Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-02-2021 Exécuté par Iris (administrateur) sur PATRICE-PC (MEDIONPC MS-7708) (04-02-2021 12:35:56) Exécuté depuis C:\Users\Administrateur\Desktop\cleanwindows\nettoyage\FRST-OlderVersion Profils chargés: Iris Platform: Windows 7 Professional Service Pack 1 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.) C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Axentra Corporation -> Axentra Corporation) C:\Program Files (x86)\MEDION\LifeCloud Desktop Applications\HipServAgent\HipServAgent.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\114.4.426\QtWebEngineProcess.exe <4> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <25> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Lagerkvist Teknisk Rådgivning i Borås HB -> Olof Lagerkvist) C:\Windows\System32\imdsksvc.exe (Michael Maltsev -> RaMMicHaeL) [Fichier non signé] C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Michael Maltsev -> RaMMicHaeL) [Fichier non signé] C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Sony) [Fichier non signé] C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe (Sony) [Fichier non signé] C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [HipServ Agent] => C:\Program Files (x86)\Medion\LifeCloud Desktop Applications\HipServAgent\HipServAgent.exe [2722920 2013-09-30] (Axentra Corporation -> Axentra Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7992336 2021-01-25] (Dropbox, Inc -> Dropbox, Inc.) HKLM\...\Policies\Explorer: [MemCheckBoxInRunDlg] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [1684480 2020-09-02] (Sony) [Fichier non signé] HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\MountPoints2: {02713128-134c-11ea-9621-00ac603685be} - J:\HiSuiteDownLoader.exe HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\MountPoints2: {33ed51dc-9186-11e8-a430-00ac603685be} - L:\autorun.exe HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\MountPoints2: {6fa515e5-ac7e-11ea-8bc5-00ac603685be} - J:\HiSuiteDownLoader.exe HKU\S-1-5-21-2290456262-4017831773-2465916111-500\...\MountPoints2: {e8d9780c-38fe-11ea-9791-485d60911e2d} - J:\startme.exe HKLM\...\Windows x64\Print Processors\Canon iP4600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9A.DLL [27648 2008-06-12] (CANON INC.) [Fichier non signé] HKLM\...\Windows x64\Print Processors\Canon iP7200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBA.DLL [30208 2012-04-16] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4600 series: C:\Windows\system32\CNMLM9A.DLL [279040 2008-06-12] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon BJ Language Monitor iP7200 series: C:\Windows\system32\CNMLMBA.DLL [389120 2012-04-16] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [359936 2012-03-28] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [116736 2018-12-11] (pdfforge GmbH) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.146\Installer\chrmstp.exe [2021-02-03] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\88.1.19.88\Installer\chrmstp.exe [2021-01-28] (Brave Software, Inc. -> Brave Software, Inc.) IFEO\msiexec.exe: [VerifierDlls] msiesu.dll GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {098884B3-039B-4D9E-84ED-D3E19DA100FE} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [898000 2016-12-16] (Glarysoft LTD -> Glarysoft Ltd) Task: {25FEF3A1-D51A-49EE-BF87-AC420150E9F6} - System32\Tasks\GlaryUpdate 5 => C:\Program Files (x86)\Glary Utilities 5\CheckUpdate.exe [43472 2016-12-16] (Glarysoft LTD -> Glarysoft Ltd) Task: {2C359585-43EA-4AF5-8994-38A2315767E9} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-11-12] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {3359043C-3066-4484-ACA2-238EB7FDF186} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {36658D49-6AA7-46F9-B847-A71F23D9E851} - System32\Tasks\Opera scheduled Autoupdate 1591967425 => C:\Users\Administrateur\AppData\Local\Programs\Opera\launcher.exe Task: {3DD35BF0-C808-451F-9C7C-3E44F100CC4A} - System32\Tasks\BDAntiCryptoWallTask => C:\Program Files\Bitdefender\Tools\AntiCryptoWall\BDAntiRansomware.exe [1586688 2017-01-23] (Bitdefender LLC) [Fichier non signé] Task: {3DE68D72-A99B-4507-963B-EED7A9E53D82} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [7192192 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {46A40745-DE82-4A05-91F7-6EC5195A3D7B} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-24] (Dropbox, Inc -> Dropbox, Inc.) Task: {46EDF201-CF7A-445C-AEA5-43E51E1529ED} - System32\Tasks\2BrightSparks\SyncBackFree\patrice-PC-Administrateur\SyncBackFree => C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe [21221944 2016-03-17] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.) Task: {474291F4-E793-4BA5-83D7-C3B6ECC8EF3D} - System32\Tasks\Patch WU ESU => %SystemRoot%\WuEsu\PatchWU.cmd 0 Task: {4E4FE25C-C80E-4A2B-B1B9-075BED871068} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {507B72F7-CDAD-48EC-861C-ADF26B9C8C7C} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [66816 2015-03-12] (Tweaking LLC -> Tweaking.com) Task: {5680EB81-65B7-44C1-90A2-2C18D760B0D4} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {574F810F-10BE-4D6B-9424-79B135FEB3EB} - \Adobe Flash Player NPAPI Notifier -> Pas de fichier <==== ATTENTION Task: {8CA847B8-4C0A-4282-A088-43B5B0935E07} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {918AB6C2-8DB9-4B37-A800-0BCC7DE2C16F} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [272176 2014-10-30] (Motorola Mobility Inc. -> ) Task: {921F4611-1AFE-4D03-8902-CC838C3F58FD} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-24] (Dropbox, Inc -> Dropbox, Inc.) Task: {9EF89F41-BD05-4C8F-ABF3-DA3CF1FF3BAE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {B2B162AC-B4B8-4F97-8821-066C2758CC4B} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [272176 2014-10-30] (Motorola Mobility Inc. -> ) Task: {B89283D4-A412-4BDE-BF51-A6C6903FE8F3} - System32\Tasks\2BrightSparks\SyncBackFree\patrice-PC-Administrateur\SyncBackFree backup => C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe [21221944 2016-03-17] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.) Task: {BFFCACA0-ABA9-4D56-8991-BB1F2093016C} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40432 2020-03-04] (Garmin International, Inc. -> ) Task: {CAAD8F9F-DABA-4808-8DCC-DA64E81098F5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {CD63CEB8-5DF6-4A43-A525-C70A5CB2E101} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-05-23] (Google Inc -> Google Inc.) Task: {E565C028-1CF5-47A7-A394-0783CB0F217F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-05-23] (Google Inc -> Google Inc.) Task: {FBF1CC1F-1C89-4CC8-A857-9BB050DAE799} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_403_pepper.exe [1471032 2020-07-15] (Adobe Inc. -> Adobe) Task: {FC5DD3B7-609A-4CAD-AEA0-FB901F3426C0} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-11-12] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {FD70875C-4119-4845-B6EA-E1B5869497A3} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [134608 2016-12-16] (Glarysoft LTD -> Glarysoft Ltd) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\AdwCleaner_onReboot.job => C:\Users\Administrateur\Desktop\cleanwindows\adwcleaner_8.0.4.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Pas de fichier Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Pas de fichier Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Pas de fichier Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL => Pas de fichier Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\Parameters: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{9E8209B6-8A88-45E0-81B1-353BA444F066}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{CE21C36B-329E-4D33-9C60-A98B0BB54B8E}: [DhcpNameServer] 10.211.254.254 8.8.8.8 Tcpip\..\Interfaces\{DC1EF405-9DF2-49AB-ADB1-B95B32B05987}: [DhcpNameServer] 192.168.0.254 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Administrateur\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-03] Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES007&pc=UE06 Edge Extension: (Google Translate Tool) - C:\Users\Administrateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fekieommkbpliaejojcigbfdncknhncm [2020-12-13] Edge Profile: C:\Users\Administrateur\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-02-03] FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_433.dll [2020-09-14] (Adobe Inc. -> ) FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-03-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-03-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_433.dll [2020-09-14] (Adobe Inc. -> ) FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (Garmin International, Inc. -> GARMIN Corp.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default [2021-02-04] CHR Notifications: Default -> hxxps://assiste.com CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxp://www.google.com" CHR Extension: (Slides) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-02-03] CHR Extension: (Docs) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-02-03] CHR Extension: (Google Drive) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-02-03] CHR Extension: (YouTube) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-03] CHR Extension: (Sheets) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-02-03] CHR Extension: (Google Docs hors connexion) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-02-03] CHR Extension: (Discussions button for Google Search™) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjiggoeheaondbmhmilpmbdkpgcjmdn [2021-02-03] CHR Extension: (Smiletags) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\joiapjkjgbcljoopaenlplkfapolkdhp [2021-02-03] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03] CHR Extension: (Simple Translate) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pambhihppeegkdociocppcaleohbbeef [2021-02-03] CHR Extension: (Gmail) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-03] CHR Extension: (Chrome Media Router) - C:\Users\Administrateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-03] CHR HKLM-x32\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp] Brave: ======= BRA DefaultProfile: Default BRA Profile: C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2021-02-03] BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Google Traduction) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-08-09] BRA Extension: (Discussions button for Google Search™) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\igjiggoeheaondbmhmilpmbdkpgcjmdn [2020-11-14] BRA Extension: (Checker Plus for Gmail™) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2021-01-14] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2021-01-30] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2021-02-03] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2020-07-24] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2021-02-03] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2020-07-24] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2020-08-13] BRA Extension: (Brave NTP sponsored images) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2021-02-03] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2021-02-03] BRA Extension: (WidevineCdm) - C:\Users\Administrateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\WidevineCdm [2020-12-02] StartMenuInternet: Brave.MNZWO6H2FALYJTPXYBTA33BWWQ - C:\Users\Administrateur\Downloads\Rar$EXa5684.12125\Chrome-bin\brave.exe Vivaldi: ======= VIV Profile: C:\Users\Administrateur\AppData\Local\Vivaldi\User Data\Default [2020-12-13] VIV Extension: (Chrome Media Router) - C:\Users\Administrateur\AppData\Local\Vivaldi\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-24] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) S3 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [898216 2020-11-17] (AOMEI International Network Limited -> AOMEI International Network Limited) S3 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-11-12] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163528 2020-11-12] (Brave Software, Inc. -> BraveSoftware Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-24] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-24] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44064 2021-01-25] (Dropbox, Inc -> Dropbox, Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] (Canon Inc. -> ) R2 ImDskSvc; C:\Windows\system32\imdsksvc.exe [31544 2019-01-19] (Lagerkvist Teknisk Rådgivning i Borås HB -> Olof Lagerkvist) S4 LmsaWindowsService; C:\Program Files (x86)\Rescue and Smart Assistant\LmsaWindowsService.exe [33792 2020-04-22] () [Fichier non signé] S3 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2014-04-08] (Motorola Mobility Inc. -> Motorola Mobility LLC) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) S4 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [Fichier non signé] R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) S4 Realtek11nSU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [Fichier non signé] S3 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [13599288 2020-08-24] (Adlice -> ) S4 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3892256 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) S4 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [3943664 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.) S4 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233712 2018-02-06] (Safer-Networking Ltd. -> Safer-Networking Ltd.) S3 SEVPNCLIENT; C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe [5257152 2018-03-05] (SoftEther K.K. -> SoftEther VPN Project at University of Tsukuba, Japan.) S4 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Sony Mobile Communications AB -> Avanquest Software) [Fichier non signé] R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [111208 2014-11-24] (Michael Maltsev -> RaMMicHaeL) [Fichier non signé] S4 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe [473312 2017-03-20] (Wondershare Technology Co.,Ltd -> Wondershare) S4 WsDrvInst; C:\Program Files (x86)\Wondershare\MobileGo\DriverInstall.exe [101152 2017-06-01] (Wondershare Technology Co.,Ltd -> Wondershare) R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2575360 2020-09-02] (Sony) [Fichier non signé] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [16750080 2014-09-15] (Advanced Micro Devices, Inc.) [Fichier non signé] S3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [576000 2014-09-15] (Advanced Micro Devices, Inc.) [Fichier non signé] R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [118184 2020-03-30] (Alcorlink Corp. -> ) R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [38320 2017-09-01] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 athur; C:\Windows\System32\DRIVERS\athurx.sys [1847296 2010-01-05] (Atheros Communications, Inc.) [Fichier non signé] S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [94720 2014-06-21] (Advanced Micro Devices) [Fichier non signé] R2 AWEAlloc; C:\Windows\System32\DRIVERS\awealloc.sys [21048 2019-01-19] (Lagerkvist Teknisk Radgivning i Boras HB -> Olof Lagerkvist) S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 dtproscsibus; C:\Windows\System32\DRIVERS\dtproscsibus.sys [42472 2020-11-30] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-24] (Disc Soft Ltd -> Disc Soft Ltd) S3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40872 2014-02-10] (SlySoft, Inc. -> SlySoft, Inc.) S3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40872 2014-02-10] (SlySoft, Inc. -> SlySoft, Inc.) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153328 2019-01-08] (Malwarebytes Corporation -> Malwarebytes) S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications AB -> Sony Mobile Communications) R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2020-11-12] (Glarysoft Ltd -> Glarysoft Ltd) R2 ImDisk; C:\Windows\System32\DRIVERS\imdisk.sys [48704 2019-01-19] (Lagerkvist Teknisk Radgivning i Boras HB -> Olof Lagerkvist) S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [36944 2014-03-04] (IObit Information Technology -> IObit) S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [224408 2019-08-09] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2019-08-09] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [106344 2019-08-09] (Malwarebytes Corporation -> Malwarebytes) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 MpKslafebc3c1; C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1F14133F-979A-4DC0-A3D4-5D93FF935966}\MpKslDrv.sys [47344 2021-02-04] (Microsoft Windows -> Microsoft Corporation) R3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0047.sys [38432 2018-03-05] (SoftEther Corporation -> SoftEther Corporation) S3 Neo_VPN2; C:\Windows\System32\DRIVERS\Neo_0005.sys [38432 2018-03-09] (SoftEther Corporation -> SoftEther Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2019-11-08] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> ) S4 SEE; C:\Windows\System32\drivers\see.sys [50208 2018-03-05] (SoftEther Corporation -> SoftEther Corporation) S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2020-03-30] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 STTub30; C:\Windows\System32\Drivers\STTub30.sys [44184 2020-03-30] (STMicroelectronics -> STMicroelectronics) S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapexpressvpn; C:\Windows\System32\DRIVERS\tapexpressvpn.sys [35696 2018-02-07] (ExprsVPN LLC -> The OpenVPN Project) S3 tapnordvpn; C:\Windows\System32\DRIVERS\tapnordvpn.sys [75088 2017-03-29] (TEFINCOM S.A. -> The OpenVPN Project) S3 tapwindscribe0901; C:\Windows\System32\DRIVERS\tapwindscribe0901.sys [45560 2017-09-13] (Windscribe Limited -> The OpenVPN Project) U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [38032 2021-02-01] (Adlice -> ) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> ) U3 aswbdisk; pas de ImagePath S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-02-03 17:01 - 2021-02-03 17:17 - 000000846 _____ C:\Users\Administrateur\Desktop\ZHPFix.txt 2021-02-03 14:16 - 2021-02-03 16:35 - 000476914 _____ C:\Users\Administrateur\Desktop\ZHPDiag.txt 2021-02-03 14:04 - 2021-02-03 17:01 - 000000377 _____ C:\Users\Administrateur\Desktop\TraceZHPDiag.txt 2021-02-03 14:02 - 2021-02-03 14:02 - 000000828 _____ C:\Users\Administrateur\Desktop\ZHPFix2.lnk 2021-02-03 13:25 - 2021-02-03 13:25 - 000015896 _____ C:\Users\Administrateur\Desktop\ZHPCleaner (R).txt 2021-02-03 13:20 - 2021-02-03 13:20 - 000015974 _____ C:\Users\Administrateur\Desktop\ZHPCleaner (S).txt 2021-02-03 12:59 - 2021-02-03 12:59 - 003342472 _____ (Nicolas Coolman) C:\Users\Administrateur\Downloads\ZHPCleaner.exe 2021-02-03 12:46 - 2021-02-03 12:46 - 000002354 _____ C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-02-03 12:46 - 2021-02-03 12:46 - 000002295 _____ C:\Users\Administrateur\Desktop\Google Chrome.lnk 2021-02-03 12:44 - 2021-02-03 12:44 - 001321688 _____ (Google LLC) C:\Users\Administrateur\Downloads\ChromeSetup.exe 2021-02-03 12:44 - 2021-02-03 12:44 - 001321688 _____ (Google LLC) C:\Users\Administrateur\Downloads\ChromeSetup (1).exe 2021-02-03 10:52 - 2021-02-03 10:52 - 004778360 _____ (Bitdefender ) C:\Users\Administrateur\Downloads\BDAntiRansomwareSetup.exe 2021-02-02 18:45 - 2021-02-02 18:45 - 000000000 ____D C:\Users\Administrateur\Downloads\Unknown 2021-02-02 14:59 - 2021-02-02 15:00 - 000000214 _____ C:\Users\Administrateur\Downloads\listen (1).asx 2021-02-02 14:59 - 2021-02-02 14:59 - 000000214 _____ C:\Users\Administrateur\Downloads\listen.asx 2021-02-02 14:21 - 2021-02-02 14:21 - 003609039 _____ C:\Users\Administrateur\Downloads\oci 221.pdf 2021-02-02 14:20 - 2021-02-02 14:20 - 001267626 _____ C:\Users\Administrateur\Downloads\oci 212.pdf 2021-02-02 14:18 - 2021-02-02 14:18 - 006989832 _____ C:\Users\Administrateur\Downloads\oci 210 spcial.pdf 2021-02-01 16:00 - 2021-02-01 16:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PFlashTool 2021-02-01 15:59 - 2021-02-01 15:59 - 000000000 ____D C:\Users\Administrateur\Downloads\FlashTool_v3.7.2.1 2021-02-01 13:45 - 2021-02-01 13:45 - 002598367 _____ C:\Users\Administrateur\Downloads\FlashTool_v3.7.2.1.zip 2021-02-01 13:37 - 2021-02-01 13:37 - 024086102 _____ (The qBittorrent project) C:\Users\Administrateur\Downloads\qBittorrent_(32bit)_v4.3.3.exe 2021-02-01 13:37 - 2021-02-01 13:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2021-02-01 13:37 - 2021-02-01 13:37 - 000000000 ____D C:\Program Files\qBittorrent 2021-02-01 13:35 - 2021-02-01 13:35 - 130658304 _____ C:\Users\Administrateur\Downloads\Calibre_(64bit)_v5.8.1.msi 2021-02-01 13:34 - 2021-02-01 13:34 - 009380520 _____ (Krzysztof Kowalczyk) C:\Users\Administrateur\Downloads\Sumatra_PDF_(64bit)_v3.2.exe 2021-02-01 13:30 - 2021-02-01 13:30 - 000000328 _____ C:\Windows\Tasks\AdwCleaner_onReboot.job 2021-02-01 12:38 - 2021-02-01 12:38 - 000038032 _____ C:\Windows\system32\Drivers\truesight.sys 2021-02-01 12:01 - 2021-02-01 12:02 - 000000344 _____ C:\Windows\Tasks\GlaryInitialize 5.job 2021-01-30 11:51 - 2021-01-30 11:52 - 000020452 _____ C:\Users\Administrateur\Documents\cc_20210130_115152.reg 2021-01-29 12:05 - 2021-01-29 19:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2021-01-26 10:37 - 2021-01-26 10:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-01-25 18:50 - 2021-01-25 18:50 - 000002446 _____ C:\Users\Administrateur\Desktop\Personnel - Edge.lnk 2021-01-25 17:12 - 2021-01-25 17:12 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2021-01-25 17:12 - 2021-01-25 17:12 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2021-01-25 17:12 - 2021-01-25 17:12 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2021-01-25 17:12 - 2021-01-25 17:12 - 000044064 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2021-01-24 16:58 - 2021-01-24 16:58 - 005848964 _____ C:\Users\Administrateur\Downloads\Photo Montage.aep 2021-01-24 16:44 - 2021-01-24 16:44 - 000000000 ____D C:\Users\Administrateur\Downloads\xplorer2 Professional & Ultimate v3.4.0 Setup + Patch-Keygen 2021-01-24 16:43 - 2021-01-24 16:46 - 008093696 _____ C:\Users\Administrateur\Downloads\Tweaking.Windows.Repair.v3.2.1.Pro.Installer-Portable.Eng-BG.rar 2021-01-24 15:22 - 2021-01-24 15:22 - 000071780 _____ C:\Users\Administrateur\Downloads\LPG_FRA.pom 2021-01-24 15:03 - 2021-01-24 15:03 - 001138704 _____ C:\Users\Administrateur\Downloads\09_2018 padar.zip 2021-01-19 21:43 - 2021-01-19 21:44 - 000000000 ____D C:\Users\Administrateur\Downloads\Dominique AUZIAS, Jean-Paul LABOURDE 2021-01-19 21:40 - 2021-02-02 19:09 - 000013741 _____ C:\Users\Administrateur\Downloads\metadata_db_prefs_backup.json 2021-01-19 18:03 - 2021-01-19 18:03 - 000000000 ____D C:\Users\Administrateur\Downloads\Collectif Ulysse 2021-01-19 18:02 - 2021-02-02 18:45 - 000356352 _____ C:\Users\Administrateur\Downloads\metadata.db 2021-01-19 12:43 - 2021-01-19 12:43 - 000000000 ____D C:\Users\Administrateur\Downloads\CCR1969WillyAThePBoys 2021-01-19 12:42 - 2021-01-19 12:42 - 101792845 _____ C:\Users\Administrateur\Downloads\CCR1969WillyAThePBoys.rar 2021-01-18 16:21 - 2021-01-20 10:10 - 000000000 ____D C:\Users\Administrateur\Desktop\China Manufacturer M3 Stainless Steel J Hook Bolt with Nut - China J Nuts Ans Bolts, 24mm J Bolt_files 2021-01-15 12:13 - 2021-01-15 12:13 - 047599243 _____ (Oleg N. Scherbakov) C:\Users\Administrateur\Desktop\captvty-2.9-autoextract.exe 2021-01-08 21:27 - 2021-01-08 21:27 - 000000992 _____ C:\Users\Administrateur\Documents\cc_20210108_212702.reg 2021-01-07 12:04 - 2021-01-07 12:04 - 000118338 _____ C:\Users\Administrateur\Desktop\_0068446112_.pdf ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-02-04 12:38 - 2015-02-19 11:05 - 000000000 ____D C:\FRST 2021-02-04 12:31 - 2014-11-22 10:54 - 000000000 ____D C:\Program Files\CCleaner 2021-02-04 12:07 - 2020-12-09 10:19 - 000003106 _____ C:\Windows\system32\Tasks\BDAntiCryptoWallTask 2021-02-04 09:39 - 2009-07-14 05:45 - 000039008 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-02-04 09:39 - 2009-07-14 05:45 - 000039008 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-02-04 09:34 - 2010-11-21 08:11 - 000772262 _____ C:\Windows\system32\perfh00C.dat 2021-02-04 09:34 - 2010-11-21 08:11 - 000158674 _____ C:\Windows\system32\perfc00C.dat 2021-02-04 09:34 - 2009-07-14 06:13 - 001761714 _____ C:\Windows\system32\PerfStringBackup.INI 2021-02-04 09:34 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2021-02-04 09:29 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-02-03 21:50 - 2015-04-17 19:13 - 000000000 ____D C:\Users\Administrateur\AppData\Local\CrashDumps 2021-02-03 17:19 - 2019-01-20 13:10 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\ZHP 2021-02-03 17:09 - 2018-03-22 17:44 - 000000193 _____ C:\Windows\WORDPAD.INI 2021-02-03 16:59 - 2019-03-13 21:24 - 000000000 ____D C:\Users\Administrateur\Desktop\cleanwindows 2021-02-03 14:04 - 2017-05-13 17:27 - 000000000 ____D C:\Users\Administrateur\AppData\Local\ZHP 2021-02-03 12:45 - 2014-11-24 19:26 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Google 2021-02-03 12:45 - 2014-11-22 01:24 - 000000000 ____D C:\Program Files (x86)\Google 2021-02-03 12:44 - 2017-05-23 09:03 - 000003502 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-03 12:44 - 2017-05-23 09:03 - 000003374 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-03 10:53 - 2017-02-11 16:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiCryptoWall 2021-02-02 21:34 - 2017-02-27 11:56 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\foobar2000 2021-02-01 16:00 - 2020-11-15 10:09 - 000000000 ____D C:\Program Files (x86)\PFlashTool 2021-02-01 15:56 - 2017-01-12 16:21 - 000000000 ____D C:\ProgramData\CanonIJPLM 2021-02-01 14:37 - 2018-03-21 11:02 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\qBittorrent 2021-02-01 12:05 - 2018-03-19 12:05 - 000109208 _____ C:\Windows\SysWOW64\GDIPFONTCACHEV1.DAT 2021-02-01 11:58 - 2020-11-27 18:22 - 000000208 _____ C:\Windows\SysWOW64\AbBakConfig.dat 2021-02-01 11:58 - 2020-11-27 18:22 - 000000150 _____ C:\Windows\SysWOW64\winsevr.dat 2021-02-01 11:58 - 2020-11-27 18:21 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper 2021-02-01 10:59 - 2015-05-02 10:11 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2021-01-31 09:31 - 2009-07-14 06:08 - 000032496 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2021-01-30 14:45 - 2020-12-13 12:59 - 000002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-30 14:45 - 2020-12-13 12:59 - 000002228 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-01-30 14:45 - 2020-12-13 12:59 - 000002228 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-01-30 10:31 - 2014-11-24 22:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-30 00:21 - 2017-09-16 16:55 - 000000000 ____D C:\Users\Administrateur\AppData\LocalLow\Mozilla 2021-01-29 11:38 - 2014-12-06 14:22 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\vlc 2021-01-28 18:33 - 2020-11-12 22:00 - 000002327 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2021-01-28 18:33 - 2020-11-12 22:00 - 000002286 _____ C:\Users\Public\Desktop\Brave.lnk 2021-01-28 18:33 - 2020-11-12 22:00 - 000002286 _____ C:\ProgramData\Desktop\Brave.lnk 2021-01-26 21:45 - 2020-07-13 15:26 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\Molotov 2021-01-26 12:58 - 2018-03-08 19:55 - 000109208 _____ C:\Windows\system32\GDIPFONTCACHEV1.DAT 2021-01-26 12:57 - 2020-12-01 10:55 - 000409128 _____ C:\Windows\system32\FNTCACHE.DAT 2021-01-26 12:57 - 2010-11-21 08:17 - 000000000 ____D C:\Windows\CSC 2021-01-26 12:42 - 2009-07-14 03:34 - 000000703 _____ C:\Windows\win.ini 2021-01-26 10:38 - 2016-01-26 10:14 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-01-26 10:29 - 2020-12-02 12:47 - 000002022 _____ C:\Windows\system32\Drivers\etc\hosts_bak_377 2021-01-24 15:29 - 2017-07-27 19:03 - 000000000 ____D C:\Users\Administrateur\Downloads\NAVIGON 2021-01-23 10:00 - 2019-02-17 22:08 - 000001184 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2021-01-23 10:00 - 2018-07-24 18:52 - 000001202 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2021-01-22 19:58 - 2019-02-17 22:08 - 000003934 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore 2021-01-22 19:58 - 2018-07-24 18:52 - 000004200 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA 2021-01-21 22:37 - 2010-11-21 04:27 - 000799104 _____ (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2021-01-21 11:13 - 2017-04-26 08:41 - 000000000 ____D C:\Users\Administrateur\Desktop\pratique 2021-01-19 21:44 - 2014-11-24 19:26 - 000000000 ____D C:\Users\Administrateur 2021-01-19 21:41 - 2014-12-17 17:46 - 000000000 ____D C:\Users\Administrateur\Downloads\voyage 2021-01-19 21:34 - 2020-12-13 12:57 - 000003534 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-19 21:34 - 2020-12-13 12:57 - 000003406 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-15 13:03 - 2020-11-23 18:56 - 000000000 ____D C:\Users\Administrateur\Desktop\Captvty 2021-01-15 10:23 - 2019-12-29 10:22 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-01-15 10:23 - 2014-11-22 10:54 - 000002810 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-01-13 11:36 - 2014-11-21 23:50 - 000000000 ____D C:\Windows\system32\MRT 2021-01-13 11:15 - 2014-11-21 23:50 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-01-13 10:53 - 2020-12-02 12:47 - 000002022 _____ C:\Windows\system32\Drivers\etc\hosts_bak_494 2021-01-09 20:07 - 2014-12-06 16:43 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\dvdcss ==================== Fichiers à la racine de certains dossiers ======== 2018-07-29 18:47 - 2018-07-29 18:47 - 000002528 _____ () C:\Users\Administrateur\AppData\Roaming\$_hpcst$.hpc 2018-03-08 19:46 - 2018-03-08 19:46 - 000000001 _____ () C:\Users\Administrateur\AppData\Roaming\check.txt 2017-01-30 19:05 - 2017-01-30 19:05 - 000179611 _____ () C:\Users\Administrateur\AppData\Roaming\Fright.LN 2015-08-13 09:51 - 2015-08-23 18:58 - 000000039 _____ () C:\Users\Administrateur\AppData\Roaming\GMTK.conf 2019-01-13 21:18 - 2020-04-11 11:30 - 000000045 _____ () C:\Users\Administrateur\AppData\Roaming\jdm.conf 2016-07-05 10:56 - 2016-07-04 13:25 - 000867344 ___SH () C:\Users\Administrateur\AppData\Roaming\UTNEPiNHZCad 2020-04-01 13:59 - 2020-04-01 14:04 - 000001771 _____ () C:\Users\Administrateur\AppData\Local\mapc2mapc.ini 2016-05-24 19:05 - 2020-04-01 14:04 - 000001229 _____ () C:\Users\Administrateur\AppData\Local\mapc2mapc.log 2016-05-24 19:05 - 2016-02-29 13:17 - 000000190 _____ () C:\Users\Administrateur\AppData\Local\mapckappal.txt 2019-05-03 17:58 - 2019-05-03 17:58 - 000000055 _____ () C:\Users\Administrateur\AppData\Local\mm-device-08.ini 2018-12-13 15:24 - 2018-12-13 15:24 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\oobelibMkey.log 2016-02-09 14:51 - 2016-02-09 15:07 - 000000600 _____ () C:\Users\Administrateur\AppData\Local\PUTTY.RND 2019-05-27 15:14 - 2019-05-27 15:14 - 000000863 _____ () C:\Users\Administrateur\AppData\Local\recently-used.xbel 2015-07-13 08:57 - 2020-12-07 21:12 - 000007601 _____ () C:\Users\Administrateur\AppData\Local\Resmon.ResmonCfg 2021-02-04 12:56 - 2021-02-04 12:56 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{1454F3A7-415E-402F-8C09-465C54955AE2} 2016-11-23 12:25 - 2016-11-23 12:25 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{2E7D073B-5FFF-4127-B6F4-8B239DA754C9} 2016-11-30 09:33 - 2016-11-30 09:33 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{87D233A0-AD65-4553-87D9-8C859368A8B1} 2017-01-09 11:33 - 2017-01-09 11:33 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{8FB028FD-4D47-4506-855C-5F7F6398EE64} 2017-01-09 11:33 - 2017-01-09 11:33 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{A2385D7B-7580-46D7-8F4A-13D6B8FEC16B} 2016-11-25 10:16 - 2016-11-25 10:16 - 000000000 _____ () C:\Users\Administrateur\AppData\Local\{ABE8F084-6081-48A4-A3CC-368E8F706EFF} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2021-02-01 20:27 ==================== Fin de FRST.txt ========================