Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 28-11-2020 Exécuté par standard (administrateur) sur MAMOUNE52-PAPOU (ASUSTeK COMPUTER INC. M11BB) (28-11-2020 17:02:16) Exécuté depuis C:\Users\standard\Downloads Profils chargés: standard Platform: Windows 10 Pro Version 2004 19041.630 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Windows\RocketDock\RocketDock.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (ESET, spol. s r.o. -> ESET spol. s r.o.) C:\Users\standard\Downloads\esetonlinescanner_fra.exe (Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.621_none_e7694895260e0b6d\TiWorker.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe Impossible d'accéder au processus -> FreemakeUtilsService.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8822016 2019-01-29] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2019-01-29] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [MTPW] => C:\Program Files\MiniTool Partition Wizard 11\updatechecker.exe [700896 2020-01-07] (MiniTool Software Limited -> ) HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2184520 2009-03-23] (Canon Inc. -> CANON INC.) HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-17] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\Run: [RocketDock] => C:\Windows\RocketDock\RocketDock.exe [630784 2007-03-18] () [Fichier non signé] HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\Run: [Voobly] => C:\Program Files (x86)\Voobly\voobly.exe [172032 2019-05-14] (Voobly) [Fichier non signé] HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5491248 2020-11-19] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\Policies\Explorer: [NoDrives] 58720256 HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\MountPoints2: {45adad6e-247e-11e9-9bc6-806e6f6e6963} - "E:\aocsetup.exe" /autorun HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\MountPoints2: {925c5433-f34f-11e9-9d25-56271e65d975} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3213114140-2064630393-212933067-1001\...\MountPoints2: {ae4b48c6-274f-11eb-a06b-e03f49e85f64} - "F:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\Canon MP490 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9Y.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MP490 series: C:\WINDOWS\system32\CNMLM9Y.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1D01714E-FE79-428C-A694-7929A82E64C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {285E6F08-AE55-4D94-BD20-25B71CFE8BDB} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {2EBCBA4F-A900-40BB-B8A6-2F457D94A711} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3C3C9EF3-E374-450D-83CD-6AD86ABC3EE8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {6E2B8ED3-2251-4CC4-8875-ACBB9FDC714B} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\standard\Downloads\esetonlinescanner_fra.exe [15012440 2020-11-22] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {83B047D8-4AC0-4BDF-8676-FDAA851CDBE9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {939F6E35-19D5-4FE5-BAED-5939C3D34A3F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-05-13] (Google Inc -> Google Inc.) Task: {9D2DB63D-8DA6-4F85-A7A8-8010E1671966} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe Task: {A18F90E5-FEA4-4370-BD7E-174133A6CC95} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\standard\Downloads\esetonlinescanner_fra.exe [15012440 2020-11-22] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {DB00A1F2-9658-48C2-85EA-39A04E4D8C56} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-22] (Mozilla Corporation -> Mozilla Foundation) Task: {E272DB97-D015-4CC3-905D-379AE2B6EE73} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MpCmdRun.exe [541576 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F437B371-DADC-4E40-8E61-0E1E9646F99B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe [1502776 2020-11-14] (Adobe Inc. -> Adobe) Task: {FD17275E-848E-49C9-910A-E079271456CF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-05-13] (Google Inc -> Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{19bb1c15-fd7d-4553-bb5f-05d088f74dbc}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{3bfabafd-a0ba-4c0e-8ad0-02f9426530a4}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{861640af-c9a1-4d1c-9059-af4019fc8065}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{8f2ffba5-508a-463c-820c-816812529cd7}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{f4bd368d-16c6-4bd3-946f-8db04aa42b93}: [DhcpNameServer] 192.168.0.254 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ====== Edge DefaultProfile: Default Edge Profile: C:\Users\standard\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-23] FireFox: ======== FF DefaultProfile: 0fns9m04.default FF ProfilePath: C:\Users\standard\AppData\Roaming\Mozilla\Firefox\Profiles\0fns9m04.default [2020-11-28] FF DownloadDir: C:\Users\standard\Downloads FF Homepage: Mozilla\Firefox\Profiles\0fns9m04.default -> hxxps://www.lequipe.fr/Cyclisme/ FF Extension: (ColorfulTabs) - C:\Users\standard\AppData\Roaming\Mozilla\Firefox\Profiles\0fns9m04.default\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}.xpi [2020-03-16] FF Extension: (black_horo) - C:\Users\standard\AppData\Roaming\Mozilla\Firefox\Profiles\0fns9m04.default\Extensions\{19b1fc45-ead9-4f50-8309-395e4f139354}.xpi [2020-03-25] FF Extension: (Walnut light) - C:\Users\standard\AppData\Roaming\Mozilla\Firefox\Profiles\0fns9m04.default\Extensions\{b2617161-e661-44ee-b5d1-473ea9bc4fa4}.xpi [2020-03-16] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_453.dll [2020-11-14] (Adobe Inc. -> ) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [Pas de fichier] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_453.dll [2020-11-14] (Adobe Inc. -> ) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2009-03-26] (CANON INC.) [Fichier non signé] FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> D:\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> D:\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-11-19] (Adobe Inc. -> Adobe Systems Inc.) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [441664 2019-07-16] (Digital Wave Ltd -> Digital Wave Ltd) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2020-03-02] (Mixbyte Inc -> Freemake) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-24] (Huawei Technologies Co., Ltd. -> ) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5101992 2020-11-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13103632 2020-09-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> ) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429288 2020-11-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-06] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-11-28 17:02 - 2020-11-28 17:04 - 000015304 _____ C:\Users\standard\Downloads\FRST.txt 2020-11-28 16:28 - 2020-11-28 16:28 - 000000000 ____D C:\Users\standard\Downloads\FRST-OlderVersion 2020-11-28 16:26 - 2020-11-28 16:28 - 002290176 _____ (Farbar) C:\Users\standard\Downloads\FRST64-2.1.exe 2020-11-28 09:59 - 2020-11-28 09:59 - 000156598 _____ C:\Users\standard\Desktop\Mon attestation .pdf 2020-11-28 08:41 - 2020-11-28 08:41 - 000113687 _____ C:\Users\standard\Desktop\Nouvelle attestation.pdf 2020-11-28 08:40 - 2020-11-28 08:40 - 000113707 _____ C:\Users\standard\Downloads\28-11-2020-attestation-de-deplacement-derogatoire--27841.pdf 2020-11-28 07:06 - 2020-11-28 07:06 - 000179939 _____ C:\Users\standard\Downloads\parcours_1114123.gpx 2020-11-28 07:04 - 2020-11-28 07:04 - 000142418 _____ C:\Users\standard\Downloads\parcours_274049.gpx 2020-11-27 21:22 - 2020-11-28 10:02 - 000000000 ____D C:\Users\standard\AppData\Roaming\vlc 2020-11-27 21:21 - 2020-11-27 21:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2020-11-27 21:19 - 2020-11-27 21:20 - 040732864 _____ C:\Users\standard\Downloads\vlc-3.0.11-win32.exe 2020-11-27 16:28 - 2020-11-27 16:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit 2020-11-27 16:27 - 2020-11-27 16:28 - 000000000 ____D C:\Program Files\XMedia Recode 64bit 2020-11-27 16:23 - 2020-11-27 16:23 - 017451478 _____ (XMedia Recode 64bit ) C:\Users\standard\Downloads\XMediaRecode3520_x64_setup.exe 2020-11-27 03:55 - 2020-11-27 03:55 - 000000000 ____D C:\Download 2020-11-27 03:54 - 2020-11-27 03:54 - 000000000 ____D C:\WINDOWS\PCHEALTH 2020-11-27 03:53 - 2020-11-27 03:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2020-11-27 03:53 - 2020-11-27 03:53 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2020-11-27 03:52 - 2020-11-27 03:55 - 000000000 ____D C:\Program Files (x86)\YouTubeMusicDownloader 2020-11-27 03:50 - 2020-11-27 03:51 - 042497760 _____ (YouTube Music Downloader ) C:\Users\standard\Downloads\youtube_music_downloader.exe 2020-11-26 10:16 - 2020-11-26 10:16 - 000091941 _____ C:\Users\standard\Downloads\30-10-2020-attestation-de-deplacement-derogatoire.pdf 2020-11-22 23:08 - 2020-11-22 23:08 - 000000000 ___HD C:\$SysReset 2020-11-22 23:02 - 2020-11-22 23:02 - 000007753 _____ C:\Users\standard\Downloads\NewTrack.gpx 2020-11-22 16:20 - 2020-11-22 16:20 - 003670480 _____ (philandro Software GmbH) C:\Users\standard\Downloads\AnyDesk.exe 2020-11-22 15:36 - 2020-11-22 15:36 - 004677320 _____ (Crystal Dew World ) C:\Users\standard\Downloads\CrystalDiskInfo8_8_5.exe 2020-11-22 15:25 - 2020-11-22 15:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-11-22 09:56 - 2020-11-22 20:41 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-11-19 13:19 - 2020-11-19 13:31 - 000000000 ____D C:\Program Files (x86)\Microvirt 2020-11-18 22:35 - 2020-11-18 22:35 - 000357714 _____ C:\Users\standard\Downloads\Tour de la mandallaz (ign).gpx 2020-11-18 22:32 - 2020-11-18 22:32 - 000000000 ____D C:\Users\standard\Downloads\export_972579 2020-11-18 22:26 - 2020-11-18 22:26 - 000102813 _____ C:\Users\standard\Downloads\export_972579.zip 2020-11-18 20:29 - 2020-11-18 20:29 - 000183529 _____ C:\Users\standard\Downloads\Personne de confiance.pdf 2020-11-18 19:38 - 2020-11-18 20:09 - 000037612 _____ C:\Users\standard\Downloads\Tour de la mandallaz.gpx 2020-11-16 14:11 - 2020-11-16 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2020-11-16 14:09 - 2020-11-16 14:09 - 001985568 _____ (Apowersoft) C:\Users\standard\Downloads\apowermirror-setup(1).exe 2020-11-16 13:35 - 2020-11-16 13:35 - 000000068 _____ C:\Users\standard\AppData\Roaming\changzhi_leidian.data 2020-11-16 13:35 - 2020-11-16 13:35 - 000000000 ____D C:\Users\standard\.Ld2VirtualBox 2020-11-16 13:34 - 2020-11-16 13:37 - 000000000 ____D C:\Program Files\ldplayerbox 2020-11-16 13:34 - 2020-11-16 13:34 - 000000000 ____D C:\Users\standard\Documents\XuanZhi 2020-11-16 13:33 - 2020-11-16 13:38 - 000000000 ____D C:\Users\standard\AppData\Roaming\XuanZhi 2020-11-16 13:27 - 2020-11-16 13:36 - 000000000 ____D C:\Users\standard\AppData\Roaming\ChangZhi2 2020-11-16 13:27 - 2020-11-16 13:27 - 000000000 ____D C:\Users\standard\AppData\Roaming\lddownloader 2020-11-16 11:33 - 2020-11-16 11:33 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-11-16 11:33 - 2020-11-16 11:33 - 000009265 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2020-11-16 11:32 - 2020-11-16 11:32 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-11-16 11:32 - 2020-11-16 11:32 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll 2020-11-16 11:32 - 2020-11-16 11:32 - 000152576 _____ C:\WINDOWS\system32\EoAExperiences.exe 2020-11-16 04:14 - 2020-11-16 04:14 - 000047285 _____ C:\Users\standard\Downloads\Estaing-Golinhac (étape 9).gpx 2020-11-16 04:13 - 2020-11-16 14:25 - 000075612 _____ C:\Users\standard\Downloads\Saint Chély d'Aurac - Espalion ( étape 7).gpx 2020-11-16 04:13 - 2020-11-16 04:13 - 000070159 _____ C:\Users\standard\Downloads\Aumont Aubrac - Nabisnals (étape 5).gpx 2020-11-16 04:13 - 2020-11-16 04:13 - 000049976 _____ C:\Users\standard\Downloads\Nasbinals - Saint chély d'Aubrac (étape 6).gpx 2020-11-16 04:13 - 2020-11-16 04:13 - 000036817 _____ C:\Users\standard\Downloads\Espalion-Estaing (étape 8).gpx 2020-11-16 04:12 - 2020-11-16 12:05 - 000073248 _____ C:\Users\standard\Downloads\Le Puy en Velay - Saint.Privat (étape 1).gpx 2020-11-16 04:12 - 2020-11-16 04:12 - 000084011 _____ C:\Users\standard\Downloads\Le Sauvage - Aumont Aubrac (étape 4).gpx 2020-11-16 04:12 - 2020-11-16 04:12 - 000068448 _____ C:\Users\standard\Downloads\Saint Privat - Saugues (étape 2).gpx 2020-11-16 04:12 - 2020-11-16 04:12 - 000056517 _____ C:\Users\standard\Downloads\Saugues-Le Sauvage (étape 3).gpx 2020-11-16 04:08 - 2020-11-16 04:08 - 000068426 _____ C:\Users\standard\Downloads\Golinhac-Conques (étape 10).gpx 2020-11-15 16:37 - 2020-11-15 16:37 - 000002211 _____ C:\Users\Public\Desktop\Canon MP Navigator EX 3.0.lnk 2020-11-15 16:37 - 2020-11-15 16:37 - 000000000 ____D C:\Program Files\Canon 2020-11-15 16:14 - 2020-11-15 16:19 - 000000000 ____D C:\Users\standard\Documents\HiSuite 2020-11-15 16:14 - 2020-11-15 16:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite 2020-11-15 16:13 - 2020-11-15 16:14 - 000000000 ____D C:\Program Files (x86)\HiSuite 2020-11-15 16:12 - 2020-11-15 16:12 - 043984664 _____ C:\Users\standard\Downloads\HiSuite_11.0.0.360_OVE.exe 2020-11-15 09:44 - 2020-11-15 09:44 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-11-15 09:41 - 2020-11-15 09:41 - 000000020 ___SH C:\Users\standard\ntuser.ini 2020-11-15 09:40 - 2020-11-28 15:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-11-15 09:40 - 2020-11-25 23:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-11-15 09:40 - 2020-11-22 17:50 - 000003824 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2020-11-15 09:40 - 2020-11-22 17:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2020-11-15 09:40 - 2020-11-15 09:41 - 000003880 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-11-15 09:40 - 2020-11-15 09:41 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-11-15 09:40 - 2020-11-15 09:41 - 000003516 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-11-15 09:40 - 2020-11-15 09:40 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2020-11-15 09:40 - 2020-11-15 09:40 - 000007623 _____ C:\WINDOWS\diagerr.xml 2020-11-15 09:40 - 2020-11-15 09:40 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-11-15 09:40 - 2020-11-15 09:40 - 000003292 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-11-15 09:40 - 2020-11-15 09:40 - 000002588 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2020-11-15 09:40 - 2020-11-15 09:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\Tâches de l’Observateur d’événements 2020-11-15 09:40 - 2020-11-15 09:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-3213114140-2064630393-212933067-1001 2020-11-15 09:40 - 2020-11-15 09:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform 2020-11-15 09:34 - 2020-11-28 11:05 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-11-15 09:24 - 2020-11-28 15:02 - 000000000 ____D C:\Users\standard 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Voisinage réseau 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Voisinage d'impression 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Modèles 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Mes documents 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Menu Démarrer 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Documents\Mes vidéos 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Documents\Mes images 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\Documents\Ma musique 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 _SHDL C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 ____D C:\Program Files\ATI Technologies 2020-11-15 09:24 - 2020-11-15 09:24 - 000000000 ____D C:\Program Files (x86)\ATI Technologies 2020-11-15 09:24 - 2020-11-15 09:23 - 000000000 ____D C:\Users\standard\AppData\Roaming\ATI 2020-11-15 09:24 - 2019-12-07 10:10 - 000001105 _____ C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-11-15 09:23 - 2020-11-15 09:23 - 000000000 ____D C:\Users\Default\AppData\Roaming\ATI 2020-11-15 09:23 - 2020-11-15 09:23 - 000000000 ____D C:\Users\Default User\AppData\Roaming\ATI 2020-11-15 09:20 - 2020-11-28 17:02 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-11-15 09:20 - 2020-11-28 06:53 - 000480272 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-11-15 09:19 - 2020-11-15 09:41 - 000000000 ____D C:\Windows.old 2020-11-15 09:15 - 2020-11-15 09:19 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2020-11-15 09:11 - 2020-11-15 09:15 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-11-15 09:11 - 2020-11-15 09:11 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-11-15 09:08 - 2020-11-15 09:08 - 000000000 ____D C:\ProgramData\ssh 2020-11-15 09:01 - 2020-11-15 09:01 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2020-11-15 09:01 - 2020-11-15 09:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-11-15 09:01 - 2020-11-15 09:01 - 001309504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2020-11-15 09:01 - 2020-11-15 09:01 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2020-11-15 09:01 - 2020-11-15 09:01 - 000580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2020-11-15 09:01 - 2020-11-15 09:01 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2020-11-15 09:01 - 2020-11-15 09:01 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2020-11-15 09:01 - 2020-11-15 09:01 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2020-11-15 09:01 - 2020-11-15 09:01 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2020-11-15 09:01 - 2020-11-15 09:01 - 000137016 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe 2020-11-15 09:01 - 2020-11-15 09:01 - 000101688 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2020-11-15 09:01 - 2020-11-15 09:01 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2020-11-15 09:01 - 2020-11-15 09:01 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2020-11-15 09:01 - 2020-11-15 09:01 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2020-11-15 09:00 - 2020-11-15 09:00 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2020-11-15 09:00 - 2020-11-15 09:00 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2020-11-15 09:00 - 2020-11-15 09:00 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2020-11-15 09:00 - 2020-11-15 09:00 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb 2020-11-15 09:00 - 2020-11-15 09:00 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2020-11-15 09:00 - 2020-11-15 09:00 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2020-11-15 09:00 - 2020-11-15 09:00 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv 2020-11-15 08:59 - 2020-11-15 08:59 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 001822256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-11-15 08:59 - 2020-11-15 08:59 - 001393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-11-15 08:59 - 2020-11-15 08:59 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 000306176 _____ C:\WINDOWS\system32\HeatCore.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2020-11-15 08:59 - 2020-11-15 08:59 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2020-11-15 08:59 - 2020-11-15 08:59 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb 2020-11-15 08:59 - 2020-11-15 08:59 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2020-11-15 08:59 - 2020-11-15 08:59 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2020-11-15 08:59 - 2020-11-15 08:59 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll 2020-11-15 08:59 - 2020-11-15 08:59 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin 2020-11-15 08:58 - 2020-11-15 08:58 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2020-11-15 08:58 - 2020-11-15 08:58 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2020-11-15 08:58 - 2020-11-15 08:58 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll 2020-11-15 08:58 - 2020-11-15 08:58 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv 2020-11-15 08:58 - 2020-11-15 08:58 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2020-11-15 08:48 - 2020-11-15 08:48 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2020-11-15 08:48 - 2020-11-15 08:48 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2020-11-15 08:46 - 2020-11-15 08:46 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2020-11-15 08:46 - 2020-11-15 08:46 - 000000000 ____D C:\Program Files\Reference Assemblies 2020-11-15 08:46 - 2020-11-15 08:46 - 000000000 ____D C:\Program Files\MSBuild 2020-11-15 08:46 - 2020-11-15 08:46 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2020-11-15 08:46 - 2020-11-15 08:46 - 000000000 ____D C:\Program Files (x86)\MSBuild 2020-11-12 14:47 - 2020-11-12 14:47 - 000000000 ____D C:\ProgramData\SolidDocuments 2020-11-12 14:39 - 2020-11-12 14:40 - 000000000 ____D C:\ProgramData\ABBYY 2020-11-12 14:20 - 2020-11-12 14:57 - 000000000 ____D C:\Users\standard\AppData\Roaming\Wondershare 2020-11-04 20:38 - 2020-11-04 20:38 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2020-11-04 16:31 - 2020-11-15 09:41 - 000000000 ___DC C:\WINDOWS\Panther 2020-11-04 16:19 - 2020-11-04 16:19 - 000000000 ___HD C:\$WinREAgent 2020-10-31 13:27 - 2020-10-31 13:27 - 000000000 ____D C:\ProgramData\AMMYY 2020-10-31 13:02 - 2020-10-31 13:04 - 000000000 ___HD C:\Users\standard\.nx 2020-10-31 13:00 - 2018-08-22 16:05 - 000122448 _____ (NoMachine) C:\WINDOWS\system32\Drivers\nxusbf.sys 2020-10-31 09:09 - 2020-10-31 09:09 - 007355352 _____ (TopoGrafix ) C:\Users\standard\Downloads\SetupEasyGPS(1).exe 2020-10-31 09:09 - 2020-10-31 09:09 - 000000851 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyGPS.lnk 2020-10-31 09:09 - 2020-10-31 09:09 - 000000000 ____D C:\Program Files\EasyGPS 2020-10-29 23:52 - 2020-10-29 23:52 - 005465598 _____ C:\Users\standard\Downloads\Pensions_de_reversions_rabot_es_de_50_-22111.mp4 ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-11-28 17:04 - 2019-05-03 12:00 - 000000000 ____D C:\FRST 2020-11-28 16:30 - 2020-03-14 10:23 - 000000000 ____D C:\Users\standard\AppData\LocalLow\Mozilla 2020-11-28 15:02 - 2020-03-15 08:18 - 000000850 _____ C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2020-11-28 15:02 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-11-28 15:01 - 2020-06-19 16:33 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-11-28 12:15 - 2019-12-07 10:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI 2020-11-28 12:15 - 2019-01-30 03:55 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2020-11-28 11:05 - 2019-12-07 15:50 - 000791698 _____ C:\WINDOWS\system32\perfh00C.dat 2020-11-28 11:05 - 2019-12-07 15:50 - 000149864 _____ C:\WINDOWS\system32\perfc00C.dat 2020-11-28 11:05 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2020-11-27 21:45 - 2020-08-01 19:20 - 000000000 ___RD C:\Users\standard\Desktop\Divers 2020-11-27 21:25 - 2020-09-01 22:49 - 000000000 ____D C:\Users\standard\Documents\Films convertis 2020-11-27 21:20 - 2019-02-04 17:49 - 000000000 ____D C:\Program Files (x86)\VideoLAN 2020-11-27 21:16 - 2020-03-09 18:09 - 000000000 ____D C:\Program Files\VideoLAN 2020-11-27 20:56 - 2020-03-24 13:07 - 000000000 ____D C:\Users\standard\AppData\Roaming\avidemux 2020-11-27 16:26 - 2019-11-15 10:34 - 000000000 ____D C:\Program Files (x86)\XMedia Recode 2020-11-27 07:44 - 2019-12-07 15:51 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2020-11-26 18:45 - 2019-08-13 20:04 - 000000000 ____D C:\Users\standard\AppData\Roaming\Molotov 2020-11-25 23:39 - 2019-02-11 18:19 - 000002179 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-11-25 10:34 - 2020-06-16 05:30 - 000002468 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-11-25 10:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2020-11-25 10:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-11-22 23:20 - 2019-11-04 16:44 - 000000000 ____D C:\Program Files (x86)\Voobly 2020-11-22 20:41 - 2019-05-13 16:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-11-22 19:51 - 2019-01-29 15:20 - 000000000 ____D C:\Program Files\KMSpico 2020-11-22 15:53 - 2020-03-15 08:13 - 015012440 _____ (ESET spol. s r.o.) C:\Users\standard\Downloads\esetonlinescanner_fra.exe 2020-11-22 15:36 - 2020-03-02 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2020-11-22 15:36 - 2020-03-02 17:56 - 000000000 ____D C:\Program Files\CrystalDiskInfo 2020-11-22 15:25 - 2019-05-13 16:21 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-11-19 13:42 - 2019-01-30 17:23 - 000000000 ____D C:\Program Files (x86)\Canon 2020-11-19 13:40 - 2020-03-14 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2020-11-19 13:38 - 2020-03-14 18:50 - 007458656 _____ (VS Revo Group ) C:\Users\standard\Downloads\revosetup.exe 2020-11-19 13:20 - 2020-03-14 10:18 - 000000000 ____D C:\Users\standard\.android 2020-11-17 08:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-11-16 20:58 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-11-16 20:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-11-16 13:56 - 2020-08-27 17:35 - 000000000 ____D C:\Program Files\Google 2020-11-16 11:38 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2020-11-16 11:38 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-11-16 04:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2020-11-16 01:32 - 2019-11-04 19:07 - 000000200 _____ C:\aocinjectlog.txt 2020-11-15 16:38 - 2019-10-31 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2020-11-15 16:37 - 2019-11-21 18:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP490 series 2020-11-15 15:53 - 2020-06-19 19:36 - 000000000 ___RD C:\Users\standard\Desktop\GPX 2020-11-15 09:59 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-11-15 09:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2020-11-15 09:42 - 2019-01-30 04:29 - 000000000 ____D C:\ProgramData\Packages 2020-11-15 09:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2020-11-15 09:41 - 2019-01-29 15:12 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-11-15 09:40 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2020-11-15 09:40 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2020-11-15 09:40 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-11-15 09:31 - 2019-12-07 10:14 - 000000000 __RSD C:\WINDOWS\Media 2020-11-15 09:31 - 2019-01-30 03:59 - 000023208 _____ C:\WINDOWS\system32\emptyregdb.dat 2020-11-15 09:27 - 2020-09-05 23:34 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ 2020-11-15 09:27 - 2020-03-01 18:06 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2020-11-15 09:27 - 2019-11-22 15:59 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avidemux 2.7 VC++ 64bits 2020-11-15 09:27 - 2019-11-20 21:27 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-15 09:27 - 2019-11-15 10:26 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HandBrake 2020-11-15 09:25 - 2020-03-28 20:56 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molotov 2020-11-15 09:25 - 2019-11-04 15:45 - 000000000 ____D C:\Users\standard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Games 2020-11-15 09:24 - 2019-01-30 03:50 - 000000000 ____D C:\ProgramData\AMD 2020-11-15 09:23 - 2019-01-29 15:20 - 000188565 _____ C:\WINDOWS\system32\Drivers\RTWAVES40.dat 2020-11-15 09:23 - 2019-01-29 15:20 - 000006786 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat 2020-11-15 09:23 - 2019-01-29 15:20 - 000002626 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat 2020-11-15 09:23 - 2019-01-29 15:20 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2020-11-15 09:22 - 2019-01-29 17:50 - 000000000 ____D C:\AMD 2020-11-15 09:19 - 2020-03-26 00:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hekasoft Backup & Restore 2020-11-15 09:19 - 2020-03-25 14:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView 2020-11-15 09:19 - 2020-03-17 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-11-15 09:19 - 2020-03-17 16:20 - 000000000 ____D C:\WINDOWS\SHELLNEW 2020-11-15 09:19 - 2020-03-03 17:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel 2020-11-15 09:19 - 2020-03-01 17:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 11 2020-11-15 09:19 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2020-11-15 09:19 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\System 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-11-15 09:19 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-11-15 09:19 - 2019-11-22 01:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux (32 bits) 2020-11-15 09:19 - 2019-11-20 21:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-11-15 09:19 - 2019-11-10 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2020-11-15 09:19 - 2019-11-04 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voobly 2020-11-15 09:19 - 2019-10-31 20:16 - 000000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2020-11-15 09:19 - 2019-10-27 07:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC 2020-11-15 09:19 - 2019-09-09 17:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2020-11-15 09:19 - 2019-09-05 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Excel Repair 2020-11-15 09:19 - 2019-06-18 11:37 - 000000000 ____D C:\Program Files\UNP 2020-11-15 09:19 - 2019-05-13 16:53 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2020-11-15 09:19 - 2019-05-13 14:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraVNC 2020-11-15 09:19 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-11-15 09:19 - 2019-01-29 15:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAMT 2.0 2020-11-15 09:19 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-11-15 09:19 - 2015-07-10 12:04 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2020-11-15 09:18 - 2019-12-07 10:14 - 000000000 __RHD C:\Users\Public\Libraries 2020-11-15 09:15 - 2020-08-18 17:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LetsView 2020-11-15 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources 2020-11-15 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2020-11-15 09:15 - 2019-11-03 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games 2020-11-15 09:15 - 2019-01-29 17:50 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies 2020-11-15 09:15 - 2019-01-29 17:49 - 000000000 ____D C:\Program Files\AMD 2020-11-15 09:08 - 2019-12-07 15:53 - 000000000 ___SD C:\WINDOWS\system32\AppV 2020-11-15 09:08 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2020-11-15 09:08 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-11-15 09:08 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2020-11-15 09:07 - 2019-12-07 15:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2020-11-15 09:07 - 2019-12-07 15:53 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2020-11-15 08:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2020-11-15 08:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2020-11-15 08:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2020-11-14 14:29 - 2020-06-22 07:16 - 000000000 ____D C:\Users\standard\Documents\aTraces KMZ - GPX 2020-11-12 14:57 - 2019-08-10 20:41 - 000000000 ____D C:\Users\Public\Documents\Wondershare 2020-11-12 14:57 - 2019-08-10 20:41 - 000000000 ____D C:\ProgramData\Documents\Wondershare 2020-11-11 20:02 - 2019-01-29 17:59 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-11-11 20:02 - 2019-01-29 17:58 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-11-06 09:34 - 2019-01-30 04:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-10-31 13:32 - 2020-06-16 16:23 - 000000000 ____D C:\Users\standard\AppData\Roaming\AnyDesk 2020-10-30 10:34 - 2020-03-14 20:25 - 000000000 ____D C:\Users\standard\Documents\Divers 2020-10-30 09:45 - 2019-01-29 18:00 - 000795000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe ==================== Fichiers à la racine de certains dossiers ======== 2020-11-16 13:35 - 2020-11-16 13:35 - 000000068 _____ () C:\Users\standard\AppData\Roaming\changzhi_leidian.data 2020-03-21 12:50 - 2020-03-21 12:50 - 000000885 _____ () C:\Users\standard\AppData\Local\recently-used.xbel 2020-03-14 15:50 - 2020-03-14 15:50 - 000007605 _____ () C:\Users\standard\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================