Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-01-2020 Exécuté par Dubois Jérôme (administrateur) sur PCJÉRÔME (Acer Aspire V3-772G) (16-01-2020 11:10:54) Exécuté depuis C:\Users\Dubois Jérôme\Desktop Profils chargés: Dubois Jérôme (Profils disponibles: Dubois Jérôme) Platform: Windows 10 Home Version 1909 18363.592 (X64) Langue: Français (France) Navigateur par défaut: "C:\Program Files\Firefox Nightly\firefox.exe" -osint -url "%1" Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (F.lux Software LLC -> f.lux Software LLC) C:\Users\Dubois Jérôme\AppData\Local\FluxSoftware\Flux\flux.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.422\GoogleCrashHandler64.exe (Hewlett-Packard Company) [Fichier non signé] C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) [Fichier non signé] C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Dubois Jérôme\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19081.22010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20410.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20410.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12001.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.36.6003.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.19101.10711.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Firefox Nightly\firefox.exe (Nicolas Coolman -> Nicolas Coolman) [Fichier non signé] C:\Users\Dubois Jérôme\AppData\Roaming\ZHP\ZHPDiag3.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.bin (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3351248 2015-09-10] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [183088 2019-12-07] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322120 2019-03-15] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2018-11-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506176 2018-11-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2741616 2011-06-20] (Hewlett-Packard Company -> Hewlett-Packard Company) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-12-26] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\Run: [f.lux] => C:\Users\Dubois Jérôme\AppData\Local\FluxSoftware\Flux\flux.exe [1820168 2018-10-24] (F.lux Software LLC -> f.lux Software LLC) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\RunOnce: [Application Restart #1] => C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe [370688 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\MountPoints2: {1ef110c3-dbd3-11e9-8a49-0c54a548a6d0} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\MountPoints2: {8792e3a3-0779-11ea-8abc-0c54a548a6d0} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\MountPoints2: {8af95c46-a6f8-11e9-89b8-0c54a548a6d0} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\MountPoints2: {d2b72b7d-a0d5-11e9-89a3-342387586bf8} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3173151599-506327411-593808481-1002\...\MountPoints2: {f622d5b0-c95c-11e9-8a18-0c54a548a6d0} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3173151599-506327411-593808481-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [38400 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\79.0.309.65\Installer\setup.exe [2020-01-14] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®) [Fichier non signé] HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2014-04-02] (Qualcomm Atheros -> Qualcomm®Atheros®) [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Image Transfer Utility.lnk [2015-02-24] ShortcutTarget: Image Transfer Utility.lnk -> C:\Program Files (x86)\Canon\ImageTransferUtility\ImageTransferUtility.exe (CANON INC.) [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2014-05-26] ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () [Fichier non signé] GroupPolicy: Restriction ? <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0380D310-F580-4E13-8201-DC357B48B69D} - System32\Tasks\GoogleUpdateTaskMachineCore1d042e6351421f1 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {05002241-4D33-4D74-832F-4EC61E6F85BF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {0CB2513A-6808-402C-AF96-44968D9FB859} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1376360 2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Task: {0EE1E738-0C26-440B-8FAE-8B3AA58517B1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd) Task: {126B1ACD-BA1E-4F0E-891B-7F98430E9D72} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe Task: {185F626D-BE9C-454C-A69F-FB7C18ABBA00} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe Task: {1B11F072-C0C5-4CD0-8B74-1D3C2AC07DA4} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2019-12-17] (Microsoft Corporation -> Microsoft Corporation) Task: {1C5B68C6-4639-47DF-9E20-1D7CEE0B1925} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24625520 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) Task: {282E1AA0-D964-4421-A3BD-0A30F842D1DB} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe Task: {31A10BDF-43D5-4EF0-A896-70D950DDC0F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe Task: {38F7F39A-E7CB-4E6A-AD55-30F9E5664612} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3AC54B64-C117-41AA-9486-636F597F6F3E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Task: {5057D943-227B-47C6-AC45-53E7FE694150} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {55B6F282-1B5A-48DC-ACB3-4E93DD987193} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) Task: {5BCACC2B-7725-4CC1-A0B4-880F1167657B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6110C4BC-7909-4888-920C-90C1401637AB} - System32\Tasks\{ECC605AD-3ABD-4299-922E-EB8BE4C7DC43} => C:\Windows\system32\pcalua.exe -a "E:\Le Mans M15 (G)\program files\Infogrames\Le Mans 24 Hours\Lemans2000_Win32_rel.exe" -d "E:\Le Mans M15 (G)\program files\Infogrames\Le Mans 24 Hours" Task: {623F2BCB-0FB9-4D8F-B07C-E958F325FB22} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe Task: {65EFEDAD-A1BF-4241-A254-BA4C1D9CB203} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {7ACAA1AB-BFFD-45B0-8F18-2F00C4DF2D05} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {865C6699-176F-4D25-9079-404932B0E30D} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [40352 2016-07-06] (Acer Incorporated -> ) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {90840631-F21A-4886-BBBD-C9361628FD42} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65824 2017-09-26] (Acer Incorporated -> Acer Incorporated) Task: {994F5BFA-79C0-4489-823F-13B8B6C11B02} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {A75E9A02-815A-447C-B275-B67939C2D899} - System32\Tasks\GoogleUpdateTaskMachineUA1cf8f907d09f09d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.) Task: {A94257E6-EACA-41C5-8825-E5B96EE75935} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {ADF42511-3FEA-430C-851F-E5BE0617705D} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation) Task: {AE238322-CB5E-4F4C-8CD7-25B2075EDD86} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Task: {B1C953D6-F874-4EF8-B1C6-6DBFC9164CAD} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2019-12-17] (Microsoft Corporation -> Microsoft Corporation) Task: {B4EEE60C-7266-456B-A754-9F1095B9F374} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B732301F-76BE-4C7D-842D-AD566F5BC5FD} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation) Task: {B8C15681-5C9B-4012-80F2-66A4E6885F75} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [5306408 2013-07-05] (Acer Incorporated -> Acer Incorporated) Task: {BD5BB252-9D8D-45C9-9716-AE33204E9549} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-04] (Piriform Software Ltd -> Piriform Software Ltd) Task: {BE8950D2-17DF-4540-B373-27EFAB4E0698} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [4152736 2016-07-06] (Acer Incorporated -> ) Task: {C434B96A-2ABA-46D3-9EFF-8EB8FB265043} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems) Task: {C75C8110-761E-4A34-8A02-86701C8C39A2} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {CA4210DC-0FAC-4508-B97C-DF00C13C0B40} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24625520 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D37E28E2-7B2C-4883-898B-E6F41BEA94A7} - System32\Tasks\HPCustParticipation HP LaserJet MFP M227-M231 => C:\Program Files\HP\HP LaserJet MFP M227-M231\Bin\HPCustPartic.exe [6659488 2019-06-11] (HP Inc -> HP Inc.) Task: {DDCF1144-0DDF-48F6-89E5-D810A862EF55} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe Task: {E5B3066F-DDC5-493F-A510-45ABB86E4F16} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E8AE83D5-62E0-4086-9570-D22F3CC73838} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {F2A2752B-2116-4B63-9E11-A9D8393D511A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Task: {F2B0518B-1D19-4408-8859-E732ABCDADF5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1376360 2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Task: {F382D51D-69BE-444F-810F-6769517BB8D2} - System32\Tasks\Uninstaller_SkipUac_Dubois_Jérôme => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe Task: {F436A8B8-900A-44DE-9A12-216E0D4BAD41} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Task: {FE112D41-6392-4077-A13F-84021C368336} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Dolby Selector.job => C:\Program Files\Dolby Digital Plus\ddp.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0db3360d-77a2-40a2-89ee-bdd298729789}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{e058cb9a-818f-4205-9315-ceb0f0f4f5d0}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3173151599-506327411-593808481-1002 -> {30AD1D3B-FB7A-417C-8EB6-3CEC56372A67} URL = BHO: Pas de nom -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Pas de fichier BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Pas de nom -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Pas de fichier Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== DownloadDir: C:\Users\Dubois Jérôme\Downloads FireFox: ======== FF DefaultProfile: 4y3r8k8e.default FF DefaultProfile: 4d8h6x8q.default-1464256846226-1549295183539 FF ProfilePath: C:\Users\Dubois Jérôme\AppData\Roaming\navigation-37fba2c2fcc16ecb4c97ff179f007a21\Profiles\4y3r8k8e.default [2015-02-15] FF ProfilePath: C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release [2020-01-15] FF Extension: (AdGuard AdBlocker) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\adguardadblocker@adguard.com.xpi [2019-08-14] FF Extension: (Magic winter cat) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\{4aa2b193-46e9-4442-94e2-0a98558f28dc}.xpi [2019-08-14] FF Extension: (ImTranslator: Traducteur, Dictionnaire, Voix) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2019-08-14] FF Extension: (Video DownloadHelper) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-08-14] FF Extension: (Popup Blocker (strict)) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\{de22fd49-c9ab-4359-b722-b3febdc3a0b0}.xpi [2019-08-14] FF Extension: (YouTube Video and Audio Downloader (Dev Edt.)) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\adehnnei.default-release\Extensions\{f73df109-8fb4-453e-8373-f59e61ca4da3}.xpi [2019-08-14] FF ProfilePath: C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539 [2020-01-16] FF Extension: (AdGuard AdBlocker) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\adguardadblocker@adguard.com.xpi [2020-01-04] FF Extension: (S3.Traducteur) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\k-upload-file_2018-12-21-12d74577cs3googletran.xpi [2019-03-13] FF Extension: (S3.Traducteur) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\s3google@translator.xpi [2019-03-13] FF Extension: (Magic winter cat) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\{4aa2b193-46e9-4442-94e2-0a98558f28dc}.xpi [2019-05-14] FF Extension: (Stay secure with CyberGhost VPN Free Proxy) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\{585280b0-ee78-428a-92c5-3fb3c0b85460}.xpi [2019-12-17] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx] FF Extension: (ImTranslator: Traducteur, Dictionnaire, Voix) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2020-01-15] FF Extension: (Popup blocker for FF: Poper Blocker) - C:\Users\Dubois Jérôme\AppData\Roaming\Mozilla\Firefox\Profiles\4d8h6x8q.default-1464256846226-1549295183539\Extensions\{bee8b1f2-823a-424c-959c-f8f76c8b2306}.xpi [2019-06-10] FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => non trouvé(e) FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird => non trouvé(e) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Fichier non signé] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2014-11-19] (Nokia -> ) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-13] (Google LLC -> Google LLC) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.) StartMenuInternet: Firefox-6F193CCC56814779 - C:\Program Files\Firefox Nightly\firefox.exe ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2278688 2017-09-26] (Acer Incorporated -> Acer Incorporated) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11164232 2020-01-07] (Microsoft Corporation -> Microsoft Corporation) S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2019-12-17] (Microsoft Corporation -> Microsoft Corporation) S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2019-12-17] (Microsoft Corporation -> Microsoft Corporation) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-07] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-12-07] (ESET, spol. s r.o. -> ESET) S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [663592 2013-07-05] (Acer Incorporated -> Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [145624 2015-09-10] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-10-31] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [370064 2015-09-30] (Intel Corporation - pGFX -> Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Trusted Connect Service -> Intel(R) Corporation) S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel(R) Software Asset Manager -> Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2011-06-20] (Hewlett-Packard Company) [Fichier non signé] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6960640 2019-11-05] (Malwarebytes Inc -> Malwarebytes) S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\79.0.309.65\elevation_service.exe [1090120 2020-01-13] (Microsoft Corporation -> Microsoft Corporation) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Fichier non signé] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Fichier non signé] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 athr; C:\WINDOWS\System32\drivers\athw8x.sys [4233728 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.) R0 BTATH_BUS; C:\WINDOWS\System32\drivers\btath_bus.sys [36496 2015-08-27] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros) R3 BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [610336 2016-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros) S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Power Technology -> Windows (R) Win 7 DDK provider) R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [104312 2018-08-09] (D3L -> Dokan Project) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149944 2019-10-22] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [103264 2019-10-22] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189512 2019-10-22] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50712 2019-10-22] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [79744 2019-12-07] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [116696 2019-12-07] (ESET, spol. s r.o. -> ESET) S3 ESETCleanersDriver; C:\WINDOWS\system32\Drivers\ESETCleanersDriver.sys [181160 2019-03-07] (ESET, spol. s r.o. -> ESET) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-01-12] (Malwarebytes Corporation -> Malwarebytes) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated -> Acer Incorporated) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [218288 2020-01-12] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-11-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [226448 2020-01-15] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73584 2020-01-16] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-01-16] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [105112 2020-01-16] (Malwarebytes Inc -> Malwarebytes) S3 nmwcd; C:\WINDOWS\system32\drivers\ccdcmbx64.sys [19968 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 nmwcdc; C:\WINDOWS\system32\drivers\ccdcmbox64.sys [27136 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 nmwcdnsucx64; C:\WINDOWS\system32\drivers\nmwcdnsucx64.sys [12800 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 nmwcdnsux64; C:\WINDOWS\system32\drivers\nmwcdnsux64.sys [171008 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvlddmkm.sys [20747736 2019-04-10] (NVIDIA Corporation -> NVIDIA Corporation) R0 nvpciflt; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvpciflt.sys [57216 2019-04-10] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) S3 pccsmcfd; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated -> Acer Incorporated) S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [41512 2018-01-11] (Intel Corporation -> ) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-06-15] (Synaptics Incorporated -> Synaptics Incorporated) S3 upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltx64.sys [9216 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 usbser; C:\WINDOWS\System32\drivers\usbser.sys [33280 2019-10-31] (Microsoft Corporation) [Fichier non signé] S3 UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltjx64.sys [9216 2013-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237376 2019-10-11] (Oracle Corporation -> Oracle Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-01-16 11:10 - 2020-01-16 11:11 - 000041734 _____ C:\Users\Dubois Jérôme\Desktop\FRST.txt 2020-01-16 11:08 - 2020-01-16 11:08 - 002573312 _____ (Farbar) C:\Users\Dubois Jérôme\Desktop\FRST64.exe 2020-01-16 11:03 - 2020-01-16 11:03 - 000450660 _____ C:\Users\Dubois Jérôme\Desktop\ZHPDiag.txt 2020-01-16 09:22 - 2020-01-16 09:22 - 000105112 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2020-01-16 09:22 - 2020-01-16 09:22 - 000073584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2020-01-16 09:22 - 2020-01-16 09:22 - 000000000 ___HD C:\OneDriveTemp 2020-01-15 20:20 - 2020-01-16 09:21 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2020-01-15 20:20 - 2020-01-15 20:20 - 000226448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2020-01-15 20:18 - 2020-01-15 20:18 - 000007642 _____ C:\Users\Dubois Jérôme\Desktop\ZHPCleaner (R).txt 2020-01-15 20:11 - 2020-01-15 20:11 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Sandra - Back To Life (2009) 2020-01-15 18:29 - 2020-01-15 18:30 - 003329408 _____ (Nicolas Coolman) C:\Users\Dubois Jérôme\Desktop\ZHPCleaner.exe 2020-01-15 17:33 - 2020-01-15 17:34 - 000000877 _____ C:\Users\Dubois Jérôme\Desktop\ZHPDiag.lnk 2020-01-15 17:30 - 2020-01-15 17:32 - 003256704 _____ (Nicolas Coolman) C:\Users\Dubois Jérôme\Desktop\ZHPDiag3.exe 2020-01-15 17:23 - 2020-01-15 18:05 - 000000000 ____D C:\ProgramData\RogueKiller 2020-01-15 17:20 - 2020-01-15 17:22 - 037033528 _____ C:\Users\Dubois Jérôme\Desktop\RogueKiller_portable64.exe 2020-01-15 17:13 - 2020-01-15 19:36 - 489648868 _____ C:\Users\Dubois Jérôme\Desktop\Sandra - Back To Life (2009).zip 2020-01-15 09:40 - 2020-01-16 09:21 - 000000000 ____D C:\Program Files\Firefox Nightly 2020-01-15 01:21 - 2020-01-15 01:21 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Sandra - Reflections (2006) 2020-01-15 01:15 - 2020-01-15 20:22 - 000000000 ____D C:\WINDOWS\Minidump 2020-01-15 01:01 - 2020-01-15 01:01 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 009928208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 007754752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 006520480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 005913600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 002494464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001399096 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 001051664 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-01-15 01:01 - 2020-01-15 01:01 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serscan.sys 2020-01-15 01:01 - 2020-01-15 01:01 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-01-15 01:01 - 2020-01-15 01:01 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2020-01-15 00:55 - 2019-12-10 06:15 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-01-15 00:55 - 2019-12-10 05:59 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2020-01-15 00:30 - 2020-01-15 00:30 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Sandra - Stay In Touch - Deluxe Edition (2012) 2020-01-14 20:43 - 2020-01-15 00:28 - 806383779 _____ C:\Users\Dubois Jérôme\Desktop\Sandra - Stay In Touch - Deluxe Edition (2012).zip 2020-01-14 10:22 - 2020-01-14 22:59 - 491537336 _____ C:\Users\Dubois Jérôme\Desktop\Sandra - Reflections (2006).zip 2020-01-12 20:12 - 2020-01-12 20:12 - 000218288 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2020-01-11 20:05 - 2020-01-11 20:06 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Nouveau dossier 2020-01-11 18:25 - 2020-01-11 18:25 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\SCBB&J-So80s(S)PS 2020-01-11 18:08 - 2020-01-11 18:08 - 1149974019 _____ C:\Users\Dubois Jérôme\Desktop\SCBB&J-So80s(S)PS.rar 2020-01-11 10:47 - 2020-01-11 11:16 - 102407952 _____ C:\Users\Dubois Jérôme\Desktop\so8os Present - Sandra - Curated by Blank & Jones (2012).zip.part 2020-01-11 10:47 - 2020-01-11 10:47 - 000000000 _____ C:\Users\Dubois Jérôme\Desktop\so8os Present - Sandra - Curated by Blank & Jones (2012).zip 2020-01-09 12:19 - 2020-01-09 12:19 - 000140847 _____ C:\Users\Dubois Jérôme\Desktop\Affichette_2020_01_09_12_19_05.pdf 2020-01-02 10:05 - 2020-01-02 10:05 - 000044217 _____ C:\Users\Dubois Jérôme\Desktop\document.pdf 2020-01-02 09:24 - 2020-01-02 09:24 - 000461592 _____ C:\Users\Dubois Jérôme\Desktop\Earl Lhommeau Letheule liquidation judiciaire.pdf 2019-12-21 17:04 - 2019-12-21 17:04 - 020182325 _____ C:\Users\Dubois Jérôme\Desktop\loreen.flac 2019-12-21 16:55 - 2019-12-21 16:55 - 018550036 _____ C:\Users\Dubois Jérôme\Desktop\videoplayback.mp4 2019-12-20 12:14 - 2019-12-30 20:32 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Captvty 3 Alpha 2019-12-19 10:59 - 2019-12-19 10:59 - 008237744 _____ (Malwarebytes) C:\Users\Dubois Jérôme\Desktop\adwcleaner_8.0.1.exe 2019-12-17 22:23 - 2020-01-14 10:28 - 000002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2019-12-17 22:22 - 2019-12-17 22:22 - 000003480 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2019-12-17 22:22 - 2019-12-17 22:22 - 000003356 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-01-16 11:11 - 2019-02-03 21:14 - 000000000 ____D C:\FRST 2020-01-16 11:03 - 2016-11-28 15:40 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Roaming\ZHP 2020-01-16 11:02 - 2018-09-10 18:09 - 000000135 _____ C:\Users\Dubois 2020-01-16 10:56 - 2019-05-21 21:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-01-16 10:35 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-01-16 09:36 - 2015-11-23 23:08 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\Comms 2020-01-16 09:29 - 2019-05-21 21:58 - 001782614 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-01-16 09:29 - 2019-03-19 13:00 - 000797014 _____ C:\WINDOWS\system32\perfh00C.dat 2020-01-16 09:29 - 2019-03-19 13:00 - 000151778 _____ C:\WINDOWS\system32\perfc00C.dat 2020-01-16 09:29 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2020-01-16 09:25 - 2019-05-21 22:01 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{030F0EF0-B01F-4C18-B850-8F70DE2C0AB5} 2020-01-16 09:23 - 2017-07-14 19:18 - 000000000 ____D C:\ProgramData\NVIDIA 2020-01-16 09:22 - 2018-06-07 09:22 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\LocalLow\Mozilla 2020-01-16 09:22 - 2014-03-02 10:59 - 000000000 ___RD C:\Users\Dubois Jérôme\OneDrive 2020-01-16 09:21 - 2019-05-21 22:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-01-16 09:21 - 2017-07-14 19:18 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2020-01-16 09:21 - 2015-11-23 23:06 - 000000000 __SHD C:\Users\Dubois Jérôme\IntelGraphicsProfiles 2020-01-15 23:13 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2020-01-15 22:50 - 2019-08-14 09:19 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Nightly.lnk 2020-01-15 20:53 - 2019-08-14 09:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-01-15 20:39 - 2019-05-21 22:01 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3173151599-506327411-593808481-1002 2020-01-15 20:39 - 2019-05-21 21:23 - 000002429 _____ C:\Users\Dubois Jérôme\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-01-15 20:23 - 2019-11-24 20:55 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Roaming\MPC-HC 2020-01-15 20:22 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-01-15 20:22 - 2014-03-02 10:19 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\CrashDumps 2020-01-15 20:15 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-01-15 12:02 - 2019-05-21 21:23 - 000000000 ____D C:\Users\Dubois Jérôme 2020-01-15 11:16 - 2014-03-09 14:40 - 000000522 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2020-01-15 01:22 - 2019-11-24 21:07 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Roaming\vlc 2020-01-15 01:15 - 2019-05-21 21:51 - 000671960 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-01-15 01:07 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-01-15 01:07 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2020-01-15 01:07 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-01-15 01:07 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-01-15 01:07 - 2014-02-28 18:09 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-01-15 01:03 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-01-15 01:03 - 2014-02-28 18:09 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-01-15 00:29 - 2019-11-23 22:59 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\cache 2020-01-15 00:11 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-01-13 21:53 - 2019-08-20 12:45 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\Free Download Manager 2020-01-13 21:29 - 2013-12-26 20:28 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-01-12 20:12 - 2019-07-07 13:19 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-01-09 18:17 - 2019-12-09 22:36 - 000000000 ____D C:\Users\Dubois Jérôme\Desktop\Captvty 2020-01-03 22:35 - 2015-09-08 13:53 - 000002069 _____ C:\Users\Dubois Jérôme\Desktop\Nokia Suite.lnk 2020-01-03 22:35 - 2015-02-23 19:46 - 000001290 _____ C:\Users\Dubois Jérôme\Desktop\AVS Video ReMaker.lnk 2020-01-03 22:35 - 2015-02-21 11:15 - 000001247 _____ C:\Users\Dubois Jérôme\Desktop\CameraWindow.lnk 2020-01-03 22:35 - 2014-03-01 19:16 - 000002457 _____ C:\Users\Dubois Jérôme\Desktop\Crédit Mutuel.lnk 2019-12-27 13:57 - 2017-07-14 19:18 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2019-12-27 13:57 - 2016-08-17 08:50 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\NVIDIA 2019-12-26 14:30 - 2019-05-28 20:29 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-28 20:29 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-28 20:29 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-28 20:29 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2019-05-21 22:01 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2019-12-26 14:30 - 2017-07-14 19:18 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-12-26 14:30 - 2017-07-14 19:18 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2019-12-26 14:30 - 2016-10-31 12:31 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2019-12-26 14:30 - 2016-10-31 12:31 - 000001447 _____ C:\ProgramData\Desktop\GeForce Experience.lnk 2019-12-24 13:52 - 2017-10-17 23:52 - 000000000 ____D C:\Users\Dubois Jérôme\AppData\Local\Packages 2019-12-21 14:20 - 2017-04-11 14:17 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== Fichiers à la racine de certains dossiers ======== 2018-03-17 09:43 - 2018-05-01 18:10 - 000000260 _____ () C:\ProgramData\fontcacheev1.dat 2016-12-01 15:09 - 2017-05-06 09:24 - 002766848 _____ () C:\Users\Dubois Jérôme\ZHPCleaner.exe 2018-10-09 19:57 - 2018-10-09 19:57 - 000000546 _____ () C:\Program Files (x86)\LMIR0B04C001.tmp_r.bat 2013-10-14 03:44 - 2013-10-14 03:44 - 002174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2015-01-27 00:31 - 2019-10-22 10:45 - 000002055 _____ () C:\Users\Dubois Jérôme\AppData\Roaming\burnaware.ini 2016-06-22 12:04 - 2016-06-22 12:14 - 000000115 _____ () C:\Users\Dubois Jérôme\AppData\Roaming\LogFile.txt 2015-08-06 18:04 - 2019-06-17 18:05 - 000000031 _____ () C:\Users\Dubois Jérôme\AppData\Local\burnaware.ini 2019-09-09 10:51 - 2019-09-09 10:51 - 000000001 _____ () C:\Users\Dubois Jérôme\AppData\Local\llftool.4.40.agreement 2018-10-09 20:06 - 2018-10-09 20:06 - 000000788 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR12829001.tmp.bat 2018-10-09 20:06 - 2018-10-09 20:06 - 000000584 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR12829001.tmp_r.bat 2018-10-09 20:29 - 2018-10-09 20:29 - 000000788 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR128DF001.tmp.bat 2018-10-09 20:29 - 2018-10-09 20:29 - 000000584 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR128DF001.tmp_r.bat 2018-10-09 20:29 - 2018-10-09 20:29 - 000000788 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR12E35001.tmp.bat 2018-10-09 20:29 - 2018-10-09 20:29 - 000000584 _____ () C:\Users\Dubois Jérôme\AppData\Local\LMIR12E35001.tmp_r.bat 2015-03-05 16:48 - 2015-03-05 16:48 - 000003268 _____ () C:\Users\Dubois Jérôme\AppData\Local\recently-used.xbel 2016-08-29 13:24 - 2016-08-29 13:24 - 000000000 _____ () C:\Users\Dubois Jérôme\AppData\Local\{1EF56AA8-C171-4924-80E8-F66B75FB1382} 2016-08-29 13:24 - 2016-08-29 13:24 - 000000000 _____ () C:\Users\Dubois Jérôme\AppData\Local\{E091271F-4715-4D7D-8019-7949C2CC14E3} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================