10
Tcpip\..\Interfaces\{cbefb125-f18d-4228-9929-ea9b66a0ab5b}\14E64627F69646140563336383: [DhcpNameServer] 192.168.168.31
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}: [DhcpNameServer] 89.2.0.1 89.2.0.2
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}: [DhcpDomain] numericable.fr
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\3414D40555350284540502C497F6E6: [DhcpNameServer] 10.255.0.3
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\3414D40555350284540502C497F6E6: [DhcpDomain] campushep-lyon.net
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\356425D223534303: [DhcpNameServer] 89.2.0.1 89.2.0.2
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\356425D223534303: [DhcpDomain] numericable.fr
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\47572616D2679637964756572737: [DhcpNameServer] 192.168.10.1
Tcpip\..\Interfaces\{d6da82e4-b680-4110-8cea-0b7f84404756}\47572616D2679637964756572737: [DhcpDomain] tuba.local

Edge:
=======
Edge Profile: C:\Users\mthev\AppData\Local\Microsoft\Edge\User Data\Default [2024-02-21]
Edge Extension: (Google Docs hors connexion) - C:\Users\mthev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-19]
Edge Extension: (Edge relevant text changes) - C:\Users\mthev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF DefaultProfile: lc90toee.default-1509961176254-1594545559276
FF ProfilePath: C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276 [2024-02-25]
FF DownloadDir: C:\Users\mthev\Downloads
FF Notifications: Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276 -> hxxps://web.whatsapp.com; hxxps://app.butter.us
FF Extension: (Raindrop.io) - C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276\Extensions\jid0-adyhmvsP91nUO8pRv0Mn2VKeB84@jetpack.xpi [2023-11-28]
FF Extension: (LastPass: Free Password Manager) - C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276\Extensions\support@lastpass.com.xpi [2024-02-17]
FF Extension: (Auto Tab Discard) - C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276\Extensions\{c2c003ee-bd69-42a2-b0e9-6f34222cb046}.xpi [2022-12-20]
FF Extension: (Pas de nom) - C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276\Extensions\{E0B8C461-F8FB-49b4-8373-FE32E9252800}.xpi [2023-12-07]
FF Extension: (Diigo Web Collector - Capture and Annotate) - C:\Users\mthev\AppData\Roaming\Mozilla\Firefox\Profiles\lc90toee.default-1509961176254-1594545559276\Extensions\{fc2b8f80-d9a5-4f51-8076-7c7ce3c67ee3}.xpi [2023-08-28]
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll [2017-11-17] (Adobe Systems Incorporated -> )
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-02-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-11-17] (Adobe Systems Incorporated -> )
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-02-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [Pas de fichier]
FF Plugin HKU\S-1-5-21-962103061-607530579-3897627773-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\mthev\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-962103061-607530579-3897627773-1001: @talk.google.com/O1DPlugin -> C:\Users\mthev\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google Inc -> Google)
FF Plugin ProgramFiles/Appdata: C:\Users\mthev\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2017-11-03]
FF Plugin ProgramFiles/Appdata: C:\Users\mthev\AppData\Roaming\mozilla\plugins\npo1d.dll [2017-11-03]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default [2024-02-25]
CHR Extension: (CaretTab - Nouveau tableau de bord des onglets) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojpndognjdcakkimaloeealehpkljna [2023-12-18]
CHR Extension: (Google Docs hors connexion) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-12]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2024-02-22]
CHR Extension: (Office Online - Copier et coller) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2022-02-12]
CHR Extension: (Raindrop.io) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldgfbffkinooeloadekpmfoklnobpien [2024-02-14]
CHR Extension: (Save to Pocket) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2022-11-08]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Diigo Web Collector - Capture and Annotate) - C:\Users\mthev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnhplgjpclknigjpccbcnmicgcieojbh [2021-08-29]
CHR Profile: C:\Users\mthev\AppData\Local\Google\Chrome\User Data\System Profile [2022-10-12]
CHR HKU\S-1-5-21-962103061-607530579-3897627773-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S4 AdobeFlashPlayerUpdateSvc; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-11-17] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S3 BarcoClickShareAutorunService; C:\WINDOWS\System32\DriverStore\FileRepository\barcoclicksharedrv.inf_amd64_dc3fcf5ec77d6de4\BarcoClickShareSvc.exe [896080 2019-06-04] (Microsoft Windows Hardware Compatibility Publisher -> Barco NV)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14048768 2024-02-17] (Microsoft Corporation -> Microsoft Corporation)
R2 Everything; C:\Program Files\Everything\Everything.exe [2265096 2022-10-10] (voidtools -> voidtools)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.025.0204.0003\FileSyncHelper.exe [3516848 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2438128 2023-11-11] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S2 GoogleUpdaterInternalService124.0.6315.0; C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATTENTION
S2 GoogleUpdaterService124.0.6315.0; C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATTENTION
S4 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1309184 2016-10-07] (HP Inc.) [Fichier non signé]
S4 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [756216 2021-12-14] (HP Inc. -> HP Inc.)
S4 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [755192 2021-12-14] (HP Inc. -> HP Inc.)
S4 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc. -> HP Inc.)
S4 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [753184 2021-12-14] (HP Inc. -> HP Inc.)
S4 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [403576 2021-04-01] (HP Inc. -> HP Inc.)
S4 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [755192 2021-12-14] (HP Inc. -> HP Inc.)
S4 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc. -> HP Inc.)
S4 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800 2016-06-20] (HP Inc. -> HP Inc.)
S4 LogiSyncHandler; C:\Program Files (x86)\Logitech\LogiSync\sync-agent\LogiSyncHandler.exe [5832192 2021-12-06] (Logitech Inc -> )
S4 LogiSyncMiddleware; C:\Program Files (x86)\Logitech\LogiSync\sync-agent\LogiSyncMiddleware.exe [6888448 2021-12-03] (Logitech Inc -> )
S4 LogiSyncProxy; C:\Program Files (x86)\Logitech\LogiSync\sync-agent\LogiSyncProxy.exe [6067712 2021-12-01] (Logitech Inc -> )
S4 LogiSyncStub; C:\Program Files (x86)\Logitech\LogiSyncStub\LogiSyncStub.exe [2229264 2021-02-17] (Logitech Inc -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-01-29] (Malwarebytes Inc. -> Malwarebytes)
R2 myCANAL Server; C:\ProgramData\myCANAL\nssm.exe [294912 2022-09-01] () [Fichier non signé]
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.025.0204.0003\OneDriveUpdaterService.exe [3853744 2024-02-22] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BarcoClickShareDrv; C:\WINDOWS\System32\drivers\BarcoClickShareDrv.sys [22608 2019-06-04] (Microsoft Windows Hardware Compatibility Publisher -> Barco NV)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-08-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-11-01] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223296 2024-02-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-08-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-01-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181992 2022-09-05] (Malwarebytes Inc. -> Malwarebytes)
R3 MpKsl01309dee; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{36DC1953-63EC-419A-972B-8700472CCBD1}\MpKslDrv.sys [272664 2024-02-24] (Microsoft Windows -> Microsoft Corporation)
S3 PVUSB; C:\WINDOWS\System32\drivers\CESG64.sys [63808 2007-02-19] (CASIO COMPUTER CO.,LTD. -> CASIO COMPUTER CO.,LTD.)
R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv64.sys [909728 2020-05-26] (Sunplus Innovation Technology Inc. -> Sunplus Innovation Technology Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-06] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Trois mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2024-02-25 10:43 - 2024-02-25 10:45 - 000040675 _____ C:\Users\mthev\OneDrive\Desktop\FRST.txt
2024-02-25 10:43 - 2024-02-25 10:45 - 000000000 ____D C:\FRST
2024-02-25 10:42 - 2024-02-25 10:42 - 002386944 _____ (Farbar) C:\Users\mthev\OneDrive\Desktop\FRST64.exe
2024-02-25 10:39 - 2024-02-25 10:38 - 000334598 _____ C:\Users\mthev\OneDrive\Desktop\ZHPDiag.txt
2024-02-25 10:27 - 2024-02-25 10:27 - 000000878 _____ C:\Users\mthev\OneDrive\Desktop\ZHPSuite.lnk
2024-02-25 10:27 - 2024-02-25 10:27 - 000000000 ____D C:\Users\mthev\AppData\Local\ZHP
2024-02-25 10:26 - 2024-02-25 10:27 - 003538592 _____ (Nicolas Coolman) C:\Users\mthev\OneDrive\Desktop\ZHPSuite.exe
2024-02-23 09:11 - 2024-02-23 09:12 - 000000000 ___HD C:\$WinREAgent
2024-02-22 17:07 - 2024-02-22 17:07 - 001010108 _____ C:\Users\mthev\Downloads\20240222 - Support Accident du travail CALOR-compressé.pdf
2024-02-22 15:32 - 2024-02-22 15:32 - 000002299 _____ C:\Users\mthev\OneDrive\Desktop\Miro.lnk
2024-02-22 15:32 - 2024-02-22 15:32 - 000000000 ____D C:\Users\mthev\AppData\Local\RealtimeBoard
2024-02-22 09:06 - 2024-02-22 09:06 - 001717992 _____ C:\Users\mthev\OneDrive\Desktop\les types de cv C Ngassa.pdf
2024-02-17 10:29 - 2024-02-17 10:29 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-02-15 14:49 - 2024-02-15 14:49 - 000924192 _____ C:\Users\mthev\Downloads\2400515.pdf
2024-02-15 08:56 - 2024-02-15 08:56 - 000296629 _____ C:\Users\mthev\Downloads\0217623266.pdf
2024-02-14 18:36 - 2024-02-14 18:36 - 003301430 _____ C:\Users\mthev\Downloads\Notion d autorite aujourd hui.pdf
2024-02-14 08:24 - 2024-02-14 08:24 - 000019697 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-02-14 08:23 - 2024-02-14 08:23 - 000019697 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2024-02-13 17:33 - 2024-02-13 17:33 - 000720931 _____ C:\Users\mthev\Downloads\0311p_lentretien-dexplicitation_20240119.pdf
2024-02-13 17:16 - 2024-02-13 17:16 - 002879438 _____ C:\Users\mthev\Downloads\dce-v2.zip
2024-02-13 17:16 - 2024-02-13 17:16 - 002831401 _____ C:\Users\mthev\Downloads\dce-v1.zip
2024-02-13 17:13 - 2024-02-13 17:13 - 000005404 _____ C:\Users\mthev\Downloads\fiche_csl_repondre_depot_pli_jnlp_1707840787145.jnlp
2024-02-13 17:13 - 2024-02-13 17:13 - 000000000 ____D C:\Users\mthev\.achatpublic
2024-02-13 17:12 - 2024-02-13 17:12 - 000005407 _____ C:\Users\mthev\Downloads\fiche_csl_repondre_depot_pli_jnlp_1707840768425.jnlp
2024-02-13 17:10 - 2024-02-13 17:10 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Sun
2024-02-13 17:10 - 2024-02-13 17:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2024-02-13 17:10 - 2024-02-13 17:10 - 000000000 ____D C:\Program Files\Java
2024-02-13 17:10 - 2023-12-19 13:01 - 000200320 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2024-02-13 17:09 - 2024-02-13 17:09 - 000005404 _____ C:\Users\mthev\Downloads\fiche_csl_repondre_depot_pli_jnlp_1707840554121.jnlp
2024-02-12 15:42 - 2024-02-12 15:42 - 000000434 _____ C:\Users\mthev\Downloads\541677369.ics
2024-02-12 15:03 - 2024-02-12 15:03 - 000917072 _____ C:\Users\mthev\Downloads\Facture_2400652.pdf
2024-02-12 10:53 - 2024-02-12 10:53 - 000003896 _____ C:\Users\mthev\Downloads\Export_Evaluations_50924901700039_20240212.csv
2024-02-11 18:34 - 2024-02-11 18:34 - 000000000 ____D C:\Program Files\Adobe
2024-02-11 17:19 - 2024-02-11 17:19 - 000010354 _____ C:\Users\mthev\Downloads\leboncoin_bon-d-envoi_f80577ad-f7df-4495-aa8f-11504912886f.pdf
2024-02-11 16:41 - 2024-02-11 16:41 - 000127939 _____ C:\Users\mthev\Downloads\datatmpfacture_commande123099.pdf
2024-02-07 11:23 - 2024-02-07 11:23 - 000001676 _____ C:\Users\mthev\Downloads\Soir%C3%A9e+Serious+Game+%28en+partenariat+avec+OpenSeriousGame+%26+The+NEO%29.ics
2024-02-07 10:28 - 2024-02-07 10:28 - 000066548 _____ C:\Users\mthev\Downloads\2024-01 - MARLENE THEVENET - Janvier 2024.pdf
2024-02-07 08:43 - 2024-02-07 08:43 - 000049025 _____ C:\Users\mthev\Downloads\facture_9088245093_2024-02-05.pdf
2024-02-05 14:29 - 2024-02-05 14:29 - 000919376 _____ C:\Users\mthev\Downloads\Facture_2400555.pdf
2024-02-05 13:41 - 2024-02-05 13:41 - 000924192 _____ C:\Users\mthev\Downloads\Facture_2400515.pdf
2024-02-05 12:07 - 2024-02-05 12:07 - 000911344 _____ C:\Users\mthev\Downloads\Facture_2400552.pdf
2024-02-05 09:23 - 2024-02-05 09:23 - 000001655 _____ C:\Users\mthev\Downloads\event(11).ics
2024-02-05 09:23 - 2024-02-05 09:23 - 000001655 _____ C:\Users\mthev\Downloads\event(10).ics
2024-02-04 19:42 - 2024-02-04 19:42 - 002156391 _____ C:\Users\mthev\OneDrive\Desktop\v3LPM_FORMULAIRE_CHANGEMENT_TITULAIRE[1]_signed.pdf
2024-02-04 19:42 - 2024-02-04 19:42 - 002156391 _____ C:\Users\mthev\Downloads\v2LPM_FORMULAIRE_CHANGEMENT_TITULAIRE[1]_signed.pdf
2024-02-04 18:46 - 2024-02-04 18:47 - 002192438 _____ C:\Users\mthev\OneDrive\Desktop\v2LPM_FORMULAIRE_CHANGEMENT_TITULAIRE.pdf
2024-02-04 18:18 - 2024-02-04 18:27 - 003306583 _____ C:\Users\mthev\OneDrive\Desktop\LPM_FORMULAIRE_CHANGEMENT_TITULAIRE.pdf
2024-02-04 18:14 - 2024-02-04 18:14 - 000215925 _____ C:\Users\mthev\Downloads\LPM_FORMULAIRE_CHANGEMENT_TITULAIRE.pdf
2024-02-02 15:22 - 2024-02-02 15:22 - 003001287 _____ C:\Users\mthev\Downloads\Support webconférence_vf-min (1).pdf
2024-02-02 13:22 - 2024-02-02 13:22 - 000042613 _____ C:\Users\mthev\Downloads\Facture_FR62838397.pdf
2024-02-01 14:15 - 2024-02-01 14:15 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2024-01-30 08:10 - 2024-01-30 08:10 - 000097826 _____ C:\Users\mthev\Downloads\sfr-facture-0487616311-0-10.pdf
2024-01-28 20:44 - 2024-01-28 20:44 - 001745167 _____ C:\Users\mthev\Downloads\ilovepdf_merged_compressed.pdf
2024-01-28 20:43 - 2024-01-28 20:43 - 004798058 _____ C:\Users\mthev\Downloads\ilovepdf_merged-25.pdf
2024-01-25 17:51 - 2024-01-25 17:51 - 006835565 _____ C:\Users\mthev\Downloads\ilovepdf_merged-24.pdf
2024-01-25 17:48 - 2024-01-25 17:48 - 006216686 _____ C:\Users\mthev\Downloads\ilovepdf_merged-23.pdf
2024-01-25 17:47 - 2024-01-25 17:47 - 000797790 _____ C:\Users\mthev\Downloads\ilovepdf_merged-22.pdf
2024-01-25 17:46 - 2024-01-25 17:46 - 005876163 _____ C:\Users\mthev\Downloads\ilovepdf_merged-21.pdf
2024-01-25 17:42 - 2024-01-25 17:42 - 005879229 _____ C:\Users\mthev\Downloads\ilovepdf_merged-20.pdf
2024-01-25 17:36 - 2024-01-25 17:36 - 003188352 _____ C:\Users\mthev\Downloads\ilovepdf_merged-19.pdf
2024-01-25 17:34 - 2024-01-25 17:34 - 006760115 _____ C:\Users\mthev\Downloads\ilovepdf_merged-17.pdf
2024-01-25 17:34 - 2024-01-25 17:34 - 006542658 _____ C:\Users\mthev\Downloads\ilovepdf_merged-18.pdf
2024-01-25 17:33 - 2024-01-25 17:33 - 006760115 _____ C:\Users\mthev\Downloads\ilovepdf_merged-16.pdf
2024-01-25 17:22 - 2024-01-25 17:22 - 006668960 _____ C:\Users\mthev\Downloads\ilovepdf_merged-15.pdf
2024-01-25 17:22 - 2024-01-25 17:22 - 003005653 _____ C:\Users\mthev\Downloads\ilovepdf_merged-14.pdf
2024-01-25 17:20 - 2024-01-25 17:20 - 003005653 _____ C:\Users\mthev\Downloads\ilovepdf_merged-13.pdf
2024-01-25 17:19 - 2024-01-25 17:19 - 003005653 _____ C:\Users\mthev\Downloads\ilovepdf_merged-12.pdf
2024-01-25 17:17 - 2024-01-25 17:17 - 003202853 _____ C:\Users\mthev\Downloads\ilovepdf_merged-11.pdf
2024-01-25 17:09 - 2024-01-25 17:09 - 003307542 _____ C:\Users\mthev\Downloads\ilovepdf_merged-10.pdf
2024-01-25 11:34 - 2024-01-25 11:34 - 000921136 _____ C:\Users\mthev\Downloads\Facture_2307168.pdf
2024-01-25 10:51 - 2024-01-25 10:51 - 001459553 _____ C:\Users\mthev\Downloads\ilovepdf_merged-9.pdf
2024-01-25 04:47 - 2024-01-25 04:47 - 001178029 _____ C:\Users\mthev\Downloads\ilovepdf_merged-8.pdf
2024-01-24 08:37 - 2024-01-24 08:37 - 008917876 _____ C:\Users\mthev\Downloads\Vocabulaire CV Anglais.pdf
2024-01-23 14:03 - 2024-01-23 14:03 - 000004158 _____ C:\Users\mthev\Downloads\nouvelles-dimensions-du-management-que-devient-la-notion-d-a(1).ics
2024-01-23 08:13 - 2024-01-23 08:13 - 001152416 _____ C:\Users\mthev\Downloads\15646-01-4.pdf
2024-01-23 08:03 - 2024-01-23 08:03 - 001152416 _____ C:\Users\mthev\Downloads\15646-01-3.pdf
2024-01-22 18:46 - 2024-01-22 18:46 - 001152416 _____ C:\Users\mthev\Downloads\15646-01-2.pdf
2024-01-22 18:44 - 2024-01-22 18:44 - 001152417 _____ C:\Users\mthev\Downloads\15646-01-1.pdf
2024-01-22 18:01 - 2024-01-22 18:01 - 001324617 _____ C:\Users\mthev\Downloads\20240105 - SUPPORT FORMATION CALOR_compressed.pdf
2024-01-22 16:58 - 2024-01-22 16:58 - 004405236 _____ C:\Users\mthev\OneDrive\Desktop\doc02474220240122120625.pdf
2024-01-19 10:46 - 2024-01-19 10:46 - 000887275 _____ C:\Users\mthev\Downloads\Verbatims Sessions CALOR_compressed.pdf
2024-01-18 17:34 - 2024-01-18 17:34 - 000004158 _____ C:\Users\mthev\Downloads\nouvelles-dimensions-du-management-que-devient-la-notion-d-a.ics
2024-01-18 08:59 - 2024-01-18 08:59 - 002714527 _____ C:\Users\mthev\Downloads\PPT_WebinaireConjoncture_2312.pdf
2024-01-18 08:32 - 2024-01-18 08:32 - 000039906 _____ C:\Users\mthev\Downloads\Ajouter des lignes dans le corps du texte.pdf
2024-01-16 14:02 - 2024-01-16 14:02 - 000156647 _____ C:\Users\mthev\Downloads\notes semestre 1.pdf
2024-01-16 08:23 - 2024-01-16 08:23 - 007121953 _____ C:\Users\mthev\Downloads\Projet Petit Guide du Formateur Indépendant V6.pdf
2024-01-15 18:13 - 2024-01-15 18:13 - 109605544 _____ (Butter) C:\Users\mthev\Downloads\Butter-4.2.3.exe
2024-01-15 13:12 - 2024-01-15 13:12 - 001080298 _____ C:\Users\mthev\Downloads\convocations_bilan_de_competences_les_pivoteurs_hiver_2024_lyon_c20.zip
2024-01-15 10:53 - 2024-01-15 10:53 - 000149459 _____ C:\Users\mthev\OneDrive\Desktop\Questionnaire Managers CALOR - pre-Work_PHUSSER.pdf
2024-01-12 07:02 - 2024-01-12 07:02 - 000023838 _____ C:\Users\mthev\OneDrive\Desktop\637c95be3226175f82911ac8_logo-theWeek.svg
2024-01-11 08:58 - 2024-01-11 08:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem
2024-01-10 17:09 - 2024-01-10 17:09 - 000066596 _____ C:\Users\mthev\Downloads\2023-12 - MARLENE THEVENET - Decembre 2023.pdf
2024-01-09 08:37 - 2024-01-09 08:37 - 000915072 _____ C:\Users\mthev\Downloads\Devis_231837.pdf
2024-01-07 14:36 - 2024-01-07 14:36 - 000002290 _____ C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Evernote.lnk
2024-01-07 14:24 - 2024-01-07 14:24 - 397392704 _____ (Evernote Corporation) C:\Users\mthev\Downloads\Evernote-latest.exe
2024-01-03 09:40 - 2024-01-03 09:40 - 000247662 _____ C:\Users\mthev\Downloads\Attestation.pdf
2023-12-30 11:50 - 2023-12-30 11:50 - 000139436 _____ C:\Users\mthev\Downloads\sfr-facture-0487616311-0-9.pdf
2023-12-29 16:21 - 2023-12-29 16:21 - 000001646 _____ C:\Users\mthev\Downloads\12-01-2024-a-08h00.ics
2023-12-29 11:34 - 2023-12-29 11:34 - 001125088 _____ C:\Users\mthev\Downloads\10606129_xml_2023_12_29_0307e.zip
2023-12-28 14:19 - 2023-12-28 15:46 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Notepad++
2023-12-28 14:19 - 2023-12-28 14:19 - 000000884 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
2023-12-28 14:19 - 2023-12-28 14:19 - 000000000 ____D C:\Program Files\Notepad++
2023-12-28 14:18 - 2023-12-28 14:18 - 004816456 _____ (Don HO don.h@free.fr) C:\Users\mthev\Downloads\npp.8.6.Installer.x64.exe
2023-12-28 13:02 - 2023-12-28 13:02 - 000000000 ____D C:\Users\mthev\Downloads\10606129_ff_2023_12_28_a91f4(1)
2023-12-28 12:53 - 2023-12-28 12:53 - 000496584 _____ C:\Users\mthev\Downloads\10606129_ff_2023_12_28_a91f4(1).zip
2023-12-28 12:23 - 2023-12-28 12:23 - 000496584 _____ C:\Users\mthev\Downloads\10606129_ff_2023_12_28_a91f4.zip
2023-12-28 12:16 - 2023-12-28 12:16 - 003288354 _____ C:\Users\mthev\OneDrive\Desktop\10606129_csv_2022_06_21_1ac99.csv
2023-12-28 12:14 - 2023-12-28 12:14 - 000826617 _____ C:\Users\mthev\Downloads\10606129_csv_2022_06_21_1ac99.zip
2023-12-21 22:52 - 2023-12-21 22:52 - 000003845 _____ C:\Users\mthev\Downloads\organismes_partenaire-RS5869(1).xlsx
2023-12-21 22:51 - 2023-12-21 22:51 - 000003845 _____ C:\Users\mthev\Downloads\organismes_partenaire-RS5869.xlsx
2023-12-19 13:18 - 2023-12-19 13:18 - 000393203 _____ C:\Users\mthev\Downloads\CamScanner 10-10-2023 15.15-1.pdf
2023-12-19 13:17 - 2023-12-19 13:17 - 000403259 _____ C:\Users\mthev\Downloads\CamScanner 10-10-2023 15.10-1.pdf
2023-12-19 13:17 - 2023-12-19 13:17 - 000393203 _____ C:\Users\mthev\Downloads\CamScanner 10-10-2023 15.15.pdf
2023-12-19 13:17 - 2023-12-19 13:17 - 000252162 _____ C:\Users\mthev\Downloads\peurs-1.pdf
2023-12-19 13:17 - 2023-12-19 13:17 - 000252028 _____ C:\Users\mthev\Downloads\swot-1.pdf
2023-12-19 13:17 - 2023-12-19 13:17 - 000009812 _____ C:\Users\mthev\Downloads\projets(1).xlsx
2023-12-19 13:16 - 2023-12-19 13:16 - 000009812 _____ C:\Users\mthev\Downloads\projets (1).xlsx
2023-12-19 08:33 - 2023-12-19 08:33 - 005157152 _____ C:\Users\mthev\Downloads\23_10_16_VF_REVUE_livret_formation_continue_23-24.pdf
2023-12-18 16:14 - 2023-12-18 16:14 - 000876053 _____ C:\Users\mthev\Downloads\20231209 - Tableau Sources de veille - M Thevenet - Airtable.pdf
2023-12-17 13:01 - 2023-12-17 13:01 - 000000000 ____D C:\WINDOWS\InboxApps
2023-12-17 12:40 - 2023-12-17 12:40 - 000172173 _____ C:\Users\mthev\OneDrive\Desktop\RemboursementSoins02102023.pdf
2023-12-17 12:40 - 2023-12-17 12:40 - 000171459 _____ C:\Users\mthev\OneDrive\Desktop\RemboursementSoins08122023.pdf
2023-12-17 12:33 - 2023-12-17 12:33 - 000172173 _____ C:\Users\mthev\Downloads\RemboursementSoins02102023.pdf
2023-12-17 12:31 - 2023-12-17 12:31 - 000171459 _____ C:\Users\mthev\Downloads\RemboursementSoins08122023.pdf
2023-12-15 08:27 - 2023-12-15 08:27 - 000153022 _____ C:\Users\mthev\Downloads\Facture 5743 du 12 décembre.pdf
2023-12-14 08:38 - 2023-12-14 08:38 - 001280096 _____ C:\Users\mthev\Downloads\a2020_CPE_interne_1211920.pdf
2023-12-12 16:28 - 2023-12-12 16:28 - 000467034 _____ C:\Users\mthev\OneDrive\Desktop\202312Contacts outlook.CSV
2023-12-12 16:28 - 2023-12-12 16:28 - 000052352 _____ C:\Users\mthev\AppData\Roaming\Valeurs séparées par une virgule.ADR
2023-12-12 16:20 - 2023-12-12 16:20 - 000000657 _____ C:\Users\mthev\Downloads\INVALID_EMAILS_6885535_1702394387_2955174275928677881.csv
2023-12-12 15:56 - 2023-12-12 15:56 - 000001831 _____ C:\Users\mthev\Downloads\INVALID_EMAILS_6885535_1702392958_3130423636016551601.csv
2023-12-12 12:42 - 2023-12-12 12:42 - 000044726 _____ C:\Users\mthev\Downloads\cal.ics
2023-12-11 19:57 - 2023-12-11 19:57 - 000000339 _____ C:\Users\mthev\Downloads\Soirée conférence de lancement - Fond'action UdN.ics
2023-12-11 18:29 - 2023-12-12 08:18 - 000000000 ____D C:\Users\mthev\AppData\Roaming\GoTo
2023-12-11 18:29 - 2023-12-11 18:29 - 000002237 _____ C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GoTo.lnk
2023-12-11 18:29 - 2023-12-11 18:29 - 000000000 ____D C:\Users\mthev\AppData\Local\goto-updater
2023-12-11 18:29 - 2023-12-11 18:29 - 000000000 ____D C:\Users\mthev\AppData\Local\GoTo Opener
2023-12-11 11:45 - 2023-12-11 11:45 - 015987742 _____ C:\Users\mthev\Downloads\1000 petits pas vers ma Transition Professionnelle-slideshow.pdf
2023-12-11 11:42 - 2023-12-11 11:42 - 000910744 _____ C:\Users\mthev\Downloads\1000 petits pas vers ma Transition Professionnelle.pdf
2023-12-09 10:29 - 2023-12-09 10:29 - 003222553 _____ C:\Users\mthev\Downloads\R11 - Rencontre 11 - Les Pivoteurs - Courageux et Imparfaits vers 2024 - La Cordée Liberté.pdf
2023-12-08 16:32 - 2023-12-08 16:32 - 003934517 _____ C:\Users\mthev\Downloads\Transformation managriale.pdf
2023-12-07 16:08 - 2023-12-07 16:08 - 229200256 _____ (Mattermost, Inc.) C:\Users\mthev\Downloads\mattermost-desktop-setup-5.5.1-win.exe
2023-12-07 13:59 - 2023-12-07 13:59 - 000003913 _____ C:\Users\mthev\Downloads\les-comp-tences-l-039-preuve-de-l-039-intelligence-artificie.ics
2023-12-06 16:41 - 2023-12-06 16:41 - 000001827 _____ C:\Users\mthev\Downloads\atelier-faire-son-bilan-2023-et-pr-parer-2024.ics
2023-12-06 08:56 - 2023-12-06 08:56 - 000001954 _____ C:\Users\mthev\Downloads\11-01-2024-a-17h45.ics
2023-12-05 15:27 - 2023-12-05 15:27 - 008942392 _____ C:\Users\mthev\Downloads\mag-1.pdf
2023-12-05 10:52 - 2023-12-05 10:52 - 000912368 _____ C:\Users\mthev\Downloads\Facture_2306552.pdf
2023-12-05 10:44 - 2023-12-05 10:44 - 000066714 _____ C:\Users\mthev\Downloads\2023-11 - MARLENE THEVENET - Novembre 2023.pdf
2023-12-04 11:51 - 2023-12-04 11:51 - 000005523 _____ C:\Users\mthev\Downloads\system-info-www.lespivoteurs.fr-04-12-2023(1).txt
2023-12-04 11:50 - 2023-12-04 11:50 - 000005523 _____ C:\Users\mthev\Downloads\system-info-www.lespivoteurs.fr-04-12-2023.txt
2023-12-01 15:42 - 2023-12-01 15:42 - 001502600 _____ C:\Users\mthev\Downloads\Welcome x Bel Air Events (1)_compressed.pdf
2023-11-30 17:58 - 2023-11-30 17:58 - 000921568 _____ C:\Users\mthev\OneDrive\Desktop\Facture_2306450.pdf
2023-11-30 12:03 - 2023-11-30 12:03 - 002949332 _____ C:\Users\mthev\Downloads\ilovepdf_merged-8_compressed-1.pdf
2023-11-30 12:02 - 2023-11-30 12:02 - 001293977 _____ C:\Users\mthev\Downloads\ilovepdf_merged-8_compressed.pdf
2023-11-30 09:00 - 2023-11-30 09:00 - 000911280 _____ C:\Users\mthev\Downloads\231042.pdf
2023-11-29 15:35 - 2024-02-25 10:13 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Loom
2023-11-29 15:35 - 2023-11-29 15:35 - 000002252 _____ C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Loom.lnk
2023-11-29 14:30 - 2023-11-29 14:30 - 000003840 _____ C:\Users\mthev\Downloads\organismes_partenaire-RS5177.xlsx
2023-11-29 12:03 - 2023-11-29 12:03 - 000917792 _____ C:\Users\mthev\Downloads\Devis_231699.pdf
2023-11-27 18:07 - 2023-11-27 18:08 - 001470572 _____ C:\Users\mthev\Downloads\202311 - Support Formation CALOR - Accident de Travail-compressed.pdf

==================== Trois mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2024-02-25 10:42 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-02-25 10:38 - 2018-03-12 22:04 - 000000000 ____D C:\Users\mthev\AppData\Roaming\ZHP
2024-02-25 10:23 - 2022-02-09 03:26 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-02-25 10:19 - 2018-05-29 15:28 - 000000000 ____D C:\Users\mthev\Fichiers Outlook
2024-02-25 10:13 - 2017-10-20 11:58 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Slack
2024-02-25 09:27 - 2017-10-20 09:55 - 000000000 ___RD C:\Users\mthev\OneDrive
2024-02-25 09:26 - 2023-11-23 08:50 - 000000000 ____D C:\WINDOWS\system32\Tasks\PowerToys
2024-02-25 09:26 - 2023-05-11 03:07 - 000000000 ____D C:\Users\mthev\AppData\Local\Malwarebytes
2024-02-24 23:23 - 2020-09-27 06:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-02-24 20:44 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-02-24 20:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-02-24 19:25 - 2017-10-20 16:25 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Excel
2024-02-24 19:11 - 2020-09-27 08:54 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-02-23 18:14 - 2017-12-16 13:01 - 000000000 ____D C:\Users\mthev\AppData\Local\Packages
2024-02-23 17:57 - 2021-12-19 11:50 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-02-23 11:17 - 2021-10-07 06:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2024-02-23 11:14 - 2022-02-09 03:10 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-02-23 11:14 - 2019-11-15 18:45 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-02-23 11:14 - 2019-11-15 18:45 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-02-23 11:14 - 2017-10-20 15:06 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Word
2024-02-23 09:13 - 2020-09-27 08:53 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-02-23 09:13 - 2020-09-27 08:53 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-02-22 23:36 - 2019-11-21 11:30 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-02-22 16:34 - 2018-04-16 12:50 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Airtable
2024-02-22 15:34 - 2020-04-17 22:31 - 000000000 ____D C:\Users\mthev\AppData\Roaming\RealtimeBoard
2024-02-22 15:34 - 2018-06-11 16:22 - 000000000 ____D C:\Users\mthev\AppData\Local\D3DSCache
2024-02-22 15:32 - 2020-04-17 22:31 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Miro
2024-02-22 15:32 - 2017-10-20 11:57 - 000000000 ____D C:\Users\mthev\AppData\Local\SquirrelTemp
2024-02-22 10:56 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2024-02-22 09:14 - 2022-02-15 15:14 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-962103061-607530579-3897627773-1000
2024-02-22 09:14 - 2022-02-15 15:14 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-02-22 09:14 - 2022-02-15 11:24 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-02-22 09:14 - 2022-02-15 11:24 - 000002177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-02-22 09:14 - 2021-12-11 11:19 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-962103061-607530579-3897627773-1001
2024-02-21 08:55 - 2020-12-02 23:50 - 002033218 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-02-21 08:55 - 2019-12-07 15:49 - 000873614 _____ C:\WINDOWS\system32\perfh00C.dat
2024-02-21 08:55 - 2019-12-07 15:49 - 000182604 _____ C:\WINDOWS\system32\perfc00C.dat
2024-02-21 08:48 - 2020-09-27 08:51 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-02-21 08:48 - 2020-09-27 06:51 - 000008192 ___SH C:\DumpStack.log.tmp
2024-02-21 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2024-02-21 08:48 - 2019-12-07 10:03 - 001835008 _____ C:\WINDOWS\system32\config\BBI
2024-02-19 12:36 - 2022-02-09 09:12 - 000000000 ____D C:\ProgramData\mthev
2024-02-19 11:31 - 2017-10-21 13:13 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\QuickStyles
2024-02-17 10:27 - 2022-02-15 15:59 - 000000000 ____D C:\Program Files\Microsoft Office
2024-02-16 15:36 - 2017-10-21 12:20 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\PowerPoint
2024-02-15 08:21 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2024-02-14 13:38 - 2020-03-17 15:57 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Teams
2024-02-14 10:47 - 2023-10-24 10:41 - 000002371 _____ C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams classic.lnk
2024-02-14 08:28 - 2020-09-27 06:51 - 000554112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2024-02-14 08:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-02-14 08:27 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-02-14 08:23 - 2020-09-27 08:53 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2024-02-14 08:13 - 2016-12-29 13:42 - 000000000 ____D C:\ProgramData\Package Cache
2024-02-14 08:12 - 2021-01-03 17:09 - 000000000 ____D C:\Program Files\dotnet
2024-02-14 08:12 - 2017-10-24 09:08 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-02-14 08:06 - 2017-10-24 09:08 - 191155960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-02-13 17:13 - 2020-12-02 23:33 - 000000000 ____D C:\Users\mthev
2024-02-13 08:29 - 2021-09-22 11:53 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2024-02-12 07:17 - 2022-02-25 09:07 - 000000000 ____D C:\Users\mthev\AppData\LocalLow\IGDump
2024-02-11 18:42 - 2017-10-20 13:15 - 000000000 ____D C:\Users\mthev\AppData\Local\Adobe
2024-02-11 18:34 - 2021-11-08 16:05 - 000000000 ____D C:\Program Files\Common Files\Adobe
2024-02-11 18:00 - 2017-10-23 14:45 - 000000000 ____D C:\Program Files (x86)\PDF Creator
2024-02-09 08:41 - 2018-07-24 07:58 - 000000000 ____D C:\Users\mthev\AppData\Local\CrashDumps
2024-02-06 15:31 - 2021-10-22 11:58 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Notion
2024-02-02 17:48 - 2017-10-20 12:44 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Office
2024-02-01 14:16 - 2023-02-07 07:48 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Zoom
2024-01-31 21:26 - 2019-11-07 14:34 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies Inc
2024-01-31 21:26 - 2017-10-20 11:57 - 000000000 ____D C:\Users\mthev\AppData\Local\slack
2024-01-29 10:01 - 2022-12-11 10:24 - 000239576 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2024-01-26 21:56 - 2022-01-19 12:54 - 000000000 ____D C:\Users\mthev\AppData\Roaming\Evernote

==================== Fichiers à la racine de certains dossiers ========

2019-05-20 20:50 - 2019-05-20 20:50 - 001151544 _____ (Google LLC) C:\Users\mthev\installbackupandsync.exe
2022-11-10 14:08 - 2022-11-10 14:09 - 134939304 _____ (Signal Messenger, LLC) C:\Users\mthev\signal-desktop-win-5.63.1.exe
2022-03-10 12:29 - 2022-03-10 12:29 - 000000203 _____ () C:\Users\mthev\AppData\Roaming\2158c02c-70d3-4861-a3c6-01715082aabf.tmp
2023-12-12 16:28 - 2023-12-12 16:28 - 000052352 _____ () C:\Users\mthev\AppData\Roaming\Valeurs séparées par une virgule.ADR
2019-01-02 17:38 - 2019-01-02 17:38 - 000001631 _____ () C:\Users\mthev\AppData\Local\recently-used.xbel

==================== SigCheckExt =========================

2017-07-14 11:12 - 2017-07-14 11:12 - 000850432 _____ C:\WINDOWS\system32\vulkan-1-1-0-54-1.dll
2017-10-29 11:21 - 2017-07-14 11:12 - 000850432 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-07-14 11:12 - 2017-07-14 11:12 - 000526848 _____ C:\WINDOWS\system32\vulkaninfo-1-1-0-54-1.exe
2017-10-29 11:21 - 2017-07-14 11:12 - 000526848 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-10-23 14:45 - 2015-02-04 18:00 - 001576448 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2016-12-29 22:13 - 2017-10-28 21:13 - 000014848 _____ (Hewlett-Packard) C:\WINDOWS\HPCUST2.exe
2017-07-14 11:13 - 2017-07-14 11:13 - 000718336 _____ C:\WINDOWS\SysWOW64\vulkan-1-1-0-54-1.dll
2017-10-29 11:21 - 2017-07-14 11:13 - 000718336 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-07-14 11:13 - 2017-07-14 11:13 - 000425984 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-54-1.exe
2017-10-29 11:21 - 2017-07-14 11:13 - 000425984 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2024-02-25 10:42 - 2024-02-25 10:42 - 002386944 _____ (Farbar) C:\Users\mthev\OneDrive\Desktop\FRST64.exe
2024-02-25 10:26 - 2024-02-25 10:27 - 003538592 _____ (Nicolas Coolman) C:\Users\mthev\OneDrive\Desktop\ZHPSuite.exe
2024-01-15 18:13 - 2024-01-15 18:13 - 109605544 _____ (Butter) C:\Users\mthev\Downloads\Butter-4.2.3.exe
2021-05-09 15:00 - 2021-05-09 15:00 - 000348992 _____ (Big Nerd Software, LLC) C:\Users\mthev\Downloads\WebLaunchRecorder.exe

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


==================== BCD ================================

Gestionnaire de démarrage du microprogramme
-------------------------------------------
identificateur {fwbootmgr}
displayorder {bootmgr}
{2a73d431-b561-11e7-9453-806e6f6e6963}
{14641d11-4ae9-11ee-981a-0028f8f4fabe}
timeout 0

Gestionnaire de démarrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\bootmgfw.efi
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {ffcf83b8-34ef-11eb-95d4-0028f8f4fabe}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30

Application logicielle (101fffff)
--------------------------------
identificateur {14641d11-4ae9-11ee-981a-0028f8f4fabe}
description USB Drive (UEFI)

Application logicielle (101fffff)
--------------------------------
identificateur {2a73d431-b561-11e7-9453-806e6f6e6963}
device partition=\Device\HarddiskVolume1
description Solid State Disk

Chargeur de démarrage Windows
-----------------------------
identificateur {c76d9a5b-5db2-11e8-b37f-d4801e6ee0fe}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{c76d9a5c-5db2-11e8-b37f-d4801e6ee0fe}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale fr-FR
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{c76d9a5c-5db2-11e8-b37f-d4801e6ee0fe}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes

Chargeur de démarrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \WINDOWS\system32\winload.efi
description Windows 10
locale fr-FR
inherit {bootloadersettings}
recoverysequence {c76d9a5b-5db2-11e8-b37f-d4801e6ee0fe}
displaymessageoverride Recovery
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {ffcf83b8-34ef-11eb-95d4-0028f8f4fabe}
nx OptIn
bootmenupolicy Standard

Reprendre à partir de la mise en veille prolongée
-------------------------------------------------
identificateur {ffcf83b8-34ef-11eb-95d4-0028f8f4fabe}
device partition=C:
path \WINDOWS\system32\winresume.efi
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
recoverysequence {c76d9a5b-5db2-11e8-b37f-d4801e6ee0fe}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No

Testeur de mémoire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostics mémoire Windows
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes

Paramètres EMS
--------------
identificateur {emssettings}
bootems No

Paramètres du débogueur
-----------------------
identificateur {dbgsettings}
debugtype Local

Erreurs de mémoire RAM
----------------------
identificateur {badmemory}

Paramètres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}

Paramètres du chargeur de démarrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}

Paramètres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200

Paramètres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}

Options de périphérique
-----------------------
identificateur {c76d9a5c-5db2-11e8-b37f-d4801e6ee0fe}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi

==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité