Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019 Exécuté par Utilisateur (administrateur) sur THIBAUT (Micro-Star International Co., Ltd. MS-7B48) (10-12-2019 18:40:39) Exécuté depuis C:\Users\Utilisateur\Desktop Profils chargés: Utilisateur & postgres (Profils disponibles: Utilisateur & postgres) Platform: Windows 10 Home Version 1909 18363.476 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Bill2 Software) [Fichier non signé] C:\Program Files (x86)\Bill2's Process Manager\ProcessManager.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe (Razer USA Ltd. -> ) C:\Windows\System32\RZSurroundHelper.exe (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\FPSRunner32.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\PMRunner32.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\x64\FPSRunner64.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\x64\PMRunner64.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe (Razer USA Ltd. -> Razer) C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Cortex\Cef\CefSharp.BrowserSubprocess.exe (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe (Streamlabs (General Workings, Inc.) -> General Workings, Inc.) C:\Program Files\Streamlabs OBS\Streamlabs OBS.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RZSurroundHelper] => C:\Windows\system32\RZSurroundHelper.exe [382704 2019-06-07] (Razer USA Ltd. -> ) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [971040 2019-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [183088 2019-12-09] (ESET, spol. s r.o. -> ESET) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [266624 2019-11-27] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3508464 2019-11-19] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [FACEIT] => C:\Users\Utilisateur\AppData\Local\FACEITApp\update.exe [2197504 2019-08-31] () [Fichier non signé] HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Steam] => D:\Steam\steam.exe [3288016 2019-12-06] (Valve -> Valve Corporation) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [GoogleChromeAutoLaunch_A616DDE2FA4E903E4B22BA1CBF106F1F] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1695728 2019-11-16] (Google LLC -> Google LLC) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [ProcessManager] => C:\Program Files (x86)\Bill2's Process Manager\ProcessManager.exe [2064384 2014-10-30] (Bill2 Software) [Fichier non signé] HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [vibranceGUI] => "C:\Users\Utilisateur\Desktop\VibranceGUI\vibranceGUI.exe" -minimized HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-11-11] (Piriform Software Ltd -> Piriform Ltd) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Discord] => C:\Users\Utilisateur\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Google Update] => C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.35.342\GoogleUpdateCore.exe [218920 2019-11-05] (Google Inc -> Google LLC) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3131664 2019-10-22] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Overwolf] => D:\\Overwolf\OverwolfLauncher.exe [1670472 2019-10-22] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [gtarcade] => C:\Users\Utilisateur\AppData\Local\Gtarcade\app\gtarcade.exe [3919776 2019-11-21] (上海游族互娱网络科技有限公司 -> ) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [83524968 2019-11-12] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\...\MountPoints2: {f2a5620b-9af4-11e9-965d-004f89004f08} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2968078702-4100399509-4066719269-1002\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3508464 2019-11-19] (Razer USA Ltd. -> Razer Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-22] (Google LLC -> Google LLC) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0AF2B900-82F0-4E53-A478-7FE0BF7B05B5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2018-08-25] (Google Inc -> Google Inc.) Task: {21DE04C0-2B17-40C7-9A65-AD876CEFDC6E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {27D747CE-55FB-4688-A443-7FB1F7064087} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-11-11] (Piriform Software Ltd -> Piriform Software Ltd) Task: {29D0C0D1-7BD9-463D-9291-DA9C8F35A6A2} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {34604840-1AE7-4B05-9444-4D330248FB93} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3D14B23E-ADD3-486D-99C6-725E58949539} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4D4AB6B2-C251-4D2C-9381-CF6A9D8F69E3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4E17038E-083F-4954-80FA-233343DD499F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2968078702-4100399509-4066719269-1001Core => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [155432 2019-10-16] (Google Inc -> Google LLC) Task: {6BDEBEC3-1D3F-498F-9CB3-89BD723D0D0E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {76119665-2EE8-4A5F-917D-9A94C34BD3A8} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation) Task: {77E75B12-5312-4EAF-ABEC-2647E1F406C0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-11-11] (Piriform Software Ltd -> Piriform Ltd) Task: {921417C0-84F9-45B3-A915-E98246BAB108} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {93871240-3DEF-467F-B024-D73F59805483} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AEB74A75-9E85-497D-841F-DAA987F02D44} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BAC27DB9-A1DF-498E-9674-9C90AEBAFFE7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2018-08-25] (Google Inc -> Google Inc.) Task: {EB7A7B20-7134-449E-9B26-A818FB6FC4E2} - System32\Tasks\Overwolf Updater Task => D:\Overwolf\OverwolfUpdater.exe [2430792 2019-10-22] (Overwolf Ltd -> Overwolf LTD) Task: {F3D6A437-CF37-4BA5-B727-7975A388B860} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2968078702-4100399509-4066719269-1001UA => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [155432 2019-10-16] (Google Inc -> Google LLC) Task: {F689702E-61ED-4FED-896B-C2FEB4648466} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3b2f6bd6-5eeb-472b-aa81-6abe0969168f}: [NameServer] 72.10.168.81,72.10.168.83 Tcpip\..\Interfaces\{3b2f6bd6-5eeb-472b-aa81-6abe0969168f}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{54076e55-710e-4f93-998b-f314954b6816}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{6f01f5f6-bd66-4ff4-b8f0-b2e47bc6da49}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{6f01f5f6-bd66-4ff4-b8f0-b2e47bc6da49}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{ee7cc01f-b0a4-49f3-8357-c96f5f6b6844}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00 SearchScopes: HKU\S-1-5-21-2968078702-4100399509-4066719269-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 SearchScopes: HKU\S-1-5-21-2968078702-4100399509-4066719269-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 SearchScopes: HKU\S-1-5-21-2968078702-4100399509-4066719269-1001 -> {F9BDC29B-D0B5-4A44-8844-6D7B5EF8AFA2} URL = hxxp://www.recherche-fr.com/search?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_231\bin\ssv.dll [2019-11-10] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-11-10] (Oracle America, Inc. -> Oracle Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-2968078702-4100399509-4066719269-1001 -> hxxp://www.recherche-fr.com/ FireFox: ======== FF DefaultProfile: 038jak23.default FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\038jak23.default [2019-12-10] FF Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\038jak23.default\Extensions\sp@avast.com.xpi [2019-10-27] FF Extension: (Avast Online Security) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\038jak23.default\Extensions\wrc@avast.com.xpi [2019-10-27] FF Plugin: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-11-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-11-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2968078702-4100399509-4066719269-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF Plugin HKU\S-1-5-21-2968078702-4100399509-4066719269-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2019-12-10] Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.recherche-fr.com/ CHR StartupUrls: Default -> "hxxp://google.com/" CHR Notifications: Default -> hxxps://csgoatse.com; hxxps://euw.op.gg; hxxps://get.getnotifications.online; hxxps://hellcase.com; hxxps://www.faceit.com; hxxps://www.hltv.org; hxxps://www.pvpro.com CHR Profile: C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default [2019-12-10] CHR Extension: (Google Drive) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-08-25] CHR Extension: (YouTube) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-25] CHR Extension: (CS.Money Antiscam) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocdepodnagbohblgjmooobalmcojkpg [2019-06-28] CHR Extension: (Social Blade) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfidkbgamfhdgmedldkagjopnbobdmdn [2019-12-09] [UpdateUrl:hxxps://addon.socialblade.com/updates.json] <==== ATTENTION CHR Extension: (Stake) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eledobkmohhjcpmjellphclpeffacfam [2019-11-19] CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-11-22] CHR Extension: (Google Docs hors connexion) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-25] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-12-06] CHR Extension: (Avast Online Security) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-11-23] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-05] CHR Extension: (Chrome Media Router) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-24] CHR Profile: C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-10-25] CHR Profile: C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\System Profile [2018-10-25] CHR HKLM\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] CHR HKU\S-1-5-21-2968078702-4100399509-4066719269-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] CHR HKLM-x32\...\Chrome\Extension: [pdpcpceofkopegffcdnffeenbfdldock] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8402648 2019-12-02] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-12-06] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-09] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-09] (ESET, spol. s r.o. -> ESET) S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [20252512 2019-10-18] (FACE IT LIMITED -> ) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [14280 2019-03-18] (Microsoft Corporation -> Microsoft Corporation) S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [18997912 2019-12-06] (Mail.Ru LLC -> LLC Mail.Ru) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation) S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2403120 2019-10-22] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3282736 2019-10-22] (Electronic Arts, Inc. -> Electronic Arts) S3 OverwolfUpdater; D:\Overwolf\OverwolfUpdater.exe [2430792 2019-10-22] (Overwolf Ltd -> Overwolf LTD) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [449664 2018-08-29] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [942720 2018-09-12] (Razer USA Ltd. -> Razer Inc.) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2019-10-01] (Razer USA Ltd. -> Razer Inc) R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [287472 2019-11-19] (Razer USA Ltd. -> Razer Inc.) S3 Rockstar Service; D:\Rockstar\Launcher\RockstarService.exe [474256 2019-11-23] (Rockstar Games, Inc. -> Rockstar Games) R2 RtkAudioUniversalService; C:\WINDOWS\System32\RtkAudUService64.exe [971040 2019-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532864 2019-10-28] (Razer USA Ltd. -> Razer Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [290864 2019-11-27] (Razer USA Ltd. -> Razer Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S2 Ds3Service; "C:\Users\Utilisateur\Desktop\scp server à jour\ScpServer\bin\ScpService.exe" [X] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 postgresql-x64-9.5; "C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.5" -D "C:\Program Files\PostgreSQL\9.5\data" -w ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [178840 2018-02-13] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [169864 2018-02-13] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2018-02-13] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149944 2019-12-09] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [103264 2019-12-09] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-12-09] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189512 2019-12-09] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50712 2019-12-09] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [79744 2019-12-09] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [116696 2019-12-09] (ESET, spol. s r.o. -> ESET) R0 FACEIT; C:\WINDOWS\System32\Drivers\FACEIT.sys [17862728 2019-12-06] (FACE IT LIMITED -> ) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [18234792 2019-12-06] (Mail.Ru LLC -> LLC Mail.Ru) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3334892267d8a3d1\nvlddmkm.sys [22744688 2019-11-21] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1154336 2019-06-19] (Realtek Semiconductor Corp. -> Realtek ) R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [50240 2019-09-19] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0064; C:\WINDOWS\System32\drivers\RzDev_0064.sys [51696 2018-04-22] (Razer USA Ltd. -> Razer Inc) R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 sRZVAD; C:\WINDOWS\system32\DRIVERS\RZSurround.sys [172024 2019-06-06] (Razer USA Ltd. -> Windows (R) Win 7 DDK provider) S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-09-27] (Microsoft Windows -> Microsoft Corporation) R3 VBAudioVACMME; C:\WINDOWS\System32\drivers\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [45408 2018-03-15] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [50176 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) U4 AppMgmt; pas de ImagePath U4 CscService; pas de ImagePath U4 napagent; pas de ImagePath U4 PeerDistSvc; pas de ImagePath S3 VBAudioVMVAIOMME; \SystemRoot\System32\drivers\vbaudio_vmvaio64_win10.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-12-10 18:40 - 2019-12-10 18:41 - 000032342 _____ C:\Users\Utilisateur\Desktop\FRST.txt 2019-12-10 18:39 - 2019-12-10 18:40 - 000000000 ____D C:\FRST 2019-12-10 18:37 - 2019-12-10 18:37 - 002263552 _____ (Farbar) C:\Users\Utilisateur\Downloads\FRST64.exe 2019-12-10 18:37 - 2019-12-10 18:37 - 002263552 _____ (Farbar) C:\Users\Utilisateur\Desktop\FRST64.exe 2019-12-09 21:52 - 2019-12-09 21:52 - 000012934 _____ C:\Users\Utilisateur\Desktop\WhoCrashedOutput.htm 2019-12-09 21:23 - 2019-12-09 21:23 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Kukouri 2019-12-09 21:23 - 2019-12-09 21:23 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\AWSToolkit 2019-12-09 21:08 - 2019-12-09 21:08 - 000189512 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2019-12-09 21:08 - 2019-12-09 21:08 - 000149944 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2019-12-09 21:08 - 2019-12-09 21:08 - 000116696 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2019-12-09 21:08 - 2019-12-09 21:08 - 000103264 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2019-12-09 21:08 - 2019-12-09 21:08 - 000079744 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2019-12-09 21:07 - 2019-12-09 21:07 - 000002020 _____ C:\Users\Public\Desktop\ESET Protection des transactions bancaires.lnk 2019-12-09 21:06 - 2019-12-09 21:06 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\steam.transformice.com 2019-12-09 20:20 - 2019-12-09 20:20 - 019267123 _____ C:\Users\Utilisateur\Downloads\DDNet-12.7.3-win64 (1).zip 2019-12-09 19:59 - 2019-12-09 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2019-12-09 19:59 - 2019-12-09 19:59 - 000000000 ____D C:\ProgramData\ESET 2019-12-09 19:59 - 2019-12-09 19:59 - 000000000 ____D C:\Program Files\ESET 2019-12-09 19:57 - 2019-12-09 19:59 - 1038122954 _____ C:\Users\Utilisateur\Downloads\Celeste.Farewell-PLAZA.rar 2019-12-09 19:02 - 2019-12-09 21:04 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Teeworlds 2019-12-09 19:02 - 2019-12-09 19:02 - 019267123 _____ C:\Users\Utilisateur\Downloads\DDNet-12.7.3-win64.zip 2019-12-09 17:48 - 2019-12-09 17:48 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Kozhakov 2019-12-09 13:47 - 2019-12-10 16:07 - 000000000 ____D C:\Users\Utilisateur\Documents\The Lord of the Rings Online 2019-12-09 13:47 - 2019-12-09 13:47 - 000000730 _____ C:\Users\Utilisateur\Documents\UserPreferences.ini 2019-12-09 13:35 - 2019-12-10 15:58 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\The Lord of the Rings Online 2019-12-08 19:36 - 2019-12-08 19:36 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\3X Entertainment 2019-12-08 16:52 - 2019-12-08 16:52 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\I_S_L_A 2019-12-08 16:52 - 2019-12-08 16:52 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\I.S.L.A 2019-12-08 16:42 - 2019-12-08 16:42 - 034762760 _____ C:\Users\Utilisateur\Downloads\I wanna be the Destination ver.1.1.zip 2019-12-08 16:37 - 2019-12-08 16:37 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2019-12-08 16:37 - 2019-12-08 16:37 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2019-12-08 16:37 - 2019-12-08 16:37 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2019-12-08 16:37 - 2019-12-08 16:37 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2019-12-08 16:37 - 2019-12-08 16:37 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2019-12-08 16:36 - 2019-12-08 16:36 - 042140333 _____ C:\Users\Utilisateur\Downloads\I wanna be the Distrust ver1.6.zip 2019-12-08 16:23 - 2019-12-08 16:23 - 000000000 ____D C:\Users\Utilisateur\Downloads\save 2019-12-08 16:22 - 2019-12-08 16:22 - 072106372 _____ ( ) C:\Users\Utilisateur\Downloads\iwbtgbeta.exe 2019-12-08 16:14 - 2019-12-08 16:14 - 013528450 _____ C:\Users\Utilisateur\Downloads\meatboy.zip 2019-12-08 08:08 - 2019-09-12 02:45 - 005567016 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPOU64.dll 2019-12-08 08:08 - 2019-09-12 02:45 - 001126344 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll 2019-12-08 08:08 - 2019-09-12 02:45 - 000481888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2019-12-08 08:08 - 2019-09-11 23:46 - 000971040 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe 2019-12-08 08:08 - 2019-09-11 23:46 - 000833624 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll 2019-12-08 08:08 - 2019-09-11 23:46 - 000215032 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2019-12-08 08:08 - 2018-04-01 22:11 - 006151616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2019-12-08 08:08 - 2018-04-01 19:02 - 017024579 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2019-12-07 23:19 - 2019-12-07 23:19 - 000010752 _____ C:\WINDOWS\SetupAfterRebootService.exe 2019-12-07 23:19 - 2019-12-07 23:19 - 000000000 ___HD C:\Program Files (x86)\Temp 2019-12-07 23:18 - 2019-12-07 23:19 - 000000000 ____D C:\Program Files (x86)\Realtek 2019-12-07 23:18 - 2019-12-07 23:18 - 041592344 _____ C:\Users\Utilisateur\Downloads\realtek_hd_UAD_audio.zip 2019-12-07 23:18 - 2019-12-07 23:18 - 000000000 ____D C:\Program Files\Intel 2019-12-07 23:18 - 2019-06-19 15:58 - 001154336 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys 2019-12-07 23:17 - 2019-12-07 23:17 - 011076519 _____ C:\Users\Utilisateur\Downloads\realtek_pcielan_w10.zip 2019-12-07 23:17 - 2019-12-07 23:17 - 005493648 _____ C:\Users\Utilisateur\Downloads\intel_chipse_300.zip 2019-12-07 22:17 - 2019-12-07 22:17 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Legend Studio 2019-12-07 20:05 - 2019-12-07 20:05 - 007744399 _____ C:\Users\Utilisateur\Downloads\7B48v2A (1).zip 2019-12-07 20:03 - 2019-12-07 20:03 - 007744399 _____ C:\Users\Utilisateur\Downloads\7B48v2A.zip 2019-12-07 18:52 - 2019-12-07 18:52 - 006889184 _____ (Piriform Ltd) C:\Users\Utilisateur\Downloads\spsetup132.exe 2019-12-07 18:52 - 2019-12-07 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2019-12-07 18:52 - 2019-12-07 18:52 - 000000000 ____D C:\Program Files\Speccy 2019-12-07 18:38 - 2019-12-07 18:38 - 005829844 _____ (UserBenchmark.com) C:\Users\Utilisateur\Downloads\UserBenchMark (2).exe 2019-12-07 18:34 - 2019-12-07 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed 2019-12-07 18:33 - 2019-12-07 18:33 - 009936128 _____ (Resplendence Software Projects Sp. ) C:\Users\Utilisateur\Downloads\whocrashedSetup.exe 2019-12-07 17:31 - 2019-12-07 17:31 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Skype 2019-12-07 17:31 - 2019-12-07 17:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2019-12-07 14:19 - 2019-12-07 14:19 - 000001532 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Resanance.lnk 2019-12-07 14:19 - 2019-12-07 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resanance 2019-12-07 14:16 - 2019-12-07 14:16 - 009195422 _____ C:\Users\Utilisateur\Downloads\ResananceV2.rar 2019-12-06 22:32 - 2019-12-06 22:32 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Bohemia Interactive 2019-12-06 21:49 - 2019-12-07 09:59 - 000384491 ____N C:\WINDOWS\Minidump\120719-20218-01.dmp 2019-12-06 21:29 - 2019-12-06 21:29 - 017862728 _____ C:\WINDOWS\system32\Drivers\FACEIT.sys 2019-12-06 08:03 - 2019-12-06 08:03 - 018997912 _____ (LLC Mail.Ru) C:\WINDOWS\system32\mracsvc.exe 2019-12-05 18:10 - 2019-12-05 18:10 - 001585045 _____ C:\Users\Utilisateur\Downloads\314211 Thunderclowns - Find The Memes In You.osz 2019-12-02 18:11 - 2019-12-02 18:11 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2019-12-02 18:10 - 2019-12-02 18:10 - 117991488 _____ (Ubisoft) C:\Users\Utilisateur\Downloads\UplayInstaller (1).exe 2019-12-02 18:01 - 2019-12-02 17:51 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2019-12-02 17:52 - 2019-12-02 17:52 - 004254328 _____ (ESET) C:\Users\Utilisateur\Downloads\eset_internet_security_live_installer_rt_fr.exe 2019-12-01 17:43 - 2019-12-01 17:43 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Wizards Of The Coast 2019-12-01 17:41 - 2019-12-01 17:41 - 000000000 ____D C:\Users\Utilisateur\Documents\Gatewatch_Logs 2019-12-01 17:41 - 2019-12-01 17:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTG Arena 2019-12-01 17:39 - 2019-12-01 17:39 - 007529752 _____ (Wizards of the Coast) C:\Users\Utilisateur\Downloads\MTGAInstaller.exe 2019-11-27 18:24 - 2019-11-27 18:24 - 068583080 _____ C:\Users\Utilisateur\Downloads\Install League of Legends PBE pbe (1).exe 2019-11-26 20:33 - 2019-11-21 20:42 - 004937584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2019-11-26 20:33 - 2019-11-21 20:42 - 004205568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 001073872 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 001073872 _____ C:\WINDOWS\system32\vulkan-1.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2019-11-26 20:33 - 2019-11-21 16:45 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo.exe 2019-11-26 20:33 - 2019-11-21 16:45 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2019-11-26 20:33 - 2019-11-21 16:45 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2019-11-26 20:33 - 2019-11-21 16:45 - 000450976 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2019-11-26 20:33 - 2019-11-21 16:45 - 000352512 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2019-11-26 20:33 - 2019-11-21 16:44 - 011843184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2019-11-26 20:33 - 2019-11-21 16:44 - 010167432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 017458840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 015027776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 005380736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 004716176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 002074712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001733264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444141.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001567688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001491568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444141.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001482376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001370256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001144920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 001064408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000825928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000813656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000685800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000676824 _____ C:\WINDOWS\system32\nvofapi64.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000659088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000556672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2019-11-26 20:33 - 2019-11-21 16:43 - 000544728 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2019-11-26 20:33 - 2019-11-21 16:42 - 040511064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2019-11-26 20:33 - 2019-11-21 16:42 - 035380336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2019-11-26 20:33 - 2019-11-21 01:56 - 000056258 _____ C:\WINDOWS\system32\nvinfo.pb 2019-11-25 17:25 - 2019-12-06 21:49 - 000445287 ____N C:\WINDOWS\Minidump\120619-20093-01.dmp 2019-11-24 10:39 - 2019-11-24 10:39 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Sample Text Studio 2019-11-24 10:08 - 2019-11-25 17:25 - 000382765 ____N C:\WINDOWS\Minidump\112519-43953-01.dmp 2019-11-24 08:29 - 2019-11-24 08:29 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Fishing Planet LLC 2019-11-23 22:12 - 2019-11-23 22:12 - 000478784 _____ (Advanced Mouse Auto Clicker ltd. ) C:\Users\Utilisateur\Downloads\free-mouse-auto-clicker-3-8-2.exe 2019-11-23 11:08 - 2019-11-24 10:08 - 000373743 ____N C:\WINDOWS\Minidump\112419-44531-01.dmp 2019-11-22 19:20 - 2019-11-26 15:47 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Survarium-Steam 2019-11-22 19:20 - 2019-11-22 19:20 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\SEMC 2019-11-22 17:49 - 2019-11-22 17:49 - 000000000 ____D C:\Users\Utilisateur\Documents\Boshy 2019-11-22 17:45 - 2019-11-22 17:47 - 135115201 _____ C:\Users\Utilisateur\Downloads\Boshy.zip 2019-11-21 18:03 - 2019-11-21 18:03 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\NekoWorks 2019-11-20 19:49 - 2019-12-06 09:40 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\EasyAntiCheat 2019-11-20 19:49 - 2019-11-20 19:49 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\RenPy 2019-11-20 19:49 - 2019-11-20 19:49 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Noble Empire 2019-11-20 19:49 - 2019-11-20 19:49 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\AldaGames 2019-11-20 19:35 - 2019-11-20 19:35 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Tentacle Games 2019-11-20 13:10 - 2019-11-20 13:10 - 068582056 _____ C:\Users\Utilisateur\Downloads\Install League of Legends PBE pbe.exe 2019-11-19 18:14 - 2019-11-19 18:14 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2019-11-16 18:28 - 2019-11-16 18:28 - 027922919 _____ C:\Users\Utilisateur\Downloads\Shige+X+Sard.zip 2019-11-16 18:13 - 2019-11-16 18:14 - 188042414 _____ C:\Users\Utilisateur\Downloads\GF Map-Pack.rar 2019-11-16 17:45 - 2019-11-16 17:45 - 000000000 ____D C:\ProgramData\Ubisoft 2019-11-16 12:50 - 2019-11-23 11:08 - 000348207 ____N C:\WINDOWS\Minidump\112319-43015-01.dmp 2019-11-16 12:46 - 2019-11-16 12:46 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2019-11-16 12:46 - 2019-11-16 12:46 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 006521768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 002763016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001664688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001647064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001413864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000822200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2019-11-16 12:45 - 2019-11-16 12:45 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-11-16 12:45 - 2019-11-16 12:45 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-11-16 12:45 - 2019-11-16 12:45 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-11-16 12:45 - 2019-11-16 12:45 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2019-11-16 12:45 - 2019-11-16 12:45 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2019-11-16 12:45 - 2019-11-16 12:45 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2019-11-16 12:45 - 2019-11-16 12:45 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2019-11-16 12:37 - 2019-10-17 07:17 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2019-11-16 12:37 - 2019-10-17 07:01 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2019-11-16 11:14 - 2019-11-16 11:16 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Trove 2019-11-16 08:33 - 2019-11-16 08:33 - 000000000 ____D C:\Users\Utilisateur\Documents\EVE 2019-11-16 00:08 - 2019-11-16 00:08 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Sony Online Entertainment 2019-11-15 23:44 - 2019-11-15 23:44 - 067023896 _____ C:\Users\Utilisateur\Downloads\EveLauncher-1602194.exe 2019-11-15 22:47 - 2019-11-15 22:47 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\LOA3 2019-11-15 22:25 - 2019-11-15 22:25 - 000001296 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gameforge Client.lnk 2019-11-15 22:25 - 2019-11-15 22:25 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Yoozoo 2019-11-15 22:24 - 2019-11-15 22:24 - 003116376 _____ (Shanghai Youzu Information Technology Corporation) C:\Users\Utilisateur\Downloads\GameOfThrones-gtarcade-5dcf178531bf0.exe 2019-11-15 22:24 - 2019-11-15 22:24 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GTarcade 2019-11-15 22:24 - 2019-11-15 22:24 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Gtarcade 2019-11-15 22:21 - 2019-11-21 18:37 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Gtarcade 2019-11-15 22:21 - 2019-11-15 22:21 - 003116376 _____ (Shanghai Youzu Information Technology Corporation) C:\Users\Utilisateur\Downloads\GameOfThrones-gtarcade-5dcf16d8b9f8a.exe 2019-11-15 22:18 - 2019-11-15 22:18 - 002258768 _____ C:\Users\Utilisateur\Downloads\GameforgeInstaller.exe 2019-11-15 20:21 - 2019-11-15 20:21 - 000128274 _____ C:\Users\Utilisateur\Downloads\csgo-benchmark-master.zip 2019-11-13 20:10 - 2019-11-13 20:10 - 000001862 _____ C:\Users\Utilisateur\Downloads\settings.txt 2019-11-13 19:57 - 2019-11-16 00:08 - 000000000 ____D C:\Program Files\Yendis Entertainment Pty Ltd 2019-11-13 19:57 - 2019-11-13 20:04 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\io.krunker.desktop 2019-11-13 19:57 - 2019-11-13 19:57 - 092081158 _____ (Yendis Entertainment Pty Ltd) C:\Users\Utilisateur\Downloads\setup.exe 2019-11-13 19:57 - 2019-11-13 19:57 - 000000000 ____D C:\Users\Utilisateur\Documents\KrunkerResourceSwapper 2019-11-13 19:57 - 2019-11-13 19:57 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\io.krunker.desktop-updater 2019-11-11 20:20 - 2019-11-23 11:07 - 000003254 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2019-11-11 20:20 - 2019-11-11 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2019-11-11 20:20 - 2019-11-11 20:20 - 000000000 ____D C:\Program Files\7-Zip 2019-11-11 17:18 - 2019-11-11 17:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.3 2019-11-11 17:17 - 2019-11-11 17:18 - 000000000 ____D C:\Program Files\LibreOffice 2019-11-11 17:14 - 2019-11-11 17:14 - 317931520 _____ C:\Users\Utilisateur\Downloads\LibreOffice_6.3.3_Win_x64.msi 2019-11-11 08:02 - 2019-11-11 08:02 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\RussianFishingLLC 2019-11-11 08:02 - 2019-11-11 08:02 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Russian Fishing LLC 2019-11-10 22:49 - 2019-11-10 22:49 - 000000000 ____D C:\Users\Utilisateur\Documents\FredaikisAB 2019-11-10 22:49 - 2019-11-10 22:49 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\FAC 2019-11-10 22:49 - 2019-11-10 22:49 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\FredaikisAB 2019-11-10 22:17 - 2019-11-10 22:23 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\SCP Secret Laboratory 2019-11-10 22:16 - 2019-11-10 22:16 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Hubert Moszka 2019-11-10 18:28 - 2019-11-10 18:27 - 000129080 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2019-11-10 17:08 - 2019-11-10 17:09 - 005829844 _____ (UserBenchmark.com) C:\Users\Utilisateur\Downloads\UserBenchMark (1).exe 2019-11-10 11:36 - 2019-12-07 10:00 - 000000000 ____D C:\WINDOWS\Minidump 2019-11-10 08:14 - 2019-11-10 11:34 - 000003224 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task 2019-11-10 08:14 - 2019-11-10 08:14 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2019-11-10 08:14 - 2019-11-10 08:14 - 000000000 ____D C:\ProgramData\Overwolf 2019-11-10 08:12 - 2019-11-10 08:15 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Overwolf 2019-11-10 08:12 - 2019-11-10 08:12 - 001332320 _____ (Overwolf Ltd.) C:\Users\Utilisateur\Downloads\TFTactics-OverwolfInstaller.exe ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-12-10 18:40 - 2019-02-24 20:03 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\slobs-client 2019-12-10 18:38 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-12-10 16:39 - 2018-08-25 22:00 - 000000000 ____D C:\ProgramData\NVIDIA 2019-12-10 16:27 - 2018-08-25 19:16 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\discord 2019-12-10 16:10 - 2019-02-06 12:36 - 000000000 ____D C:\Program Files\FACEIT AC 2019-12-10 16:02 - 2019-09-27 20:08 - 001771410 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-12-10 16:02 - 2019-03-19 13:00 - 000791936 _____ C:\WINDOWS\system32\perfh00C.dat 2019-12-10 16:02 - 2019-03-19 13:00 - 000150004 _____ C:\WINDOWS\system32\perfc00C.dat 2019-12-10 16:02 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-12-10 16:02 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2019-12-10 15:56 - 2019-09-27 20:05 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-12-10 15:55 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-12-10 15:53 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-12-10 15:50 - 2019-10-16 19:59 - 000002580 _____ C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome Canary.lnk 2019-12-10 15:49 - 2018-11-10 16:55 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-12-09 21:40 - 2018-10-17 15:51 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2019-12-09 21:21 - 2018-08-31 11:55 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\CrashDumps 2019-12-09 21:08 - 2018-09-04 12:23 - 000050712 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2019-12-09 21:07 - 2018-09-04 12:23 - 000015800 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys 2019-12-09 19:59 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-12-09 19:52 - 2019-09-27 19:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-12-09 17:09 - 2018-08-25 18:43 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\TS3Client 2019-12-09 16:14 - 2019-09-04 17:54 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Ubisoft Game Launcher 2019-12-08 19:37 - 2019-11-08 20:26 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Unity 2019-12-08 16:09 - 2019-10-13 07:20 - 000000000 ____D C:\Users\Utilisateur\BrawlhallaReplays 2019-12-07 23:21 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-12-07 23:18 - 2018-08-25 21:59 - 000000000 ____D C:\ProgramData\Package Cache 2019-12-07 23:18 - 2018-08-25 20:11 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2019-12-07 22:17 - 2018-11-21 07:33 - 000000000 ____D C:\Users\Utilisateur\Documents\My Games 2019-12-07 19:03 - 2018-08-25 21:56 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-12-07 19:00 - 2019-09-27 20:00 - 000000000 ____D C:\Users\Utilisateur 2019-12-07 18:49 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2019-12-07 18:28 - 2018-08-25 21:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2019-12-07 14:19 - 2019-06-07 17:52 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Wasntafairfight 2019-12-07 10:00 - 2019-09-27 20:00 - 000000000 ____D C:\Users\postgres 2019-12-06 21:30 - 2019-08-26 07:54 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Warframe 2019-12-06 08:03 - 2019-10-13 07:59 - 018234792 _____ (LLC Mail.Ru) C:\WINDOWS\system32\Drivers\mracdrv.sys 2019-12-05 21:12 - 2018-08-25 18:44 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\D3DSCache 2019-12-03 13:13 - 2019-10-13 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer Cortex 2019-12-02 20:29 - 2018-08-25 18:35 - 000000000 ____D C:\ProgramData\AVAST Software 2019-12-02 17:51 - 2019-08-15 14:04 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\AVAST Software 2019-12-02 17:45 - 2019-10-22 06:43 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2019-12-02 17:17 - 2019-09-04 17:56 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\BattlEye 2019-12-01 19:27 - 2019-08-31 20:38 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Battle.net 2019-12-01 17:35 - 2018-08-25 21:54 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Packages 2019-12-01 17:35 - 2018-08-25 18:33 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\PlaceholderTileLogoFolder 2019-11-30 14:57 - 2019-02-06 12:09 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\FACEIT 2019-11-30 10:02 - 2019-02-24 20:03 - 000000000 ____D C:\Program Files\Streamlabs OBS 2019-11-29 17:19 - 2018-08-25 22:01 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\NVIDIA 2019-11-27 18:25 - 2019-10-19 12:29 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Riot Games 2019-11-27 17:19 - 2018-09-22 16:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2019-11-27 16:51 - 2018-08-25 20:22 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\ElevatedDiagnostics 2019-11-26 20:35 - 2018-09-22 16:14 - 000000000 ____D C:\temp 2019-11-24 09:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2019-11-23 13:26 - 2018-09-02 11:18 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\vlc 2019-11-23 12:27 - 2019-10-27 18:49 - 000000000 ____D C:\Program Files (x86)\Rockstar Games 2019-11-23 12:27 - 2019-07-15 11:03 - 000000000 ____D C:\Program Files\Rockstar Games 2019-11-22 19:20 - 2018-08-25 21:54 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\VirtualStore 2019-11-20 23:44 - 2018-08-25 22:00 - 005549368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 002652168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 001767448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 000668200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 000454968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 000130584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2019-11-20 23:44 - 2018-08-25 22:00 - 000082784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2019-11-20 18:54 - 2018-08-25 22:00 - 008785212 _____ C:\WINDOWS\system32\nvcoproc.bin 2019-11-17 09:11 - 2019-07-27 21:58 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\Bill2's Process Manager 2019-11-16 17:56 - 2018-12-18 19:23 - 000000000 ____D C:\Program Files\Epic Games 2019-11-16 12:51 - 2019-09-27 19:58 - 000469688 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-11-16 12:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2019-11-16 12:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-11-16 12:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-11-15 17:00 - 2018-08-26 19:49 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-11-15 16:57 - 2018-08-26 19:49 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-11-15 16:54 - 2019-02-11 08:17 - 000000000 ____D C:\ProgramData\Origin 2019-11-12 13:10 - 2019-02-11 08:17 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Origin 2019-11-12 13:09 - 2019-08-15 13:23 - 000000000 ____D C:\Program Files\CCleaner 2019-11-11 20:20 - 2018-11-10 16:55 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-11-11 20:20 - 2018-09-02 10:02 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-11-11 20:20 - 2018-09-02 10:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2019-11-11 20:20 - 2018-09-02 10:02 - 000000000 ____D C:\Program Files (x86)\WinRAR 2019-11-11 17:17 - 2018-08-25 21:56 - 000000000 ____D C:\Program Files\LibreOffice 5 2019-11-10 22:33 - 2019-10-12 17:31 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\Heroes and Generals 2019-11-10 20:55 - 2018-08-25 20:29 - 000000000 ____D C:\Program Files\Java 2019-11-10 18:28 - 2018-08-25 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2019-11-10 11:34 - 2019-11-04 17:00 - 000003212 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 17:00 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003256 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-11-04 16:59 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-11-10 11:34 - 2019-10-21 19:14 - 000002650 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2019-11-10 11:34 - 2019-10-16 19:58 - 000003768 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2968078702-4100399509-4066719269-1001UA 2019-11-10 11:34 - 2019-10-16 19:58 - 000003500 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-2968078702-4100399509-4066719269-1001Core 2019-11-10 11:34 - 2019-09-27 20:05 - 000003578 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2019-11-10 11:34 - 2019-09-27 20:05 - 000003354 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2019-11-10 10:33 - 2019-09-25 19:41 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Ankama Launcher ==================== Fichiers à la racine de certains dossiers ======== 2018-10-06 16:58 - 2019-08-19 21:04 - 000000132 _____ () C:\Users\Utilisateur\AppData\Roaming\Adobe PNG Format CS5 Prefs 2018-09-27 18:39 - 2018-09-27 18:39 - 000000661 _____ () C:\Users\Utilisateur\AppData\Roaming\AdobeWLCMR2Cache.dat 2019-05-18 10:06 - 2019-11-08 17:54 - 000000121 _____ () C:\Users\Utilisateur\AppData\Roaming\D2Info0 2019-05-18 10:06 - 2019-11-08 18:20 - 000000008 _____ () C:\Users\Utilisateur\AppData\Roaming\DofusAppId0_1 2019-05-18 14:59 - 2019-11-06 18:34 - 000000008 _____ () C:\Users\Utilisateur\AppData\Roaming\DofusAppId0_2 2019-05-25 14:49 - 2019-05-28 16:59 - 000000008 _____ () C:\Users\Utilisateur\AppData\Roaming\DofusAppId0_3 2019-05-26 11:29 - 2019-05-26 11:30 - 000000008 _____ () C:\Users\Utilisateur\AppData\Roaming\DofusAppId0_4 2019-06-18 19:44 - 2019-10-01 18:55 - 000004647 _____ () C:\Users\Utilisateur\AppData\Roaming\VoiceMeeterDefault.xml 2018-10-21 16:53 - 2018-10-21 16:53 - 000000108 _____ () C:\Users\Utilisateur\AppData\Roaming\WB.CFG 2019-03-14 20:14 - 2019-10-31 10:30 - 000007598 _____ () C:\Users\Utilisateur\AppData\Local\resmon.resmoncfg 2019-08-29 13:24 - 2019-08-29 13:24 - 000000000 _____ () C:\Users\Utilisateur\AppData\Local\{82B5A18D-141A-413F-8EB7-834AD5D1938C} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================