Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-01-2021 Exécuté par emman (administrateur) sur DESKTOP-RR5U26D (Hewlett-Packard HP EliteBook 840 G2) (20-01-2021 09:21:00) Exécuté depuis C:\Users\emman\Downloads Profils chargés: emman Platform: Windows 10 Pro Version 1909 18363.1316 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\rpc.sflmserverd.exe () [Fichier non signé] C:\Windows\SysWOW64\portmap.exe (Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Keysight\EEsof_License_Tools\bin\win32\lmgrd.exe <2> (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HPHotkeyNotification.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe (Intel Corporation -> ) C:\Windows\System32\igfxTray.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Keysight Technolgies) [Fichier non signé] C:\Program Files\Keysight\EEsof_License_Tools\bin\win32\agileesofd.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Whiteboard_20.11214.5532.0_x64__8wekyb3d8bbwe\WhiteboardWRT.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7> (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\PXI\nipxicms.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe <3> (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI-VISA\niLxiDiscovery.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files\National Instruments\Shared\roco\niroco.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\nipalsm.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\nipxism.exe (National Instruments Corporation -> National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe (Notepad++ -> Don HO don.h@free.fr) C:\Program Files\Notepad++\notepad++.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplms.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplmv.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8515832 2015-08-19] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951968 2019-07-09] (Logitech -> Logitech, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {07AAD323-BED0-4914-BB96-CED1F027EC9B} - \Microsoft\Office\OfficeTelemetryAgentFallBack2016 -> Pas de fichier <==== ATTENTION Task: {35D541CA-B256-478E-8B26-63C1F8C7C48E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {37662990-8BEA-43FA-BE0E-1E03431F3932} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4F6BB1F0-793A-447D-BE7C-461ADE3C784B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {79052E8E-FE5C-400C-A2F8-C601896C023A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {810A1E0F-B960-4361-8B76-C065A6EFDDEE} - \Microsoft\Office\Office Feature Updates -> Pas de fichier <==== ATTENTION Task: {8B448BE8-BC64-44BF-8ED6-00FC3A2F29C7} - \Microsoft\Office\Office ClickToRun Service Monitor -> Pas de fichier <==== ATTENTION Task: {A393991D-C77A-43C3-BA5E-A65C03B5397F} - \Microsoft\Office\Office Automatic Updates 2.0 -> Pas de fichier <==== ATTENTION Task: {B95A2C16-2941-40C5-91A1-A001F6FE2162} - \Microsoft\Office\Office Feature Updates Logon -> Pas de fichier <==== ATTENTION Task: {C42AD383-1CF2-4AD9-96B9-24D4401B70F5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CEEA33E1-6AC4-4A56-ABC8-8A19D608BF56} - \Microsoft\Office\OfficeTelemetryAgentLogOn2016 -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{9d2afba8-e242-48ce-9d95-72a7a9a7310a}: [DhcpNameServer] 10.0.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\emman\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-20] FireFox: ======== FF DefaultProfile: nsh24ia5.default FF DefaultProfile: uu2n7d89.default FF ProfilePath: C:\Users\emman\AppData\Roaming\Zotero\Zotero\Profiles\nsh24ia5.default [2021-01-16] FF ProfilePath: C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\uu2n7d89.default [2021-01-20] FF NewTab: Mozilla\Firefox\Profiles\uu2n7d89.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=BT170603&iDate=2020-03-21 01:01:49&bName=&bitmask=0600 FF ProfilePath: C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release [2021-01-20] FF NewTab: Mozilla\Firefox\Profiles\wqy545xm.default-release -> hxxps://defaultsearch.co/homepage?hp=1&pId=BT170603&iDate=2020-03-21 01:01:49&bName=&bitmask=0600 FF Notifications: Mozilla\Firefox\Profiles\wqy545xm.default-release -> hxxps://meet.google.com FF Extension: (Hoxx VPN Proxy) - C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release\Extensions\@hoxx-vpn.xpi [2020-10-19] FF Extension: (English United States Dictionary) - C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release\Extensions\@unitedstatesenglishdictionary.xpi [2020-10-12] FF Extension: (OneNote Web Clipper) - C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release\Extensions\Clipper@OneNote.com.xpi [2020-10-22] FF Extension: (Brazilian Portuguese Checker (New Spelling)) - C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release\Extensions\pt-BR@dictionaries.addons.mozilla.org.xpi [2020-03-10] FF Extension: (Zotero Connector) - C:\Users\emman\AppData\Roaming\Mozilla\Firefox\Profiles\wqy545xm.default-release\Extensions\zotero@chnm.gmu.edu.xpi [2021-01-19] [UpdateUrl:hxxps://www.zotero.org/download/connector/firefox/release/updates.json] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-03-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-03-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-01-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-01-17] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default [2021-01-20] CHR HomePage: Default -> hxxp://www.ifpb.edu.br/ CHR StartupUrls: Default -> "hxxp://www.ifpb.edu.br/" CHR Session Restore: Default -> est activé. CHR Extension: (Slides) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-05-05] CHR Extension: (Docs) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-05-05] CHR Extension: (Google Drive) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-10] CHR Extension: (YouTube) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-05-05] CHR Extension: (Sheets) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-05-05] CHR Extension: (Google Docs hors connexion) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-01-02] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-10-22] CHR Extension: (Stories for Instagram) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nilbfjdbacfdodpbdondbbkmoigehodg [2020-11-10] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-05-05] CHR Extension: (Gmail) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-10] CHR Extension: (Chrome Media Router) - C:\Users\emman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-02] CHR HKU\S-1-5-21-2828505419-3818210494-812204022-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8854920 2021-01-10] (Microsoft Corporation -> Microsoft Corporation) R2 EESoft Flexnet Licence Server; C:\Program Files\Keysight\EEsof_License_Tools\bin\win32\lmgrd.exe [1551848 2016-03-21] (Flexera Software LLC -> Flexera Software LLC) R2 FoxitReaderUpdateService; C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 fpCsEvtSvc; C:\Windows\system32\fpCSEvtSvc.exe [22528 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> ) R2 hasplms; C:\Windows\system32\hasplms.exe [4295208 2017-07-07] (SafeNet Canada, Inc. -> SafeNet, Inc.) R2 HotKeyServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe [819856 2019-05-14] (HP Inc. -> HP Inc.) R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [361848 2019-12-06] (HP Inc. -> HP Inc.) R2 LanWlanWwanSwitchingServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe [731072 2019-05-14] (HP Inc. -> HP Inc.) R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [704544 2017-03-12] (National Instruments Corporation -> National Instruments, Inc.) R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [69096 2017-03-12] (National Instruments Corporation -> National Instruments Corporation) R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [80880 2017-03-12] (National Instruments Corporation -> National Instruments Corporation) R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [103360 2017-02-17] (National Instruments Corporation -> National Instruments Corporation) R2 ni488enumsvc; C:\Windows\SysWOW64\nipalsm.exe [29672 2017-10-14] (National Instruments Corporation -> National Instruments Corporation) R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57184 2016-01-13] (National Instruments Corporation -> National Instruments Corporation) S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [80736 2016-01-13] (National Instruments Corporation -> National Instruments Corporation) R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [594984 2017-02-16] (National Instruments Corporation -> National Instruments Corporation) R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [432600 2017-03-12] (National Instruments Corporation -> National Instruments Corporation) R2 niLXIDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI-VISA\niLxiDiscovery.exe [375160 2017-10-30] (National Instruments Corporation -> National Instruments Corporation) R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [343080 2017-03-07] (National Instruments Corporation -> National Instruments Corporation) R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [179304 2016-05-31] (National Instruments Corporation -> National Instruments Corporation) R2 nipxicmsvc; C:\Program Files (x86)\National Instruments\PXI\nipxicms.exe [204312 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) R2 nipxirmu; C:\Windows\SysWOW64\nipxism.exe [32744 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) R2 niroco; C:\Program Files\National Instruments\Shared\roco\niroco.exe [687144 2017-10-26] (National Instruments Corporation -> National Instruments Corporation) R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [102512 2016-06-06] (National Instruments Corporation -> National Instruments Corporation) R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57168 2016-01-13] (National Instruments Corporation -> National Instruments Corporation) R3 Portmap; C:\Windows\SysWOW64\portmap.exe [40960 1999-01-18] () [Fichier non signé] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6264144 2021-01-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SFLMSERVERD; C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\rpc.sflmserverd.exe [1896448 2015-02-18] () [Fichier non signé] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [53248 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [746504 2020-10-16] (Oracle Corporation -> Oracle Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-05] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [1296160 2017-07-07] (SafeNet, Inc. -> SafeNet, Inc.) S3 ni488k; C:\Windows\System32\drivers\ni488k.sys [386024 2018-01-24] (National Instruments Corporation -> National Instruments Corporation) R3 nidimk; C:\Windows\System32\drivers\nidimkl.sys [31344 2017-12-12] (National Instruments Corporation -> National Instruments Corporation) R3 nimdbgk; C:\Windows\System32\drivers\nimdbgkl.sys [31392 2017-03-09] (National Instruments Corporation -> National Instruments Corporation) R3 nimxdfk; C:\Windows\System32\drivers\nimxdfkl.sys [31360 2017-10-10] (National Instruments Corporation -> National Instruments Corporation) S3 niorbk; C:\Windows\System32\drivers\niorbkl.sys [31368 2017-03-09] (National Instruments Corporation -> National Instruments Corporation) S3 nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [31448 2017-10-14] (National Instruments Corporation -> National Instruments Corporation) R0 NIPALK; C:\Windows\System32\drivers\nipalk.sys [800904 2017-10-14] (National Instruments Corporation -> National Instruments Corporation) S3 nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [31448 2017-10-14] (National Instruments Corporation -> National Instruments Corporation) R0 nipbcfk; C:\Windows\System32\drivers\nipbcfk.sys [19288 2017-10-14] (National Instruments Corporation -> National Instruments Corporation) R0 nipcibrd; C:\Windows\System32\drivers\nipcibrd.sys [118976 2017-10-25] (National Instruments Corporation -> National Instruments Corporation) R0 nipxibrc; C:\Windows\System32\drivers\nipxibrc.sys [83736 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) S3 nipxifpk; C:\Windows\System32\drivers\nipxifpk.sys [50968 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) S3 nipxigpk; C:\Windows\System32\drivers\nipxigpk.sys [40592 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) R2 nipxirmk; C:\Windows\System32\drivers\nipxirmkl.sys [31320 2017-12-13] (National Instruments Corporation -> National Instruments Corporation) R3 NiViPciK; C:\Windows\System32\drivers\NiViPciKl.sys [30888 2017-11-01] (National Instruments Corporation -> National Instruments Corporation) R2 NiViPxiK; C:\Windows\System32\drivers\NiViPxiKl.sys [30880 2017-11-01] (National Instruments Corporation -> National Instruments Corporation) S3 sflmpcidl; C:\sedatools\lib\rpc.sflmserverd\8.2.12.R\x86-nt\sflmpcidl.sys [3988 2015-01-21] () [Fichier non signé] S3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv64.sys [1063520 2017-02-22] (SUNPLUS INNOVATION TECHNOLOGY INC. -> Sunplus Innovation Technology Inc.) R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [239432 2020-10-16] (Oracle Corporation -> Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [249344 2020-10-16] (Oracle Corporation -> Oracle Corporation) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [174536 2020-10-16] (Oracle Corporation -> Oracle Corporation) R3 vmulti; C:\Windows\System32\drivers\vmulti.sys [10752 2018-12-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 vna_ap; C:\Windows\system32\DRIVERS\vnaap.sys [165392 2017-08-01] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-05] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-05] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-01-20 09:10 - 2021-01-20 09:10 - 000009494 _____ C:\Users\emman\Desktop\ZHPCleaner (S).html 2021-01-20 09:10 - 2021-01-20 09:10 - 000002946 _____ C:\Users\emman\Desktop\ZHPCleaner (S).txt 2021-01-20 08:58 - 2021-01-20 09:10 - 000000000 ____D C:\Users\emman\AppData\Roaming\ZHP 2021-01-20 08:58 - 2021-01-20 08:58 - 000000875 _____ C:\Users\emman\Desktop\ZHPCleaner.lnk 2021-01-20 08:58 - 2021-01-20 08:58 - 000000000 ____D C:\Users\emman\AppData\Local\ZHP 2021-01-20 08:57 - 2021-01-20 09:20 - 000000095 _____ C:\Users\emman\Desktop\Nouveau document texte.txt 2021-01-20 08:57 - 2021-01-20 08:57 - 003341960 _____ (Nicolas Coolman) C:\Users\emman\Downloads\ZHPCleaner.exe 2021-01-20 08:55 - 2021-01-20 08:55 - 000000212 _____ C:\Windows\pxisys.ini 2021-01-20 08:55 - 2021-01-20 08:55 - 000000203 _____ C:\Windows\pxiesys.ini 2021-01-20 08:52 - 2021-01-20 08:54 - 000027345 _____ C:\Users\emman\Downloads\Fixlog.txt 2021-01-20 08:51 - 2021-01-20 08:51 - 000000000 ____D C:\Users\emman\Downloads\FRST-OlderVersion 2021-01-20 08:49 - 2021-01-20 08:49 - 000000000 ___HD C:\kleaner.tmp 2021-01-20 08:42 - 2021-01-20 08:42 - 015363752 _____ (Kaspersky Lab ZAO) C:\Users\emman\Downloads\kavremvr.exe 2021-01-19 19:03 - 2021-01-19 19:03 - 000001931 _____ C:\Users\emman\Desktop\Zoom.lnk 2021-01-19 10:30 - 2021-01-19 10:30 - 000000000 ____D C:\Users\emman\AppData\Local\AWSToolkit 2021-01-19 10:28 - 2021-01-19 10:28 - 000000000 ____D C:\Users\emman\AppData\Roaming\AWR 2021-01-19 10:28 - 2021-01-19 10:28 - 000000000 ____D C:\Users\emman\AppData\Local\AWR 2021-01-19 10:28 - 2021-01-19 10:28 - 000000000 ____D C:\ProgramData\AWR 2021-01-19 10:22 - 2021-01-19 10:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AWRDE 15 (64bit) 2021-01-19 10:21 - 2021-01-19 10:21 - 000000000 ____D C:\Program Files (x86)\AWR 2021-01-19 10:20 - 2021-01-19 10:20 - 000007828 _____ C:\Users\emman\Downloads\awrd.awrlic 2021-01-19 10:16 - 2021-01-19 10:19 - 652637248 _____ (Cadence Design Systems, Inc.) C:\Users\emman\Downloads\awrde_v15_03_10088_1_64bit.exe 2021-01-18 22:16 - 2021-01-18 22:16 - 000000000 ____D C:\Users\emman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2021-01-18 18:58 - 2021-01-18 18:58 - 000000000 ____D C:\Users\emman\Documents\Zoom 2021-01-18 14:17 - 2021-01-18 14:17 - 000071112 _____ C:\Users\emman\Downloads\Kafka-La_Metamorphose.epub 2021-01-18 08:35 - 2021-01-18 08:36 - 000388158 _____ C:\Users\emman\Downloads\Manual_de_treinamento_em_constelacoes_or.pdf 2021-01-17 14:45 - 2021-01-17 14:45 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-01-17 14:45 - 2021-01-17 14:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-01-17 13:19 - 2021-01-17 13:19 - 000512056 _____ C:\Users\emman\Downloads\matriz_bimestre_2_ano.pdf 2021-01-16 22:17 - 2021-01-16 22:20 - 000104328 _____ C:\Users\emman\Downloads\Addition.txt 2021-01-16 22:13 - 2021-01-20 09:21 - 000027350 _____ C:\Users\emman\Downloads\FRST.txt 2021-01-16 22:13 - 2021-01-20 09:21 - 000000000 ____D C:\FRST 2021-01-16 22:12 - 2021-01-20 08:51 - 002295808 _____ (Farbar) C:\Users\emman\Downloads\FRST64.exe 2021-01-16 09:33 - 2021-01-16 09:35 - 000000000 ____D C:\Users\emman\AppData\Roaming\Pentablet 2021-01-16 09:33 - 2021-01-16 09:33 - 000000865 _____ C:\Users\Public\Desktop\Pentablet.lnk 2021-01-16 09:33 - 2021-01-16 09:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pentablet 2021-01-16 09:33 - 2021-01-16 09:33 - 000000000 ____D C:\Program Files\Pentablet 2021-01-16 09:33 - 2019-07-11 13:50 - 000145408 _____ (TODO: <公司名>) C:\Windows\system32\WinTab32.dll 2021-01-16 09:33 - 2019-07-11 13:50 - 000124928 _____ (TODO: <公司名>) C:\Windows\SysWOW64\WinTab32.dll 2021-01-16 09:33 - 2018-12-11 10:03 - 000010752 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\vmulti.sys 2021-01-16 09:33 - 2014-09-17 10:47 - 000007680 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\hidkmdf.sys 2021-01-16 09:30 - 2021-01-16 09:31 - 014112152 _____ C:\Users\emman\Downloads\XP-PENWin_1.6.4.210111.exe.zip 2021-01-14 16:13 - 2021-01-14 16:13 - 000048398 _____ C:\Users\emman\Downloads\lettre-resiliation.pdf 2021-01-14 16:13 - 2021-01-14 16:13 - 000027936 _____ C:\Users\emman\Downloads\accuse-reception.pdf 2021-01-14 15:18 - 2021-01-14 15:18 - 000287768 _____ C:\Users\emman\Downloads\wire_transfer.pdf 2021-01-14 14:40 - 2021-01-20 08:42 - 000000000 ____D C:\Program Files\Common Files\AV 2021-01-14 14:35 - 2021-01-14 14:35 - 002848624 _____ (Kaspersky) C:\Users\emman\Downloads\ks4.021.2.16.590abpt_25041.exe 2021-01-14 07:40 - 2021-01-14 07:40 - 000696832 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2021-01-14 07:40 - 2021-01-14 07:40 - 000576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2021-01-14 07:40 - 2021-01-14 07:40 - 000568320 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2021-01-14 07:40 - 2021-01-14 07:40 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2021-01-14 07:40 - 2021-01-14 07:40 - 000502784 _____ C:\Windows\system32\AssignedAccessCsp.dll 2021-01-14 07:40 - 2021-01-14 07:40 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2021-01-14 07:40 - 2021-01-14 07:40 - 000455680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2021-01-14 07:40 - 2021-01-14 07:40 - 000294912 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2021-01-14 07:40 - 2021-01-14 07:40 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2021-01-14 07:40 - 2021-01-14 07:40 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2021-01-14 07:40 - 2021-01-14 07:40 - 000151040 _____ C:\Windows\system32\uwfcsp.dll 2021-01-14 07:40 - 2021-01-14 07:40 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2021-01-14 07:40 - 2021-01-14 07:40 - 000094720 _____ C:\Windows\system32\VirtualMonitorManager.dll 2021-01-14 07:40 - 2021-01-14 07:40 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2021-01-14 07:40 - 2021-01-14 07:40 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-01-14 07:40 - 2021-01-14 07:40 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2021-01-14 07:40 - 2021-01-14 07:40 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-01-14 07:40 - 2021-01-14 07:40 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2021-01-14 07:40 - 2021-01-14 07:40 - 000053248 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth18.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth17.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth16.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth15.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin 2021-01-14 07:40 - 2021-01-14 07:40 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin 2021-01-14 07:39 - 2021-01-14 07:39 - 002590720 _____ C:\Windows\system32\dwmscene.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 001101312 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 000549888 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2021-01-14 07:39 - 2021-01-14 07:39 - 000458240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2021-01-14 07:39 - 2021-01-14 07:39 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-01-14 07:39 - 2021-01-14 07:39 - 000331264 _____ C:\Windows\SysWOW64\ssdm.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 000266752 _____ C:\Windows\system32\HeatCore.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 000208896 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2021-01-14 07:39 - 2021-01-14 07:39 - 000208384 _____ C:\Windows\SysWOW64\HeatCore.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 000186368 _____ C:\Windows\system32\BthpanContextHandler.dll 2021-01-14 07:39 - 2021-01-14 07:39 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2021-01-14 07:39 - 2021-01-14 07:39 - 000167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2021-01-14 07:38 - 2021-01-14 07:38 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-01-14 07:38 - 2021-01-14 07:38 - 000453632 _____ C:\Windows\system32\ssdm.dll 2021-01-14 07:38 - 2021-01-14 07:38 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2021-01-14 07:38 - 2021-01-14 07:38 - 000164864 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-01-14 07:38 - 2021-01-14 07:38 - 000061440 _____ C:\Windows\system32\rdsxvmaudio.dll 2021-01-14 06:39 - 2021-01-14 06:39 - 002280452 _____ C:\Windows\Minidump\011421-7593-01.dmp 2021-01-12 04:11 - 2021-01-12 04:11 - 000103756 _____ C:\Users\emman\Downloads\TTI End User Certificate.pdf 2021-01-09 03:18 - 2021-01-20 08:52 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-01-07 11:18 - 2021-01-07 11:18 - 003236003 _____ C:\Users\emman\Downloads\SZ11LR-GW-2 LoRaWAN Gateway Manual V1.0.pdf 2021-01-05 09:40 - 2021-01-04 18:54 - 000000212 _____ C:\Windows\pxisys.ni.bak 2021-01-05 09:40 - 2021-01-04 18:54 - 000000203 _____ C:\Windows\pxiesys.ni.bak 2021-01-04 16:38 - 2021-01-04 16:38 - 000133091 _____ C:\Users\emman\Downloads\DataSheet_Bridge_PT.pdf 2021-01-04 12:51 - 2021-01-04 12:59 - 727873384 ____R C:\Users\emman\Downloads\[ OxTorrent.cc ] Mulan.2020.TRUEFRENCH.BDRip.XviD-EXTREME.avi 2021-01-03 13:51 - 2021-01-03 13:51 - 000000000 ____D C:\Users\emman\AppData\LocalLow\uTorrent 2021-01-03 13:14 - 2021-01-03 13:28 - 729040642 ____R C:\Users\emman\Downloads\[ OxTorrent.cc ] Yakari.La.Grande.Aventure.2020.FRENCH.WEBRip.XviD-PREUMS.avi 2021-01-03 13:11 - 2021-01-04 12:56 - 729036894 ____R C:\Users\emman\Downloads\[ OxTorrent.cc ] The.Croods.2.A.New.Age.2020.FRENCH.HDRip.XviD-EXTREME.avi 2021-01-03 13:10 - 2021-01-03 13:23 - 728709642 ____R C:\Users\emman\Downloads\[ OxTorrent.cc ] Soul.2020.TRUEFRENCH.HDRip.XviD-EXTREME.avi 2021-01-03 13:09 - 2021-01-03 13:27 - 2718558346 ____R C:\Users\emman\Downloads\[ OxTorrent.cc ] Soul.2020.TRUEFRENCH.720p.WEB.H264-EXTREME.mkv 2021-01-03 12:47 - 2021-01-03 12:47 - 1465800704 _____ C:\Users\emman\Downloads\[ Torrent9.cz ] Aladdin.2019.TRUEFRENCH.TC.MD.XViD-CaFarDaX.avi 2020-12-29 15:46 - 2021-01-20 08:42 - 000000000 ____D C:\Users\defaultuser100000 2020-12-29 15:46 - 2020-12-29 15:46 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\ConnectedDevicesPlatform 2020-12-28 09:00 - 2020-12-28 09:00 - 000183050 _____ C:\Users\emman\Downloads\img20201225_09202515.pdf 2020-12-28 09:00 - 2020-12-28 09:00 - 000096089 _____ C:\Users\emman\Downloads\img20201225_09264081.pdf 2020-12-24 09:59 - 2021-01-20 08:42 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-12-21 06:29 - 2020-12-21 06:29 - 000408884 _____ C:\Users\emman\Downloads\HC_LC.emf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-01-20 09:16 - 2020-03-04 13:05 - 000000000 ____D C:\Users\emman\AppData\LocalLow\Mozilla 2021-01-20 09:00 - 2020-03-04 12:32 - 001772410 _____ C:\Windows\system32\PerfStringBackup.INI 2021-01-20 09:00 - 2019-03-19 09:01 - 000793428 _____ C:\Windows\system32\perfh00C.dat 2021-01-20 09:00 - 2019-03-19 09:01 - 000150460 _____ C:\Windows\system32\perfc00C.dat 2021-01-20 09:00 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF 2021-01-20 08:55 - 2020-03-09 07:30 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-01-20 08:55 - 2020-03-04 12:31 - 000000000 __SHD C:\Users\emman\IntelGraphicsProfiles 2021-01-20 08:55 - 2020-03-04 12:30 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-01-20 08:55 - 2020-03-04 12:29 - 000000000 ____D C:\ProgramData\Validity 2021-01-20 08:55 - 2020-03-04 12:25 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-01-20 08:55 - 2019-03-19 01:37 - 000524288 _____ C:\Windows\system32\config\BBI 2021-01-20 08:53 - 2020-03-20 09:34 - 000000000 ____D C:\Users\emman\AppData\LocalLow\Temp 2021-01-20 08:51 - 2020-03-04 14:31 - 000000000 ___RD C:\Users\emman\GoogleDrive 2021-01-20 08:48 - 2020-03-05 06:04 - 000000000 ____D C:\Program Files (x86)\Google 2021-01-20 08:43 - 2020-03-04 12:58 - 000000000 ____D C:\Users\emman\AppData\Roaming\hpqLog 2021-01-20 08:42 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-01-20 08:42 - 2019-03-19 01:37 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-01-20 08:27 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness 2021-01-20 08:23 - 2020-03-04 12:25 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-01-19 10:30 - 2020-03-04 14:17 - 000000000 ____D C:\Users\emman\Documents\AWR Projects 2021-01-18 22:16 - 2020-03-22 15:08 - 000000000 ____D C:\Users\emman\AppData\Roaming\Zoom 2021-01-18 14:18 - 2020-03-04 14:17 - 000000000 ____D C:\Users\emman\Documents\Bibliothèque calibre 2021-01-17 19:49 - 2020-06-24 05:07 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-17 19:49 - 2020-06-24 05:07 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-17 14:45 - 2020-12-17 09:23 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visio.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-01-17 14:45 - 2020-12-17 09:23 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-01-17 14:44 - 2020-03-04 13:14 - 000000000 ____D C:\Program Files\Microsoft Office 2021-01-17 13:10 - 2020-05-14 07:36 - 000000000 ____D C:\Users\emman\AppData\Local\babl-0.1 2021-01-17 10:56 - 2020-10-01 05:50 - 000000000 ____D C:\Users\emman\AppData\Roaming\ImageGlass 2021-01-16 16:18 - 2020-03-04 13:09 - 000000000 ____D C:\Program Files (x86)\Zotero 2021-01-16 16:16 - 2020-03-04 13:09 - 000000000 ____D C:\Users\emman\Zotero 2021-01-16 09:33 - 2020-03-04 12:31 - 000000000 ____D C:\Users\emman\AppData\Roaming\Adobe 2021-01-15 20:09 - 2020-10-01 05:39 - 000000000 ____D C:\Users\emman\AppData\Local\CrashDumps 2021-01-15 19:33 - 2020-03-04 12:35 - 000000000 ____D C:\Users\emman\AppData\Local\PlaceholderTileLogoFolder 2021-01-15 19:33 - 2020-03-04 12:31 - 000000000 ____D C:\Users\emman\AppData\Local\Packages 2021-01-15 19:33 - 2019-03-19 01:52 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-14 08:16 - 2020-03-04 12:31 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-01-14 08:16 - 2020-03-04 12:31 - 000000000 ___RD C:\Users\emman\3D Objects 2021-01-14 08:16 - 2020-03-04 12:25 - 000493168 _____ C:\Windows\system32\FNTCACHE.DAT 2021-01-14 08:16 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2021-01-14 08:15 - 2019-03-19 09:04 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-14 08:15 - 2019-03-19 09:04 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-01-14 08:15 - 2019-03-19 09:04 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\UNP 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\F12 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ___RD C:\Windows\PrintDialog 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SystemResources 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\setup 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\oobe 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\migwiz 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Dism 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\Com 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellExperiences 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\ShellComponents 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\Provisioning 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\IME 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\bcastdvr 2021-01-14 08:15 - 2019-03-19 01:52 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-14 07:46 - 2019-03-19 01:37 - 000000000 ____D C:\Windows\CbsTemp 2021-01-14 07:45 - 2020-03-04 12:50 - 000000000 ____D C:\Windows\system32\MRT 2021-01-14 07:43 - 2020-03-04 12:50 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-01-14 07:38 - 2020-03-04 12:28 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2021-01-14 06:40 - 2020-03-04 12:27 - 000000000 ____D C:\Windows\minidump 2021-01-14 06:39 - 2020-10-12 05:26 - 781448037 _____ C:\Windows\MEMORY.DMP 2021-01-14 06:39 - 2020-03-04 12:29 - 000000000 ____D C:\Users\emman 2021-01-13 21:11 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports 2021-01-12 10:10 - 2020-03-04 13:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-10 22:13 - 2020-03-22 07:31 - 000000000 ____D C:\Users\emman\AppData\Roaming\vlc 2021-01-09 03:18 - 2020-03-28 04:25 - 000000000 ____D C:\Users\emman\.VirtualBox 2021-01-09 03:18 - 2020-03-04 13:05 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-09 02:02 - 2020-06-24 05:07 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-08 08:52 - 2020-03-28 04:25 - 000000000 ____D C:\ProgramData\VirtualBox 2021-01-04 18:54 - 2020-03-21 10:01 - 000000000 ____D C:\Users\emman\AppData\Roaming\uTorrent 2021-01-04 18:54 - 2020-03-21 10:01 - 000000000 ____D C:\Users\emman\AppData\Local\BitTorrentHelper 2020-12-28 09:56 - 2020-11-25 14:14 - 000000000 ____D C:\Users\emman\AppData\Local\ElevatedDiagnostics 2020-12-23 17:28 - 2020-05-14 07:38 - 000000000 ____D C:\Users\emman\AppData\Local\gtk-2.0 2020-12-22 23:50 - 2020-12-17 10:16 - 000000000 _____ C:\Users\emman\Downloads\Synopsys-Sentaurus-TCAD-2016-2017-VM.part1_ShareAppsCrack.com.rar 2020-12-22 07:48 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\FxsTmp 2020-12-21 06:33 - 2020-03-04 14:30 - 000000000 ____D C:\Users\emman\Documents\PosDoc - GaN ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================