Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 21-03-2021 Exécuté par Manu Cosa (administrateur) sur DESKTOP-P8RR5MV (HP HP Pavilion x360 Convertible 14-ba0xx) (23-03-2021 19:46:35) Exécuté depuis C:\Users\Manu Cosa\Desktop Profils chargés: Manu Cosa Platform: Windows 10 Home Version 20H2 19042.867 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2> (Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12108.5.48031.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Conexant Systems LLC -> Conexant Systems LLC.) C:\Windows\System32\CxAudioSvc.exe (Conexant Systems LLC -> Synaptics Incorporated.) C:\Windows\System32\SynAudSrv.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe (HP Inc. -> HP Development Company, L.P.) C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_11444d601907b1cf\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_11444d601907b1cf\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_11444d601907b1cf\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_11444d601907b1cf\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_724e05bd98458fe4\RstMwService.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\NisSrv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Epson Printer Connection Checker\EPPCCMON.EXE (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\EPSON\Epson Data Collection Agent\DataCollectionAgentController.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files\EPSON\Epson Data Collection Agent\DCAgent.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIWLE.EXE (Seiko Epson Corporation) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (VMware, Inc. -> ) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (WildTangent Inc -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe (Wondershare software CO., LIMITED -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3665872 2017-10-21] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [442936 2020-10-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Run: [DataCollectionAgentController] => C:\Program Files\EPSON\Epson Data Collection Agent\DataCollectionAgentController.exe [394864 2020-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare software CO., LIMITED -> Wondershare) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (Shenzhen Yi Xing Investment Co., Ltd. -> iSkySoft) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1310720 2020-02-10] (Seiko Epson Corporation) [Fichier non signé] HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [119000 2020-11-17] (VMware, Inc. -> VMware, Inc.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [709152 2018-03-22] (HP Inc. -> HP Inc.) HKU\S-1-5-21-3532539042-2406182156-1135416979-1002\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536424 2021-03-06] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3532539042-2406182156-1135416979-1002\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIWLE.EXE [416896 2017-09-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EPSON XP-970 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBWLE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\WINDOWS\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.90\Installer\chrmstp.exe [2021-03-18] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2020-02-11] ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Pas de fichier) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0BAFB787-C374-4346-94FC-9480FFFE8DAB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe [566368 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0C60A94E-9307-4BAB-A958-EBA905406AFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-24] (Google Inc -> Google Inc.) Task: {15C4AC27-5F08-459B-AACD-E0B2F78D1201} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {1B32FB58-9F73-4721-92FA-A0090FF10EFE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - resources updates => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {2180B1FB-12E2-4DDC-9439-39093A2A81C3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) Task: {3579210E-B1A6-4262-AE7B-4C915FB19F28} - System32\Tasks\Opera scheduled Autoupdate 1571929351 => C:\Users\Manu Cosa\AppData\Local\Programs\Opera\launcher.exe Task: {3C7D9513-0390-4903-9D38-221223F6E49E} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\system32\RtkAudUService64.exe [821320 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {3D540A86-5AB7-4FEC-9DAE-DFD016C36B95} - System32\Tasks\Opera scheduled Autoupdate 1528138720 => C:\Users\Guy Cohen\AppData\Local\Programs\Opera\launcher.exe Task: {5A7E3EAA-94AC-4391-AA34-93FB49B15958} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3532539042-2406182156-1135416979-1001 => C:\Users\Manu Cosa\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {67FBDF6F-F96C-48B8-BCAB-7A13053FD137} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.) Task: {6C22B664-3EC4-4C0C-ABA2-FD50DCCC6FAD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {72A0FE59-4C2F-4801-9A31-5F52A2F47324} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [348256 2021-01-22] (HP Inc. -> HP Inc.) Task: {734C5742-BBFD-42FB-A2CA-B1065F4AB18F} - System32\Tasks\Opera scheduled assistant Autoupdate 1571929353 => C:\Users\Manu Cosa\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Manu Cosa\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {73D0ED07-2693-46DD-BC44-7B6353BFF2D4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [135000 2020-06-22] (HP Inc. -> HP Inc.) Task: {755A319E-2C92-4194-862D-CFA8063376E8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [3915216 2021-02-15] (Microsoft Corporation -> Microsoft Corporation) Task: {78DAF743-C08B-47BF-AA3C-1180432603C5} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [693456 2020-12-22] (Mozilla Corporation -> Mozilla Foundation) Task: {7B493FFA-F31B-408D-A223-43F1062847FD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe [566368 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {80E11AEC-446E-41B4-B97A-1E69C32D60A7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {811926AE-FA0C-4004-8664-B51F4F3AC1B1} - System32\Tasks\EPSON XP-970 Series Update {B2B6D110-E63F-4328-91F7-DE8A5EB1C6CA} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWLE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {85237B8A-5BB5-4C68-9692-86BF1BEFB5AB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22763912 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) Task: {87248B58-6F4A-49E9-B981-7CEA8E261359} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2017-04-07] (HP Inc. -> HP Inc.) Task: {8D290B03-75F4-427A-9493-69BCFF069D63} - System32\Tasks\HP\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1359728 2017-10-25] (HP Inc. -> HP Development Company, L.P.) Task: {9AB0F688-2795-4F2B-AA83-2906C7EDEA87} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [461824 2017-10-06] (HP Inc. -> HP Inc.) Task: {A7638FEA-1E2C-4B27-9D84-26B53E511A55} - System32\Tasks\Opera scheduled assistant Autoupdate 1547484279 => C:\Users\Guy Cohen\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Guy Cohen\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {B53DD94B-D49B-474E-8CFF-87F906CA9F7B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [665944 2020-08-07] (HP Inc. -> HP Inc.) Task: {B5571D4B-DAF1-488A-B455-BA356364395A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\BingPopup\BingPopup.exe [553304 2020-10-28] (HP Inc. -> HP Inc.) Task: {C20E6455-1037-4B81-917C-5B859B3489BA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-16] (HP Inc. -> HP Inc.) Task: {CAB0F3C9-D3DB-4EB0-8733-F539039F4168} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-09-21] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {CAE929AF-CDAE-409E-9811-D0A5B773D921} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1136984 2020-09-16] (HP Inc. -> HP Inc.) Task: {CDDF82E9-56EE-415C-94B3-EC184EA394A6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [118128 2021-03-17] (Microsoft Corporation -> Microsoft Corporation) Task: {D5357540-AD3A-4DBE-95B6-33978FE6D01D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe [566368 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {DAFC2705-9BE0-47D8-A503-30DD1765E455} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [118128 2021-03-17] (Microsoft Corporation -> Microsoft Corporation) Task: {F41B9B04-2D2F-4343-9AB5-9E62B2D29C0E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506648 2020-08-20] (HP Inc. -> HP Inc.) Task: {F60DF507-38F5-40A1-A6F9-7F221F0A09A7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MpCmdRun.exe [566368 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F96A58D2-81C6-42A0-AB1F-4ADE4804ABF5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [3915216 2021-02-15] (Microsoft Corporation -> Microsoft Corporation) Task: {F9AEAAAE-52FC-44F5-B738-FCCBB1C46D5B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-24] (Google Inc -> Google Inc.) Task: {F9FEB1CB-0E6E-4B78-A42D-394B75D56E05} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1283464 2021-03-17] (Microsoft Corporation -> Microsoft Corporation) Task: {FE63558C-0996-4649-91B9-5B7C690A7B38} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\EPSON XP-970 Series Update {B2B6D110-E63F-4328-91F7-DE8A5EB1C6CA}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSWLE.EXE:/EXE:{B2B6D110-E63F-4328-91F7-DE8A5EB1C6CA} /F:UpdateWORKGROUP\DESKTOP-P8RR5MV$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog9 15 C:\WINDOWS\SysWOW64\vsocklib.dll [44128 2020-08-11] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog9 16 C:\WINDOWS\SysWOW64\vsocklib.dll [44128 2020-08-11] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog9-x64 15 C:\Windows\system32\vsocklib.dll [48224 2020-08-11] (VMware, Inc. -> VMware, Inc.) Winsock: Catalog9-x64 16 C:\Windows\system32\vsocklib.dll [48224 2020-08-11] (VMware, Inc. -> VMware, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{72e5a613-5172-43b7-8595-5adc517b05cd}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{b44cbd69-98a9-414b-9a33-47be87091963}: [DhcpNameServer] 172.168.0.7 Edge: ======= DownloadDir: C:\Users\Manu Cosa\Downloads Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2020-02-12] Edge DefaultProfile: Default Edge Profile: C:\Users\Manu Cosa\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-23] Edge DownloadDir: C:\Users\Manu Cosa\Downloads Edge DefaultSearchURL: Default -> hxxps://www.gstatic.com/youtube/img/branding/favicon/favicon_144x144.png Edge Extension: (YouTube) - C:\Users\Manu Cosa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\agimnkijcaahngcdmfeangaknmldooml [2021-03-09] Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Manu Cosa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2021-02-01] FireFox: ======== FF DefaultProfile: vqgpao8f.default FF ProfilePath: C:\Users\Manu Cosa\AppData\Roaming\Mozilla\Firefox\Profiles\vqgpao8f.default [2020-05-19] FF ProfilePath: C:\Users\Manu Cosa\AppData\Roaming\Mozilla\Firefox\Profiles\uedf71jd.default-release [2021-03-11] FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Users\Manu Cosa\VLC\npvlc.dll [Pas de fichier] FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Users\Manu Cosa\VLC\npvlc.dll [Pas de fichier] FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default [2021-03-23] CHR DownloadDir: C:\Users\Manu Cosa\Downloads CHR Extension: (Slides) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-24] CHR Extension: (Google Drive) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghbiahbpaijignceidepookljebhfak [2021-03-11] CHR Extension: (YouTube) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\agimnkijcaahngcdmfeangaknmldooml [2021-01-28] CHR Extension: (Docs) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-24] CHR Extension: (Google Drive) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22] CHR Extension: (YouTube) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-24] CHR Extension: (Slinky Elégante) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2020-05-24] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-01-28] CHR Extension: (Adobe Acrobat) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-11] CHR Extension: (wanteeed) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2020-11-21] CHR Extension: (myCANAL) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\enaibefmjkdnhcbldaccphajjoallbom [2021-02-01] CHR Extension: (Sheets) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-24] CHR Extension: (Google Docs hors connexion) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-11] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22] CHR Extension: (Chrome Media Router) - C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-12] CHR Profile: C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-05-24] CHR Profile: C:\Users\Manu Cosa\AppData\Local\Google\Chrome\User Data\System Profile [2020-06-03] CHR HKLM\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd] CHR HKU\S-1-5-21-3532539042-2406182156-1135416979-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [icmgebopaejnjlncllgmcenbbflikfjd] Opera: ======= OPR Profile: C:\Users\Manu Cosa\AppData\Roaming\Opera Software\Opera Stable [2019-10-24] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.fr/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} Brave: ======= BRA Profile: C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2019-11-08] BRA Extension: (McAfee® WebAdvisor) - C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-11-08] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2019-11-08] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2019-11-08] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2019-11-08] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Manu Cosa\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2019-11-08] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7211968 2018-09-03] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8854920 2021-02-06] (Microsoft Corporation -> Microsoft Corporation) R2 DCAgent; C:\Program Files\EPSON\Epson Data Collection Agent\DCAgent.exe [16496 2020-09-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-06-03] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2019-07-04] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.) R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [477184 2017-10-06] (HP Inc. -> HP Inc.) R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1075744 2017-10-11] (HP Inc. -> HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [379736 2020-08-20] (HP Inc. -> HP Inc.) R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12758528 2019-12-16] (TeamViewer GmbH -> TeamViewer Germany GmbH) R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15221296 2020-11-17] (VMware, Inc. -> ) S3 wampapache64; c:\wamp64\bin\apache\apache2.4.46\bin\httpd.exe [29696 2020-08-02] (Apache Software Foundation) [Fichier non signé] S3 wampmariadb64; c:\wamp64\bin\mariadb\mariadb10.4.13\bin\mysqld.exe [16058280 2020-05-09] (MariaDB Corporation Ab -> ) S3 wampmysqld64; c:\wamp64\bin\mysql\mysql5.7.31\bin\mysqld.exe [41826304 2020-06-02] () [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\NisSrv.exe [2483616 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1549104 2019-07-02] (WildTangent Inc -> ) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.4-0\MsMpEng.exe [128376 2021-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 MpKsla77d0eb4; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A7583F5D-6567-43F9-91E7-4FD5CD2472C8}\MpKslDrv.sys [90360 2021-03-23] (Microsoft Windows -> Microsoft Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) S3 USBTINSP; C:\WINDOWS\System32\drivers\tinspusb.sys [142848 2012-04-27] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments) R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [68544 2020-11-17] (VMware, Inc. -> VMware, Inc.) R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2020-08-11] (VMware, Inc. -> VMware, Inc.) R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [54592 2020-08-11] (VMware, Inc. -> VMware, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [420072 2021-03-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72952 2021-03-15] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2020-06-08] (HP Inc. -> HP) S3 MpKsl6d4bf492; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2EC71DD-12FA-4B79-AC7D-D5460E36FAEA}\MpKslDrv.sys [X] S3 MpKslad08440d; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2EC71DD-12FA-4B79-AC7D-D5460E36FAEA}\MpKslDrv.sys [X] S3 MpKslf0dddaed; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B2EC71DD-12FA-4B79-AC7D-D5460E36FAEA}\MpKslDrv.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-03-23 19:46 - 2021-03-23 19:47 - 000033144 _____ C:\Users\Manu Cosa\Desktop\FRST.txt 2021-03-23 19:46 - 2021-03-23 19:47 - 000000000 ____D C:\FRST 2021-03-23 19:45 - 2021-03-23 19:45 - 002300928 _____ (Farbar) C:\Users\Manu Cosa\Desktop\FRST64.exe 2021-03-23 19:43 - 2021-03-23 19:43 - 000399939 _____ C:\Users\Manu Cosa\Desktop\ZHPDiag.txt 2021-03-23 19:32 - 2021-03-23 19:42 - 000000135 _____ C:\Users\Manu 2021-03-23 19:30 - 2021-03-23 19:43 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\ZHP 2021-03-23 19:30 - 2021-03-23 19:30 - 000000876 _____ C:\Users\Manu Cosa\Desktop\ZHPSuite.lnk 2021-03-23 19:30 - 2021-03-23 19:30 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\ZHP 2021-03-23 19:29 - 2021-03-23 19:29 - 003466904 _____ (Nicolas Coolman) C:\Users\Manu Cosa\Desktop\ZHPSuite.exe 2021-03-23 12:04 - 2021-03-23 12:05 - 000001489 _____ C:\Users\Public\Desktop\Wampserver64.lnk 2021-03-23 12:04 - 2021-03-23 12:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wampserver64 2021-03-23 12:03 - 2021-03-23 12:03 - 000000000 ____D C:\wamp64 2021-03-22 15:07 - 2021-03-23 15:59 - 000000000 ____D C:\projet_gavvao_sme 2021-03-22 09:46 - 2021-03-22 09:46 - 000000112 ___SH C:\bootTel.dat 2021-03-19 11:22 - 2021-03-19 11:22 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\WhatsApp 2021-03-13 22:49 - 2021-03-13 22:49 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-03-13 22:49 - 2021-03-13 22:49 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-03-13 22:49 - 2021-03-13 22:49 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-03-13 22:48 - 2021-03-13 22:48 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-03-13 22:48 - 2021-03-13 22:48 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-03-13 22:48 - 2021-03-13 22:48 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-03-11 10:44 - 2021-03-11 10:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-03-09 14:24 - 2021-03-09 14:24 - 000001392 _____ C:\Users\Manu Cosa\Desktop\YouTube.lnk 2021-03-08 20:53 - 2021-03-08 20:54 - 001585804 _____ C:\WINDOWS\Minidump\030821-7125-01.dmp 2021-03-08 20:53 - 2021-03-08 20:54 - 000000000 ____D C:\WINDOWS\Minidump 2021-03-08 20:53 - 2021-03-08 20:53 - 946585186 _____ C:\WINDOWS\MEMORY.DMP 2021-03-03 17:42 - 2021-03-19 11:22 - 000002228 _____ C:\Users\Manu Cosa\Desktop\WhatsApp.lnk 2021-03-03 17:42 - 2021-03-03 17:42 - 000000000 ____D C:\ProgramData\Manu Cosa 2021-03-03 14:14 - 2021-03-03 14:14 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-03-03 14:13 - 2021-03-03 14:13 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-03-03 14:13 - 2021-03-03 14:13 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-03-03 14:13 - 2021-03-03 14:13 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-03-03 14:13 - 2021-03-03 14:13 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-02-21 18:58 - 2021-02-21 18:58 - 000041938 _____ C:\WINDOWS\system32\energy-report.html 2021-02-19 10:04 - 2021-02-19 16:33 - 000145977 _____ C:\Users\Manu Cosa\battery-report.html 2021-02-18 21:31 - 2021-03-22 14:19 - 000000288 _____ C:\hwmonitorw.ini 2021-02-15 13:39 - 2021-02-15 13:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit) 2021-02-15 13:39 - 2021-02-15 13:39 - 000000000 ____D C:\Program Files\PuTTY 2021-02-14 16:00 - 2021-02-14 16:00 - 000000000 ___HD C:\$SysReset 2021-02-07 01:12 - 2021-03-19 16:27 - 000053530 _____ C:\WINDOWS\system32\battery-report.html 2021-02-01 14:41 - 2021-02-01 14:41 - 000002702 _____ C:\Users\Manu Cosa\Desktop\myCANAL.lnk 2021-01-25 14:24 - 2021-01-25 14:24 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2021-01-24 15:20 - 2021-02-21 12:09 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-01-23 22:01 - 2021-01-23 22:01 - 000002505 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2021-01-23 22:01 - 2021-01-23 22:01 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-01-23 22:01 - 2021-01-23 22:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-01-21 13:44 - 2021-01-21 13:44 - 000000000 ____D C:\MobaXterm_Portable_v20.6 2021-01-21 10:06 - 2021-01-21 10:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-01-21 10:06 - 2021-01-21 10:06 - 000000000 ____D C:\Program Files (x86)\7-Zip 2021-01-19 11:39 - 2021-02-19 17:13 - 000000000 ____D C:\Users\Manu Cosa\Documents\Virtual Machines 2021-01-19 11:18 - 2021-01-19 11:18 - 000001283 _____ C:\Users\Public\Desktop\VMware Workstation Pro.lnk 2021-01-19 11:18 - 2021-01-19 11:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware 2021-01-19 11:18 - 2020-11-17 22:01 - 001305304 _____ (VMware, Inc.) C:\WINDOWS\system32\vnetlib64.dll 2021-01-19 11:18 - 2020-11-17 21:59 - 000422104 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vmnat.exe 2021-01-19 11:18 - 2020-11-17 21:59 - 000379440 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vmnetdhcp.exe 2021-01-19 11:18 - 2020-11-17 21:59 - 000119736 _____ (VMware, Inc.) C:\WINDOWS\system32\vnetinst.dll 2021-01-19 11:18 - 2020-11-17 21:59 - 000045664 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vmnetuserif.sys 2021-01-19 11:18 - 2020-11-17 21:53 - 000110696 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vmx86.sys 2021-01-19 11:18 - 2020-10-01 09:46 - 000085448 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\hcmon.sys 2021-01-19 11:18 - 2020-08-11 00:25 - 000048224 _____ (VMware, Inc.) C:\WINDOWS\system32\vsocklib.dll 2021-01-19 11:18 - 2020-08-11 00:25 - 000044128 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vsocklib.dll 2021-01-19 11:18 - 2020-08-11 00:24 - 000105912 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vsock.sys 2021-01-19 11:17 - 2021-01-19 11:17 - 000000000 ____D C:\Users\Public\Documents\Shared Virtual Machines 2021-01-19 11:17 - 2021-01-19 11:17 - 000000000 ____D C:\ProgramData\Documents\Shared Virtual Machines 2021-01-19 11:17 - 2021-01-19 11:17 - 000000000 ____D C:\Program Files\Common Files\VMware 2021-01-19 11:04 - 2021-02-16 16:57 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\VMware 2021-01-19 11:04 - 2021-02-16 16:18 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\VMware 2021-01-19 11:03 - 2021-01-19 11:03 - 000001024 _____ C:\WINDOWS\SysWOW64\%TMP% 2021-01-19 11:02 - 2021-03-23 19:26 - 000000000 ____D C:\ProgramData\VMware 2021-01-19 11:02 - 2021-01-19 11:17 - 000000000 ____D C:\Program Files (x86)\VMware 2021-01-18 15:19 - 2021-01-18 15:19 - 000000000 _____ C:\Users\Manu Cosa\0){ 2021-01-15 11:57 - 2021-01-15 11:58 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\StarUML 2021-01-15 11:57 - 2021-01-15 11:57 - 000001869 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarUML.lnk 2021-01-15 11:57 - 2021-01-15 11:57 - 000001857 _____ C:\Users\Public\Desktop\StarUML.lnk 2021-01-15 11:57 - 2021-01-15 11:57 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\staruml-updater 2021-01-15 11:57 - 2021-01-15 11:57 - 000000000 ____D C:\Program Files\StarUML 2021-01-15 09:32 - 2021-01-15 09:32 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-15 09:32 - 2021-01-15 09:32 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-15 09:32 - 2021-01-15 09:32 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-15 09:32 - 2021-01-15 09:32 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-15 09:32 - 2021-01-15 09:32 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-15 09:32 - 2021-01-15 09:32 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-15 09:32 - 2021-01-15 09:32 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-15 09:32 - 2021-01-15 09:32 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-15 09:32 - 2021-01-15 09:32 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-15 09:32 - 2021-01-15 09:32 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-15 09:31 - 2021-01-15 09:31 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-15 09:31 - 2021-01-15 09:31 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-15 09:31 - 2021-01-15 09:31 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-15 09:31 - 2021-01-15 09:31 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-15 09:31 - 2021-01-15 09:31 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-15 09:31 - 2021-01-15 09:31 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-15 09:31 - 2021-01-15 09:31 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-15 09:31 - 2021-01-15 09:31 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-15 09:31 - 2021-01-15 09:31 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-15 09:30 - 2021-01-15 09:30 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-15 09:30 - 2021-01-15 09:30 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-15 09:30 - 2021-01-15 09:30 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-15 09:30 - 2021-01-15 09:30 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-15 09:30 - 2021-01-15 09:30 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-15 09:30 - 2021-01-15 09:30 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-15 09:30 - 2021-01-15 09:30 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-15 09:29 - 2021-01-15 09:29 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-15 09:29 - 2021-01-15 09:29 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-15 09:29 - 2021-01-15 09:29 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-15 09:29 - 2021-01-15 09:29 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-15 09:29 - 2021-01-15 09:29 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-15 09:29 - 2021-01-15 09:29 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-15 09:29 - 2021-01-15 09:29 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-15 09:28 - 2021-01-15 09:28 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-15 09:28 - 2021-01-15 09:28 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-15 09:28 - 2021-01-15 09:28 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-15 09:28 - 2021-01-15 09:28 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-15 09:28 - 2021-01-15 09:28 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-03 19:38 - 2021-02-16 15:04 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\discord 2021-01-03 19:38 - 2021-01-03 19:38 - 000002258 _____ C:\Users\Manu Cosa\Desktop\Discord.lnk 2021-01-03 19:38 - 2021-01-03 19:38 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2021-01-03 19:38 - 2021-01-03 19:38 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\Discord ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-03-23 19:46 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-03-23 19:41 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-03-23 19:40 - 2020-06-03 16:01 - 000000000 ____D C:\Users\Manu Cosa\Documents\Fichiers Outlook 2021-03-23 19:32 - 2020-07-26 23:36 - 001942578 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-03-23 19:32 - 2019-12-07 15:49 - 000840214 _____ C:\WINDOWS\system32\perfh00C.dat 2021-03-23 19:32 - 2019-12-07 15:49 - 000170688 _____ C:\WINDOWS\system32\perfc00C.dat 2021-03-23 19:28 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-03-23 19:26 - 2020-07-26 23:35 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-03-23 19:26 - 2020-07-26 23:27 - 000008192 ___SH C:\DumpStack.log.tmp 2021-03-23 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-03-23 19:26 - 2019-11-12 16:09 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-03-23 19:26 - 2018-10-08 15:44 - 000000000 __SHD C:\Users\Manu Cosa\IntelGraphicsProfiles 2021-03-23 17:30 - 2020-07-26 23:28 - 000000000 ____D C:\Users\Manu Cosa 2021-03-23 17:30 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-03-23 17:12 - 2020-07-26 23:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-03-23 17:05 - 2019-07-08 17:52 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Code 2021-03-23 17:02 - 2020-10-01 11:18 - 000000128 _____ C:\Users\Manu Cosa\AppData\Roaming\winscp.rnd 2021-03-23 17:00 - 2020-04-17 14:46 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\npm-cache 2021-03-23 14:28 - 2019-12-30 19:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2021-03-23 13:25 - 2018-10-08 15:44 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\Packages 2021-03-23 12:16 - 2020-10-01 13:05 - 000000000 ____D C:\projet_gavvao 2021-03-23 11:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-03-23 11:52 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2021-03-22 21:54 - 2020-07-26 23:35 - 000004040 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{1255F411-E8AF-4564-B835-6D9927002BD9} 2021-03-22 09:48 - 2020-10-21 09:32 - 000000000 ____D C:\Users\Manu Cosa\Desktop\cours_f2i 2021-03-20 20:06 - 2020-05-19 19:50 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-03-20 20:06 - 2020-05-19 19:50 - 000002287 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-03-20 20:06 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-03-19 16:21 - 2020-12-21 09:56 - 000000000 ____D C:\Users\Manu Cosa\Desktop\dossier_permis 2021-03-19 16:06 - 2018-12-26 07:38 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\WhatsApp 2021-03-19 12:10 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-03-19 11:27 - 2019-12-07 22:37 - 000000000 ____D C:\Users\Manu Cosa\Desktop\Merise 2021-03-19 11:22 - 2020-05-13 13:50 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2021-03-19 11:22 - 2018-12-26 07:38 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\SquirrelTemp 2021-03-17 09:54 - 2018-07-04 09:50 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-03-17 09:50 - 2019-07-08 17:52 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2021-03-15 23:06 - 2018-07-18 18:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-03-13 22:56 - 2020-07-26 23:27 - 000551952 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-03-13 22:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-03-12 10:40 - 2018-06-04 19:42 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-03-12 10:21 - 2018-06-04 19:42 - 131005360 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-03-11 11:12 - 2020-12-22 11:19 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-03-11 11:12 - 2020-05-19 14:58 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-03-11 10:57 - 2020-03-09 14:53 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-03-11 10:50 - 2020-05-19 16:50 - 000000000 ____D C:\Users\Manu Cosa\AppData\LocalLow\Mozilla 2021-03-11 10:45 - 2020-05-19 14:58 - 000000000 ____D C:\ProgramData\Mozilla 2021-03-11 10:44 - 2020-05-19 14:58 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-03-07 20:25 - 2019-11-29 10:36 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\ElevatedDiagnostics 2021-03-05 14:03 - 2019-12-26 21:38 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\vlc 2021-03-04 21:01 - 2020-07-26 23:35 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-03-04 21:01 - 2020-07-26 23:35 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-03-03 14:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2021-03-03 14:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-03-03 14:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2021-03-03 14:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-03-03 14:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-02-25 16:21 - 2020-05-03 17:24 - 000000000 ____D C:\Users\Manu Cosa\AppData\Local\Spotify 2021-02-25 16:18 - 2020-05-03 17:23 - 000000000 ____D C:\Users\Manu Cosa\AppData\Roaming\Spotify 2021-02-21 19:33 - 2018-02-03 10:39 - 000000000 ____D C:\WINDOWS\HP 2021-02-21 19:33 - 2017-11-16 14:51 - 000000000 ____D C:\SWSetup 2021-02-21 19:32 - 2017-11-16 06:12 - 000000000 ____D C:\Program Files (x86)\HP ==================== Fichiers à la racine de certains dossiers ======== 2019-06-30 14:52 - 2019-06-30 14:52 - 000000277 _____ () C:\ProgramData\fontcacheev1.dat 2020-11-16 14:05 - 2021-01-11 09:37 - 000000234 _____ () C:\Users\Manu Cosa\AppData\Roaming\debug.log 2020-10-01 11:18 - 2021-03-23 17:02 - 000000128 _____ () C:\Users\Manu Cosa\AppData\Roaming\winscp.rnd 2020-05-04 22:39 - 2020-05-04 22:50 - 000001536 _____ () C:\Users\Manu Cosa\AppData\Local\GfxMetrics.cfg 2020-11-09 11:33 - 2021-02-16 16:43 - 000000128 _____ () C:\Users\Manu Cosa\AppData\Local\PUTTY.RND ==================== SigCheckExt ========================= 2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppmon.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 002642944 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppui.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppmon.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 002642944 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppui.dll 2017-11-16 14:51 - 2018-06-19 13:35 - 000014848 _____ (Hewlett-Packard) C:\WINDOWS\HPCUST2.exe 2011-12-23 09:45 - 2011-12-23 09:45 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 1999-03-15 16:09 - 1999-03-15 16:09 - 000557328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DAO360.DLL 1998-07-13 06:08 - 1998-07-13 06:08 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DATGDFR.DLL 2011-12-23 09:45 - 2011-12-23 09:45 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71.dll 2011-12-23 09:45 - 2011-12-23 09:45 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71u.dll 2001-02-09 10:00 - 2001-02-09 10:00 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSSTDFMT.DLL 1998-06-17 00:00 - 1998-06-17 00:00 - 000094285 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVCIRTD.DLL 2011-12-23 09:45 - 2011-12-23 09:45 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2011-12-23 09:45 - 2011-12-23 09:45 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2000-07-15 00:00 - 2000-07-15 00:00 - 000434252 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVCRTD.DLL 2001-07-30 17:40 - 2001-07-30 17:40 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3a.DLL 1999-01-13 17:22 - 1999-01-13 17:22 - 000061440 _____ (Blue Sky Software Corporation) C:\WINDOWS\SysWOW64\RHGBTN32.DLL 2000-11-07 17:36 - 2000-11-07 17:36 - 001044480 _____ (eHelp Corporation.) C:\WINDOWS\SysWOW64\ROBOEX32.DLL 1998-07-12 20:00 - 1998-07-12 20:00 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\STDFTFR.DLL 2021-03-23 19:45 - 2021-03-23 19:45 - 002300928 _____ (Farbar) C:\Users\Manu Cosa\Desktop\FRST64.exe 2021-03-23 19:29 - 2021-03-23 19:29 - 003466904 _____ (Nicolas Coolman) C:\Users\Manu Cosa\Desktop\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {230cb527-6825-11e8-b17c-8df63d6775a2} {4febc8a0-090b-11e8-9039-9cebe8600de4} timeout 0 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {7c60d2ed-cf97-11ea-bc33-eb641d6f302e} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {230cb527-6825-11e8-b17c-8df63d6775a2} description Internal Hard Disk or Solid State Disk Application logicielle (101fffff) -------------------------------- identificateur {4febc8a0-090b-11e8-9039-9cebe8600de4} description EFI USB Device Chargeur de d‚marrage Windows ----------------------------- identificateur {2f0e4ce6-cf8f-11ea-b1f1-e1cc67e46771} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{2f0e4ce7-cf8f-11ea-b1f1-e1cc67e46771} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{2f0e4ce7-cf8f-11ea-b1f1-e1cc67e46771} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {2f0e4ce6-cf8f-11ea-b1f1-e1cc67e46771} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {7c60d2ed-cf97-11ea-bc33-eb641d6f302e} nx OptIn bootmenupolicy Standard Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {7c60d2ed-cf97-11ea-bc33-eb641d6f302e} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {2f0e4ce6-cf8f-11ea-b1f1-e1cc67e46771} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {2f0e4ce7-cf8f-11ea-b1f1-e1cc67e46771} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================