Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 08-02-2021 01 Exécuté par celine (administrateur) sur PCMAËLCELINE (LENOVO 81A5) (09-02-2021 17:54:11) Exécuté depuis C:\Users\celine\Desktop Profils chargés: celine Platform: Windows 10 Pro Version 1703 15063.1418 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_df1cb6a40f32b2b0\IntelCpHeciSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (LENOVO -> Lenovo) C:\Windows\System32\ymc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Users\celine\AppData\Local\NVIDIA Corporation\GeForceNOW\CEF\GeForceNOWReliabilityMonitor.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381280 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489896 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489896 2017-06-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\...\Run: [PreMiD] => "C:\Users\celine\AppData\Roaming\PreMiD\PreMiD.exe" --hidden HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-08] (Valve -> Valve Corporation) HKU\S-1-5-21-3001529801-3994959800-1751078486-1001\...\MountPoints2: {c3f1b723-4391-11ea-9703-d552da90ca20} - "D:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\Canon TS3100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDR.DLL [482816 2017-03-13] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS3100 series: C:\Windows\system32\CNMLMDR.DLL [1302016 2017-03-13] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS3100 series XPS: C:\Windows\system32\CNMXLMDR.DLL [1304064 2017-03-13] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\IppMon: C:\Windows\system32\IPPMon.dll [225792 2017-03-18] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\Windows\system32\hpzllwn7.dll [51712 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe [2021-02-08] (Google LLC -> Google LLC) HKLM\Software\...\Winlogon\GPExtensions: [{9650FDBC-053A-4715-AD14-FC2DC65E8330}] -> C:\Windows\system32\hvsigpext.dll [2017-03-19] (Microsoft Windows -> ) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {19B3D1DF-377E-49EA-9681-4C639DD7F7EA} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [61872 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {30E9CC46-F229-4D86-A07F-CE74F2CDC2C4} - System32\Tasks\LenovoUtility Startup Task: {33E2E3A5-89D5-4D0C-B33B-2D802E14C578} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\Explorer.exe /NOUACCHECK Task: {3F2B43D8-68D5-4585-B5ED-06DDACB9E1B8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {56CBAA8E-8A46-46F5-AC71-49E390289C20} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService Task: {5C363925-B9AF-442F-ABBB-EBEFF0B70144} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {762022F0-62F2-46BC-B23F-3B3FFA237BF2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-28] (Google LLC -> Google LLC) Task: {76FD5545-ECFA-4ED0-944B-6105758D0299} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\bcf758a5-73cb-41f8-8f12-7bb5c1832bba => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {7A164FED-10B5-4AB8-9467-C840C24CC1AB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-05-28] (Google LLC -> Google LLC) Task: {7CF04A71-CA71-404F-B539-9DB16EF17FD5} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\fdb75db5-0d6b-4f94-88f3-99a1521fc554 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {A281EF31-67EB-43F9-9348-AF51F1C9C978} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [144280 2020-12-29] (Lenovo -> Lenovo Group Ltd.) Task: {AC49A338-B2B7-43E3-814F-9B96357A3836} - System32\Tasks\OneDrive Standalone Update Task v2 Task: {AF95C490-1EAE-4C6A-AB95-65A355F8A994} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {C60B34B9-15B4-4A09-AF78-1E93A32975E8} - System32\Tasks\Microsoft\Windows\rempl\LaunchLowDiskToast => C:\Program Files\rempl\disktoast.exe [92664 2020-06-03] (Microsoft Windows -> Microsoft Corporation) Task: {C97E4C44-67B8-41D7-BC5F-A6E13F6F42CA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D432C7F9-3092-453E-B4C5-5CED52593715} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E8F9EEDB-AD3D-44C8-A832-47F9C4888323} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\3cab5d92-1e18-4f35-8346-9884095e1dcb => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {F00170D6-C495-4235-8C73-750C4DE2955B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F081D616-3CCC-4304-8F55-6F40FF9B025F} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9b617454-412f-4f1f-90b0-34ab6a8cb289 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7dcb9560-18ca-4853-9fa9-036f6e6aaf5e}: [DhcpNameServer] 169.254.73.172 Tcpip\..\Interfaces\{bf75cbe3-2c3a-4246-9970-2db3a6da8224}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\celine\Downloads FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-31] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-31] (Oracle America, Inc. -> Oracle Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default [2021-02-09] CHR Notifications: Default -> hxxps://www.facebook.com CHR StartupUrls: Default -> "hxxps://www.bing.com/?PC=LV04" CHR DefaultSearchURL: Default -> hxxps://www.gstatic.com/youtube/img/branding/favicon/favicon_144x144.png CHR Extension: (Slides) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-05-28] CHR Extension: (YouTube) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\agimnkijcaahngcdmfeangaknmldooml [2021-02-05] CHR Extension: (Docs) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-05-28] CHR Extension: (Google Drive) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (YouTube) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-05-28] CHR Extension: (Sheets) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-05-28] CHR Extension: (Protection Web Avira) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2020-12-09] CHR Extension: (EditThisCookie) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-11-27] CHR Extension: (Google Docs hors connexion) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-18] CHR Extension: (Papas Taco Mia Game) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\gihjealcgeaoldokenminkbebjbjbhjm [2020-05-28] CHR Extension: (BTRoblox - Making Roblox Better) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2021-02-04] CHR Extension: (Google Maps) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnhkaebcjjhencmpkapnbdaogjamfbcj [2020-05-28] CHR Extension: (Cut the Rope Time Travel) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\mobpckplhphcfdikfajajihmljhlmkod [2020-05-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24] CHR Extension: (Chrome Media Router) - C:\Users\celine\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-26] CHR Profile: C:\Users\celine\AppData\Local\Google\Chrome\User Data\System Profile [2020-07-20] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984 2018-08-13] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) R2 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2018-06-08] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 YMC; C:\Windows\system32\ymc.exe [66384 2017-06-18] (LENOVO -> Lenovo) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 DrvAgent64; C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [20872 2017-01-13] (eSupport.com, Inc -> Phoenix Technologies) S3 ew_usbccgpfilter; C:\Windows\System32\drivers\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 MpKsl328f1c03; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{167576E0-726A-4841-A6E6-6C67FBF2E1DA}\MpKslDrv.sys [47344 2021-02-09] (Microsoft Windows -> Microsoft Corporation) S3 nlwt; C:\Windows\system32\DRIVERS\nlwt.sys [39360 2021-01-28] (TEFINCOM S.A. -> WireGuard LLC) S3 qcusbnet; C:\Windows\System32\drivers\qcusbnet.sys [428600 2017-03-15] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [329184 2017-04-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project) S3 tapprotonvpn; C:\Windows\System32\drivers\tapprotonvpn.sys [49008 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-09] (Microsoft Windows -> Microsoft Corporation) S2 MBAMChameleon; \SystemRoot\System32\Drivers\MbamChameleon.sys [X] S3 MpKslf762d5ec; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D47FEA09-0F3C-4CED-97EC-2916303ED50A}\MpKslDrv.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-02-08 22:51 - 2021-02-08 22:51 - 000009839 ____C C:\Users\celine\Downloads\fixlist.txt 2021-02-07 09:57 - 2021-02-07 09:57 - 000000000 ___DC C:\Users\celine\Downloads\ChilledWindows 2021-02-07 09:55 - 2021-02-07 09:56 - 004389197 ____C C:\Users\celine\Downloads\ChilledWindows.zip 2021-02-05 21:52 - 2021-02-05 21:52 - 000002696 ____C C:\Users\celine\Desktop\YouTube.lnk 2021-02-05 19:14 - 2021-02-05 19:14 - 000002801 ____C C:\Users\celine\Desktop\Apex Legends™ sur GeForce NOW.lnk 2021-02-03 14:30 - 2021-02-03 14:31 - 003405669 ____C C:\Users\celine\Downloads\forge-1.7.10-10.13.4.1614-1.7.10-installer-win.exe 2021-02-02 19:31 - 2021-02-02 19:32 - 021849999 ____C C:\Users\celine\Downloads\JE RERAGIS A MES ANCIENNE VIDEO ( il y a des gros dossier ).mp4 2021-01-31 11:10 - 2021-02-03 15:10 - 000000000 ___DC C:\Users\celine\AppData\Roaming\.minecraft 2021-01-31 10:19 - 2021-01-31 10:19 - 000000000 ___DC C:\Users\celine\AppData\Roaming\.tlauncher 2021-01-31 10:13 - 2021-01-31 10:13 - 000192168 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2021-01-31 10:13 - 2021-01-31 10:13 - 000000000 ___DC C:\Users\celine\AppData\Roaming\Sun 2021-01-31 10:11 - 2021-01-31 10:11 - 000000000 ____D C:\Program Files\Java 2021-01-31 10:08 - 2021-01-31 10:09 - 001086602 ____C () C:\Users\celine\Downloads\TLauncher-MCL.exe 2021-01-30 21:11 - 2021-01-30 21:11 - 000745724 ____C C:\Users\celine\Downloads\twitter_20191023_145427.mp4 2021-01-30 18:47 - 2021-01-30 18:47 - 000007276 ____C C:\Users\celine\Downloads\images.jfif 2021-01-29 13:18 - 2021-01-29 13:18 - 000000000 ___DC C:\Users\celine\Downloads\output_Xilam 2021-01-28 16:57 - 2021-01-28 16:57 - 038594856 ____C (ExpressVPN) C:\Users\celine\Downloads\expressvpn_windows_10.0.9.2_release.exe 2021-01-28 16:51 - 2021-01-28 16:51 - 000000000 ___DC C:\Users\celine\AppData\Local\IsolatedStorage 2021-01-28 16:49 - 2021-01-28 16:49 - 000039360 ____T (WireGuard LLC) C:\Windows\system32\Drivers\nlwt.sys 2021-01-26 15:11 - 2021-01-26 15:11 - 000002747 ____C C:\Users\celine\Desktop\SCP SL.lnk 2021-01-26 11:02 - 2021-01-26 11:03 - 000000000 ___DC C:\Users\celine\AppData\Local\Steam 2021-01-26 11:00 - 2021-02-09 16:08 - 000000000 ____D C:\Program Files (x86)\Steam 2021-01-26 11:00 - 2021-01-26 11:00 - 000001043 _____ C:\Users\Public\Desktop\Steam.lnk 2021-01-26 10:48 - 2021-01-26 10:48 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Games 2021-01-26 10:29 - 2021-01-26 10:29 - 000021464 ____C C:\Users\celine\Downloads\4gb_patch.zip 2021-01-25 22:49 - 2021-02-09 17:54 - 000000000 ___DC C:\Users\celine\AppData\Roaming\discordptb 2021-01-25 22:49 - 2021-01-25 22:50 - 000002331 ____C C:\Users\celine\AppData\Roaming\Discord PTB.lnk 2021-01-25 22:49 - 2021-01-25 22:49 - 000000000 ___DC C:\Users\celine\AppData\Roaming\discord 2021-01-25 22:48 - 2021-02-09 17:20 - 000000000 ___DC C:\Users\celine\AppData\Local\DiscordPTB 2021-01-25 22:38 - 2021-01-26 10:09 - 000000000 ___DC C:\Users\celine\AppData\Roaming\PreMiD 2021-01-23 04:27 - 2021-01-23 04:27 - 000008112 ____C C:\Users\celine\Downloads\TokenGrabber.py 2021-01-23 00:32 - 2021-01-23 00:33 - 000005403 ____C C:\Users\celine\Downloads\téléchargement.jfif 2021-01-17 11:18 - 2021-01-17 11:18 - 000000809 ____C C:\Users\celine\Downloads\Documents - Raccourci.lnk 2021-01-17 11:18 - 2021-01-17 11:18 - 000000000 ___DC C:\Users\celine\AppData\Roaming\Citra 2021-01-17 10:57 - 2021-01-17 10:58 - 019701636 ____C C:\Users\celine\Downloads\citra-setup-windows.exe 2021-01-16 13:37 - 2021-01-16 13:37 - 000000000 ___DC C:\Users\celine\Documents\Dolphin Emulator ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-02-09 17:55 - 2020-06-08 11:10 - 000018442 ____C C:\Users\celine\Desktop\FRST.txt 2021-02-09 17:54 - 2020-06-05 12:22 - 000000000 ____D C:\FRST 2021-02-09 16:15 - 2017-09-20 22:16 - 007838112 _____ C:\Windows\system32\perfh00C.dat 2021-02-09 16:15 - 2017-09-20 22:16 - 002211650 _____ C:\Windows\system32\perfc00C.dat 2021-02-09 16:15 - 2017-04-18 00:26 - 015419112 _____ C:\Windows\system32\PerfStringBackup.INI 2021-02-09 16:07 - 2017-04-18 00:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-02-09 16:04 - 2020-06-08 11:13 - 000011287 ____C C:\Users\celine\Desktop\Addition.txt 2021-02-09 16:00 - 2020-06-05 12:22 - 000000000 ___DC C:\Users\celine\Desktop\FRST-OlderVersion 2021-02-09 16:00 - 2020-04-25 14:37 - 002297344 _____ (Farbar) C:\Users\celine\Desktop\FRST64.exe 2021-02-09 15:47 - 2018-01-01 14:06 - 000004174 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{00D965FB-6056-49E8-B56D-3CC916B5C080} 2021-02-09 15:45 - 2017-12-14 15:05 - 000000000 ___DC C:\Users\celine 2021-02-08 23:19 - 2017-04-18 00:21 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-02-08 22:53 - 2018-03-02 14:12 - 000000000 ____D C:\Users\celine\AppData\Roaming\Canon 2021-02-08 22:53 - 2018-03-02 13:35 - 000000000 ____D C:\Program Files (x86)\Canon 2021-02-08 20:58 - 2020-08-01 15:39 - 000130560 __SHC C:\Users\celine\Downloads\Thumbs.db 2021-02-08 20:50 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\AppReadiness 2021-02-06 16:31 - 2017-03-18 22:01 - 000000000 ____D C:\Windows\INF 2021-02-06 10:33 - 2019-06-29 11:43 - 000271360 __SHC C:\Users\celine\Desktop\Thumbs.db 2021-02-06 10:31 - 2020-06-11 18:32 - 000001067 ____C C:\Users\celine\Desktop\Fixlog.txt 2021-02-06 10:31 - 2017-03-18 12:40 - 001835008 _____ C:\Windows\system32\config\BBI 2021-02-05 21:52 - 2019-10-23 11:07 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2021-02-05 15:50 - 2020-10-17 13:34 - 000003588 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-05 15:50 - 2020-10-17 13:34 - 000003464 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-03 21:59 - 2020-12-30 11:48 - 000001299 ____C C:\Users\celine\Desktop\Roblox Studio.lnk 2021-02-03 21:59 - 2020-11-07 14:26 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2021-02-03 19:27 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\system32\NDF 2021-02-03 17:23 - 2020-12-18 14:50 - 000001529 _____ C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NVIDIA GeForce NOW.lnk 2021-02-03 17:23 - 2020-12-18 14:50 - 000001521 ____C C:\Users\celine\Desktop\NVIDIA GeForce NOW.lnk 2021-02-03 17:23 - 2020-12-18 14:49 - 000000000 ___DC C:\Users\celine\AppData\Local\NVIDIA Corporation 2021-01-31 11:09 - 2019-01-03 10:45 - 000000252 ____C C:\Users\celine\AppData\LocalLow\rbxcsettings.rbx 2021-01-31 10:02 - 2019-05-04 16:25 - 000442880 __SHC C:\Users\celine\Documents\Thumbs.db 2021-01-30 19:29 - 2020-10-26 14:50 - 000000000 ___DC C:\Users\celine\Desktop\Nouveau dossier (7) 2021-01-30 18:26 - 2017-03-18 22:03 - 000000000 ____D C:\Windows\LiveKernelReports 2021-01-28 20:51 - 2018-09-13 15:39 - 000000000 ___DC C:\Users\celine\AppData\Local\CrashDumps 2021-01-25 22:50 - 2018-07-11 19:03 - 000000000 ___DC C:\Users\celine\AppData\Local\SquirrelTemp 2021-01-25 22:49 - 2020-09-16 16:52 - 000000000 ____D C:\Users\celine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2021-01-25 21:03 - 2020-06-12 19:27 - 000000000 ___DC C:\Users\celine\AppData\Local\Roblox 2021-01-22 15:24 - 2017-12-15 01:46 - 000799104 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2021-01-16 16:10 - 2020-12-30 13:44 - 000000000 ___DC C:\Users\celine\Downloads\Dev 2021-01-16 14:41 - 2017-03-18 22:03 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-01-13 13:57 - 2017-12-15 13:09 - 000000000 ____D C:\Windows\system32\MRT 2021-01-13 13:45 - 2017-12-15 13:09 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-01-11 21:13 - 2018-03-17 19:37 - 000429952 _____ (Lenovo Group Limited) C:\Windows\system32\iMDriverHelper.dll 2021-01-11 21:13 - 2018-03-17 19:37 - 000107952 _____ (Lenovo Group Ltd.) C:\Windows\system32\WudfUpdate_02000.dll 2021-01-11 21:13 - 2017-09-20 12:54 - 000107952 _____ (Lenovo Group Ltd.) C:\Windows\system32\ImController.CoInstaller.dll 2021-01-11 21:13 - 2017-09-20 12:54 - 000061872 _____ (Lenovo Group Ltd.) C:\Windows\system32\ImController.InfInstaller.exe ==================== Fichiers à la racine de certains dossiers ======== 2020-12-30 14:56 - 2020-12-30 15:45 - 000000549 ____C () C:\Users\celine\AppData\Roaming\.cache~$ 2020-06-07 11:50 - 2020-06-07 11:50 - 000001196 ____C () C:\Users\celine\AppData\Roaming\AdobeWLCMR2Cache.dat 2020-06-04 02:13 - 2020-06-04 02:13 - 000051318 ____C () C:\Users\celine\AppData\Roaming\Croquis.png 2021-01-25 22:49 - 2021-01-25 22:50 - 000002331 ____C () C:\Users\celine\AppData\Roaming\Discord PTB.lnk 2020-09-16 16:52 - 2020-09-17 19:41 - 000002270 ____C () C:\Users\celine\AppData\Roaming\Discord.lnk 2020-08-13 13:05 - 2020-08-13 13:07 - 004602463 ____C () C:\Users\celine\AppData\Roaming\forge-1.12.2-14.23.5.2854-installer.jar 2020-08-13 13:07 - 2020-08-13 13:09 - 000005032 ____C () C:\Users\celine\AppData\Roaming\forge-1.12.2-14.23.5.2854-installer.jar.log 2020-06-18 01:15 - 2020-06-18 01:15 - 001679264 ____C () C:\Users\celine\AppData\Roaming\FreeMC.jar 2020-06-20 18:34 - 2020-06-20 18:36 - 000000056 ____C () C:\Users\celine\AppData\Roaming\liste text.txt 2020-06-18 01:50 - 2020-06-18 01:50 - 000315347 ____C (Majong) C:\Users\celine\AppData\Roaming\MLC.exe 2020-06-06 11:31 - 2020-06-06 11:33 - 000000128 ____C () C:\Users\celine\AppData\Roaming\PUTTY.RND 2020-05-29 14:40 - 2020-05-29 14:40 - 000084129 ____C () C:\Users\celine\AppData\Roaming\Test for shop.rbxl 2020-06-04 10:39 - 2020-06-04 10:39 - 000007168 __SHC () C:\Users\celine\AppData\Roaming\Thumbs.db 2019-11-05 19:23 - 2019-11-05 19:23 - 000000548 ____C () C:\Users\celine\AppData\Local\Nox_crash.log 2020-06-06 11:22 - 2020-09-25 21:46 - 000000256 ____C () C:\Users\celine\AppData\Local\PUTTY.RND 2018-12-22 16:02 - 2018-12-22 16:02 - 000004485 ____C () C:\Users\celine\AppData\Local\recently-used.xbel 2018-10-12 16:08 - 2019-08-28 15:59 - 000007597 ____C () C:\Users\celine\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================