Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-01-2021 Exécuté par Laurence (administrateur) sur DESKTOP-L6HHTA0 (Hewlett-Packard HP ENVY dv7 Notebook PC) (06-01-2021 14:31:07) Exécuté depuis C:\Users\Laurence\Downloads Profils chargés: Laurence Platform: Windows 10 Home Version 20H2 19042.685 (X64) Langue: Français (France) Navigateur par défaut: Opera Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_6ca78a08b838e305\RstMwService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe (Microsoft Windows -> Microsoft Corporation) C:\Users\Laurence\AppData\Local\Temp\43D38E3E-0D62-4219-8902-BE54262AD082\DismHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (Microsoft Windows Hardware Compatibility Publisher -> Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Opera Software AS -> Opera Software) C:\Users\Laurence\AppData\Local\Programs\Opera\73.0.3856.284\opera.exe <39> (Opera Software AS -> Opera Software) C:\Users\Laurence\AppData\Local\Programs\Opera\73.0.3856.284\opera_crashreporter.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mep.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (voidtools -> ) C:\Program Files (x86)\Everything\Everything.exe <3> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01B58F11-BE3D-43E3-87BA-64AB4E4AB551} - \Avast Emergency Update -> Pas de fichier <==== ATTENTION Task: {35B99FCD-1C5B-4D06-89EF-AF1A21AF52A9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {41DEA821-DC48-4B76-95D0-F0DEFA46CE23} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe Task: {593BAA27-2DBD-4653-A8F8-A31BB6A46448} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {63DEAF43-D246-4C9D-9B61-CAE6C5F7C400} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {855B5EC5-5C0A-4649-8128-DAB6D1466C40} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {90969F3E-6090-42C3-B495-480475AA4EA5} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe Task: {92B0D516-3F99-48B0-93A0-847803F21CE2} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{39abc9b5-006d-4198-9d7c-6be9936a75f5}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{3b88c04e-6ae8-4a16-927c-a92c0a6ef86b}: [DhcpNameServer] 10.0.0.243 Tcpip\..\Interfaces\{3f73a96c-131e-400a-9221-e57ad2997d0d}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{483893f5-dbaa-4029-aa6d-e4e26ba6787c}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4f1a63f3-b9e0-4289-9626-6193a488838d}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{695c37af-b9c4-41bf-9279-9164f94a71a9}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{eb3de3f4-a267-4ef4-b86a-116d3a9f37c2}: [DhcpNameServer] 192.168.43.1 Edge: ====== DownloadDir: C:\Users\Laurence\Downloads Edge Notifications: HKU\S-1-5-21-2293340339-3455285971-2507039445-1004 -> hxxps://dailyuploads.net Edge DefaultProfile: Default Edge HKLM\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh] Edge HKU\S-1-5-21-2293340339-3455285971-2507039445-1004\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh] Edge HKLM-x32\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh] FireFox: ======== FF DefaultProfile: y59fjvmq.default FF DefaultProfile: jquv71py.default FF ProfilePath: C:\Users\Laurence\AppData\Roaming\Mozilla\Firefox\Profiles\y59fjvmq.default [2021-01-06] FF ProfilePath: C:\Users\Laurence\AppData\Roaming\Mozilla\Firefox\Profiles\ehg7yq5l.default-release-1609855930365 [2021-01-06] FF ProfilePath: C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default [2020-12-28] FF Extension: (Czech (CZ) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-cs@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Deutsch (DE) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-de@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (English (US) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-en-US@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Español (España) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-es-ES@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Finnish Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-fi@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Français Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-fr@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Galego (España) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-gl@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Hebrew (IL) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-he@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Magyar (HU) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-hu@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Italiano (IT) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-it@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Japanese Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-ja@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Korean (KR) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-ko@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Nederlands (NL) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-nl@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Polski Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-pl@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Russian (RU) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-ru@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Slovenski jezik Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-sl@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (српски (sr) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-sr@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Svenska (SE) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-sv-SE@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Chinese Simplified (zh-CN) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-zh-CN@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF Extension: (Traditional Chinese (zh-TW) Language Pack) - C:\Users\Laurence\AppData\Roaming\Disruptive Innovations SARL\BlueGriffon\Profiles\jquv71py.default\Extensions\langpack-zh-TW@bluegriffon.org.xpi [2020-03-26] [] [non signé] FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2020-02-26] [] [non signé] FF HKU\S-1-5-21-2293340339-3455285971-2507039445-1004\...\Firefox\Extensions: [{d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}] - C:\Users\Laurence\Program Files (x86)\DNA FF Extension: (DNA) - C:\Users\Laurence\Program Files (x86)\DNA [2020-02-25] [] [non signé] FF Plugin-x32: @bittorrent.com/BitTorrentDNA -> C:\Program Files (x86)\DNA\plugins\npbtdna.dll [Pas de fichier] FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.10 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) Opera: ======= OPR Notifications: hxxps://community.lecrabeinfo.net OPR Extension: (Rich Hints Agent) - C:\Users\Laurence\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-10-23] OPR Extension: (Amazon Assistant for Opera) - C:\Users\Laurence\AppData\Roaming\Opera Software\Opera Stable\Extensions\mmmbddcnnndpbdflpccgcknaaabgldak [2020-12-24] OPR Extension: (Bookmarks Import & Export) - C:\Users\Laurence\AppData\Roaming\Opera Software\Opera Stable\Extensions\omhcddilnfoiiplehpjihipcocdplljn [2020-12-19] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [439616 2020-03-11] (Digital Wave Ltd -> Digital Wave Ltd) R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [40104 2019-11-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2019-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 Everything; C:\Program Files (x86)\Everything\Everything.exe [1710880 2019-01-26] (voidtools -> ) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [1995184 2020-07-08] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP) S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [379736 2020-08-20] (HP Inc. -> HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Fichier non signé] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-05] (Malwarebytes Inc -> Malwarebytes) R2 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 PrivateInternetAccessWireguard; C:\Program Files\Private Internet Access\pia-wgservice.exe [4448632 2020-12-09] (London Trust Media Incorporated -> ) R2 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [35328 2013-10-30] (Microsoft Windows Hardware Compatibility Publisher -> Validity Sensors, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [495720 2018-08-29] (Wondershare Technology Co.,Ltd -> Wondershare) S4 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-07-09] (Wondershare Technology Co.,Ltd -> Wondershare) S2 WsDrvInst; C:\Program Files (x86)\Wondershare\dr.fone\Library\DriverInstaller\DriverInstall.exe [120016 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare) S3 aswbIDSAgent; "C:\Program Files\Avast Software\Avast\aswidsagent.exe" [X] S2 avast! Antivirus; "C:\Program Files\Avast Software\Avast\AvastSvc.exe" /runassvc [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36792 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [208672 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [332880 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [247888 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [97360 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16832 2021-01-04] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42424 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [176384 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [522480 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108928 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84496 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851256 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469472 2021-01-04] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216984 2021-01-04] (Avast Software s.r.o. -> AVAST Software) S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-07] (AVAST Software s.r.o. -> The OpenVPN Project) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326064 2021-01-04] (Avast Software s.r.o. -> AVAST Software) S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) R0 EUBAKUP; C:\WINDOWS\System32\drivers\eubakup.sys [73448 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [53504 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> ) R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [22784 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [341760 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM Polska Sp. z o.o. -> IBM) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220160 2021-01-06] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-01-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2021-01-06] (Malwarebytes Inc -> Malwarebytes) R3 MpKslfaf8dad0; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B8B4C33E-51D1-441E-960B-412FBA3DDFB7}\MpKslDrv.sys [91376 2021-01-06] (Microsoft Windows -> Microsoft Corporation) R0 mrcbt; C:\WINDOWS\System32\drivers\mrcbt.sys [105240 2020-12-01] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R0 mrigflt; C:\WINDOWS\System32\drivers\mrigflt.sys [79840 2020-12-01] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2018-07-27] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R1 rsKernelEngine; C:\WINDOWS\System32\DRIVERS\rsKernelEngine.sys [47496 2020-11-27] (Reason Software Company Inc. -> Windows (R) Win 7 DDK provider) S3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-29] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) R3 rtbth; C:\WINDOWS\System32\drivers\rtbth.sys [1219200 2015-06-03] (MEDIATEK INC. -> Ralink Technology, Corp.) S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [25608 2020-12-28] (AVG Technologies CZ, s.r.o. -> SlimWare Utilities, Inc.) R3 tap-pia-0901; C:\WINDOWS\System32\drivers\tap-pia-0901.sys [39944 2020-01-27] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-01-06 14:24 - 2021-01-06 14:24 - 000520878 _____ C:\Users\Laurence\Downloads\ZHPDiag.html 2021-01-06 14:24 - 2021-01-06 14:24 - 000424497 _____ C:\Users\Laurence\Downloads\ZHPDiag.txt 2021-01-06 13:56 - 2021-01-06 13:56 - 000010123 _____ C:\Users\Laurence\Downloads\ZHPCleaner (R).html 2021-01-06 13:56 - 2021-01-06 13:56 - 000003330 _____ C:\Users\Laurence\Downloads\ZHPCleaner (R).txt 2021-01-06 13:08 - 2021-01-06 13:08 - 000009813 _____ C:\Users\Laurence\Downloads\ZHPCleaner (S).html 2021-01-06 13:08 - 2021-01-06 13:08 - 000003111 _____ C:\Users\Laurence\Downloads\ZHPCleaner (S).txt 2021-01-06 12:52 - 2021-01-06 12:52 - 000000891 _____ C:\Users\Laurence\Desktop\ZHPCleaner.lnk 2021-01-06 12:51 - 2021-01-06 12:51 - 003340936 _____ (Nicolas Coolman) C:\Users\Laurence\Downloads\ZHPCleaner.exe 2021-01-06 12:44 - 2021-01-06 12:44 - 000220160 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-01-06 12:42 - 2021-01-06 12:42 - 000000008 __RSH C:\ProgramData\ntuser.pol 2021-01-06 12:29 - 2021-01-06 12:36 - 000080706 _____ C:\Users\Laurence\Downloads\Fixlog.txt 2021-01-06 12:21 - 2021-01-06 12:20 - 000784568 _____ C:\Users\Laurence\Desktop\Login 2.pdf 2021-01-06 10:52 - 2021-01-06 10:53 - 000000000 ____D C:\Users\Laurence\Desktop\RevoPortable64 2021-01-05 18:09 - 2021-01-05 18:09 - 002286592 _____ (Farbar) C:\Users\Laurence\Downloads\Non confirmé 649396.crdownload 2021-01-05 18:08 - 2021-01-05 18:08 - 000334152 _____ (Mozilla) C:\Users\Laurence\Downloads\Non confirmé 759889.crdownload 2021-01-05 17:15 - 2021-01-05 17:15 - 000001623 _____ C:\Users\Laurence\Desktop\Compte.exe - Raccourci.lnk 2021-01-05 16:33 - 2021-01-05 16:33 - 021061128 _____ C:\Users\Laurence\Downloads\pia-windows-x64-2.6.1-05824.exe 2021-01-05 15:35 - 2021-01-05 15:37 - 001447178 _____ (Igor Pavlov) C:\Users\Laurence\Downloads\7z1900-x64.exe 2021-01-05 15:33 - 2021-01-05 15:33 - 009597383 _____ C:\Users\Laurence\Downloads\RevoUninstaller_Portable.zip 2021-01-05 15:31 - 2021-01-05 15:33 - 005621020 _____ C:\Users\Laurence\Downloads\Thomas Römer & Jacqueline Chabbi - Dieu de la Bible, Dieu du Coran.epub 2021-01-05 15:05 - 2021-01-05 15:05 - 000334152 _____ (Mozilla) C:\Users\Laurence\Downloads\Firefox Installer.exe 2021-01-05 13:44 - 2021-01-05 13:57 - 000072876 _____ C:\Users\Laurence\Downloads\Addition.txt 2021-01-05 13:31 - 2021-01-05 13:35 - 003479176 _____ (Nicolas Coolman) C:\Users\Laurence\Downloads\ZHPSuite (1).exe 2021-01-05 13:24 - 2021-01-06 14:33 - 000023779 _____ C:\Users\Laurence\Downloads\FRST.txt 2021-01-05 13:24 - 2021-01-05 13:24 - 000000834 _____ C:\Users\Laurence\Downloads\help.txt 2021-01-05 13:23 - 2021-01-05 13:23 - 000000000 ____D C:\Users\Laurence\Downloads\FRST-OlderVersion 2021-01-05 13:21 - 2021-01-06 14:32 - 000000000 ____D C:\FRST 2021-01-05 12:46 - 2021-01-06 14:24 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\ZHP 2021-01-05 12:46 - 2021-01-06 12:52 - 000000000 ____D C:\Users\Laurence\AppData\Local\ZHP 2021-01-05 12:17 - 2021-01-05 12:20 - 037142272 _____ (SysTools Software Pvt Ltd ) C:\Users\Laurence\Downloads\outlook-recovery.exe 2021-01-05 11:47 - 2021-01-05 13:23 - 002282496 _____ (Farbar) C:\Users\Laurence\Downloads\FRST64.exe 2021-01-05 11:46 - 2021-01-05 11:49 - 003479176 _____ (Nicolas Coolman) C:\Users\Laurence\Downloads\ZHPSuite.exe 2021-01-05 11:37 - 2021-01-05 11:37 - 000008570 _____ C:\Users\Laurence\Downloads\export analyse malwarebytes 1.txt 2021-01-05 11:36 - 2021-01-05 11:36 - 000009091 _____ C:\Users\Laurence\Downloads\export analyse malwarebytes.txt 2021-01-05 11:13 - 2021-01-06 08:43 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-01-05 11:12 - 2021-01-05 11:11 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-01-05 11:12 - 2021-01-05 11:11 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-01-05 01:05 - 2021-01-05 01:05 - 000000418 ___SH C:\Program Files\desktop.ini.id[E81DF93C-2275].[helprecover@foxmail.com].help 2021-01-05 00:02 - 2021-01-04 22:50 - 000340576 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2021-01-04 23:01 - 2021-01-04 22:54 - 000326064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2021-01-04 23:01 - 2021-01-04 22:53 - 000247888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys 2021-01-04 23:01 - 2021-01-04 22:53 - 000216984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2021-01-04 23:01 - 2021-01-04 22:53 - 000097360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000522480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000469472 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000176384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000108928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000084496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000042424 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2021-01-04 23:01 - 2021-01-04 22:52 - 000016832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys 2021-01-04 23:01 - 2021-01-04 22:47 - 000208672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2021-01-04 23:01 - 2021-01-04 22:47 - 000036792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys 2021-01-04 23:01 - 2021-01-04 22:46 - 000851256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2021-01-04 23:01 - 2021-01-04 22:46 - 000332880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys 2021-01-04 22:56 - 2021-01-04 22:56 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2021-01-04 22:51 - 2021-01-04 22:51 - 000000000 ____D C:\Users\Laurence\AppData\Local\mbam 2021-01-04 22:50 - 2021-01-05 11:13 - 000002006 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-01-04 22:44 - 2021-01-05 11:11 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-04 22:40 - 2021-01-04 22:40 - 000000000 ____D C:\Program Files\Malwarebytes 2021-01-04 22:35 - 2021-01-04 22:36 - 002086424 _____ (Malwarebytes) C:\Users\Laurence\Downloads\malwarebytes_4-3-0-98_fr_215092.exe 2021-01-04 22:32 - 2021-01-04 22:32 - 000222104 _____ (AVAST Software) C:\Users\Laurence\Downloads\avast_free_antivirus_setup_online.exe 2021-01-04 22:30 - 2021-01-04 22:30 - 006565432 _____ (EnigmaSoft Limited) C:\Users\Laurence\Downloads\SpyHunter-Installer.exe 2021-01-04 22:25 - 2021-01-04 22:25 - 000004610 _____ C:\LogFile.txt.id[E81DF93C-2275].[helprecover@foxmail.com].help 2021-01-04 22:24 - 2021-01-04 22:24 - 000401154 ___SH C:\EUMONBMP.SYS.id[E81DF93C-2275].[helprecover@foxmail.com].help 2021-01-04 22:24 - 2021-01-04 22:24 - 000000338 ___SH C:\bootTel.dat.id[E81DF93C-2275].[helprecover@foxmail.com].help 2021-01-04 22:24 - 2021-01-04 22:24 - 000000290 ____H C:\E432DA4202ED.id[E81DF93C-2275].[helprecover@foxmail.com].help 2021-01-04 22:12 - 2021-01-06 08:27 - 000000000 _____ C:\Recovery.txt 2021-01-04 22:12 - 2021-01-04 22:25 - 000000000 __SHD C:\found.001 2021-01-04 08:56 - 2021-01-04 08:56 - 000000000 ____D C:\Program Files\Avast Software 2021-01-04 08:54 - 2021-01-05 10:10 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC 2021-01-04 08:54 - 2021-01-05 10:10 - 000000000 ___HD C:\ProgramData\Documents\AdobeGC 2020-12-29 18:58 - 2020-12-29 18:58 - 000000000 ____D C:\Users\Public\Downloads\eMule 2020-12-29 17:32 - 2020-12-29 17:32 - 000055207 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] The.Bay.S01E03.FRENCH.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:32 - 2020-12-29 17:32 - 000033127 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] The.Bay.S01E01.FRENCH.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:32 - 2020-12-29 17:32 - 000032807 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] the.bay.s01e05.french.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:32 - 2020-12-29 17:32 - 000031827 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] The.Bay.S01E02.FRENCH.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:32 - 2020-12-29 17:32 - 000031707 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] The.Bay.S01E04.FRENCH.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:32 - 2020-12-29 17:32 - 000030693 _____ C:\Users\Laurence\Downloads\[ Torrent9.cz ] the.bay.s01e06.final.french.HDTV.XviD-EXTREME.avi.torrent 2020-12-29 17:20 - 2020-12-29 18:15 - 169390064 _____ C:\Users\Laurence\Downloads\Telerama_Magazine_-_26_Decembre_2020.pdf 2020-12-28 18:13 - 2020-12-28 18:13 - 000000000 ____D C:\Users\pepe 2020-12-28 16:38 - 2020-12-28 16:38 - 006291714 ____H C:\Users\Laurence\AppData\Local\IconCache.db.id[E81DF93C-2275].[helprecover@foxmail.com].help 2020-12-28 15:06 - 2020-12-28 15:06 - 000001282 ____H C:\AMTAG.BIN.id[E81DF93C-2275].[helprecover@foxmail.com].help 2020-12-28 14:51 - 2021-01-06 12:28 - 000000000 ____D C:\Users\Laurence\AppData\Local\VS Revo Group 2020-12-28 14:51 - 2020-12-28 14:51 - 000000000 ____D C:\ProgramData\VS Revo Group 2020-12-28 14:48 - 2020-12-28 15:05 - 000000014 _____ C:\ProgramData\kaosdma.txt 2020-12-27 21:34 - 2020-12-27 21:34 - 000177121 _____ C:\Users\Laurence\Downloads\Documentation - Clavier français avec majuscules accentuées.pdf 2020-12-27 21:20 - 2020-12-27 21:20 - 000000000 ____D C:\Users\Laurence\Downloads\clavier_majuscules_accentuees 2020-12-27 19:59 - 2020-12-27 19:59 - 000423960 _____ C:\Users\Laurence\Downloads\clavier_majuscules_accentuees.zip 2020-12-27 19:22 - 2020-12-28 14:58 - 000000000 ____D C:\Users\Laurence\AppData\Local\AVAST Software 2020-12-27 19:22 - 2020-12-28 12:42 - 000025608 _____ (SlimWare Utilities, Inc.) C:\WINDOWS\system32\Drivers\SWDUMon.sys 2020-12-27 17:53 - 2020-12-27 17:53 - 000122288 _____ C:\Users\Laurence\Documents\cc_20201227_175307.reg 2020-12-27 15:41 - 2020-12-27 17:28 - 000000000 ____D C:\WINDOWS\Minidump 2020-12-27 13:09 - 2021-01-05 14:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Updates 2020-12-27 13:07 - 2020-12-27 13:08 - 000000000 ____D C:\Users\Laurence\AppData\LocalLow\nb98wqnehe8bw89hb 2020-12-27 13:07 - 2020-12-27 13:07 - 000000717 _____ C:\Users\Laurence\AppData\LocalLow\outlook.txt 2020-12-27 11:38 - 2020-12-27 11:38 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files 2020-12-27 11:37 - 2020-12-27 13:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2020-12-27 11:37 - 2020-12-27 13:02 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft 2020-12-27 11:37 - 2020-12-27 11:37 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack 2020-12-27 11:35 - 2020-12-27 11:35 - 033450096 _____ (Digital Wave Ltd ) C:\Users\Laurence\Downloads\free-audio-converter_5-1-7-215_fr_434271.exe 2020-12-27 11:35 - 2020-12-27 11:35 - 000000000 ____D C:\Users\Laurence\Downloads\Soul.2020.Z1 2020-12-26 21:27 - 2020-12-26 21:27 - 000016256 _____ C:\Users\Laurence\Downloads\Soul.2020.720p.DSNP.WEB-DL.Sub.Rus.torrent 2020-12-25 11:29 - 2021-01-06 12:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-12-24 11:36 - 2020-12-24 11:36 - 000049449 _____ C:\Users\Laurence\Downloads\Attestation electeur Laurence - A02B01-M02-770245415.pdf 2020-12-24 11:36 - 2020-12-24 11:36 - 000049192 _____ C:\Users\Laurence\Downloads\Attestation electeur Lucien - A02B01-M02-99843450.pdf 2020-12-24 10:41 - 2020-12-24 10:41 - 000000000 ____D C:\Users\Laurence\.swt 2020-12-24 10:39 - 2021-01-04 15:29 - 000001836 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vuze.lnk 2020-12-24 10:38 - 2020-12-29 19:23 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\Azureus 2020-12-24 10:38 - 2020-12-26 20:13 - 000000000 ____D C:\Users\Laurence\Documents\Vuze Downloads 2020-12-24 10:36 - 2020-12-24 10:36 - 000091808 _____ (Azureus Software, Inc.) C:\Users\Laurence\Downloads\VuzeBittorrentClientInstaller.exe 2020-12-24 10:04 - 2021-01-05 15:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-12-23 14:27 - 2020-12-23 14:27 - 000466971 _____ C:\Users\Laurence\Downloads\Moliere - Appel N°2 - 2020 - 2021 - AF_CC_20210101_13284.pdf 2020-12-23 12:22 - 2020-12-23 12:22 - 000187691 _____ C:\Users\Laurence\Downloads\Attestation titulaires de contrat EDF.pdf 2020-12-22 17:49 - 2020-12-22 17:49 - 000012862 _____ C:\Users\Laurence\Downloads\Decompte-Paiement-PCI-2020-11-01-2020-11-30.pdf 2020-12-22 17:44 - 2020-12-22 17:44 - 000012860 _____ C:\Users\Laurence\Downloads\Decompte-Paiement-PCI-2020-12-01-2020-12-31.pdf 2020-12-21 12:27 - 2020-12-21 12:27 - 000091355 _____ C:\Users\Laurence\Downloads\devis 2020067.pdf 2020-12-19 15:00 - 2020-12-19 15:00 - 000003335 _____ C:\Users\Laurence\Downloads\Bookmarks (1).html 2020-12-19 14:56 - 2020-12-19 14:56 - 000003335 _____ C:\Users\Laurence\Downloads\Bookmarks.html 2020-12-17 21:38 - 2020-12-17 21:39 - 001374923 _____ C:\Users\Laurence\Downloads\A1cm53OvY5S.pdf 2020-12-17 21:38 - 2020-12-17 21:39 - 000618137 _____ C:\Users\Laurence\Downloads\911gvg8bq5S.pdf 2020-12-17 21:38 - 2020-12-17 21:39 - 000397914 _____ C:\Users\Laurence\Downloads\81zse1IdC8S.pdf 2020-12-17 21:15 - 2020-12-17 21:15 - 001033663 _____ C:\Users\Laurence\Downloads\Carte d'identité Lucien LEGUES.pdf 2020-12-17 21:15 - 2020-12-17 21:15 - 000955223 _____ C:\Users\Laurence\Downloads\Carte d'identité Laurence LEGUES.pdf 2020-12-17 21:13 - 2020-12-17 21:13 - 000279908 _____ C:\Users\Laurence\Downloads\Page de Facture EDF Lyon du 24 Juillet 2020.pdf 2020-12-17 12:13 - 2020-12-17 12:13 - 000002427 _____ C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-12-16 17:57 - 2021-01-05 16:39 - 000001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Private Internet Access.lnk 2020-12-16 14:03 - 2020-12-16 14:03 - 000046179 _____ C:\Users\Laurence\Downloads\Avis_de_taxe_d_habitation_CAP_2019.pdf 2020-12-16 14:01 - 2020-12-16 14:01 - 000164693 _____ C:\Users\Laurence\Downloads\Avis_de_taxes_foncieres_2020.pdf 2020-12-16 14:00 - 2020-12-16 14:00 - 000114029 _____ C:\Users\Laurence\Downloads\Avis_degrevement_de_taxes_foncieres_2020.pdf 2020-12-16 13:48 - 2020-12-16 13:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-12-14 11:17 - 2020-12-14 11:17 - 000302894 _____ C:\Users\Laurence\Downloads\attest 5.5% Legues Lucien.pdf 2020-12-14 11:17 - 2020-12-14 11:17 - 000283257 _____ C:\Users\Laurence\Downloads\Facture 1352.pdf 2020-12-13 16:45 - 2020-12-13 16:45 - 000489821 _____ C:\Users\Laurence\Downloads\LIDL - Bouilloire Soleyrols.pdf 2020-12-13 10:56 - 2020-12-13 10:56 - 000406096 _____ C:\Users\Laurence\Downloads\catalogue_de_produit_numerique_premium.pdf 2020-12-13 10:32 - 2020-12-13 10:32 - 000000182 _____ C:\Users\Laurence\Downloads\freewifi.txt 2020-12-13 10:08 - 2021-01-06 12:41 - 000559456 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-12-12 18:08 - 2020-12-12 18:08 - 000000000 ____D C:\Users\Laurence\Downloads\Norauto lattes 2020-12-12 10:29 - 2020-12-12 10:29 - 001148620 _____ C:\Users\Laurence\Downloads\Assurance cle USB - Documents Protect.pdf 2020-12-11 20:56 - 2020-12-11 20:56 - 000051997 _____ C:\Users\Laurence\Documents\nORA0117_731260.pdf 2020-12-10 10:43 - 2020-12-10 10:43 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2020-12-10 10:43 - 2020-12-10 10:43 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2020-12-10 10:43 - 2020-12-10 10:43 - 000010912 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-01-06 14:21 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-06 13:56 - 2020-11-20 20:28 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\IObit 2021-01-06 13:51 - 2020-12-02 13:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-01-06 12:45 - 2020-02-22 15:28 - 000000000 __SHD C:\Users\Laurence\IntelGraphicsProfiles 2021-01-06 12:42 - 2020-12-01 14:31 - 000000000 ____D C:\ProgramData\NVIDIA 2021-01-06 12:41 - 2020-12-02 14:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-01-06 12:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-01-06 12:40 - 2020-12-02 13:50 - 000008192 ___SH C:\DumpStack.log.tmp 2021-01-06 12:38 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-01-06 12:35 - 2020-04-21 13:37 - 000000000 ____D C:\Users\Laurence\AppData\LocalLow\Temp 2021-01-06 12:32 - 2020-12-02 12:54 - 000000000 ____D C:\Users\Laurence 2021-01-06 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-01-06 12:32 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-01-06 12:26 - 2020-02-24 14:09 - 000000000 ____D C:\Program Files (x86)\Adobe 2021-01-06 12:22 - 2020-02-24 14:09 - 000000000 ____D C:\ProgramData\Adobe 2021-01-06 12:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-01-06 11:55 - 2020-11-20 20:28 - 000000000 ____D C:\ProgramData\IObit 2021-01-06 11:36 - 2020-11-20 20:32 - 000000000 ____D C:\ProgramData\ProductData 2021-01-06 10:51 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-06 09:05 - 2020-05-04 15:49 - 000000000 ____D C:\Users\Laurence\AppData\LocalLow\IGDump 2021-01-06 08:37 - 2020-11-19 21:02 - 000000000 ____D C:\WINDOWS\pss 2021-01-06 08:29 - 2020-02-22 16:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-06 08:11 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-01-05 19:01 - 2020-02-22 16:20 - 000000000 ____D C:\Users\Laurence\AppData\Local\Everything 2021-01-05 19:01 - 2020-02-22 15:55 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\Everything 2021-01-05 18:07 - 2020-02-22 16:01 - 000000000 ____D C:\Users\Laurence\AppData\LocalLow\Mozilla 2021-01-05 17:14 - 2020-02-25 18:31 - 000000000 ____D C:\Program Files (x86)\Compte pour Windows 2021-01-05 16:39 - 2020-02-25 17:07 - 000000000 ____D C:\Program Files\Private Internet Access 2021-01-05 15:48 - 2016-09-29 10:00 - 000000000 ____D C:\Users\Laurence\Downloads\RevoUninstaller_Portable 2021-01-05 15:40 - 2020-02-23 17:34 - 000000737 _____ C:\Users\Laurence\Desktop\Lucien.lnk 2021-01-05 15:36 - 2020-02-24 14:14 - 000000000 ____D C:\Program Files\7-Zip 2021-01-05 15:23 - 2020-02-22 16:01 - 000000000 ____D C:\ProgramData\Mozilla 2021-01-05 15:13 - 2020-04-11 12:04 - 000000000 ____D C:\Users\Laurence\Desktop\Anciennes données de Firefox 2021-01-05 15:11 - 2020-02-22 16:01 - 000000978 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-05 15:01 - 2020-11-26 14:16 - 000001443 _____ C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2021-01-05 12:06 - 2020-02-27 15:27 - 000000000 ____D C:\Users\Laurence\AppData\Local\CrashDumps 2021-01-05 11:37 - 2020-02-24 20:25 - 000000000 ____D C:\Program Files (x86)\VueScan 2021-01-05 10:48 - 2020-04-14 09:45 - 000000000 ____D C:\Program Files\ZAR 2021-01-05 10:48 - 2020-04-10 10:05 - 000000000 ____D C:\Program Files\WinHTTrack 2021-01-05 10:34 - 2020-03-28 18:40 - 000000000 ____D C:\Users\Laurence\AppData\Local\ElevatedDiagnostics 2021-01-05 10:28 - 2020-11-30 18:40 - 000000000 ___DC C:\WINDOWS\Panther 2021-01-05 10:12 - 2020-11-18 13:59 - 000000000 ____D C:\Program Files\Microsoft Mouse and Keyboard Center 2021-01-05 03:36 - 2020-12-05 12:08 - 000000000 ____D C:\Program Files\USB Disk Storage Format Tool 2021-01-05 03:36 - 2020-02-24 20:44 - 000000000 ____D C:\Program Files\VueScan 2021-01-05 03:35 - 2020-11-22 15:32 - 000000000 ____D C:\Program Files\Unknown Device Identifier 2021-01-05 03:35 - 2020-11-06 18:02 - 000000000 ____D C:\Program Files\Unlocker 2021-01-05 03:29 - 2020-11-19 19:10 - 000000000 ____D C:\Program Files\Speccy 2021-01-05 03:26 - 2020-03-14 19:16 - 000000000 ____D C:\Program Files\Recuva 2021-01-05 03:18 - 2020-11-22 20:27 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-01-05 03:10 - 2020-10-01 11:23 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-01-05 01:54 - 2020-03-13 15:27 - 000000000 ____D C:\Program Files\Mem Reduct 2021-01-05 01:41 - 2020-02-21 20:32 - 000000000 ____D C:\Program Files\KeyboardNotification 2021-01-05 01:29 - 2020-02-26 09:50 - 000000000 ____D C:\Program Files\Glovius 2021-01-05 01:05 - 2020-11-17 17:28 - 000000000 ____D C:\Program Files\DriversCloud.com 2021-01-05 00:56 - 2020-07-08 06:48 - 000000000 ____D C:\Program Files\Common Files\Autodesk Shared 2021-01-05 00:56 - 2020-02-25 23:04 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2021-01-05 00:54 - 2020-06-02 15:00 - 000000000 ____D C:\Program Files\CAD Exchanger 2021-01-05 00:47 - 2020-04-16 09:50 - 000000000 ____D C:\Program Files\Avidemux 2.7 VC++ 64bits 2021-01-05 00:02 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-01-04 23:11 - 2020-02-22 15:55 - 000001121 _____ C:\Users\Laurence\Desktop\Chercher tout.lnk 2021-01-04 23:10 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-01-04 22:43 - 2020-04-12 17:27 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2021-01-04 22:43 - 2020-04-12 17:27 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2021-01-04 15:33 - 2020-12-02 19:26 - 000000976 _____ C:\Users\Public\Desktop\EPSON Scanner XP-205.lnk 2021-01-04 15:33 - 2020-12-02 19:26 - 000000976 _____ C:\ProgramData\Desktop\EPSON Scanner XP-205.lnk 2021-01-04 15:33 - 2020-11-28 17:34 - 000001452 _____ C:\Users\Public\Desktop\Streaming Video Recorder.lnk 2021-01-04 15:33 - 2020-11-28 17:34 - 000001452 _____ C:\ProgramData\Desktop\Streaming Video Recorder.lnk 2021-01-04 15:33 - 2020-11-21 21:10 - 000001251 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2021-01-04 15:33 - 2020-11-21 21:10 - 000001251 _____ C:\ProgramData\Desktop\Mozilla Thunderbird.lnk 2021-01-04 15:33 - 2020-03-30 08:11 - 000001360 _____ C:\Users\Public\Desktop\Skype.lnk 2021-01-04 15:33 - 2020-03-30 08:11 - 000001360 _____ C:\ProgramData\Desktop\Skype.lnk 2021-01-04 15:33 - 2020-02-25 19:08 - 000001424 _____ C:\Users\Public\Desktop\Video Download Capture.lnk 2021-01-04 15:33 - 2020-02-25 19:08 - 000001424 _____ C:\ProgramData\Desktop\Video Download Capture.lnk 2021-01-04 15:33 - 2020-02-25 17:23 - 000002549 _____ C:\Users\Public\Desktop\CATIA P3 V5R19.lnk 2021-01-04 15:33 - 2020-02-25 17:23 - 000002549 _____ C:\ProgramData\Desktop\CATIA P3 V5R19.lnk 2021-01-04 15:33 - 2020-02-24 20:19 - 000001019 _____ C:\Users\Public\Desktop\VueScan x64.lnk 2021-01-04 15:33 - 2020-02-24 20:19 - 000001019 _____ C:\ProgramData\Desktop\VueScan x64.lnk 2021-01-04 15:32 - 2020-09-22 13:23 - 000001183 _____ C:\Users\Laurence\Desktop\Sweet Home 3D.lnk 2021-01-04 15:32 - 2020-06-02 15:17 - 000001355 _____ C:\Users\Laurence\Desktop\ABViewer 14.lnk 2021-01-04 15:32 - 2020-06-02 15:00 - 000002101 _____ C:\Users\Laurence\Desktop\CAD Exchanger.lnk 2021-01-04 15:32 - 2020-05-25 17:20 - 000002216 _____ C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2021-01-04 15:32 - 2020-04-03 13:54 - 000001243 _____ C:\Users\Laurence\Desktop\FileZilla.lnk 2021-01-04 15:32 - 2020-03-30 17:09 - 000002434 _____ C:\Users\Laurence\Desktop\Molotov.lnk 2021-01-04 15:32 - 2020-03-29 19:28 - 000002352 _____ C:\Users\Laurence\Desktop\WhatsApp.lnk 2021-01-04 15:32 - 2020-03-13 15:27 - 000000887 _____ C:\Users\Laurence\Desktop\Mem Reduct.lnk 2021-01-04 15:32 - 2020-02-26 09:50 - 000000993 _____ C:\Users\Laurence\Desktop\Glovius.lnk 2021-01-04 15:32 - 2020-02-25 18:56 - 000001966 _____ C:\Users\Laurence\Desktop\CATIA_P3_homepage.htm - Raccourci.lnk 2021-01-04 15:32 - 2020-02-25 18:31 - 000001194 _____ C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Compte pour Windows.LNK 2021-01-04 15:29 - 2020-11-21 21:10 - 000001263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2021-01-04 15:29 - 2020-11-18 13:59 - 000002399 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Centre Souris et Claviers Microsoft.lnk 2021-01-04 15:29 - 2020-05-25 17:20 - 000002262 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2021-01-04 15:29 - 2020-04-18 17:22 - 000001171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Altap Salamander (x86).lnk 2021-01-04 15:29 - 2020-02-24 20:25 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\VueScan x32.lnk 2021-01-04 15:29 - 2020-02-24 20:19 - 000001025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\VueScan x64.lnk 2021-01-04 15:29 - 2020-02-24 19:43 - 000001919 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk 2021-01-04 08:55 - 2020-02-26 15:49 - 000000000 ____D C:\ProgramData\AVAST Software 2020-12-29 21:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-12-29 19:41 - 2020-03-18 10:55 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\deluge 2020-12-29 19:40 - 2020-02-23 11:28 - 000000000 ____D C:\Users\Laurence\Documents\Fichiers Outlook 2020-12-29 18:15 - 2020-03-30 17:09 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\Molotov 2020-12-29 18:11 - 2020-02-27 12:04 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\vlc 2020-12-29 12:25 - 2020-12-01 14:36 - 000000000 ____D C:\Users\Laurence\AppData\Local\NVIDIA Corporation 2020-12-28 19:40 - 2020-02-26 15:52 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\AVAST Software 2020-12-28 18:03 - 2020-02-22 15:02 - 000000000 ____D C:\Users\Lucien\AppData\Local\Everything 2020-12-28 18:01 - 2020-02-28 17:58 - 000000000 ____D C:\Users\Laurence\Bibliothèque calibre 2020-12-28 16:41 - 2020-04-03 13:26 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\FileZilla 2020-12-28 16:30 - 2020-11-17 17:28 - 000000000 ____D C:\ProgramData\DriversCloud.com 2020-12-28 16:02 - 2020-02-21 21:45 - 000000000 ____D C:\Applications sans registre 2020-12-28 15:04 - 2020-04-06 10:55 - 000000000 ____D C:\AdwCleaner 2020-12-28 15:02 - 2020-04-03 09:46 - 000000000 ____D C:\.android 2020-12-28 14:31 - 2020-12-01 14:36 - 000000000 ____D C:\Users\Laurence\AppData\Local\NVIDIA 2020-12-28 14:31 - 2020-12-01 14:26 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-12-28 14:31 - 2020-11-22 20:31 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-12-27 21:30 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2020-12-27 21:30 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-12-27 19:52 - 2020-02-26 17:02 - 000000000 ____D C:\SWSetup 2020-12-27 18:39 - 2020-12-02 14:16 - 001774974 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-12-27 18:39 - 2019-12-07 15:49 - 000792870 _____ C:\WINDOWS\system32\perfh00C.dat 2020-12-27 18:39 - 2019-12-07 15:49 - 000150000 _____ C:\WINDOWS\system32\perfc00C.dat 2020-12-27 18:24 - 2020-12-02 12:54 - 000000000 ____D C:\Users\Lucien 2020-12-27 13:02 - 2020-02-24 17:13 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\DVDVideoSoft 2020-12-21 21:24 - 2020-02-22 15:32 - 000000000 ____D C:\Users\Laurence\AppData\Local\PlaceholderTileLogoFolder 2020-12-21 21:24 - 2020-02-22 15:28 - 000000000 ____D C:\Users\Laurence\AppData\Local\Packages 2020-12-21 21:24 - 2020-02-21 21:02 - 000000000 ____D C:\ProgramData\Packages 2020-12-21 21:21 - 2020-02-22 16:07 - 000000000 ____D C:\Users\Laurence\AppData\Local\D3DSCache 2020-12-19 11:13 - 2020-05-08 20:01 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-12-17 12:13 - 2020-12-02 14:22 - 000003386 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2293340339-3455285971-2507039445-1004 2020-12-17 12:13 - 2020-02-22 15:32 - 000000000 ___RD C:\Users\Laurence\OneDrive 2020-12-15 18:10 - 2020-12-02 14:22 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-12-15 18:10 - 2020-12-02 14:22 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-12-12 21:02 - 2020-02-27 11:51 - 000000000 ____D C:\Users\Laurence\AppData\Local\adslTV 2020-12-12 14:10 - 2020-11-20 18:53 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\hpqLog 2020-12-10 10:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2020-12-10 10:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-12-09 15:38 - 2020-11-09 17:42 - 000000000 ____D C:\Users\Laurence\Downloads\Torrent 2020-12-09 13:52 - 2020-02-25 19:07 - 000000000 ____D C:\Users\Laurence\AppData\Roaming\Apowersoft ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) BCD (recoveryenabled=No -> recoveryenabled=Yes) <==== restauré(es) avec succès ==================== Fin de FRST.txt ========================