Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-12-2020 Exécuté par lynyrd (administrateur) sur JIPÉ (Micro-Star International Co., Ltd. GP72MVR 7RFX) (06-12-2020 14:39:13) Exécuté depuis C:\Users\lynyr\OneDrive\Desktop Profils chargés: lynyrd Platform: Windows 10 Pro Version 1909 18363.1198 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] D:\Iphone\Wondershare\drfone\Addins\Clone\ElevationService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Logiciels\DAEMON Tools Pro\DiscSoftBusServicePro.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) D:\Logiciels\DAEMON Tools Pro\DTShellHlp.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswEngSrv.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe <3> (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe (Avira Operations GmbH & Co. KG -> The OpenVPN Project) C:\Program Files (x86)\Avira\VPN\OpenVpn\phantomvpn.exe (Avira Operations GmbH & Co. KG) [Fichier non signé] C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (CHENGDU AOMEI TECHNOLOGY CO., LTD. -> AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe (Emsisoft Ltd -> Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2service.exe (Emsisoft Ltd -> Emsisoft Ltd.) D:\Logiciels\decrypt_STOPDjvu.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (ICEpower a/s -> ICEpower a/s) C:\WINDOWS\System32\ICEsoundService64.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Intel(R) pGFX -> Intel Corporation) C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e7523682cc7528cc\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_55ea1c9e3c7e8c44\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_55ea1c9e3c7e8c44\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\WINDOWS\System32\ibtsiva.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\WINDOWS\System32\WirelessKB850NotificationService.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\wlanext.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (MiniTool Software Limited -> ) D:\Logiciels\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> ) D:\Logiciels\MiniTool ShadowMaker\SchedulerService.exe (Nanosystems S.r.l. -> Nanosystems S.r.l.) C:\Program Files (x86)\Supremo\Supremo.exe (Nanosystems S.r.l. -> Nanosystems S.r.l.) C:\Program Files (x86)\Supremo\SupremoService.exe (Nanosystems S.r.l. -> Nanosystems S.r.l.) C:\WINDOWS\Temp\SupremoRemoteDesktop\S-1-5-21-1284899225-1928332732-1002248254-1001\SupremoHelper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (OneSpan North America Inc. -> VASCO Data Security) C:\Users\lynyr\AppData\Local\OneSpan\NativeBridge\digipass-nativebridge.exe (OneSpan North America Inc. -> VASCO Data Security) C:\Users\lynyr\AppData\Local\OneSpan\NativeBridge\digipass-nativebridge-monitor.exe (philandro Software GmbH -> philandro Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <2> (Rivet Networks LLC -> CloudBees, Inc.) C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (Rivet Networks LLC -> Rivet Networks LLC) C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtility.exe (Rivet Networks LLC -> Rivet Networks) C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\WINDOWS\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\WINDOWS\System32\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\WINDOWS\System32\SynTPHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) D:\Logiciels\TeamViewer.15.1.3937\TeamViewer_Service.exe (TomTom) [Fichier non signé] D:\Gps\TomTom HOME\TTHOMEService.exe (Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\ProgramData\Wondershare\Service\InstallAssistService.exe (Wondershare Technology Co.,Ltd -> Wondershare) D:\Iphone\Wondershare\drfone\Addins\Clone\DriverInstall.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [emsisoft anti-malware] => C:\Program Files\Emsisoft Anti-Malware\a2guard.exe [8890728 2018-11-02] (Emsisoft Ltd -> Emsisoft Ltd) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304 2018-05-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319520 2018-09-26] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [165000 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [337720 2020-11-12] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [HPWUTOOLBOX] => C:\Program Files (x86)\HP\HP Officejet Pro K550 Series\Toolbox\HPWUTBX.exe [356352 2007-01-08] (Hewlett-Packard Company) [Fichier non signé] HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 1 HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1 HKLM\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKLM\...\Policies\Explorer: [NoResolveSearch] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-01-15] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [CCleaner Smart Cleaning] => "D:\Logiciels\12_CCleaner Pro 5.60.7307\Cleaner\CCleaner64.exe" /MONITOR HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [HP Photosmart 7520 series (NET)] => C:\Program Files\HP\HP Photosmart 7520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [AnyTransToolHelper] => C:\Program Files (x86)\iMobie\AnyTrans\AnyTransToolHelper.exe [548864 2020-01-02] (iMobie Inc. -> iMobie Inc.) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [978B72BEA644B2BA5F8D912416D92FFC9BEDFA19._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5491248 2020-11-19] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [DigipassNativeBridge] => C:\Users\lynyr\AppData\Local\OneSpan\NativeBridge\digipass-nativebridge-monitor.exe [108488 2019-11-20] (OneSpan North America Inc. -> VASCO Data Security) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Run: [Avira Phantom VPN] => C:\Program Files (x86)\Avira\VPN\Avira.WebAppHost.exe [843184 2020-07-06] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Policies\Explorer: [NoInstrumentation] 1 HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Policies\Explorer: [TaskbarNoNotification] 1 HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Policies\Explorer: [NoSecurityTab] 1 HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\...\Winlogon: [Shell] HKLM\...\Print\Monitors\HP BC11 Status Monitor: C:\WINDOWS\system32\hpinkstsBC11LM.dll [331664 2012-06-12] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Photosmart 7520 series): C:\WINDOWS\system32\HPDiscoPMBC11.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\Nitro PDF Port 13 Monitor: C:\WINDOWS\system32\NxPrinterMonitor13.dll [241416 2019-09-26] (Nitro Software, Inc. -> Nitro Software, Inc.) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [116736 2020-02-12] (pdfforge GmbH) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-02] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-04-14] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> philandro Software GmbH) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MobileGo Service.lnk [2019-11-29] ShortcutTarget: MobileGo Service.lnk -> C:\Program Files (x86)\Wondershare\MobileGo\MobileGoService.exe (Wondershare Technology Co.,Ltd -> Wondershare) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MTWSAndroidAppHelper.lnk [2020-09-03] ShortcutTarget: MTWSAndroidAppHelper.lnk -> D:\Iphone\MobileTransPro\WSAndroidAppHelper.exe (Pas de fichier) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MTWSAppHelper.lnk [2020-09-03] ShortcutTarget: MTWSAppHelper.lnk -> D:\Iphone\MobileTransPro\WSAppHelper.exe (Pas de fichier) Startup: C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-01-18] ShortcutTarget: MEGAsync.lnk -> C:\ProgramData\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0182053A-8DE8-41DC-ABD5-509B3E72F08E} - System32\Tasks\PCA Application Restart {4495649a-1497-4cbd-b902-aa7c361a813a} => C:\WINDOWS\system32\pcalua.exe -a "G:\Call Of Duty 2\CoD2SP_s.exe" -d "G:\Call Of Duty 2" Task: {02E2A319-537A-48F2-AD70-C6D95188D8D2} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {0814C345-6F02-4598-A496-B1B023704FF5} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-21] (Mozilla Corporation -> Mozilla Foundation) Task: {0E2BC230-9D51-4BF2-9AC2-287D2739A45C} - System32\Tasks\RegHunterStartup => C:\Program Files\Enigma Software Group\RegHunter\RegHunter.exe [8416008 2020-12-06] (Enigma Software Group USA, LLC -> Enigma Software Group USA, LLC.) Task: {0E5092B4-A1FD-4867-A446-96ADF5E7B67D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {122EAD2F-997E-412D-9705-101436876E26} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {125CBACB-BD09-46AE-83FF-36AF07864FDB} - System32\Tasks\TrackerAutoUpdate => D:\Logiciels\Adobe PDF\Update\TrackerUpdate.exe Task: {1CDA4F88-AFA0-41EC-9EEA-47694EFD5F69} - System32\Tasks\Opera scheduled assistant Autoupdate 1548511879 => C:\Users\lynyr\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\lynyr\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {1FF1446F-64C5-474A-AEB3-C46B14CABFCC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-03-21] (Google Inc -> Google Inc.) Task: {3573B7B0-7F84-4DFD-99A4-26EA252B0EE8} - System32\Tasks\Opera scheduled Autoupdate 1548511876 => C:\Users\lynyr\AppData\Local\Programs\Opera\launcher.exe Task: {394AD9E0-A12D-42D6-8F89-5F7A677438B1} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2646160 2019-10-10] (Microsoft Corporation -> Microsoft Corporation) Task: {455828FD-5669-4696-A41E-EC5E88A3BB49} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-11] (Adobe Inc. -> Adobe) Task: {4CC0D32A-490E-47CF-A5E5-6C56609E08B4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4DB61479-7797-456D-8E87-8E539FFFE1FD} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4E1A036E-0E7C-4089-A203-AE25B9B3D46D} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [68568 2017-08-02] (DivX, LLC -> DivX, LLC) Task: {5A809168-F6D7-4F52-A188-56DFC70387B8} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {75EE4028-A626-430D-A8FF-65B16BE02526} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7A53B24F-C5CF-4E52-9ED8-C4EE71BF7326} - System32\Tasks\CCleanerSkipUAC => D:\Logiciels\12_CCleaner Pro 5.60.7307\Cleaner\CCleaner.exe Task: {85E0A922-9AAE-48BD-B46B-3858C0D7CBDA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-03-21] (Google Inc -> Google Inc.) Task: {8621193C-5B98-4FA0-BF8F-55B8E1AD9A7C} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1284899225-1928332732-1002248254-1001 => C:\ProgramData\MEGAsync\MEGAupdater.exe [1303800 2020-11-24] (Mega Limited -> Mega Limited) Task: {8860E261-8649-4D40-9783-8192D944E75B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe [1502776 2020-11-11] (Adobe Inc. -> Adobe) Task: {8AB6FF39-E0EB-4ED9-A42D-F12DE7ED35D2} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32848 2019-10-10] (Microsoft Corporation -> Microsoft) [Fichier non signé] Task: {8F88587A-9D51-4C5C-B893-E801AA65D59C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {97874C40-F7D8-4144-B6F4-26F440F94A45} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {9E5D7752-2F96-4EDE-ACCF-4A43163A2488} - System32\Tasks\CCleaner Update => D:\Logiciels\12_CCleaner Pro 5.60.7307\Cleaner\CCUpdate.exe Task: {9F849838-37DC-41D5-8793-91D064924E19} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A4347F97-B18F-4F50-9254-FDE9599A2A47} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A865E81E-C7D1-4FF1-BF58-A3733C005BDB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {ABD79A0B-36E1-4C27-8A74-741CA2EF567F} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AD433133-6349-47EB-9C68-5C0F17923110} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B128C717-F0B4-4DCA-B517-5F0CCEB7B664} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2043016 2019-10-10] (Microsoft Corporation -> Microsoft Corporation) Task: {B711C799-027E-44BA-BF4D-8DC2AADC8690} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {C9C690F7-C7CF-46FD-9D68-7B5DD9DBC01D} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1773192 2020-09-18] (AVG Technologies USA, LLC -> AVG Technologies) Task: {D0319C11-40B4-4B86-BF23-E400EC23C3C6} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {DA4E551E-226B-42BE-A654-45D9E4DBEA53} - System32\Tasks\Trojan Remover => D:\Logiciels\[PiratePC.Co] Loaris Trojan Remover 3.1.37 With Serial Key\Loaris Trojan Remover\ltr.exe Task: {EAAB8CA1-70B8-4E17-8D46-63744B2B24C5} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [4665480 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Task: {EC81D5C1-BAAF-4CA0-AC89-623D592B71EB} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EEA18F4E-FE1E-412A-B0F3-06284091D935} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {EF7C9B71-6382-4CEA-8CC8-EB346E92E282} - System32\Tasks\BlueStacksHelper => D:\Logiciels\Bkue stack\BlueStacks\Client\Helper\BlueStacksHelper.exe [752136 2020-10-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) Task: {EF92131C-3897-49FC-BC9A-C3771B953CE7} - System32\Tasks\Chameleon Folder-lynyr => "C:\Program Files (x86)\Chameleon Explorer\ChameleonFolder.exe" 0 Task: {FE036298-08C3-43E5-BA27-A03F91EC3031} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => D:\Logiciels\Adobe PDF\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{382b07d0-fe58-4b98-bc4f-c73a14d86e8b}: [NameServer] 144.217.75.55,109.236.87.2 Tcpip\..\Interfaces\{45bc4db7-c8a4-11e8-9012-806e6f6e6963}: [NameServer] 144.217.75.55,109.236.87.2 Tcpip\..\Interfaces\{50e577f0-9127-4700-8392-0cf4f6b48c32}: [NameServer] 144.217.75.55,109.236.87.2 Tcpip\..\Interfaces\{752d4d4f-9a4a-4f0f-861f-360339a62827}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{9c80c104-7090-4a02-8f74-9bb749a5d396}: [DhcpNameServer] 185.123.227.250 Tcpip\..\Interfaces\{d83156ea-acc3-4578-b768-c96fce7c8ca6}: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{eed75222-11e9-4205-b37e-db2fd0423b1a}: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{fc365182-1750-42c6-9800-b2b7af4024d5}: [DhcpNameServer] 109.88.203.3 62.197.111.140 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ====== Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: o34ulbs9.default-1605530494893 FF ProfilePath: C:\Users\lynyr\AppData\Roaming\TomTom\HOME\Profiles\rqiotl6g.default [2019-11-21] FF Extension: (Pas de nom) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [non trouvé(e)] FF ProfilePath: C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893 [2020-12-06] FF Homepage: Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893 -> hxxps://www.google.be/ FF NewTab: Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893 -> hxxps://mysearchengine.co/homepage?hp=1&bitmask=9996&pId=IC150206&iDate=2020-05-15 04:20:58&bName= FF Notifications: Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893 -> hxxps://www.sudinfo.be; hxxps://satland.org FF NewTabOverride: Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893 -> Enabled: newtaboverride@agenedia.com FF Extension: (eID Belgique) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\belgiumeid@eid.belgium.be.xpi [2020-11-16] FF Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\firefox@ghostery.com.xpi [2020-11-16] FF Extension: (To Google Translate) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2020-11-16] FF Extension: (New Tab Override) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\newtaboverride@agenedia.com.xpi [2020-11-16] FF Extension: (A powerful reverse image search tool, with support for various search engines, such as Google, Bing, Yandex, Baidu and TinEye.) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [2020-11-24] FF Extension: (Greasemonkey) - C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2020-12-06] FF SearchPlugin: C:\Users\lynyr\AppData\Roaming\Mozilla\Firefox\Profiles\o34ulbs9.default-1605530494893\searchplugins\mysearchengine.xml [2020-11-21] FF Extension: (Pas de nom) - C:\Program Files\Mozilla Firefox\browser\features\{65C4BEDD-3F81-4F60-85D8-816EA9FC8BFD}.xpi [2019-10-18] [non signé] FF HKLM\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => non trouvé(e) FF HKLM-x32\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => non trouvé(e) FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_453.dll [2020-11-11] (Adobe Inc. -> ) FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciels\Adobe PDF\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Office 2016\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.10 -> D:\Logiciels\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.11 -> D:\Logiciels\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> D:\Logiciels\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> D:\Logiciels\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> D:\Logiciels\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_453.dll [2020-11-11] (Adobe Inc. -> ) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciels\Adobe PDF\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-11-19] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1284899225-1928332732-1002248254-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> D:\Logiciels\Adobe PDF\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\firefox.js [2018-12-20] Chrome: ======= CHR HKU\S-1-5-21-1284899225-1928332732-1002248254-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kphondbfkocnmbigbmfbkeefeoacnlad] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] Opera: ======= OPR Notifications: hxxps://mail-notification.info OPR Extension: (Adblocker for Youtube™) - C:\Users\lynyr\AppData\Roaming\Opera Software\Opera Stable\Extensions\ddkabaoepfkgnghoahefnncjjfokffio [2019-10-18] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [9449800 2018-11-02] (Emsisoft Ltd -> Emsisoft Ltd) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-11] (Adobe Inc. -> Adobe) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3668944 2020-08-08] (philandro Software GmbH -> philandro Software GmbH) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [366232 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AVG Tools; C:\Program Files (x86)\AVG\Antivirus\avgToolsSvc.exe [3096712 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\aswidsagent.exe [8502208 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AvgWscReporter; C:\Program Files (x86)\AVG\Antivirus\wsc_proxy.exe [110608 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [372736 2020-07-31] (Avira Operations GmbH & Co. KG) [Fichier non signé] R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [844888 2019-09-27] (CHENGDU AOMEI TECHNOLOGY CO., LTD. -> AOMEI Tech Co., Ltd.) R3 Disc Soft Pro Bus Service; D:\Logiciels\DAEMON Tools Pro\DiscSoftBusServicePro.exe [2856304 2019-05-13] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2019-12-10] (EasyAntiCheat Oy -> Epic Games, Inc) R2 ElevationService; D:\Iphone\Wondershare\drfone\Addins\Clone\ElevationService.exe [907776 2020-07-07] () [Fichier non signé] R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [12874296 2020-12-05] (EnigmaSoft Limited -> EnigmaSoft Limited) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [285192 2020-10-28] (HP Inc. -> HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2483376 2018-06-15] (Rivet Networks LLC -> Rivet Networks) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7265328 2020-12-05] (Malwarebytes Inc -> Malwarebytes) R2 MTAgentService; D:\Logiciels\MiniTool ShadowMaker\AgentService.exe [783344 2020-10-01] (MiniTool Software Limited -> ) R2 MTSchedulerService; D:\Logiciels\MiniTool ShadowMaker\SchedulerService.exe [226800 2020-10-01] (MiniTool Software Limited -> ) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6153048 2020-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [524856 2020-12-05] (EnigmaSoft Limited -> EnigmaSoft Limited) R2 SupremoService; C:\Program Files (x86)\Supremo\SupremoService.exe [2834200 2020-12-01] (Nanosystems S.r.l. -> Nanosystems S.r.l.) R2 TeamViewer; D:\Logiciels\TeamViewer.15.1.3937\TeamViewer_Service.exe [12720144 2020-11-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 TTHOMEService; D:\Gps\TomTom HOME\TTHOMEService.exe [97792 2019-04-17] (TomTom) [Fichier non signé] S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited -> Windscribe Limited) R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation) R2 Wondershare InstallAssist; C:\ProgramData\Wondershare\Service\InstallAssistService.exe [269200 2020-07-14] (Wondershare Technology Co.,Ltd -> Wondershare) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe [473312 2017-03-20] (Wondershare Technology Co.,Ltd -> Wondershare) R2 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-06-26] (Wondershare Technology Co.,Ltd -> Wondershare) R2 WsDrvInst; D:\Iphone\Wondershare\drfone\Addins\Clone\DriverInstall.exe [122768 2020-07-15] (Wondershare Technology Co.,Ltd -> Wondershare) S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72880 2018-06-15] (Rivet Networks LLC -> CloudBees, Inc.) R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72888 2018-06-15] (Rivet Networks LLC -> CloudBees, Inc.) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 ampa; C:\WINDOWS\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2017-09-01] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [37216 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [206472 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [332432 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [247952 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [97424 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [16832 2020-11-22] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [42848 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [176808 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgNetHub; C:\WINDOWS\System32\drivers\avgNetHub.sys [521816 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [109352 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [84928 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [851680 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [469896 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [217408 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S3 avgTap; C:\WINDOWS\System32\drivers\avgTap.sys [54888 2018-09-05] (AVG Technologies CZ, s.r.o. -> The OpenVPN Project) R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [326488 2020-11-22] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-10-04] (Bluestack Systems, Inc -> Bluestack System Inc.) S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [58368 2014-11-08] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com) S3 ddmdrv; C:\WINDOWS\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2019-01-09] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2019-01-09] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [42472 2019-09-25] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2018-12-19] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2018-12-19] (Disc Soft Ltd -> Disc Soft Ltd) R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2009-02-12] (EldoS Corporation -> EldoS Corporation) R3 EnigmaFileMonDriver; C:\WINDOWS\System32\drivers\EnigmaFileMonDriver.sys [76744 2020-12-06] (EnigmaSoft Limited -> EnigmaSoft Limited) R1 epp; C:\Program Files\Emsisoft Anti-Malware\epp.sys [142952 2018-05-16] (Emsisoft Ltd -> Emsisoft Ltd) R0 eppdisk; C:\WINDOWS\System32\drivers\eppdisk.sys [37064 2018-04-02] (Emsisoft Ltd -> Emsisoft Ltd) R1 eppwfp; C:\Program Files\Emsisoft Anti-Malware\eppwfp.sys [132144 2018-11-02] (Emsisoft Ltd -> Emsisoft Ltd) S3 HWHandSet; C:\WINDOWS\system32\DRIVERS\hw_quusbmdm.sys [226560 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S4 IObitUnlocker; D:\Logiciels\Unlocker\IObitUnlocker.sys [66824 2017-06-15] (IObit Information Technology -> IObit) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.) R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [150184 2018-06-15] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [217600 2020-12-06] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-12-05] (Malwarebytes Inc -> Malwarebytes) R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824 2020-07-11] (SoftEther Corporation -> SoftEther Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [36600 2018-12-19] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [50248 2020-07-06] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-11-08] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> ) R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [134000 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd) R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [50624 2020-07-11] (SoftEther Corporation -> SoftEther Corporation) R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203296 2019-09-24] (Disc Soft Ltd -> Duplex Secure Ltd) R3 ssps2; C:\WINDOWS\System32\drivers\ssps2.sys [41104 2019-08-27] (SteelSeries ApS -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2018-10-20] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [45024 2018-09-20] (ExprsVPN LLC -> The OpenVPN Project) R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-13] (Windscribe Limited -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-05] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-05] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-12-06 14:38 - 2020-12-06 14:39 - 000000000 ____D C:\FRST 2020-12-06 13:57 - 2020-12-06 13:57 - 000003332 _____ C:\WINDOWS\system32\Tasks\RegHunterStartup 2020-12-06 13:57 - 2020-12-06 13:57 - 000001127 _____ C:\Users\lynyr\Desktop\RegHunter.lnk 2020-12-06 13:57 - 2020-12-06 13:57 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RegHunter 2020-12-06 13:57 - 2020-12-06 13:57 - 000000000 ____D C:\ProgramData\Enigma Software Group 2020-12-06 13:55 - 2020-12-06 13:55 - 000000000 ____D C:\Program Files\Enigma Software Group 2020-12-06 13:05 - 2020-12-06 13:05 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2020-12-06 01:17 - 2020-12-06 01:17 - 000217600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2020-12-06 01:11 - 2020-12-06 01:13 - 000018522 _____ C:\native log.txt 2020-12-06 01:07 - 2020-12-06 01:17 - 000013460 _____ C:\spyhunter.fix.old 2020-12-06 01:06 - 2020-12-06 01:06 - 000000000 ___HD C:\BMvKG8HYya2oNXPf 2020-12-05 23:11 - 2020-12-05 23:11 - 000000000 ___HD C:\$SysReset 2020-12-05 21:49 - 2020-12-05 21:54 - 000002145 _____ C:\WINDOWS\GA_OF.dat 2020-12-05 21:45 - 2020-12-05 21:45 - 000001209 _____ C:\Users\Public\Desktop\AOMEI Partition Assistant 9.0.lnk 2020-12-05 21:45 - 2020-12-05 21:45 - 000001209 _____ C:\ProgramData\Desktop\AOMEI Partition Assistant 9.0.lnk 2020-12-05 21:45 - 2020-12-05 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant 2020-12-05 21:45 - 2016-12-27 18:45 - 000035760 _____ C:\WINDOWS\system32\ddmdrv.sys 2020-12-05 21:45 - 2016-12-27 18:45 - 000033200 _____ C:\WINDOWS\SysWOW64\ddmdrv.sys 2020-12-05 21:45 - 2016-09-29 09:44 - 001298584 _____ C:\WINDOWS\ddmmain.exe 2020-12-05 21:44 - 2020-12-05 21:54 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant 2020-12-05 21:44 - 2020-08-12 15:02 - 002201768 _____ C:\WINDOWS\ampa.exe 2020-12-05 21:44 - 2017-02-28 14:20 - 000038320 _____ C:\WINDOWS\SysWOW64\ampa.sys 2020-12-05 21:44 - 2017-02-28 14:20 - 000038320 _____ C:\WINDOWS\system32\ampa.sys 2020-12-05 21:25 - 2020-12-05 21:25 - 000001074 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk 2020-12-05 21:25 - 2020-12-05 21:25 - 000001074 _____ C:\ProgramData\Desktop\EaseUS Data Recovery Wizard.lnk 2020-12-05 21:25 - 2020-12-05 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 2020-12-05 21:10 - 2020-12-06 01:17 - 000076744 _____ (EnigmaSoft Limited) C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys 2020-12-05 21:08 - 2020-12-05 21:10 - 000000290 __RSH C:\ProgramData\ntuser.pol 2020-12-05 21:01 - 2020-12-05 23:58 - 000000000 ____D C:\Users\lynyr\AppData\LocalLow\IGDump 2020-12-05 20:49 - 2020-12-05 23:16 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2020-12-05 20:49 - 2020-12-05 20:49 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-12-05 20:49 - 2020-12-05 20:49 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2020-12-05 20:49 - 2020-12-05 20:49 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-12-05 20:49 - 2020-12-05 20:49 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2020-12-05 20:49 - 2020-12-05 20:49 - 000002021 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2020-12-05 20:20 - 2020-12-05 20:23 - 000000000 ____D C:\Program Files (x86)\w684tm95cfx1 2020-12-05 20:20 - 2020-12-05 20:20 - 000000000 ____D C:\Program Files (x86)\gdiview 2020-12-05 20:15 - 2020-12-05 20:17 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\IObit 2020-12-05 20:15 - 2020-12-05 20:15 - 000000000 ____D C:\Users\lynyr\AppData\LocalLow\IObit 2020-12-05 20:15 - 2020-12-05 20:15 - 000000000 ____D C:\ProgramData\ProductData 2020-12-05 20:15 - 2020-12-05 20:15 - 000000000 ____D C:\Program Files (x86)\IObit 2020-12-05 18:54 - 2020-12-06 14:37 - 000002506 _____ C:\WINDOWS\system32\Tasks\Trojan Remover 2020-12-05 17:14 - 2020-12-05 17:14 - 000000000 ____D C:\ProgramData\Loaris 2020-12-05 15:45 - 2020-12-05 15:46 - 000000000 ____D C:\ProgramData\27O4XKALBP 2020-12-05 15:45 - 2020-12-05 15:45 - 000001055 _____ C:\Users\Public\Desktop\SpyHunter5.lnk 2020-12-05 15:45 - 2020-12-05 15:45 - 000001055 _____ C:\ProgramData\Desktop\SpyHunter5.lnk 2020-12-05 15:45 - 2020-12-05 15:45 - 000000000 ____D C:\sh5ldr 2020-12-05 15:45 - 2020-12-05 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft 2020-12-05 15:45 - 2020-12-05 15:45 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited 2020-12-05 15:44 - 2020-12-05 15:44 - 000000000 ____D C:\Program Files\EnigmaSoft 2020-12-05 15:29 - 2020-12-05 18:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware 2020-12-05 15:29 - 2020-12-05 18:56 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware 2020-12-05 15:29 - 2020-12-05 15:29 - 000000000 ____D C:\ProgramData\GridinSoft 2020-12-05 14:58 - 2020-12-05 15:19 - 000001134 _____ C:\Users\lynyr\AppData\LocalLow\thunderbird.txt 2020-12-05 14:57 - 2020-12-05 15:19 - 000000000 ____D C:\Users\lynyr\AppData\LocalLow\nb98wqnehe8bw89hb 2020-12-05 14:57 - 2020-12-05 15:18 - 000000916 _____ C:\Users\lynyr\AppData\LocalLow\outlook.txt 2020-12-05 14:57 - 2020-12-05 14:57 - 000000013 _____ C:\ProgramData\kaosdma.txt 2020-12-05 14:43 - 2020-12-05 14:43 - 000001110 _____ C:\Users\lynyr\_readme.txt 2020-12-05 14:41 - 2020-12-05 14:41 - 000000562 _____ C:\Users\lynyr\AppData\Local\bowsakkdestx.txt 2020-12-05 14:41 - 2020-12-05 14:41 - 000000000 ____D C:\Users\lynyr\OneDrive\Documents\VlcpVideoV1.0.1 2020-12-05 14:41 - 2020-12-05 14:41 - 000000000 ____D C:\SystemID 2020-12-05 14:41 - 2020-12-05 14:41 - 000000000 ____D C:\ProgramData\FUBUPNOIEC 2020-12-05 14:41 - 2020-12-05 14:41 - 000000000 ____D C:\ProgramData\B32T17V2OX 2020-12-05 14:40 - 2020-12-05 14:40 - 000000000 ____D C:\Users\Public\Thunder Network 2020-12-05 14:40 - 2020-12-05 14:40 - 000000000 ____D C:\ProgramData\Thunder Network 2020-12-05 14:39 - 2020-12-05 20:20 - 000000000 ____D C:\ProgramData\sib 2020-12-05 14:39 - 2020-12-05 14:43 - 000000000 ____D C:\Program Files (x86)\mjezl9kgtuup 2020-12-05 14:26 - 2020-12-05 14:26 - 000000000 ____D C:\Users\lynyr\AppData\Local\SplitMovie 2020-12-04 02:16 - 2020-12-04 02:16 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\QtProject 2020-12-04 02:14 - 2020-12-04 02:14 - 000000843 _____ C:\Users\Public\Desktop\MiniTool ShadowMaker.lnk 2020-12-04 02:14 - 2020-12-04 02:14 - 000000843 _____ C:\ProgramData\Desktop\MiniTool ShadowMaker.lnk 2020-12-04 02:14 - 2020-12-04 02:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool ShadowMaker 2020-12-04 02:14 - 2019-11-08 09:15 - 003600896 _____ C:\WINDOWS\system32\pwNative.exe 2020-12-04 02:14 - 2019-11-08 09:15 - 000019152 _____ C:\WINDOWS\system32\pwdrvio.sys 2020-12-04 02:14 - 2019-11-08 09:15 - 000012504 _____ C:\WINDOWS\system32\pwdspio.sys 2020-12-04 00:10 - 2020-12-04 00:10 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2020-12-02 16:59 - 2020-12-02 16:59 - 000000850 _____ C:\Users\Public\Desktop\ideaMaker.lnk 2020-12-02 16:59 - 2020-12-02 16:59 - 000000850 _____ C:\ProgramData\Desktop\ideaMaker.lnk 2020-12-02 16:59 - 2020-12-02 16:59 - 000000000 ____D C:\Users\lynyr\AppData\Local\Raise3D 2020-12-02 16:59 - 2020-12-02 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raise3D 2020-12-02 13:04 - 2020-12-02 13:04 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk 2020-12-02 13:04 - 2020-12-02 13:04 - 000001816 _____ C:\ProgramData\Desktop\iTunes.lnk 2020-12-02 13:04 - 2020-12-02 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2020-12-02 13:04 - 2020-12-02 13:04 - 000000000 ____D C:\Program Files\iTunes 2020-12-02 13:04 - 2020-12-02 13:04 - 000000000 ____D C:\Program Files\iPod 2020-11-29 21:27 - 2020-11-29 21:27 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Rcysoft Raw Drive Data Recovery 2020-11-29 21:16 - 2020-11-29 21:16 - 000000310 _____ C:\Users\lynyr\OneDrive\Documents\Recovery Session File # Sun, 29-Nov-2020[21 15 59].rrs5 2020-11-29 21:14 - 2020-11-29 21:14 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Remo 2020-11-29 21:14 - 2009-02-12 15:11 - 000026024 _____ (EldoS Corporation) C:\WINDOWS\system32\Drivers\rsdrvx64.sys 2020-11-29 16:44 - 2020-11-29 16:44 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\EaseUS 2020-11-29 16:42 - 2020-11-29 16:42 - 000000000 ____D C:\Program Files\EaseUS 2020-11-27 00:46 - 2020-12-03 13:25 - 000000260 _____ C:\Users\lynyr\printrunconf.ini~bak 2020-11-27 00:46 - 2020-12-03 13:25 - 000000260 _____ C:\Users\lynyr\printrunconf.ini 2020-11-26 19:34 - 2020-12-06 14:37 - 000002984 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper 2020-11-26 19:29 - 2020-11-26 19:29 - 000001924 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks.lnk 2020-11-26 19:29 - 2020-11-26 19:29 - 000001912 _____ C:\Users\Public\Desktop\BlueStacks.lnk 2020-11-26 19:29 - 2020-11-26 19:29 - 000001912 _____ C:\ProgramData\Desktop\BlueStacks.lnk 2020-11-26 19:29 - 2020-11-26 19:29 - 000001315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks Multi-Instance Manager.lnk 2020-11-26 19:29 - 2020-11-26 19:29 - 000001303 _____ C:\Users\Public\Desktop\BlueStacks Multi-Instance Manager.lnk 2020-11-26 19:29 - 2020-11-26 19:29 - 000001303 _____ C:\ProgramData\Desktop\BlueStacks Multi-Instance Manager.lnk 2020-11-26 19:27 - 2020-11-26 19:27 - 000000000 ____D C:\Program Files\BlueStacks 2020-11-26 19:26 - 2020-11-26 19:27 - 000000000 ____D C:\Users\lynyr\AppData\Local\BlueStacksSetup 2020-11-26 19:21 - 2020-11-26 19:22 - 000814412 _____ C:\WINDOWS\Minidump\112620-72718-01.dmp 2020-11-26 19:21 - 2020-11-26 19:21 - 000000000 ____D C:\WINDOWS\Minidump 2020-11-26 19:18 - 2020-11-27 10:30 - 000000000 ____D C:\Program Files (x86)\BlueStacks 2020-11-26 19:18 - 2020-11-26 19:18 - 000000000 ____D C:\ProgramData\BlueStacksSetup 2020-11-25 12:49 - 2020-11-25 12:49 - 000000000 ____D C:\Users\lynyr\AppData\Local\MctvPlaylistCreator 2020-11-25 12:45 - 2020-11-25 12:45 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\MctvPlaylistCreator 2020-11-24 16:21 - 2020-11-24 16:21 - 000002000 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Manager.lnk 2020-11-24 16:21 - 2020-11-24 16:21 - 000001208 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Encore plus de jeux.lnk 2020-11-24 16:21 - 2020-11-24 16:21 - 000000231 _____ C:\Users\Public\Desktop\Encore plus de jeux.url 2020-11-24 16:21 - 2020-11-24 16:21 - 000000231 _____ C:\ProgramData\Desktop\Encore plus de jeux.url 2020-11-24 16:21 - 2020-11-24 16:21 - 000000000 ____D C:\Program Files (x86)\bfgclient 2020-11-23 12:03 - 2020-11-23 12:03 - 000000000 ____D C:\Users\lynyr\AppData\Local\WhatsApp 2020-11-22 20:01 - 2020-11-22 20:01 - 000340104 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe 2020-11-22 20:01 - 2020-11-22 20:01 - 000217408 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys 2020-11-22 12:19 - 2020-12-06 14:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimaker Cura 2020-11-21 14:10 - 2020-11-21 14:10 - 000000000 ____D C:\Users\lynyr\AppData\Local\__SHARED 2020-11-21 10:19 - 2020-11-21 10:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-11-21 10:17 - 2020-11-22 10:19 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-11-16 20:22 - 2020-11-16 20:22 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync 2020-11-13 23:59 - 2020-11-13 23:59 - 000187979 _____ C:\Users\lynyr\OneDrive\Documents\2020-11-13_235837.pdf 2020-11-13 14:10 - 2020-11-24 16:21 - 000001032 _____ C:\Users\Public\Desktop\Jeux.lnk 2020-11-13 14:10 - 2020-11-24 16:21 - 000001032 _____ C:\ProgramData\Desktop\Jeux.lnk 2020-11-13 14:10 - 2020-11-24 16:21 - 000000000 ____D C:\ProgramData\Big Fish 2020-11-13 14:09 - 2020-12-05 14:43 - 000000000 ____D C:\BigFishCache 2020-11-13 14:09 - 2020-11-13 14:10 - 000000000 ____D C:\Users\lynyr\AppData\Local\Big Fish 2020-11-12 12:18 - 2020-11-12 12:18 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin 2020-11-12 12:18 - 2020-11-12 12:18 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2020-11-12 12:17 - 2020-11-12 12:17 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2020-11-12 12:17 - 2020-11-12 12:17 - 000200704 _____ C:\WINDOWS\system32\IHDS.dll 2020-11-12 12:17 - 2020-11-12 12:17 - 000164864 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2020-11-10 14:31 - 2020-11-10 14:31 - 000000000 ____D C:\WINDOWS\system32\Intel 2020-11-10 13:01 - 2020-10-19 06:42 - 000069608 _____ C:\WINDOWS\system32\FvSDK_x64.dll 2020-11-10 13:01 - 2020-10-19 06:42 - 000058344 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll 2020-11-09 18:39 - 2020-11-09 18:40 - 000479103 _____ C:\Users\lynyr\Uninstall.exe 2020-11-09 18:39 - 2020-11-09 18:40 - 000000000 ____D C:\Users\lynyr\maintt 2020-11-09 18:39 - 2020-11-09 18:39 - 000000000 ____D C:\Users\lynyr\mainta 2020-11-09 18:39 - 2020-11-09 18:39 - 000000000 ____D C:\Users\lynyr\main 2020-11-09 18:33 - 2020-11-09 18:33 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Medal of Honor Allied Assault 2020-11-09 15:32 - 2020-11-09 15:32 - 000000000 ____D C:\Users\lynyr\AppData\Local\Viber 2020-11-09 14:22 - 2020-11-09 14:22 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2020-11-06 12:53 - 2020-11-06 12:53 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\GageaNative 2020-11-06 11:55 - 2020-11-06 11:55 - 000000000 ____D C:\ProgramData\Malwarebytes ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-12-06 14:39 - 2018-10-05 15:29 - 000000000 ____D C:\Users\lynyr\AppData\LocalLow\Mozilla 2020-12-06 14:37 - 2020-07-13 20:07 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-12-06 14:37 - 2020-07-13 20:07 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-12-06 14:37 - 2020-07-09 23:18 - 000003924 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-12-06 14:37 - 2020-07-09 23:18 - 000003818 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1548511879 2020-12-06 14:37 - 2020-07-09 23:18 - 000003618 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-12-06 14:37 - 2020-07-09 23:18 - 000003590 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1548511876 2020-12-06 14:37 - 2020-07-09 23:18 - 000003516 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-12-06 14:37 - 2020-07-09 23:18 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-12-06 14:37 - 2020-07-09 23:18 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000003292 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-12-06 14:37 - 2020-07-09 23:18 - 000003262 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2020-12-06 14:37 - 2020-07-09 23:18 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000003030 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-12-06 14:37 - 2020-07-09 23:18 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002896 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe 2020-12-06 14:37 - 2020-07-09 23:18 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1284899225-1928332732-1002248254-1001 2020-12-06 14:37 - 2020-07-09 23:18 - 000002860 _____ C:\WINDOWS\system32\Tasks\TrackerAutoUpdate 2020-12-06 14:37 - 2020-07-09 23:18 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1284899225-1928332732-1002248254-500 2020-12-06 14:37 - 2020-07-09 23:18 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002590 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2020-12-06 14:37 - 2020-07-09 23:18 - 000002468 _____ C:\WINDOWS\system32\Tasks\HPEA3JOBS 2020-12-06 14:37 - 2020-07-09 23:18 - 000002374 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe 2020-12-06 14:37 - 2020-07-09 23:18 - 000002370 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_itype.exe 2020-12-06 14:37 - 2020-07-09 23:18 - 000002304 _____ C:\WINDOWS\system32\Tasks\PCA Application Restart {4495649a-1497-4cbd-b902-aa7c361a813a} 2020-12-06 14:37 - 2020-07-09 23:18 - 000002280 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2020-12-06 14:37 - 2019-04-19 14:09 - 000000616 _____ C:\WINDOWS\Tasks\TrackerAutoUpdate.job 2020-12-06 14:26 - 2018-10-06 12:43 - 000000000 ____D C:\Users\lynyr\OneDrive\Documents\Fichiers Outlook 2020-12-06 14:23 - 2018-04-12 00:38 - 000000192 _____ C:\WINDOWS\win.ini 2020-12-06 14:22 - 2020-04-27 07:47 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MeshLab 2020-12-06 14:22 - 2020-02-14 13:04 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender 2020-12-06 14:22 - 2020-02-10 12:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultimaker Cura 4.4 2020-12-06 14:22 - 2019-12-10 13:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Ghost Warrior Contracts Game [GOG.com] 2020-12-06 14:22 - 2019-11-23 21:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Deluxe Edition 2020-12-06 14:22 - 2019-11-21 19:13 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TomTom Intl 2020-12-06 14:22 - 2019-10-19 14:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty WWII 2020-12-06 14:22 - 2019-10-19 02:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield™ V 2020-12-06 14:22 - 2019-09-25 17:24 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft ProduKey 2020-12-06 14:22 - 2019-07-17 13:07 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMP Font Viewer 2020-12-06 14:22 - 2019-06-26 13:36 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MusicBee 2020-12-06 14:22 - 2019-04-08 17:43 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GoldWave 2020-12-06 14:22 - 2019-04-08 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2020-12-06 14:22 - 2019-04-02 13:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EncryptOnClick 2020-12-06 14:22 - 2019-02-23 11:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free MOV to AVI Converter (32-bit) 2020-12-06 14:22 - 2018-10-24 13:22 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Photo Recovery 2020-12-06 14:22 - 2018-10-13 22:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2020-12-06 14:22 - 2018-10-12 19:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server 2020-12-06 14:22 - 2018-10-10 19:10 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2020-12-06 14:22 - 2018-10-06 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit) 2020-12-06 14:22 - 2018-10-06 03:05 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dreamboxEDIT 2020-12-06 14:21 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-12-06 14:14 - 2018-10-05 17:29 - 000000000 ____D C:\Program Files\Emsisoft Anti-Malware 2020-12-06 13:05 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-12-06 13:05 - 2018-10-05 14:58 - 000000000 ____D C:\ProgramData\NVIDIA 2020-12-06 13:00 - 2018-10-06 12:21 - 000000000 ____D C:\Users\lynyr\AppData\Local\CrashDumps 2020-12-06 12:45 - 2019-01-07 17:08 - 000000000 ____D C:\ProgramData\AVG 2020-12-06 01:23 - 2020-07-09 23:15 - 001777418 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-12-06 01:23 - 2019-03-19 13:01 - 000793190 _____ C:\WINDOWS\system32\perfh00C.dat 2020-12-06 01:23 - 2019-03-19 13:01 - 000150222 _____ C:\WINDOWS\system32\perfc00C.dat 2020-12-06 01:23 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF 2020-12-06 01:17 - 2020-07-09 23:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-12-06 01:17 - 2019-10-18 11:09 - 000000150 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2020-12-06 01:17 - 2019-10-18 11:08 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper 2020-12-06 01:13 - 2020-07-09 23:09 - 000000000 ____D C:\Users\lynyr 2020-12-06 01:11 - 2020-09-03 15:24 - 000000000 ____D C:\Program Files (x86)\tolas 2020-12-06 01:07 - 2019-03-19 05:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2020-12-05 23:53 - 2020-07-09 23:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-12-05 23:47 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-12-05 23:47 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-12-05 23:27 - 2018-10-11 10:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-12-05 23:11 - 2020-07-03 21:51 - 000000000 ___DC C:\WINDOWS\Panther 2020-12-05 23:11 - 2019-04-11 00:15 - 000000000 ____D C:\WINDOWS\pss 2020-12-05 23:07 - 2019-10-15 13:45 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2020-12-05 22:01 - 2019-04-04 13:51 - 000001024 ____H C:\AMTAG.BIN 2020-12-05 21:39 - 2019-10-18 11:09 - 000001024 ____H C:\SYSTAG.BIN 2020-12-05 21:21 - 2018-10-11 10:23 - 000795000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2020-12-05 21:10 - 2020-07-09 23:05 - 000486528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-12-05 21:08 - 2020-07-09 23:18 - 000000000 ____D C:\WINDOWS\system32\Tasks\System 2020-12-05 21:08 - 2020-07-09 23:09 - 000000000 ____D C:\Users\Administrateur 2020-12-05 21:02 - 2019-03-19 05:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-12-05 20:50 - 2019-05-26 11:10 - 000002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2020-12-05 20:50 - 2019-05-26 11:10 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2020-12-05 20:50 - 2018-10-05 14:56 - 000000000 ____D C:\Users\lynyr\AppData\Local\Packages 2020-12-05 20:49 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-12-05 20:15 - 2018-10-13 22:50 - 000000000 ____D C:\ProgramData\IObit 2020-12-05 16:52 - 2020-05-15 17:20 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Lavasoft 2020-12-05 16:52 - 2020-05-15 17:20 - 000000000 ____D C:\Users\lynyr\AppData\Local\Lavasoft 2020-12-05 16:52 - 2020-05-15 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2020-12-05 16:52 - 2020-05-15 17:20 - 000000000 ____D C:\ProgramData\Lavasoft 2020-12-05 16:52 - 2020-05-15 17:20 - 000000000 ____D C:\Program Files (x86)\Lavasoft 2020-12-05 16:17 - 2018-10-05 21:46 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-12-05 16:17 - 2018-10-05 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-12-05 16:14 - 2019-03-21 10:20 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-12-05 16:14 - 2019-03-21 10:20 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-12-05 16:14 - 2019-03-21 10:20 - 000002258 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-12-05 14:43 - 2020-10-26 13:39 - 000000000 ____D C:\ftpTemp 2020-12-05 14:43 - 2020-10-15 13:12 - 000000000 ____D C:\meshmixer 2020-12-05 14:43 - 2020-09-18 14:33 - 000000000 ___HD C:\$WinREAgent 2020-12-05 14:43 - 2020-04-08 13:26 - 000000000 ____D C:\Friendly_Robotics 2020-12-05 14:43 - 2020-03-15 09:29 - 000000000 ____D C:\AdwCleaner 2020-12-05 14:43 - 2019-04-09 20:41 - 000000000 ____D C:\ESD 2020-12-05 14:43 - 2019-04-08 21:10 - 000000000 ___HD C:\$AV_AVG 2020-12-05 14:43 - 2019-04-07 00:55 - 000000000 ____D C:\MSI 2020-12-05 14:43 - 2018-12-19 00:29 - 000000000 ____D C:\Red.Orchestra.Ostfront.41-45 2020-12-05 14:43 - 2018-10-05 14:56 - 000000000 ____D C:\Users\lynyr\AppData\Local\VirtualStore 2020-12-05 14:31 - 2019-11-28 18:20 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\iMazing 2020-12-05 14:20 - 2020-09-09 09:17 - 000000000 ____D C:\ProgramData\iRinger 2020-12-05 14:13 - 2018-10-10 21:43 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\vlc 2020-12-05 11:46 - 2020-07-13 20:07 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-12-05 11:46 - 2020-07-13 20:07 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2020-12-05 11:46 - 2020-07-13 20:07 - 000002280 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2020-12-05 11:45 - 2019-08-23 17:19 - 000000000 ____D C:\ProgramData\SupremoRemoteDesktop 2020-12-04 15:02 - 2020-04-23 14:59 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Autodesk 2020-12-04 14:47 - 2018-10-05 17:01 - 000000000 ____D C:\Users\lynyr\AppData\Local\D3DSCache 2020-12-04 14:32 - 2020-04-19 23:46 - 000000000 ____D C:\Users\lynyr\AppData\Local\Autodesk 2020-12-02 21:26 - 2018-10-27 10:25 - 000000000 ____D C:\Users\lynyr\OneDrive\Documents\Mes fichiers PSP 2020-12-02 14:22 - 2018-10-16 10:23 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\ViberPC 2020-12-02 14:21 - 2019-08-11 19:22 - 000000000 ____D C:\Users\lynyr\OneDrive\Documents\ViberDownloads 2020-12-01 11:57 - 2019-03-02 23:25 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firetrust Limited 2020-12-01 11:57 - 2019-03-02 23:25 - 000000000 ____D C:\Users\lynyr\AppData\Local\HideAway 2020-12-01 11:56 - 2019-03-02 23:25 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\HideAway 2020-12-01 11:51 - 2020-09-09 10:24 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\audacity 2020-12-01 00:18 - 2019-08-23 17:20 - 000000000 ____D C:\Program Files (x86)\Supremo 2020-11-29 21:10 - 2018-10-30 14:23 - 000000000 ____D C:\Program Files\Recuva 2020-11-29 16:10 - 2018-10-05 21:51 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\TeamViewer 2020-11-28 16:00 - 2018-11-28 18:30 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\WhatsApp 2020-11-27 11:43 - 2019-09-24 21:50 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\DAEMON Tools Pro 2020-11-26 19:34 - 2019-07-03 11:46 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-11-26 19:27 - 2019-10-02 15:44 - 000000000 ____D C:\Users\Public\BlueStacks 2020-11-26 19:27 - 2019-10-02 15:44 - 000000000 ____D C:\Users\lynyr\AppData\Local\BlueStacks 2020-11-24 18:29 - 2019-01-18 20:49 - 000000000 ____D C:\ProgramData\MEGAsync 2020-11-24 16:21 - 2019-10-14 12:47 - 000000000 ____D C:\ProgramData\TEMP 2020-11-23 12:03 - 2018-11-28 18:30 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2020-11-23 12:03 - 2018-11-28 18:30 - 000000000 ____D C:\Users\lynyr\AppData\Local\SquirrelTemp 2020-11-22 20:01 - 2020-10-16 10:07 - 000176808 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys 2020-11-22 20:01 - 2020-06-04 19:05 - 000521816 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgNetHub.sys 2020-11-22 20:01 - 2020-05-14 10:14 - 000037216 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArDisk.sys 2020-11-22 20:01 - 2019-01-14 18:37 - 000332432 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdriver.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000851680 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000469896 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000326488 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000247952 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsh.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000206472 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000109352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000097424 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniv.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000084928 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000042848 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgKbd.sys 2020-11-22 20:01 - 2019-01-11 18:36 - 000016832 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgElam.sys 2020-11-22 12:41 - 2020-02-05 15:11 - 000000000 ____D C:\Users\lynyr\AppData\Local\cura 2020-11-22 12:41 - 2020-02-05 15:08 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\cura 2020-11-22 10:19 - 2018-10-05 15:29 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-11-21 23:12 - 2020-09-09 08:25 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2020-11-21 13:56 - 2018-10-12 19:02 - 000000000 ____D C:\ProgramData\PMS 2020-11-21 10:19 - 2018-10-05 15:29 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-11-20 10:25 - 2020-02-12 13:08 - 000000000 ____D C:\Program Files\PDF Architect 7 2020-11-20 10:25 - 2020-02-12 13:07 - 000000000 ____D C:\ProgramData\PDF Architect 7 2020-11-17 23:38 - 2019-01-30 14:00 - 000000000 ____D C:\Users\lynyr\DCC_E2 2020-11-16 12:27 - 2018-10-17 14:47 - 000000000 ____D C:\Users\lynyr\AppData\Roaming\FileZilla 2020-11-14 00:56 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-11-14 00:55 - 2018-10-05 14:57 - 000000000 ____D C:\Users\lynyr\AppData\Local\PlaceholderTileLogoFolder 2020-11-14 00:55 - 2018-10-05 14:56 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-11-14 00:55 - 2018-10-05 14:56 - 000000000 ___RD C:\Users\lynyr\3D Objects 2020-11-14 00:51 - 2019-03-19 13:04 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\TextInput 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\setup 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-11-14 00:51 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-11-12 12:24 - 2018-10-05 21:11 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-11-12 12:21 - 2018-10-05 21:11 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-11-12 12:17 - 2020-07-09 23:06 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2020-11-12 11:00 - 2020-02-19 15:23 - 000907064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll 2020-11-12 10:59 - 2020-09-09 08:25 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll 2020-11-11 13:36 - 2020-10-17 11:03 - 000842296 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2020-11-11 13:36 - 2020-10-17 11:03 - 000175160 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2020-11-11 13:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-11-11 13:36 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-11-10 17:03 - 2020-08-28 12:32 - 000000000 ____D C:\Users\Public\Desktop\Call of Duty Deluxe Edition 2020-11-10 17:03 - 2020-08-28 12:32 - 000000000 ____D C:\ProgramData\Desktop\Call of Duty Deluxe Edition 2020-11-10 13:01 - 2019-04-06 23:44 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2020-11-10 13:01 - 2019-04-06 23:44 - 000001447 _____ C:\ProgramData\Desktop\GeForce Experience.lnk 2020-11-10 13:01 - 2018-10-05 14:58 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-11-10 13:01 - 2018-10-05 14:58 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2020-11-10 13:00 - 2018-10-05 14:58 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-11-09 18:33 - 2020-02-03 17:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics ==================== Fichiers à la racine de certains dossiers ======== 2020-11-09 18:39 - 2020-11-09 18:40 - 000479103 _____ () C:\Users\lynyr\Uninstall.exe 2019-03-26 16:30 - 2019-03-26 17:43 - 000000361 _____ () C:\Users\lynyr\AppData\Roaming\basic.ini 2020-01-22 13:02 - 2020-01-22 13:02 - 000041233 _____ () C:\Users\lynyr\AppData\Roaming\gtrfedyunhb.exe 2018-12-07 02:07 - 2019-10-01 12:23 - 000000600 _____ () C:\Users\lynyr\AppData\Roaming\winscp.rnd 2019-06-23 18:01 - 2019-07-07 16:22 - 000000426 _____ () C:\Users\lynyr\AppData\Local\BFR6lastusedsettings.dpt6 2020-12-05 14:41 - 2020-12-05 14:41 - 000000562 _____ () C:\Users\lynyr\AppData\Local\bowsakkdestx.txt 2019-09-06 09:30 - 2019-09-06 09:30 - 000004608 _____ () C:\Users\lynyr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2018-10-20 15:48 - 2019-10-01 12:49 - 000000600 _____ () C:\Users\lynyr\AppData\Local\PUTTY.RND ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================